NetworkClue.com
NetworkClue Home PageHome Contact UsContact ConsultingConsult
Bulletin Board
Internet Services covers Secrets to hosting websites, Hosting your own web server, and using DNS Servers.Operating Systems leads you through the decision of Linux vs. Windows, ideal installations and setups to create an efficient and redundant environment for your business, and great features to make management easier.Routing & Firewalls contains articles that will allow you to take control of your router. Learn how to protect your company with access lists and advanced firewall techniques.Hardware answers the common questions about Switches vs. Hubs, recommends SysAdmin Tools, and recommendations for adequate power protection.Utilities will cover fighting spam, using Anti-Virus programs effectively and the must haves for every administrator's software toolbox.

Bulletin Board

Firewall Breakdown

By Joshua Erdman
Digital Foundation, inc.

With so many firewall terms, how does one know what type of firewall they need? What is the difference between a packet filtering firewall and a NAT firewall? How much security does one need?

A Firewall's Purpose

Firewalls protect data and computing resources, they are also limit access for users; bottom line it is your network security and survelience system. This article will help you determine just how much security you need.

Brush up on those skills

To prepare to make a good choice about the levels of protection you need to be very familiar with some network basics. First, brush up on the first 3 layers of the 7-layer OSI model. You also need to read our article on TCP/IP which discusses general TCP/IP usage and also read TCP/IP addresing. It covers addressing schemes and subnet masks and ports.

The thing that makes administrating firewalls difficult is that traffic ALWAYS flows in both directions. Even though you want your users to browse the Internet you must let the websites that they want to browse reply back in some way so that they can send the user the content of the website. So in general we want to block incoming requests by default and allow outgoing requests incoming replies.

Assumptions

Typically most networks have all the client PCs configured with a private network address (192.168.0.X OR 10.10.0.X) and the local network uses the Internet connection by being shared through a DSL/Cable Router. This is commonly referred to as a NAT Firewall (one of the most basic). Yes those users who wanted to share their Internet connection are actually protected by a NAT firewall and didn't even know it.

All of our firewall articles listed below are going to assume the internal office network is using private addresses. If firewalls are new to you, I recommend reading up on the first articles to get a good understanding of how they protect.

Levels of Protection and complexity

Article last reviewed: 06/27/2004


del.icio.us

Created by: Digital Foundation, inc.

Copyright © 2002-2005 Digital Foundation, inc.   www.networkclue.com

All content of the NetworkClue website is copyrighted. Articles, notes, outlines, and all other materials may not be stored on the Internet or sold or placed by themselves or with other material in any electronic or printed format in whole or part. However materials may be referenced by links to the site.

 

Related Articles:
NAT Firewall
Intrusion Detection
Cisco ACL Packet Filtering
   Firewall

Your Ad Here