With the growth of internet, network security has received significant attention over pass ten years due to the increasing threat of hacker attacks. To achieve security goals, most corporate environments have deployed firewalls to block the intrusion. However, traditional firewalls only provided static filleting analysis so that they cannot analyze the content of data packet for providing dynamic security requirement. In order to address this issue, in this paper, the authors integrate the traditional firewalls with intrusion detection technologies. The proposed can provides dynamic security defense by atomically updating the policies based on the detection condition.