SlideShare a Scribd company logo
Firewalls
Outline
• Introduction
• Firewall Environments
• Type of Firewalls
• Future of Firewalls
• Conclusion
Introduction
• Firewalls control the flow of network traffic
• Firewalls have applicability in networks
where there is no internet connectivity
• Firewalls operate on number of layers
• Can also act as VPN gateways
• Active content filtering technologies
Firewall Environments
• There are different types of environments
where a firewall can be implemented.
• Simple environment can be a packet filter
firewall
• Complex environments can be several
firewalls and proxies
DMZ Environment
• Can be created out of a network connecting
two firewalls
• Boundary router filter packets protecting
server
• First firewall provide access control and
protection from server if they are hacked
DMZ ENV
VPN
• VPN is used to provide secure network
links across networks
• VPN is constructed on top of existing
network media and protocols
• On protocol level IPsec is the first choice
• Other protocols are PPTP, L2TP
VPN
Intranets
• An intranet is a network that employs the
same types of services, applications, and
protocols present in an Internet
implementation, without involving external
connectivity
• Intranets are typically implemented behind
firewall environments.
Intranets
Extranets
• Extranet is usually a business-to-business
intranet
• Controlled access to remote users via some
form of authentication and encryption such
as provided by a VPN
• Extranets employ TCP/IP protocols, along
with the same standard applications and
services
Type is Firewalls
• Firewalls fall into four broad categories
• Packet filters
• Circuit level
• Application level
• Stateful multilayer
Packet Filter
• Work at the network level of the OSI model
• Each packet is compared to a set of criteria
before it is forwarded
• Packet filtering firewalls is low cost and
low impact on network performance
Packet Filtering
Circuit level
• Circuit level gateways work at the session
layer of the OSI model, or the TCP layer of
TCP/IP
• Monitor TCP handshaking between packets
to determine whether a requested session is
legitimate.
Circuit Level
Application Level
• Application level gateways, also called
proxies, are similar to circuit-level gateways
except that they are application specific
• Gateway that is configured to be a web
proxy will not allow any ftp, gopher, telnet
or other traffic through
Application Level
Stateful Multilayer
• Stateful multilayer inspection firewalls
combine the aspects of the other three types
of firewalls
• They filter packets at the network layer,
determine whether session packets are
legitimate and evaluate contents of packets
at the application layer
Stateful Multilayer
General Performance
Future of Firewalls
• Firewalls will continue to advance as the attacks
on IT infrastructure become more and more
sophisticated
• More and more client and server applications are
coming with native support for proxied
environments
• Firewalls that scan for viruses as they enter the
network and several firms are currently exploring
this idea, but it is not yet in wide use
Conclusion
• It is clear that some form of security for
private networks connected to the Internet is
essential
• A firewall is an important and necessary
part of that security, but cannot be expected
to perform all the required security
functions.
Thanks

More Related Content

PPT
Firewalls.ppt
PPT
Advance firewalls
PPT
Firewalls (1).ppt
PPT
Firewalls presentation tells about the fire walls
PPT
Firewalls.ppt
PPT
Firewalls.ppt
PPT
Firewalls presentation powerpoint powepoint
Firewalls.ppt
Advance firewalls
Firewalls (1).ppt
Firewalls presentation tells about the fire walls
Firewalls.ppt
Firewalls.ppt
Firewalls presentation powerpoint powepoint

Similar to Unit 5.3_Firewalls (1).ppt (20)

PPT
Firewalls.ppt
PPT
Network related Firewalls security funtions
PPTX
PPTX
Firewall.pptx in Information Security for Human and students ease
PPTX
PPTX
Firewall ( Cyber Security)
PPTX
Network defenses
PPTX
Firewall in Network Security
PPTX
Firewall Design and Implementation
PPTX
Firewall Design and Implementation
PPT
Network security chapter 6 and 7 internet architecture
PPT
firewall.ppt
PPT
Firewalls basic concepts and types22.ppt
PPT
Firewalls types and basic concepts22.ppt
PPT
Firewalls
PPTX
PPTX
98 366 mva slides lesson 8
PDF
BAIT1103 Chapter 8
PPTX
Module 7 Firewalls Part - 2 Presentation
PPT
Introduction to firewalls
Firewalls.ppt
Network related Firewalls security funtions
Firewall.pptx in Information Security for Human and students ease
Firewall ( Cyber Security)
Network defenses
Firewall in Network Security
Firewall Design and Implementation
Firewall Design and Implementation
Network security chapter 6 and 7 internet architecture
firewall.ppt
Firewalls basic concepts and types22.ppt
Firewalls types and basic concepts22.ppt
Firewalls
98 366 mva slides lesson 8
BAIT1103 Chapter 8
Module 7 Firewalls Part - 2 Presentation
Introduction to firewalls
Ad

Recently uploaded (20)

