Firewall System with Strong Authentication
-
摘要: 针对当前网络身份认证领域中的基本理论、关键技术和主要解决方案进行了深入的研究和分析,并根据实际需求,构造了一个适合应用于园区网边界上的安全防范系统.将Kerberos身份认证系统与SOCKS通用代理防火墙系统相结合,兼具通用代理防火墙和当前强身份认证机制的若干优良安全特点,具有较高的实用价值和应用前景.Abstract: The fundamental theory,key technology and prevailing solution in the security fields were analyzed.A new firewall architecture was discussed in detail.Compared with traditional firewall,it has markedly advantage in generality,transparency and authentication.Firewall,as a comprehensive security protection system,does not mean a single technology or product.Actually,its functionality is the result of cooperation of all basic security components.Particularly,authentication,as the basis of other security function,has specfic importance.We designed and developed a practical security protection system suitable to deployment on the edge of local campus network,which combined the advanced security characteristic of strong authentication mechanism and general proxy firewall architecture.
-
Key words:
- network interconnection /
- safety technics /
- network softwares /
- authentication /
- Kerberos /
- SOCKS firewall
-
1. Chapman D B,Zwicky E D.构筑因特网防火墙.舒若平,朱孝明,郑 宏,等译.北京:电子工业出版社,1998 2. Leech M.SOCKS protocol Version 5 RFC 1928.1996,see ftp://nic.ddn.mil/netinfo/rfc1928.txt 3. Haller N.On internet authentication RFC 1704.1994,see ftp://nic.ddn.mil/netinfo/rfc1704.txt 4. Neuman K.The Kerberos network authentication service(V5) RFC 1510.1992,see ftp://nic.ddn.mil/netinfo/rfc 1510.txt
点击查看大图
计量
- 文章访问数: 2488
- HTML全文浏览量: 178
- PDF下载量: 923
- 被引次数: 0