Firewalls-information security, Computer Network Security

Firewalls

A firewall in an information security program that prevents specific types of information from moving between the outside world and the inside world. The firewall may be a separate computer system; a software service running on existing router or server; or a separate network having supporting devices

Firewall Categorization Methods

Firewalls are categorized by processing mode, development era, or intended structure. The 5 processing modes in which firewalls can be categorized by are:

-Packet filtering
-Application gateways
-Circuit gateways
-MAC layer firewalls
-Hybrids

Firewalls which are categorized by intended structure are residential or commercial grade, hardware based, software based, or appliance based devices.

Packet Filtering

A Packet filtering firewalls examine header information of data packets which come into a network for compliance with or violation of rules of the firewall’s database.

A packet filtering firewall installed on TCP/IP determines whether to deny or forward to next network connection. If a device finds a packet which matches a restriction, it stops the packet from traveling .The restrictions implemented are often based on combination of

-Internet Protocol (IP) source and destination address
-Direction (inbound/outbound)
-Transmission Control Protocol (TCP) or User Datagram Protocol (UDP) source and destination port requests


Simple firewall models enforce rules designed to forbid packets with certain addresses or partial addresses. The 3 subsets of packet filtering firewalls are:-


-Static filtering requires that filtering rules governing how the firewall decides which packets are allowed and which are denied are developed and installed
-Dynamic filtering permits firewall to react to emergent event and update or create rules to deal with event. It only permits a particular packet with a source, destination and port address to enter through firewall.
-Stateful inspection called as stateful firewalls which keep track of each network connection between internal and external systems by using a state table. A state table tracks the state and context of each pocket. Stateful firewalls block incoming packets which are not responses to internal requests. Dynamic stateful filtering firewalls keep dynamic state table to make changes to the filtering rules. Figure given below shows how packets are filtered by using the Packet Filtering Router and Table given below shows an example of Firewall rules and formats.

 

    528_Firewalls-information security.png

 

 

       2472_Firewalls-information security 1.png

Posted Date: 10/9/2012 3:16:01 AM | Location : United States







Related Discussions:- Firewalls-information security, Assignment Help, Ask Question on Firewalls-information security, Get Answer, Expert's Help, Firewalls-information security Discussions

Write discussion on Firewalls-information security
Your posts are moderated
Related Questions
Question: (a) Explain the following terms: Information Communication Technology, Operating System and Application Software. (b) Define what a computer is, give four anatomi

QUESTION 1 Risk analysis helps companies prioritize their risks and shows management the amount of money that should be applied to protecting against those risks in a sensib

QUESTION a) "Two of the key attributes of an enterprise network is that it have to be multi-platform and multisite." Decribe what you understand by this statement. b) A

Question : Wi-Fi protected access (WPA) was specified by the Wi-Fi alliance with the primary aim of enhancing the security of existing 802.11 networks. However, WPA was only a

(a) Explain the two possible configuration for 3DES. (b) What is the main disadvantage of 3DES? (c) Why are most modern symmetric algorithm block ciphers? (d) Describe

Websphere Administrator: Working as Websphere Administrator in the department called DART (Database Architecture Re-Engineering and Tuning). The major responsibilities are t

(a) (i) If m = p·q·r where p, q, and r are prime numbers, what is Φ(m)? (ii) Therefore, Determine Φ(440). (b) Describe the following terms as used in cryptography: (i)

Problem (1) - Alice, Bob and Charlie have a secret key a=3, b=4, c=5, respectively. - They want to find a common secret key using Diffie-Hellan key exchange protocol (with g

ERROR REPORTING MECHANISM (ICMP) INTRODUCTION:  IP gives best-effort delivery. Delivery causes can be ignored; datagrams may be 'dropped on the ground'. Internet Control Me

(a) Define what you understand by the following terms in Network Flows: i) UnDirected Path ii) Directed Path iii) Directed Cycle. iv) Tree In each of the above, expla