Thanks for the detailed explanation. It's interesting to note that firewall rules are well captured in the predicate logic.
Just curious: Have you encountered rules that cannot be cast into predicate logic framework in Z3?
Just curious: Have you encountered rules that cannot be cast into predicate logic framework in Z3?
On the network firewall rules (at multi-tenant Azure, I presume), what were Z3's runtimes look like?