фајервол

14
Стефан Урошевић 54/14 Firewall ВИСОКА ШКОЛА СТРУКОВНИХ СТУДИЈА ЗА ИНФОРМАЦИОНЕ ТЕХНОЛОГИЈЕ РАЧУНАРСКЕ МРЕЖЕ Семинарски рад Firewall Предметни наставник: Студент: Славко Покорни Стефан Урошевић 54/14 Датум предаје: 27.6.2015.

description

informacioni sistemi

Transcript of фајервол

54/14Firewall

Firewall

:: 54/14 :27.6.2015.

, 2015.

3 31.42. ?53. 64. 85. 106.11 12

. , , ( ), ("stateful" ) ( ) . , , . . (Address Spoofing, Smurf Attack, Syn-Flood, Port-Scanner, Ping of Death) . , . .

, , "stateful" , , IP adresa, port,

. . , , . . , . ( ) ( ). (). . ( ) ( ). . . , , .

? Policy- ( ), ( 1) . . , . , , - . . , . IP , IP . . " " . : . , . . . .

1. (: http://www.bleepstatic.com/tutorials/fw/firewall_diag.gif)

TCP/IP . : : : "stateful" : . , , . TCP/IP . , . statefull. . . . , . , . , . . proxy based . . ( File Transfer Protocola(FTP),Domain Name Systema(DNS) Hypertext Transfer Protocola(HTTP)). . 2012. next-generation firewall (NGFW) . . . : :1. IP 2. . 3. 4. IP . . : 1. User Datagram Protocol (UDP)2. Transmission Control Protocol (TCP) 3. Internet Control Message Protocol (ICMP) 4. Internet Group Management Protocol (IGMP) IP / . , IP . IP . IP . . 65536. 1024 . HTTP 80, FTP 20 21, DNS 53 ... . . . DNS.Source routing a . O , . IP , IP . a , . () . I 802.3 1500 . . . , , . 0 1. .

, . :Address Spoofing . . , . Smurf , . DoS (. Denial of Service). ICMP echo request broadcast . . ( 2). broadcast .

2 DoS (: https://blog.cloudflare.com/content/images/smurf_attack_diagram.png.scaled500.png)Syn-Flood TCP SYN , TCP SYN ACK . . TCP . Port-Scanner TCP UDP SYN FIN PST . .Ping-f-Death , ICMP echo . echo-request , ICMP echo a.

. . . , , ... , . . (. ), . , . , . . . , . . IP . , . IP . ( , , ...). . IP , . .

ZoneAlarm/ZoneAlarmPro . . . ZoneAlarm je . . . , .BlackICE Defender , . , IP . . . Norton Personal Firewall . . , . , , , , ( e-mail).Sygate Personal Firewall . , . , , , . BlackICE Defender-u, .Tiny Personal Firewall "tiny" (, ), . . . . Windows firewall Service Packom 2 Windows XP, . Windows firewall . :1. 2. 3. , . Windows firewall . . :1. 2. 3. . .

(), , , ( ). - . . , . : . , . . . . . . . . . , .

1. ; ; ; , 2011. 2. Ingham, K; Forrest S, "A History and Survey of Network Firewalls" University of New Mexico, 2002.3. Kurose, J. F., Ross K.W., Computer Networking: A Top-Down Approach Featuring the Internet, Addison Weslez, 2001.4. Tanenbaum, A. S.; Computer Networks, Third edition, Prentice-Hall, Inc., 1996.5. https://support.norton.com/sp/en/us/home/current/solutions/v64908971_NIS_Retail_2012_en_us ( 25.6.0215.)6. http://spvp.zesoi.fer.hr/seminari/2004/firewall-ssutic.pdf ( 25.6.0215.)7. http://www.zonealarm.com/software/free-firewall/ ( 25.6.2015.)8. http://personal-firewall-software-review.toptenreviews.com/sygate-personal-firewall-pro-review.html ( 25.6.2015.)9. http://tinywall.pados.hu/ ( 25.6.2015.)