PDF
Well-logging-methods_new................
PPT
Introduction, IoT Design Methodology, Case Study on IoT System for Weather Mo...
PPTX
UNIT 4 Total Quality Management .pptx
PPTX
Sustainable Sites - Green Building Construction
PDF
Human-AI Collaboration: Balancing Agentic AI and Autonomy in Hybrid Systems
PPTX
additive manufacturing of ss316l using mig welding
PDF
PREDICTION OF DIABETES FROM ELECTRONIC HEALTH RECORDS
PDF
Embodied AI: Ushering in the Next Era of Intelligent Systems
PDF
737-MAX_SRG.pdf student reference guides
PPT
Total quality management ppt for engineering students
PDF
Mitigating Risks through Effective Management for Enhancing Organizational Pe...
PPT
Project quality management in manufacturing
PPT
introduction to datamining and warehousing
PPTX
Internet of Things (IOT) - A guide to understanding
PPTX
Foundation to blockchain - A guide to Blockchain Tech
PPTX
Infosys Presentation by1.Riyan Bagwan 2.Samadhan Naiknavare 3.Gaurav Shinde 4...
PPTX
CYBER-CRIMES AND SECURITY A guide to understanding
PPTX
UNIT-1 - COAL BASED THERMAL POWER PLANTS
PDF
Categorization of Factors Affecting Classification Algorithms Selection
PDF
Enhancing Cyber Defense Against Zero-Day Attacks using Ensemble Neural Networks
Well-logging-methods_new................
Introduction, IoT Design Methodology, Case Study on IoT System for Weather Mo...
UNIT 4 Total Quality Management .pptx
Sustainable Sites - Green Building Construction
Human-AI Collaboration: Balancing Agentic AI and Autonomy in Hybrid Systems
additive manufacturing of ss316l using mig welding
PREDICTION OF DIABETES FROM ELECTRONIC HEALTH RECORDS
Embodied AI: Ushering in the Next Era of Intelligent Systems
737-MAX_SRG.pdf student reference guides
Total quality management ppt for engineering students
Mitigating Risks through Effective Management for Enhancing Organizational Pe...
Project quality management in manufacturing
introduction to datamining and warehousing
Internet of Things (IOT) - A guide to understanding
Foundation to blockchain - A guide to Blockchain Tech
Infosys Presentation by1.Riyan Bagwan 2.Samadhan Naiknavare 3.Gaurav Shinde 4...
CYBER-CRIMES AND SECURITY A guide to understanding
UNIT-1 - COAL BASED THERMAL POWER PLANTS
Categorization of Factors Affecting Classification Algorithms Selection
Enhancing Cyber Defense Against Zero-Day Attacks using Ensemble Neural Networks
Ad

Unit 5.3_Firewalls (1).ppt

  • 2. Outline • Introduction • Firewall Environments • Type of Firewalls • Future of Firewalls • Conclusion
  • 3. Introduction • Firewalls control the flow of network traffic • Firewalls have applicability in networks where there is no internet connectivity • Firewalls operate on number of layers • Can also act as VPN gateways • Active content filtering technologies
  • 4. Firewall Environments • There are different types of environments where a firewall can be implemented. • Simple environment can be a packet filter firewall • Complex environments can be several firewalls and proxies
  • 5. DMZ Environment • Can be created out of a network connecting two firewalls • Boundary router filter packets protecting server • First firewall provide access control and protection from server if they are hacked
  • 7. VPN • VPN is used to provide secure network links across networks • VPN is constructed on top of existing network media and protocols • On protocol level IPsec is the first choice • Other protocols are PPTP, L2TP
  • 8. VPN
  • 9. Intranets • An intranet is a network that employs the same types of services, applications, and protocols present in an Internet implementation, without involving external connectivity • Intranets are typically implemented behind firewall environments.
  • 11. Extranets • Extranet is usually a business-to-business intranet • Controlled access to remote users via some form of authentication and encryption such as provided by a VPN • Extranets employ TCP/IP protocols, along with the same standard applications and services
  • 12. Type is Firewalls • Firewalls fall into four broad categories • Packet filters • Circuit level • Application level • Stateful multilayer
  • 13. Packet Filter • Work at the network level of the OSI model • Each packet is compared to a set of criteria before it is forwarded • Packet filtering firewalls is low cost and low impact on network performance
  • 15. Circuit level • Circuit level gateways work at the session layer of the OSI model, or the TCP layer of TCP/IP • Monitor TCP handshaking between packets to determine whether a requested session is legitimate.
  • 17. Application Level • Application level gateways, also called proxies, are similar to circuit-level gateways except that they are application specific • Gateway that is configured to be a web proxy will not allow any ftp, gopher, telnet or other traffic through
  • 19. Stateful Multilayer • Stateful multilayer inspection firewalls combine the aspects of the other three types of firewalls • They filter packets at the network layer, determine whether session packets are legitimate and evaluate contents of packets at the application layer
  • 22. Future of Firewalls • Firewalls will continue to advance as the attacks on IT infrastructure become more and more sophisticated • More and more client and server applications are coming with native support for proxied environments • Firewalls that scan for viruses as they enter the network and several firms are currently exploring this idea, but it is not yet in wide use
  • 23. Conclusion • It is clear that some form of security for private networks connected to the Internet is essential • A firewall is an important and necessary part of that security, but cannot be expected to perform all the required security functions.