doi:10.3850/978-981-08-7301-1_0119
Design of Policy based Packet Filtering Firewall
V. Anantha Krishna1 and T. Aruldoss Albert Victoire2
1Research Scholar, Department of Computer Science and Engineering, Anna University Coimbatore, Coimbatore, India-641047.
2Asst. Professor, Department of Electrical and Electronics Engineering, Anna University Coimbatore, Coimbatore, India-641047.
ABSTRACT
A Firewall is a computer that filters traffic going into and out of the corporate network. If there are known security holes in protocols such as anonymous ftp. The firewall might simply disallow anonymous ftp requests or shunt them off to an isolated ftp server. It might also deny a request to access the mail port on all machines except the mail server. Depending on the security philosophy, the firewalls can also filtering rules to the traffic between the corporate network and the Internet. This firewall is packet filtering system based on policies working at windows. Different policies are to be configured for incoming and outgoing packets arriving on different interfaces, taking into consideration the arrival time of the packets, the source and destination IP address, source and destination ports and protocol. Also considering sub_nettting, overcoming the internal spoof attacks and NAT (Network Address Translation) taking us a step further in making our firewall run more efficiently.
Back to TOC
FULL TEXT(PDF)
|