Network security and the NPS Internet firewall
As the Naval Postgraduate School's (NPS) computer network continues to incorporate computers with a wide variety of security holes, it is vital that an Internet firewall be installed to provide perimeter security for NPS from the Internet. NPS has had systems compromised by unauthorized individ...
Main Author: | |
---|---|
Other Authors: | |
Language: | en_US |
Published: |
Monterey, California. Naval Postgraduate School
2013
|
Online Access: | http://hdl.handle.net/10945/30578 |
id |
ndltd-nps.edu-oai-calhoun.nps.edu-10945-30578 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-nps.edu-oai-calhoun.nps.edu-10945-305782014-11-27T16:17:38Z Network security and the NPS Internet firewall Schively, Jody L. Shimeall, Timothy Lundy, G.M. Naval Postgraduate School (U.S.) Computer Science As the Naval Postgraduate School's (NPS) computer network continues to incorporate computers with a wide variety of security holes, it is vital that an Internet firewall be installed to provide perimeter security for NPS from the Internet. NPS has had systems compromised by unauthorized individuals who have gained access via the Internet. The approach taken by this thesis was to analyze the type of Internet firewalls available and chose a design that provides the protection required at NPS while maintaining the Internet functionality desired. After choosing the appropriate type of firewall, it was tested for functionality and performance. The functionality test successfully validated that the bootp, netwall, tftp, sunrpc, and nfsd packets could he blocked while other network services remained functional. The performance testing process first monitored existing traffic to and from the BARRNET and DDN routers. The second step determined the firewall's performance with a well known network measurement tool, New Test TCP/IP (ntrcp). The existing data rates to and from the Intemet are on average 438 kilobjis per second and the nttcp tests showed that the firewall could run at 600 kilobits per second. These results validated that the firewall could maintain the data rates currently required to the Internet. This thesis resulted in a firewall, obtained from Texas A&M, that can be installed and used to improve the network security between the NPS network and the Internet. This firewall runs on a PC and would be located between the NPS network and the BARRNKr and DDN routers. This would result in a perimeter of security for the NPS network, to assist in the ever growing need for network security. 2013-04-11T21:53:44Z 2013-04-11T21:53:44Z 1994-09 Thesis http://hdl.handle.net/10945/30578 en_US This publication is a work of the U.S. Government as defined in Title 17, United States Code, Section 101. As such, it is in the public domain, and under the provisions of Title 17, United States Code, Section 105, it may not be copyrighted. Monterey, California. Naval Postgraduate School |
collection |
NDLTD |
language |
en_US |
sources |
NDLTD |
description |
As the Naval Postgraduate School's (NPS) computer network continues to incorporate computers with a wide variety of security holes, it is vital that an Internet firewall be installed to provide perimeter security for NPS from the Internet. NPS has had systems compromised by unauthorized individuals who have gained access via the Internet. The approach taken by this thesis was to analyze the type of Internet firewalls available and chose a design that provides the protection required at NPS while maintaining the Internet functionality desired. After choosing the appropriate type of firewall, it was tested for functionality and performance. The functionality test successfully validated that the bootp, netwall, tftp, sunrpc, and nfsd packets could he blocked while other network services remained functional. The performance testing process first monitored existing traffic to and from the BARRNET and DDN routers. The second step determined the firewall's performance with a well known network measurement tool, New Test TCP/IP (ntrcp). The existing data rates to and from the Intemet are on average 438 kilobjis per second and the nttcp tests showed that the firewall could run at 600 kilobits per second. These results validated that the firewall could maintain the data rates currently required to the Internet. This thesis resulted in a firewall, obtained from Texas A&M, that can be installed and used to improve the network security between the NPS network and the Internet. This firewall runs on a PC and would be located between the NPS network and the BARRNKr and DDN routers. This would result in a perimeter of security for the NPS network, to assist in the ever growing need for network security. |
author2 |
Shimeall, Timothy |
author_facet |
Shimeall, Timothy Schively, Jody L. |
author |
Schively, Jody L. |
spellingShingle |
Schively, Jody L. Network security and the NPS Internet firewall |
author_sort |
Schively, Jody L. |
title |
Network security and the NPS Internet firewall |
title_short |
Network security and the NPS Internet firewall |
title_full |
Network security and the NPS Internet firewall |
title_fullStr |
Network security and the NPS Internet firewall |
title_full_unstemmed |
Network security and the NPS Internet firewall |
title_sort |
network security and the nps internet firewall |
publisher |
Monterey, California. Naval Postgraduate School |
publishDate |
2013 |
url |
http://hdl.handle.net/10945/30578 |
work_keys_str_mv |
AT schivelyjodyl networksecurityandthenpsinternetfirewall |
_version_ |
1716725087063769088 |