中小型企业linux防火墙的设计和应用
esign and Application of Network Linux Firewall for Enterprises
本文阐述了Iptables防火墙的原理以及Netfilter架构,详细论述了基于中小型企业的特殊条件下,构建网络防火墙的思想和步骤。具体规划网络拓扑结构,完成高效性价比防火墙的设计,并给出相关脚本。提炼出重要数据结构、数据处理流程,掌握 Linux内核框架的实现机制。设计并实现了一种基于Linux防御ddos攻击以及其他常见攻击的防火墙系统。该系统提高了受到拒绝服务攻击时为正常用户提供服务的能力。
he principles of Iptables firewall and the framework of Netfilter were discussed in this thesis. Ideas and steps of building a network firewall based on the special conditions of small and medium enterprises were described in detail. The mainly contribution of this paper were included particular plan of network topology, finishing the design of a cost-effective and efficient firewall, and giving correlative script. To extract the structure of important data, the process of data treated, the mechanism of Linux kernel framework. A Linux-based firewall system which could defend ddos attack and other general attacks was designed and achieved. The system enables an improvement of abilities of offering normal services when it was aggressed by denial of service attack.
黄洁
电子技术应用
防火墙Netfilter网络地址转换
firewallNetfilterNAT(Network Address Translation)
黄洁.中小型企业linux防火墙的设计和应用[EB/OL].(2009-12-01)[2025-08-16].http://www.paper.edu.cn/releasepaper/content/200912-13.点此复制
评论