- 1、本文档共13页,可阅读全部内容。
- 2、原创力文档(book118)网站文档一经付费(服务费),不意味着购买了该文档的版权,仅供个人/单位学习、研究之用,不得用于商业用途,未经授权,严禁复制、发行、汇编、翻译或者网络传播等,侵权必究。
- 3、本站所有内容均由合作方或网友上传,本站不对文档的完整性、权威性及其观点立场正确性做任何保证或承诺!文档内容仅供研究参考,付费前请自行鉴别。如您付费,意味着您自己接受本站规则且自行承担风险,本站不退款、不进行额外附加服务;查看《如何避免下载的几个坑》。如果您已付费下载过本站文档,您可以点击 这里二次下载。
- 4、如文档侵犯商业秘密、侵犯著作权、侵犯人身权等,请点击“版权申诉”(推荐),也可以打举报电话:400-050-0827(电话支持时间:9:00-18:30)。
查看更多
如何突破各种防火墙(How to break through all kinds of firewalls)
如何突破各种防火墙(How to break through all kinds of firewalls)
Now, with the strengthening of peoples security awareness, firewalls are generally adopted by companies and enterprises to protect the security of the network. In general, the attacker is difficult to invade when there is a firewall. Here are some attacks and detection in firewall environments.
First, the basic principles of firewall
First of all, we need to understand some basic firewall implementation principles. Firewalls are mainly packet filtering, packet filtering for stateful inspection, and application layer proxy firewalls. But their basic implementations are similar.
We carry out - - NIC, firewall, router, network card -- we carry out the internal network
Firewalls generally have more than two network cards, one connected to the external (router), and the other connected to the internal network. When the host network forwarding function is opened, the network communication between the two network cards can be passed directly. When there is a firewall, he is like plugging into the network card and controlling all the network communication.
When it comes to access control, this is the core of the firewall:) the firewall is primarily judged by an access control table. His form is usually a series of following rules:
1, accept, from+ source address, port to+, destination address, port + action taken
2 deny... (deny means rejection.. )
3 nat... (NAT is address translation. Later)
When a network packet is received at the network layer (including the following routing layer), the firewall matches one by one from the list of rules above, and if it conforms, the scheduled action is performed! Discard package....
However, there are differences in implementation between different firewalls in determining attack behavior. Following the implementation principle, talk about possible attacks.
Two attack packet filter firewall
Packet filter firewall is the simplest one. It intercepts network packets at the network lay
您可能关注的文档
- 汪涵智慧经典语录(Wang Han wisdom classics quotations).doc
- 汪昌镇借力打力空手夺金(Wang Changzhen take advantage of the force, empty handed gold.).doc
- 汪涵语录(Wang Han Quotes).doc
- 汽修厂(Auto repair plant).doc
- 汽机(Steam turbine).doc
- 汽车中的物理(Physics in automobiles).doc
- 汽车发动机冷却系统维护(Maintenance of automotive engine cooling system).doc
- 汽车发展史(History of automobile development).doc
- 备件部基本概念(Basic concepts of spare parts department).doc
- 备份bios(备份bios).doc
- 新高考生物二轮复习讲练测第6讲 遗传的分子基础(检测) (原卷版).docx
- 新高考生物二轮复习讲练测第12讲 生物与环境(检测)(原卷版).docx
- 新高考生物二轮复习讲练测第3讲 酶和ATP(检测)(原卷版).docx
- 新高考生物二轮复习讲练测第9讲 神经调节与体液调节(检测)(原卷版).docx
- 新高考生物二轮复习讲练测第11讲 植物生命活动的调节(讲练)(原卷版).docx
- 新高考生物二轮复习讲练测第8讲 生物的变异、育种与进化(检测)(原卷版).docx
- 新高考生物二轮复习讲练测第5讲 细胞的分裂、分化、衰老和死亡(讲练)(原卷版).docx
- 新高考生物二轮复习讲练测第5讲 细胞的分裂、分化、衰老和死亡(检测)(原卷版).docx
- 新高考生物二轮复习讲练测第12讲 生物与环境(讲练)(原卷版).docx
- 新高考生物二轮复习讲练测第11讲 植物生命活动的调节(检测)(原卷版).docx
文档评论(0)