| D. Nessett and P. Humenn. The multilayer firewall. Symposium on Network and Distributed Systems Security (San Diego, CA, 11--13 March 1998. |
....build on much existing technology and borrow ideas from previous work, as discussed throughout the flow of this paper. Network intrusion detection, virus detection, and firewalls are well established, commonly used mechanisms [5, 10] Also, many of the arguments for distributing firewall functions [14, 19, 27] and embedding them into network interface cards [1, 14] have been made in previous work. Notably, the 3Com Embedded Firewall product [1] extends NICs with firewall policies such as IP spoofing prevention, promiscuous mode prevention, and selective filtering of packets based on fields like IP ....
Dan Nessett and Polar Humenn. The multilayer firewall. Symposium on Network and Distributed Systems Security (San Diego, CA, 11--13 March 1998.
....6 Related Work Self securing NIs build on much existing technology and borrow ideas from previous work. In particular, network intrusion detection, virus detection, and firewalls are well established, commonlyused mechanisms [6, 10] Also, many of the arguments for distributing firewall functions [17, 20, 28] and embedding them into network interface cards [1, 17] have been made in previous work. This previous work and others [2, 7, 24] also address the issue of remote policy configuration for such systems. We extend previous work with examples of more detailed traffic analysis and a system software ....
Dan Nessett and Polar Humenn. The multilayer firewall. Symposium on Network and Distributed Systems Security (San Diego, CA, 11--13 March 1998.
....[27] and it is argued that the rewalls should all be the same, though the management of di erent policies is not mentioned. Firmato [5] describes a toolkit for specifying policy independent of speci c devices. This approach could be useful in a heterogenous environment. The multilayer rewall [29] is quite similar to our work, promoting the addition of rewall functionality within a network, such as at a switch. By placing a rewall at a switch, it is e ectively equivalent to an intelligent NIC with the restriction that the interface is strictly Ethernet. Thus, there is no possibility to ....
Dan Nessett and Polar Humenn. The multilayer rewall. Symposium on Network and Distributed Systems Security (San Diego, CA, 11-13 March 1998.
No context found.
D. Nessett and P. Humenn. The multilayer firewall. Symposium on Network and Distributed Systems Security (San Diego, CA, 11--13 March 1998.
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC