Firewalls and Intrusion
Detection
Common network devices
• Packet and Application-Layer Firewall
• Network Intrusion Detection
• Virtual Private Network (IPSEC/PPTP/SSL)
• Content Filtering and Virus Scanning
• Bandwidth Management (Traffic Shaping)
• Web caching, other caching
Two Separable Topics
Arrangement of firewall and routers
• Several different network configurations
–Separate internal LAN from external Internet
–Wall off subnetwork within an organization
• Test networks, financial records, secret projects
–Intermediate zone for web server, etc.
• Personal firewall on end-user machine
How does the firewall process data
• Packet filtering router
• Application-level gateway
–Proxy for protocols such as ftp, smtp, http, etc.
• Circuit-level gateway
• Personal firewall also knows which application
–E.g., disallow telnet connection from email client
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0 ratings0% found this document useful (0 votes)
119 views10 pages
Firewalls and Intrusion Detection
Firewalls and Intrusion
Detection
Common network devices
• Packet and Application-Layer Firewall
• Network Intrusion Detection
• Virtual Private Network (IPSEC/PPTP/SSL)
• Content Filtering and Virus Scanning
• Bandwidth Management (Traffic Shaping)
• Web caching, other caching
Two Separable Topics
Arrangement of firewall and routers
• Several different network configurations
–Separate internal LAN from external Internet
–Wall off subnetwork within an organization
• Test networks, financial records, secret projects
–Intermediate zone for web server, etc.
• Personal firewall on end-user machine
How does the firewall process data
• Packet filtering router
• Application-level gateway
–Proxy for protocols such as ftp, smtp, http, etc.
• Circuit-level gateway
• Personal firewall also knows which application
–E.g., disallow telnet connection from email client
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 10
CS 155
May 24, 2005
Firewalls and Intrusion Detection
John Mitchell
Common network devices
Packet and Application-Layer Firewall Network Intrusion Detection Virtual Private Network (IPSEC/PPTP/SSL) Content Filtering and Virus Scanning Bandwidth Management (Traffic Shaping) Web caching, other caching Local network Internet