HP OfficeConnect Firewall Series Manuel d'utilisateur Page 19

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 156
  • Table des matières
  • DEPANNAGE
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 18
OfficeConnect VPN Firewall User’s Manual Chapter 2 Getting to Know the OfficeConnect Gigabit VPN Firewall
5
Application specific filters
2.4.1.2 Stateful Packet Inspection
The OfficeConnect Gigabit VPN Firewall uses ―stateful packet inspection‖ that
extracts state-related information required for the security decision from the
packet and maintains this information for evaluating subsequent connection
attempts. It has awareness of application and creates dynamic sessions that
allow dynamic connections so that no ports need to be opened other than the
required ones. This provides a solution which is highly secure and that offers
scalability and extensibility.
2.4.1.3 Defense against DoS Attacks
The OfficeConnect Gigabit VPN Firewall has an Attack Defense Engine that
protects internal networks from known types of Internet attacks. It provides
automatic protection from Denial of Service (DoS) attacks such as SYN flooding,
IP smurfing, LAND, Ping of Death and all re-assembly attacks. It can drop ICMP
redirects and IP loose/strict source routing packets. For example, the
OfficeConnect Gigabit VPN Firewall provides protection from ―WinNuke‖, a
widely used program to remotely crash unprotected Windows systems in the
Internet. The OfficeConnect Gigabit VPN Firewall also provides protection from a
variety of common Internet attacks such as IP Spoofing, Ping of Death, Land
Attack, Reassembly and SYN flooding.
The type of attack protections provided by the OfficeConnect Gigabit VPN
Firewall are listed in Table 2.3.
Table 2.3 DoS Attacks
Type of Attack
Name of Attacks
Re-assembly attacks
Bonk, Boink, Teardrop (New Tear),
Overdrop, Opentear, Syndrop, Jolt
ICMP Attacks
Ping of Death, Smurf, Twinge
Flooders
ICMP Flooder, UDP Flooder, SYN
Flooder
Port Scans
TCP XMAS Scan, TCP Null Scan
TCP SYN Scan, TCP Stealth Scan
TCP Attacks
TCP sequence number prediction, TCP
out-of sequence attacks
Protection with PF Rules
Echo-Chargen, Ascend Kill
Miscellaneous Attacks
IP Spoofing, LAND, Targa, Tentacle
MIME Flood, Winnuke, FTP Bounce, IP
unaligned time stamp attack
2.4.1.4 Application Command Filtering
The OfficeConnect Gigabit VPN Firewall allows network administrators to block,
monitor, and report on network users access to non-business and objectionable
content. This high-performance content access control results in increased
productivity, lower bandwidth usage and reduced legal liability.
The OfficeConnect Gigabit VPN Firewall has the ability to handle active content
filtering on certain application protocols such as HTTP, FTP, SMTP and RPC.
HTTP You can define HTTP extension based filtering schemes for
blocking
ActiveX
Java Archive
Java Applets
URLs based on file extensions.
Vue de la page 18
1 2 ... 14 15 16 17 18 19 20 21 22 23 24 ... 155 156

Commentaires sur ces manuels

Pas de commentaire