Đang chuẩn bị liên kết để tải về tài liệu:
Firewalls For Dummies 2nd Edition phần 9
Đang chuẩn bị nút TẢI XUỐNG, xin hãy chờ
Tải xuống
Một Norton Cung cấp cửa sổ Firewall 2003 xuất hiện. Các ứng dụng sẽ tải về và giải nén một tập tin 25MB. Sau khi điều này được thực hiện, kích vào nút Launch để bắt đầu ứng dụng CDSTART.exe tải về. 4. Trong Chào mừng bạn đến cửa sổ Norton Personal Firewall, | 336 Part IV Deploying Solutions Using Firewall Products In addition third-party applications can be integrated into the FireWall-1 deployment to provide additional features such as URL filtering and antivirus protection. URL filtering allows FireWall-1 to prevent access to specific Internet sites based on their URL address. Antivirus protection moves the responsibility for performing antivirus protection from the desktop to the actual point of entry to the network. Deploying antivirus protection at the firewall ensures that virus-infected content is discarded before it enters the network. Check Point provides interoperability with third-party products that support the Open Platform for Security OPSEC . OPSEC-compliant devices can be managed by having the FireWall-1-defined Security policy downloaded to the devices. This allows centralized and uniform management of your network s perimeter security solution. Intrusion detection The final form of protection against attackers that is provided by FireWall-1 is intrusion detection through Check Point SMARTDefense. SMARTDefense provides protection against external attacks by tracking potential attacks and providing notification of the attack attempts. SmartDEFENSE provides the following features for detecting potential attacks Validation of stateless protocols. Protocols such as User Datagram Protocol UDP and Remote Procedure Calls RPC do not maintain an active connection. SmartDEFENSE tracks source and destination ports to validate that a session was not hijacked and or is not attempting an attack through these protocols. Inspection of sequence numbers. Transmission Control Protocol TCP packets use sequence numbers to re-order packets that arrive out of sequence at a destination host. Incorrect sequence numbers can indicate a replay attack taking place against a protected host. SmartDEFENSE can drop these incorrect sequence number packets or even strip the data component from the packets. Fragmentation inspection. Many