TAILIEUCHUNG - How the PIX/ASA Firewall Works

Note With the implementation of the PIX and ASA software starting with version , many of the features and functionality of the firewall were changed dramatically. | How the PIX ASA Firewall Works Note With the implementation of the PIX and ASA software starting with version many of the features and functionality of the firewall were changed dramatically. Version was truly a major design shift. This chapter is written to include the software because in addition to the new software that is the version of software that most Cisco PIX firewalls are running. Where possible we point out the new changed features commands and functionality that is provided via the code. If no note specifies which version of software a command functions on that means that the command is the exact same regardless of whether the firewall is running or software. For more detailed information about PIX code refer to the Cisco ASA and PIX Firewall Handbook Cisco Press . Fundamentally the PIX ASA firewall functions by filtering traffic that is transmitted through the firewall across the firewall interfaces. This allows the PIX ASA to protect hosts and networks from unauthorized access while still permitting access that is deemed and defined by the administrator as acceptable. The firewall functionality performs these tasks by parsing a security policy functioning in a firewall mode of operation and performing stateful inspection of the data. Firewall Security Policy The firewall security policy not to be confused with the general security policies discussed in Chapter 10 Firewall Security Policies on the PIX firewall is what determines the traffic that will be permitted or denied by the firewall. To facilitate this the PIX implements a combination of the following elements to assist in making filtering decisions Separate the network into zones based on security levels Use ACLs to permit or deny traffic Apply Network Address Translation NAT Apply authentication authorization and accounting AAA for through traffic Apply web or FTP filtering In addition the Cisco ASA can perform the following Use the Advanced Inspection and .

TAILIEUCHUNG - Chia sẻ tài liệu không giới hạn
Địa chỉ : 444 Hoang Hoa Tham, Hanoi, Viet Nam
Website : tailieuchung.com
Email : tailieuchung20@gmail.com
Tailieuchung.com là thư viện tài liệu trực tuyến, nơi chia sẽ trao đổi hàng triệu tài liệu như luận văn đồ án, sách, giáo trình, đề thi.
Chúng tôi không chịu trách nhiệm liên quan đến các vấn đề bản quyền nội dung tài liệu được thành viên tự nguyện đăng tải lên, nếu phát hiện thấy tài liệu xấu hoặc tài liệu có bản quyền xin hãy email cho chúng tôi.
Đã phát hiện trình chặn quảng cáo AdBlock
Trang web này phụ thuộc vào doanh thu từ số lần hiển thị quảng cáo để tồn tại. Vui lòng tắt trình chặn quảng cáo của bạn hoặc tạm dừng tính năng chặn quảng cáo cho trang web này.