Member Login

E-mail:    Password:  


Vendor : Rutgers, State University of New Jersey


Email  E-mail this page

Related Content  Related Content

Remember  Remember this item

 

Format: PDF

Date: 16/07/2007


FileWall: A Firewall for Network File Systems

WORTHWHILE?

0

0 votes


Overview

Access control in network file systems relies on primitive mechanisms like Access Control Lists and permission bits, which are not enough when operating in a hostile network environment. Network middleboxes, e.g., firewalls, completely ignore file system semantics when defining policies. Therefore, implementing simple context-aware access policies requires modifications to file servers and/or clients, which is impractical. This paper presents FileWall, a network middlebox that allows administrators to define context-aware access policies for file systems using both the network context and the file system context. FileWall interposes on the client-server network path and implements administrator defined policies through message transformation without modifying either clients or servers. The paper presents the design and implementation of FileWall for the NFS protocol.



See also: Security Tools