A Stateful CSG-Based Distributed Firewall Architecture for Robust Distributed Security
Source: University of Mauritius
Distributed firewalls have been developed in order to provide networks with a higher level of protection than traditional firewalling mechanisms like gateway and host-based firewalls. Although distributed firewalls provide higher security, they too have limitations. This work presents the design & implementation of a new distributed firewall model, based on stateful Cluster Security Gateway (CSG) architecture, which addresses those shortcomings. This distributed security model adopts a bottom-up approach such that each cluster of end-user hosts is first secured using the CSG architecture. These different CSGs are then centrally managed by the Network Administrator. A file-based firewall update mechanism is used for dynamic realtime security. IPsec is used to secure the firewall policy update distribution while X.509 certificates cater for sender/receiver authentication.
| Format: | Size: | 239.60 | |
| Date: | Dec 2008 |
People who downloaded this item also downloaded
- SonicWALL and Gartner Discuss Next-Generation Firewall: Driving Productivity, Security & Efficiencies Webcast
- A Pragmatic Approach to SIEM: Buy for Compliance, Use for Security with Anton Chuvakin
- Why You Should Consider Cloud-Based Email Archiving
- Architecture of a Identity Based Firewall System
- A Distributed Firewall and Active Response Architecture Providing Preemptive Protection



