节点文献
基于netfilter数据过滤防火墙的应用研究
The Application Research about IP Packet Filtering Firewall Based on Netfilter
【摘要】 netfilter/iptables是Linux实现包过滤、数据包处理、NAT等的功能框架,利用netfilter框架可以实现很好的数据包过滤的功能。本文主要研究使用netfilter/iptables设置和应用基于地址(源和目标)、用户和时间的访问控制策略,以阻止外部非法、不可靠的数据连接,同时保护内部用户的合法访问不受影响。
【Abstract】 Netfilter/iptables is a function framework of IP packet filtering,packet mangling and NAT which is integrated with the latest 2.4.x versions of the Linux kernel.It is ideal for us to use it configure firewalls according to our specific needs on Linux systems.This paper main discussed how to setting and applying an access control strategy which based on IP address and user and time,to stop unauthorized and unreliably sources from accessing our Linux systems,and also restrict authorized network traffic can go out.
【关键词】 netfilter/iptables;
数据包过滤;
访问控制;
【Key words】 netfilter/iptables; IP packet filtering; access control;
【Key words】 netfilter/iptables; IP packet filtering; access control;
【基金】 广东技术师范学院校级科研项目(07KJY04)的结题成果
- 【文献出处】 广东技术师范学院学报 ,Journal of Guangdong Polytechnic Normal University , 编辑部邮箱 ,2009年03期
- 【分类号】TP393.08
- 【被引频次】1
- 【下载频次】61