Title :
Enhance network security with dynamic packet filter
Author :
Julkunen, Heikki ; Chow, C. Edward
Author_Institution :
Dept. of Comput. Sci., Colorado Univ., Colorado Springs, CO, USA
Abstract :
This paper presents the study, design and implementation of a firewall, in particular a major component of a firewall: the dynamic packet filter. A packet filter may be static or dynamic. A dynamic packet filter checks, on the fly, the outgoing IP packets from a computer and then allows incoming packets to get through the packet filter if the packets are from the same computer as the outgoing packets were sent to. There are currently no dynamic packet filters on the Linux operating system which has been chosen to be the development and test environment due to the source code availability. Some performance measurements have also been obtained to show that a safe system does not necessarily have to be very slow. This might otherwise be of some concern, as there is a trade-off between the security and the performance of the system
Keywords :
intranets; packet switching; telecommunication security; IP packets; Linux operating system; dynamic packet filter; enhanced network security; firewall; source code availability; Communication system security; Computer science; Computer security; Filters; Fires; Information security; Internet; Operating systems; Springs; Telephony;
Conference_Titel :
Computer Communications and Networks, 1998. Proceedings. 7th International Conference on
Conference_Location :
Lafayette, LA
Print_ISBN :
0-8186-9014-3
DOI :
10.1109/ICCCN.1998.998786