The Design and Applications of Cooperative Firewalls
碩士 === 國立中央大學 === 資訊管理研究所 === 91 === Because of the popularity and variety of network applications, network security is getting respected by people. Today, firewalls are the first line of defense of network security in most enterprises, and are also the most important mechanism of attack response. H...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2003
|
Online Access: | http://ndltd.ncl.edu.tw/handle/51953368571546762527 |
id |
ndltd-TW-091NCU05396066 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-091NCU053960662016-06-22T04:14:51Z http://ndltd.ncl.edu.tw/handle/51953368571546762527 The Design and Applications of Cooperative Firewalls 合作式防火牆之設計與應用 Chi-Sheng Yu 游啟勝 碩士 國立中央大學 資訊管理研究所 91 Because of the popularity and variety of network applications, network security is getting respected by people. Today, firewalls are the first line of defense of network security in most enterprises, and are also the most important mechanism of attack response. However, firewalls that are restricted by deployed positions and their architectures now suffer more and more challenges, and they also can’t defend more and more new attacks. In this thesis, we analyze the evolutions and problems of firewalls, and then develop a cooperative firewall system which is based on the distributed firewall and the concepts of defense in depth and cooperative defense. All firewalls in the cooperative firewall system can cooperate with other defense mechanisms to achieve intrusion prevention. We first present some possible schemes of cooperative defense with cooperative firewall system and discuss their difficulties. Then we propose solutions to solve these difficulties. The solutions include a new generic rule based on XML to solve the communication problems in cooperative defense and the management problem of distributed firewalls, and a detection and defense method of internet worm to solve the problem of network jam when worms spreading. We also propose the system architecture, operating procedures, and module design of our cooperative firewall system and build a prototype system that is able to solve the network jam of internet worm and make cooperative defense with intrusion detection system to explain the efficiency and applications of the cooperative firewall system. Yi-Ming Chen 陳奕明 2003 學位論文 ; thesis 74 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立中央大學 === 資訊管理研究所 === 91 === Because of the popularity and variety of network applications, network security is getting respected by people. Today, firewalls are the first line of defense of network security in most enterprises, and are also the most important mechanism of attack response. However, firewalls that are restricted by deployed positions and their architectures now suffer more and more challenges, and they also can’t defend more and more new attacks.
In this thesis, we analyze the evolutions and problems of firewalls, and then develop a cooperative firewall system which is based on the distributed firewall and the concepts of defense in depth and cooperative defense. All firewalls in the cooperative firewall system can cooperate with other defense mechanisms to achieve intrusion prevention. We first present some possible schemes of cooperative defense with cooperative firewall system and discuss their difficulties. Then we propose solutions to solve these difficulties. The solutions include a new generic rule based on XML to solve the communication problems in cooperative defense and the management problem of distributed firewalls, and a detection and defense method of internet worm to solve the problem of network jam when worms spreading.
We also propose the system architecture, operating procedures, and module design of our cooperative firewall system and build a prototype system that is able to solve the network jam of internet worm and make cooperative defense with intrusion detection system to explain the efficiency and applications of the cooperative firewall system.
|
author2 |
Yi-Ming Chen |
author_facet |
Yi-Ming Chen Chi-Sheng Yu 游啟勝 |
author |
Chi-Sheng Yu 游啟勝 |
spellingShingle |
Chi-Sheng Yu 游啟勝 The Design and Applications of Cooperative Firewalls |
author_sort |
Chi-Sheng Yu |
title |
The Design and Applications of Cooperative Firewalls |
title_short |
The Design and Applications of Cooperative Firewalls |
title_full |
The Design and Applications of Cooperative Firewalls |
title_fullStr |
The Design and Applications of Cooperative Firewalls |
title_full_unstemmed |
The Design and Applications of Cooperative Firewalls |
title_sort |
design and applications of cooperative firewalls |
publishDate |
2003 |
url |
http://ndltd.ncl.edu.tw/handle/51953368571546762527 |
work_keys_str_mv |
AT chishengyu thedesignandapplicationsofcooperativefirewalls AT yóuqǐshèng thedesignandapplicationsofcooperativefirewalls AT chishengyu hézuòshìfánghuǒqiángzhīshèjìyǔyīngyòng AT yóuqǐshèng hézuòshìfánghuǒqiángzhīshèjìyǔyīngyòng AT chishengyu designandapplicationsofcooperativefirewalls AT yóuqǐshèng designandapplicationsofcooperativefirewalls |
_version_ |
1718316085012332544 |