FIREWALLS
BY: JALESH PRATAP SINGH
AND
SHASHANK TIWARI
FIREWALL
– IT IS A PROGRAM OR HARDWARE DEVICE THAT
FILTERS THE INFORMATION COMING THROUGH THE
INTERNET CONNECTION INTO YOUR PRIVATE
NETWORK OR COMPUTER SYSTEM
– IF AN INCOMING PACKET OF INFORMATION IS
DETECTED AS AN INTRUDER BY THE FILTERS, IT IS
NOT ALLOWED THROUGH
HONEY POTS
A honey pot is a machine sitting on
the network for people to hack into.
It allows you to watch how a
machine can be hacked and
(hopefully) learn from the
experience.
WHY USE A FIREWALL
– Keeps intruders out of your
network while still letting you get
your job done
– Protect sensitive information
– Provides some protection for
machines lacking in security
BASIC WORKING METHODS
PACKET FILTERING
PROXY SERVICE
STATEFUL INSPECTION
HOW CRACKERS WORK
REMOTE LOGIN
APPLICATION BACKDOORS
SMTP SESSION HIJACKING
OPERATING SYSTEM BUGS
HOW CRACKERS WORK
DENIAL OF SERVICE
E-MAIL BOMBS
MACROS
VIRUSES
HOW CRACKERS WORK
SPAM
REDIRECT BOMBS
SOURCE ROUTING
MAKING FIREWALL FIT
I P ADDRESSES
DOMAIN NAMES
SOFTWARE FIREWALLS
TINY FIREWALL
ZONE ALARM
SYSGATE
AGNITUM
PORTSLOCK
PERSONAL FIREWALL
HACK TRACER
KERIO PERSONAL FIREWALL
WHAT IT CAN’T HELP
– Firewalls can’t protect against
Viruses
• Too many ways of encoding binary
files
• Too many different architectures
– Firewalls cannot protect against data-
driven attacks
• Attack that is in the form of innocuous-
seeming data that is copied to an
internal host where it is then executed.
WHAT IT CAN’T HELP
– Attacks that don’t go through
the firewall
• Back-door entrances into your
network
– Traitors inside your network
• Industrial spy
– Stupid users
• Intruders can completely
bypass your firewall, if they can
find a “helpful” employee
BIBLIOGRAPHY
[Link] [Link]
[Link]
[Link]
[Link]
[Link]
THANK YOU