You are here: hacking technology > firewall > Content
Hot Articles
Recommend Articles
New Articles
Impediment firewall secure six big erroneous zones
  Add date: 07/17/2008   Publishing date: 07/17/2008   Hits: 90
Total 3 pages, Current page:1, Jump to page:
 
Firewall, not only may guard against some network attack, may also keep them out a part through the network dissemination virus, but may also the effective guard hacker invade. Because in this, the firewall this section of network equipment will be only then becoming the enterprise network the essential network equipment. But, many enterprise network managements when deploys the firewall, will have the following several erroneous zones frequently. Therefore, the author will deploy that the firewall some erroneous zones write, shares for everybody the colleagues who makes the network management in the enterprise.

    One of erroneous zones: Had deployed the firewall is not equal to the absolute safety

    The firewall is each enterprise network management institute altogether knows regarding enterprise network's protective function, but, the enterprise network has deployed the firewall, does not mean that the enterprise network no longer has the security threat. Lifts a simple the example, firewall's function can come from the exterior network merely the data to carry on the filtration, if some people do the destruction in the enterprise network interior, the firewall does not have any guard function.

    Moreover, the firewall to comes from exterior data the filtration inspection to defer to the filtration rule to carry on. If one kind of network attack pattern in the firewall filtration rule, the firewall also does not have any guard ability regarding this kind of network attack. Therefore, the enterprise network management do not think that in the network has deployed the firewall, the enterprise network on the absolute safety, no longer has any safe hidden danger, had deployed the firewall is not equal to the absolute safety. Figure one



    Firewall function schematic drawing

    Second erroneous zone: Does not renew the firewall security policy for a long time

    The firewall may prevent from the outside network attack, as well as filters some network virus, this benefits from the firewall equipment's security policy. Is similar to kills the poisonous software to be the same, relies on the firewall bringing default the security policy, the firewall equipment can prevent the known network attack pattern, as well as a part of network virus; Regarding the new network attack pattern, as well as the new network virus, the firewall does not have any guard ability. Must want to let the firewall be able to have the very formidable guard ability, the enterprise network management must the regular renewal firewall's security policy.

    Assumes today which at the network security crack the detonation type grows, if does not renew firewall's security policy for a long time, the firewall will become a ornaments without doubt. Whenever comes across the new network security crack, the enterprise network management must the prompt renewal firewall's security policy, only then like this, the firewall can become the enterprise network truly the safekeeping of security god.

 
Other pages: : 1 * 2 * 3 * Next>>
Prev:Recommends 20 outstanding firewalls Next:One make the supercomputer firewall

Comment:

Category: Home > firewall