ch3 - Security
ch3 - Security
Firewalls Firewalls
◼ Basic problem – many network applications ◼ A firewall is like a castle with a drawbridge
and protocols have security problems that – Only one point of access into the network
are fixed over time ◼ Can be hardware or software
– Difficult for users to keep up with changes and – Ex. Some routers come with firewall functionality
keep host secure
– Windows XP or others and Mac OS X have built
– Solution in firewalls
• Administrators limit access to end hosts by using a
firewall
• Firewall is kept up-to-date by administrators
Firewall
Intranet
– SYN flooding HW
– SMURF: A Smurf attack is a distributed denial-of-service attack in which Perpetrator Victim
large numbers of Internet Control Message Protocol (ICMP) packets with the
intended victim's spoofed source IP are broadcast to a computer network
using an IP broadcast address.
– Distributed attacks