Firewalls White Papers
A Firewall Network System for Worm Defense in Enterprise Networks
Overview From a security point of view, the Internet is too open. The central idea of a traditional "firewall" is to constrain service requests from the Internet to a local network. As an enterprise network becomes larger and more flexible, an Internet worm can easily find a way to enter it. Based on the "defense-in-depth" principle, the paper presents a "Firewall Network System" for worm defense in enterprise networks, which uses internal firewalls to divide an enterprise network into many isolated subnetworks. Computers in an enterprise network are classified as either clients or servers: all service requests sent to internal IP addresses of an enterprise network will be blocked by internal firewalls if they target non-server computers or servers that do not provide the corresponding service.
| Publisher | University of Massachusetts | File Format | |
|---|---|---|---|
| Date Published | April 2004 | ||
| Format | White Papers | ||
| Topics | |||



