The Design and Applications of Cooperative Firewalls

碩士 === 國立中央大學 === 資訊管理研究所 === 91 === Because of the popularity and variety of network applications, network security is getting respected by people. Today, firewalls are the first line of defense of network security in most enterprises, and are also the most important mechanism of attack response. H...

Full description

Bibliographic Details
Main Authors: Chi-Sheng Yu, 游啟勝
Other Authors: Yi-Ming Chen
Format: Others
Language:zh-TW
Published: 2003
Online Access:http://ndltd.ncl.edu.tw/handle/51953368571546762527
id ndltd-TW-091NCU05396066
record_format oai_dc
spelling ndltd-TW-091NCU053960662016-06-22T04:14:51Z http://ndltd.ncl.edu.tw/handle/51953368571546762527 The Design and Applications of Cooperative Firewalls 合作式防火牆之設計與應用 Chi-Sheng Yu 游啟勝 碩士 國立中央大學 資訊管理研究所 91 Because of the popularity and variety of network applications, network security is getting respected by people. Today, firewalls are the first line of defense of network security in most enterprises, and are also the most important mechanism of attack response. However, firewalls that are restricted by deployed positions and their architectures now suffer more and more challenges, and they also can’t defend more and more new attacks. In this thesis, we analyze the evolutions and problems of firewalls, and then develop a cooperative firewall system which is based on the distributed firewall and the concepts of defense in depth and cooperative defense. All firewalls in the cooperative firewall system can cooperate with other defense mechanisms to achieve intrusion prevention. We first present some possible schemes of cooperative defense with cooperative firewall system and discuss their difficulties. Then we propose solutions to solve these difficulties. The solutions include a new generic rule based on XML to solve the communication problems in cooperative defense and the management problem of distributed firewalls, and a detection and defense method of internet worm to solve the problem of network jam when worms spreading. We also propose the system architecture, operating procedures, and module design of our cooperative firewall system and build a prototype system that is able to solve the network jam of internet worm and make cooperative defense with intrusion detection system to explain the efficiency and applications of the cooperative firewall system. Yi-Ming Chen 陳奕明 2003 學位論文 ; thesis 74 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立中央大學 === 資訊管理研究所 === 91 === Because of the popularity and variety of network applications, network security is getting respected by people. Today, firewalls are the first line of defense of network security in most enterprises, and are also the most important mechanism of attack response. However, firewalls that are restricted by deployed positions and their architectures now suffer more and more challenges, and they also can’t defend more and more new attacks. In this thesis, we analyze the evolutions and problems of firewalls, and then develop a cooperative firewall system which is based on the distributed firewall and the concepts of defense in depth and cooperative defense. All firewalls in the cooperative firewall system can cooperate with other defense mechanisms to achieve intrusion prevention. We first present some possible schemes of cooperative defense with cooperative firewall system and discuss their difficulties. Then we propose solutions to solve these difficulties. The solutions include a new generic rule based on XML to solve the communication problems in cooperative defense and the management problem of distributed firewalls, and a detection and defense method of internet worm to solve the problem of network jam when worms spreading. We also propose the system architecture, operating procedures, and module design of our cooperative firewall system and build a prototype system that is able to solve the network jam of internet worm and make cooperative defense with intrusion detection system to explain the efficiency and applications of the cooperative firewall system.
author2 Yi-Ming Chen
author_facet Yi-Ming Chen
Chi-Sheng Yu
游啟勝
author Chi-Sheng Yu
游啟勝
spellingShingle Chi-Sheng Yu
游啟勝
The Design and Applications of Cooperative Firewalls
author_sort Chi-Sheng Yu
title The Design and Applications of Cooperative Firewalls
title_short The Design and Applications of Cooperative Firewalls
title_full The Design and Applications of Cooperative Firewalls
title_fullStr The Design and Applications of Cooperative Firewalls
title_full_unstemmed The Design and Applications of Cooperative Firewalls
title_sort design and applications of cooperative firewalls
publishDate 2003
url http://ndltd.ncl.edu.tw/handle/51953368571546762527
work_keys_str_mv AT chishengyu thedesignandapplicationsofcooperativefirewalls
AT yóuqǐshèng thedesignandapplicationsofcooperativefirewalls
AT chishengyu hézuòshìfánghuǒqiángzhīshèjìyǔyīngyòng
AT yóuqǐshèng hézuòshìfánghuǒqiángzhīshèjìyǔyīngyòng
AT chishengyu designandapplicationsofcooperativefirewalls
AT yóuqǐshèng designandapplicationsofcooperativefirewalls
_version_ 1718316085012332544