Font Size: a A A

Content Inspection Firewall System Design And Realization

Posted on:2008-07-04Degree:MasterType:Thesis
Country:ChinaCandidate:Y LiuFull Text:PDF
GTID:2208360212999582Subject:Software engineering
Abstract/Summary:PDF Full Text Request
In the age of the widely use of network and the information exploding, network security has become the urgent requirement. And the research on firewalls has always been a focus in the field of the network security. With the improvement of the attacking means and the maturation of the intrusion techniques, traditional firewalls have difficulty in detecting and protecting against all kinds of dangerous data. It is a new challenge to the firewall techniques. At present, new technique has been appeared, and it evolves from software firewall to the hardware firewall.The Deep Packet Detection of Firewall System in this paper-D.P.D.F.S., for short, is designed and developed based on a new serial ASIC chipset TS8xxx by Nan Shan Bridge Co., Ltd. The target of the subject is to design a new type of hardware firewall on the platform SSDL_L which is consisted of ASIC chipset TS8210 and IBM POWERPC405 CPU. The firewall has the following functions: packet filtering, content detecting on the protocol of application layer, as well as web configuration management interface, storage of rules, and log management.In this paper, the basic concepts, classification, and the trend of development of the firewall have been given out first. Then describes the outlines of D.P.D.F.S., analyzes the software frame and function module of the system. And then it focuses on the implements of the firewall. Finally, we test both the performance and the function of the firewall, and the results show that this firewall system not only has realized the design target, but also is of high performance and stability.
Keywords/Search Tags:ASIC, firewall, deep packet detection, packet filtering, content audit
PDF Full Text Request
Related items