6
Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström

Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström Nicklas Nordenmark Fabian Alenius Peter Renström

Embed Size (px)

Citation preview

Page 1: Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström Nicklas Nordenmark Fabian Alenius Peter Renström

FirewallsFirewalls

Nicklas NordenmarkFabian AleniusPeter Renström

Nicklas NordenmarkFabian AleniusPeter Renström

Page 2: Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström Nicklas Nordenmark Fabian Alenius Peter Renström

Basic

•Software or dedicated device

•Using a set of rules

•Traffic flow between networks

•Local network -> Internet

Page 3: Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström Nicklas Nordenmark Fabian Alenius Peter Renström

History

•The term “firewall”

•Late 1980s

•Clifford Stoll vs Markus Hess

Page 4: Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström Nicklas Nordenmark Fabian Alenius Peter Renström

Traditional Packet Filter

•First generation firewall

•Network Layer Attack

•IP Spoofing

•Smurf Attack

•Stacheldraht DDoS agent

Page 5: Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström Nicklas Nordenmark Fabian Alenius Peter Renström

Stateful Firewall

•Second generation firewall

•Keeps track of current connections

•Transport Layer Attack Definitions

•Connection resource exhaustion

•Header abuses

•Port Scan / Mapping

Page 6: Firewalls Nicklas Nordenmark Fabian Alenius Peter Renström Nicklas Nordenmark Fabian Alenius Peter Renström

Application Layer Firewall

•Third generation firewall

•Many attacks on the application layer

•Inspect data

•SQL Injection

•Phishing

•Problems with encryption