- 1、本文档共106页,可阅读全部内容。
- 2、有哪些信誉好的足球投注网站(book118)网站文档一经付费(服务费),不意味着购买了该文档的版权,仅供个人/单位学习、研究之用,不得用于商业用途,未经授权,严禁复制、发行、汇编、翻译或者网络传播等,侵权必究。
- 3、本站所有内容均由合作方或网友上传,本站不对文档的完整性、权威性及其观点立场正确性做任何保证或承诺!文档内容仅供研究参考,付费前请自行鉴别。如您付费,意味着您自己接受本站规则且自行承担风险,本站不退款、不进行额外附加服务;查看《如何避免下载的几个坑》。如果您已付费下载过本站文档,您可以点击 这里二次下载。
- 4、如文档侵犯商业秘密、侵犯著作权、侵犯人身权等,请点击“版权申诉”(推荐),也可以打举报电话:400-050-0827(电话支持时间:9:00-18:30)。
查看更多
* Table 9.1, from the text gives some examples of packet filtering rule sets. In each set, the rules are applied top to bottom. The * in a field is a wildcard designator that matches everything. We assume that the default = discard policy is in force. A. Inbound mail is allowed (port 25 is for SMTP incoming), but only to a gateway host. However, packets from a particular external host, SPIGOT, are blocked. B. This is an explicit statement of the default policy, usually implicitly the last rule. C. This rule set is intended to specify that any inside host can send mail to the outside. A TCP packet with a destination port of 25 is routed to the SMTP server on the destination machine. Problem is that 25 as SMTP is only a default; an outside machine could be configured to have some other application linked to port 25. D. This rule set achieves the intended result that was not achieved in C. This rule set allows IP packets where the source IP address is one of a list of designated internal hosts and the destination TCP port number is 25. It also allows incoming packets with a source port number of 25 that include the ACK flag. This takes advantage of a feature of TCP connections that once set up, the ACK flag of a TCP segment is set to acknowledge segments sent from the other side. E. This rule set is one approach to handling FTP which uses two TCP connections: a control connection and a data connection for the actual file transfer. The data connection uses a different dynamically assigned port number for the transfer. Most servers, and hence most attack targets, live on low-numbered ports; most outgoing calls tend to use a higher-numbered port, typically above 1023. Rule set E points out the difficulty in dealing with applications at the packet filtering level. * A firewall is positioned to provide a protective barrier between an external, potentially untrusted source of traffic and an internal network. With that general principal in mind, a security administrator mu
您可能关注的文档
- _体育运动对心理健康及青少年心理发展的影响案例.ppt
- _我们的手案例.ppt
- 《8090后员工管理》介绍.ppt
- _一元一次方程模型的应用案例.ppt
- _圆复习专题案例.ppt
- 《C语言程序设计》-任正云介绍.ppt
- 《DNA分子的结构》参考双介绍.ppt
- 《DreamweaverCS6网页设计与制作》第3章HTML刘敏娜主编介绍.ppt
- 《linux网络服务》ftp的配置介绍.ppt
- 《P.E.T.父母效能训练手册》知行悟读书落地会1介绍.ppt
- 初中生心理健康教育中心理健康教育心理健康教育策略研究教学研究课题报告.docx
- 初中地理实验教学中地理实践能力培养的策略探讨教学研究课题报告.docx
- 2025年陕西旅游烹饪职业学院单招职业适应性测试题库学生专用.docx
- 2025年陕西旅游烹饪职业学院单招职业技能测试题库汇编.docx
- 企业级知识管理系统开发合作协议.doc
- 2025年陕西旅游烹饪职业学院单招职业技能测试题库必威体育精装版.docx
- 2025年陕西旅游烹饪职业学院单招职业技能测试题库完整版.docx
- 2025年陕西旅游烹饪职业学院单招职业适应性测试题库及参考答案.docx
- 2025年陕西旅游烹饪职业学院单招职业技能测试题库及答案1套.docx
- 2025年陕西旅游烹饪职业学院单招职业技能测试题库及答案一套.docx
最近下载
- 贵州事业单位考试试题题库药学.pdf
- 风电场EPC工程施工环境保护措施.doc
- 2025年湖南水利水电职业技术学院高职单招高职单招英语2016-2024历年频考点试题含答案解析.docx
- 2025年山东铝业职业学院高职单招综合素质考试题库及答案解析.docx
- 2024年辽宁铁道职业技术学院高职单招(英语/数学/语文)笔试历年真题摘选含答案解析.docx
- MNA-SF老年人营养评估量表.pdf
- InCAM Pro基础入门篇(中文).pdf VIP
- 2025年国航股份商务委员会校园招聘笔试参考题库含答案解析.pdf
- 成人still’s病(成人斯蒂尔病).ppt
- ISO22000《食品安全管理体系》.pdf
文档评论(0)