|
Internet facing systems can
receive several, hundreds or even thousands of attack
attempts a day. Many of these are simple scans and probes
with known defences, however new variations appear every
day. Over 82,000 attack incidents were reported to CERT
in 2002, and the trend is strongly upwards.
Attack trends are upwards for a number of reasons:
- attackers are increasingly collaborative and organised
- use of sophisticated "downloadable" automated
attacks for novices
- low cost of attacks for attackers
- difficulty of detection and prosecution across international
borders.
Attackers range from curious teenagers, industrial
spies, foreign governments, insiders and criminals.
Network administrators who don't keep their defences
current, risk consequences such as Denial of Service
(DoS) to their customers, being the source for
subsequent attack on others (Distributed DoS),
web site defacement, information destruction, theft
and modification, financial losses and losses of public
confidence. Investment in Network Security is often
compared to having a good insurance policy.
The Network Security market is booming driven by various
factors including the US government concern for terrorism
and critical infrastructure protection..
Network Administrators use various perimeter and internal
network components to detect and defend against network
borne attacks. You will hear of terms such as Firewalls,
Intrusion Detection System (IDS), Virus Filters
and Remote Access VPNs (IPsec)
This document describes the role of firewalls in Network
Security
It describes
- The purpose of Firewalls
- Logical Firewall Type
- Physical Firewall Type
|