Title :
Ethernet Wrapper: extension of the TCP Wrapper
Author :
Kwon, MoonSang ; Hong, Jiman ; Cho, Yookun
Author_Institution :
Dept. of Comput. Eng., Seoul Nat. Univ., South Korea
Abstract :
One of the popular network security programs supporting host access control is the `TCP Wrapper´ (Venema, 1992). TCP Wrapper is a software-only system and many computers connected to the Internet are using it. However, TCP Wrapper does `IP address-based´ access control. The IP address is not such a reliable source when authenticating a host. We point out two possible attacks against the TCP Wrapper, propose a new way to prevent them, and describe the prototype implementation, Ethernet Wrapper. By adding an Ethernet address check, we augmented the TCP Wrapper. The test results showed that Ethernet Wrapper can prevent such attacks effectively
Keywords :
Internet; authorisation; local area networks; telecommunication security; transport protocols; Ethernet Wrapper; IP address-based access control; Internet; TCP Wrapper; address check; host access control; host authentication; network security; Access control; Authentication; Computer science; Computer security; Ethernet networks; Internet; National security; Prototypes; System software; TCPIP;
Conference_Titel :
Parallel and Distributed Systems, 2001. ICPADS 2001. Proceedings. Eighth International Conference on
Conference_Location :
Kyongju City
Print_ISBN :
0-7695-1153-8
DOI :
10.1109/ICPADS.2001.934868