This offers more security than either packet filtering or circuit monitoring alone, but exacts a greater toll on network performance. Stateful inspection firewalls, on the other hand, not only examine each packet, but also keep track of whether or not that packet is part of an established TCP session.Circuit-level gateways monitor the TCP handshaking going on between the local and remote hosts to determine whether the session being initiated is legitimate - whether the remote system is considered "trusted." They don't inspect the packets themselves, however.Packet-filtering firewalls operate at the router and compare each packet received to a set of established criteria (such as allowed IP addresses, packet type, port number, etc.) before being either dropped or forwarded. Companies should use the firewall as part of an overall information security program that includes data integrity, application integrity and data confidentiality and authentication. Each type has advantages and disadvantages, ranging from ease of implementation to high initial cost.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |