Firewalls

Latest whitepapers Sort by Popularity

Download

Astaro Security Gateway Keeps Kauffman's Network Rolling

Kauffman Tire was operating without a spam filter, causing their associates' inboxes to be flooded with spam. The challenge was to seek out a modern firewall package and a reliable and effective spam filter. Astaro Security Gateway 320 was added as a firewall, to combat spam and enabled VPN access. The Astaro solution not only meets all requirements, the additional features would also be added over time.

80 days ago by Astaro
Download

C-SWF Incremental Mining Algorithm for Firewall Policy Management

As the number of security incidents had been sharply growing, the issue of security-defense draws more and more attention from network community in past years. Firewall is known as one of the most popular security-defense mechanism for corporations. It is the first defense-line for security infrastructure of corporations to against external intrusions and threats. A firewall will filter packets by following its policy rules to avoid suspicious intruder executing illegal actions and damaging internal network. Well-designed policy rules can increase the security-defense effect to against security risk. This paper applies association rule mining to analyze network logs and detect anomalous behaviors, such as connections those shown frequently in short period with the same source IP and port.

98 days ago by National Taiwan University
Download

End to End V/s Firewall Security: A Guide to Strengthen Perimeter Security

Firewalls have been a key component of any organizations Network Security Infrastructure. The basic task of the Firewall is to regulate/deter un-authorized access at the perimeter. However Firewalls have done little to thwart un-authorized access inside private networks. There are several inherent deficiencies that exist with Firewalls and this paper examines/explores the ways and means of solving this.

139 days ago by NeoAccel
Download

Effective Solutions for Firewall Management: Using SolarWinds Orion Network Configuration Manager With Athena FirePAC

Long hours, non-stop pressure, problem solving 99% of the time - these are the typical words used to describe the day-to-day life of network engineers and firewall administrators. Making routine changes to the infrastructure should not be an additional source of stress, but with the additional roles of monitoring and troubleshooting often times it is. The reasons for this added stress are described in this paper along with an effective solution for addressing these problems using SolarWinds Orion Network Configuration Manager (NCM) and Athena FirePAC for firewall analysis.

158 days ago by Athena Security
Download

Protecting Mission-Critical Manufacturing Data With an ERP Firewall

Off late manufacturing sector, outsourcing is becoming more the norm than the exception. Companies have become more and more specialized within their value chains. OEMs that traditionally were production-oriented are increasingly outsourcing many of their manufacturing and supply chain functions to third parties (contract manufacturers, freight forwarders, and third-party logistics providers). Back-office functions, such as accounts payable, human resources, and IT management are steadily being sourced to specialized Business Process Outsourcing (BPO) firms.

202 days ago by GXS
Download

Firewire Blocker: A Software Defense Against Firewire-Based Physical Security Attacks on Windows Systems

This paper presents a software solution to Firewire-based physical security attacks on Microsoft Windows operating systems. In this first proof-of-concept, the FirewireBlocker service is running with SYSTEM privileges in order to be able to enable/disable hardware. While users can normally not interface with service, risk for privilege escalation remains. For example, if users with normal user rights have write access on the executable, they could replace it with a malign piece of software which would then be started with SYSTEM privileges. Future versions should establish the principle of least privilege. Further research is required to identify the fewest required privileges the FirewireBlocker service has to run with in order to be able to serve its purpose.

221 days ago by Vienna University
Download

Consistency Verification of Stateful Firewalls Is Not Harder Than the Stateless Case

Firewalls play an important role in the enforcement of access control policies in contemporary networks. However, firewalls are effective only if they are configured correctly such that their access control rules are consistent and the firewall indeed implements the intended access control policy. Unfortunately, due to the potentially large number of rules and their complex relationships with each other, the task of firewall configuration is notoriously error-prone, and in practice, firewalls are often misconfigured leaving security holes in the protection system. This paper addresses the problem of consistency verification of stateful firewalls that keep track of already existing connections. For the first sight, the consistency verification of stateful firewalls appears to be harder than that of stateless firewalls.

223 days ago by Budapest University of Technology and Economics
Download

HP Data Protector Software - Configuration of Manager of Managers (MoM) in a Secure Firewall Environment

This paper describes how to setup and configure Manager of Managers (MoM) in a secure firewall environment. HP Data Protector software is a backup and disaster-recovery software that provides reliable data protection and high accessibility for fast growing business data. Data Protector offers comprehensive backup and restore functionality specifically tailored for enterprise-wide and distributed environments. The backup infrastructure is configured in a network based on the user requirements, enabled by various backup options. The Data Protector cell is a network environment that has a Cell Manager, client systems, and devices. Data Protector software is installed on the Cell Manager.

229 days ago by Hewlett-Packard (HP)
Download

Automatic Cooperation Between Filter and Firewall for Improving Network Security

Today Network Intrusion Detection and Intrusion Prevention System (NIDS/IPS) are considered as one of the hottest topics in computer security. NIDS monitor suspicious behavior in computer networks. The cases are unauthorized use, anomalous behavior, and attempts to deny users, machines or access to services. On the other side firewalls which have been introduced from 1989 have optimized several times and different types have been introduced. Today by integrating NIDS and Firewall a new product comes to the market, which is called IPS. By encompassing aspects of many well-known, existing security technologies including anti-virus, software, intrusion detection and firewalls, IPSs protect information systems from unauthorized access, damage or disruption.

229 days ago by Springer Science+Business Media
Download

ALC Maintains System Integrity With Tripwire Configuration Control Solutions

Since 1976, the Atlantic Lottery Corporation (ALC) has been contributing to Atlantic Canada's economy and way of life by generating significant revenue on behalf of the governments of Nova Scotia, New Brunswick, Newfoundland and Labrador and Prince Edward Island. The challenge was to demonstrate compliance with federal and provincial online gaming regulations, to implement ITIL-based change management processes and to reduce the impact of audits on staff. Tripwire Enterprise gives ALC the ability to monitor all changes on critical servers and network firewalls to prove change audit processes to auditors. A verifiable audit trail provides the evidence to support and enforce change management processes and practices. Tripwire automatically tracks all changes, and provides reports that allow staff to quickly investigate undocumented changes.

247 days ago by Tripwire