25.02.2013 Views

TCP/IP Tutorial and Technical Overview - IBM Redbooks

TCP/IP Tutorial and Technical Overview - IBM Redbooks

TCP/IP Tutorial and Technical Overview - IBM Redbooks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

SOCKS-enabled<br />

client program<br />

Figure 22-18 Circuit-level gateway<br />

22.3.3 Types of firewalls<br />

A firewall consists of one or more software elements that run on one or more<br />

hosts. The hosts can be general purpose computer systems or specialized such<br />

as routers. There are four important examples of firewalls. These are:<br />

► Packet-filtering firewall<br />

► Dual-homed gateway firewall<br />

► Screened host firewall<br />

► Screened subnet firewall<br />

Client1 Client2 Client3 Client4<br />

Secure network<br />

SOCKS<br />

server<br />

Unmodified<br />

server program<br />

Non-secure network<br />

Packet-filtering firewall<br />

The packet-filtering firewall is commonly used because it is inexpensive (see<br />

Figure 22-19 on page 806). The firewall is just a router sitting between the<br />

external network <strong>and</strong> the internal secure network. Packet-filtering rules are<br />

defined to permit or deny traffic (see “Packet-filtering router” on page 797).<br />

Chapter 22. <strong>TCP</strong>/<strong>IP</strong> security 805

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!