Font Size: a A A

Based On Ipv6 Distributed Firewall Design And Implementation

Posted on:2009-03-09Degree:MasterType:Thesis
Country:ChinaCandidate:T XuFull Text:PDF
GTID:2208360272991623Subject:Software engineering
Abstract/Summary:PDF Full Text Request
With the computer network's development and application of the Internet in particular large-scale, the network security is receiving people's universal attention. Firewall protection as an important method of network security has been widely applied into computer networks. At present, a new generation of the Internet based on IPv6 protocol will soon be a large-scale application. Thus, it is necessary and urgent to the firewall for IPv6 research.Traditional firewall settings in the network border constitute a barrier between the internal enterprise network and the exterior Internet, and carries on the network access control. However, the traditional firewall has a fatal flaw: the traditional firewall regards the end of the internal network as a trusted user, the end of the external network users as potential attackers. The production of distributed firewall can be an effective solution to the shortcomings of traditional firewall. Distributed firewall regards Internet and the internal network "unfriendly". It carries on the similar protection to the personal computer as the boundary firewall to the entire network.. Generally speaking, distributed firewall technology is still in the further development stage.This paper first introduces the current status of the development of Internet and network security issues, and points out the shortcomings of traditional firewall. In Chapter 2 it introduces the development of the traditional firewall, the architecture of knowledge and so on. Then it points out problems faced by the traditional firewall and introduces the distributed firewall, which is given the detailed analysis to several kind of extant. Based on IPv6 distributed firewall system of a full use of existing technologies is designed and realized. In the following sections it makes the further discussion about the technology used by the distributed firewall, such as IPSec, Netfitler / Iptables and NDIS, and gives the realization project of distributed firewall. Based on theoretical analysis and technology realization, this paper studies and realizes IPv6-based distributed firewall technology, makes the effective exploration for the network security under IPv6.
Keywords/Search Tags:DFS, IPv6, Net filter, IPSec, NDIS
PDF Full Text Request
Related items