Giuseppe Biondi Zoccai, MD, FSICI-GISE University of Turin, Turin, Italy.
A300225 Network Security -Firewall Bruce 2004.11.23 Turin.
-
Upload
eugene-chambers -
Category
Documents
-
view
217 -
download
0
Transcript of A300225 Network Security -Firewall Bruce 2004.11.23 Turin.
![Page 1: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/1.jpg)
A300225
Network Security-Firewall
Bruce
2004.11.23 Turin
![Page 2: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/2.jpg)
A300225
Some new words
Hack or hacker Port ---windows IP packet---person Source address ---home Distination address ---supermarket Protocol Packet filtrate ---guard
![Page 3: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/3.jpg)
A300225
What is security? Do not lost your key! Do not lost your money! Do not lost your passport! Do not lost your baggage ! ……
![Page 4: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/4.jpg)
A300225
What is computer security? Physical security ( you can touch it, lock it dow
n, or sit on it, it's physical. ) lock your computer in your room! Data security ( data is not corrupted or altered b
y some means. This includes data that's sent to or received from a network. )
take care of your hard disk! Technical security (means defense ) updates your virus detection software! ……
![Page 5: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/5.jpg)
A300225
Threaten to Network? Virus Spam-mail Steal Data SPY Hack attack DoS attack ……
![Page 6: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/6.jpg)
A300225
How to resolve? Virus ----anti virus software Spam-mail ----anti spam software Steal Data ---- IDS IPS Hack attack ---- Firewall DoS attack ----Firewall ……
![Page 7: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/7.jpg)
A300225
Firewall
First, firewall is a wall! Firewall like a guard. Firewall like ….
![Page 8: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/8.jpg)
A300225
Definition of firewall
A firewall is a set of related programs, located at a network gateway server, that protects the resources of a private network from users from other networks. Basically, a firewall, working closely with a router program, filters all network packets to determine whether to forward them toward their destination. A firewall is often installed away from the rest of the network so that no incoming request can get directly at private network resources. There are a number of firewall screening methods. A simple one is to screen requests to make sure they come from acceptable (previously identified) domain names and IP addresses. For mobile users, firewalls allow remote access in to the private network by the use of secure logon procedures and authentication certificates.
![Page 9: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/9.jpg)
A300225
Group by…
Hardware:
NAI , Symantec Software:
ISA2004--MS
Check Point
Norton personal Friewall
Iptables --linux
![Page 10: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/10.jpg)
A300225
Group by theory
Packet filtering Proxy Gateway
![Page 11: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/11.jpg)
A300225
Group by money
Not free Free
![Page 12: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/12.jpg)
A300225
Features
with packet, circuit, and application-level traffic filtering
Stateful Inspection Application Filtering Secure Server Publishing Intrusion Detection Virtual Private Networking support ……
![Page 13: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/13.jpg)
A300225
Policy-Based Access Control
You can control inbound and outbound access according to user, group, application, source, destination, content, and schedule. Firewall policy wizards specify which sites and content are accessible, whether a particular protocol is accessible for both inbound and outbound communication, and whether communication between specified IP addresses, using specified protocols and ports, should be allowed or denied.
![Page 14: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/14.jpg)
A300225
What can a firewall do for u?
![Page 15: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/15.jpg)
A300225
Securely and Easily Provide Intranet Information Over the Internet
Firewall enables you to securely and easily publish intranet information over the Internet
![Page 16: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/16.jpg)
A300225
Control Internet Access and Protect Clients From Malicious Traffic on the
Internet
![Page 17: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/17.jpg)
A300225
Securely and Easily Make E-mail Available to Employees Outside the
Network
![Page 18: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/18.jpg)
A300225
HOW to manage?
ISA2004 the example.
![Page 19: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/19.jpg)
A300225
![Page 20: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/20.jpg)
A300225
![Page 21: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/21.jpg)
A300225
![Page 22: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/22.jpg)
A300225
![Page 23: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/23.jpg)
A300225
![Page 24: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/24.jpg)
A300225
Another example.
![Page 25: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/25.jpg)
A300225
BeforeTomorrow 12:00
Saturday
8:30am-7:30pm
GENOVA 8EUR NY
Sunday
4:15am-
10:30pm
VENICE 40EUR
(+10.5EUR
For boat)
NY
![Page 26: A300225 Network Security -Firewall Bruce 2004.11.23 Turin.](https://reader035.fdocuments.us/reader035/viewer/2022070414/5697c00d1a28abf838cc964d/html5/thumbnails/26.jpg)
A300225
THANK U ALL!