Jump to content


Check out our Community Blogs

lasthell

Member Since 23 Dec 2007
Offline Last Active Sep 12 2017 06:26 PM
-----

#341632 Beating a Firewall

Posted by lasthell on 24 December 2007 - 01:02 AM

There is not a single firewall which can not be penetrated. The basic reason behind this is firewall only looks for ports and does not decode the protocol of the data flowing through that port. You can just make your firewall stronger not 100% penetration-proof.. First instead of blacklist of ports to be blocked, maintain the white list of ports to be allowed. You can embed NBA(Network behavior analysis) module to make firewall take more intelligent actions.
You need to use advanced IDS systems to decode application level protocols to take care of shortcomings.
  • 1


Recommended from our users: Dynamic Network Monitoring from WhatsUp Gold from IPSwitch. Free Download