摘要
在现有各种防火墙技术中,包过滤防火墙具有速度快、安全性较高等优点。而现有工作站中又广泛采用的UNIX系统都是基于系统V,它们的网络协议栈采用流(STREAMS)机制实现。文中就是基于这个背景,设计并实现了包过滤防火墙。实践证明,基于流机制的包过滤防火墙具有隔离性好、通用性强、管理方便等优点。
Among all kinds of firewall technology, packets filtrating firewall has the characteristic of high speed and high security. The operating system of workstations is widely based on UNIX System V, and STREAMS mechanism is adopted in the implement of their network protocol stack. In this paper, we design and accomplish a packets filtrating firewall in this condition. In practices, it can be proved that packets filtrating firewall based on streams mechanism has the merits of good isolation, high universality and easy management.
出处
《计算机工程与设计》
CSCD
北大核心
2000年第6期35-39,共5页
Computer Engineering and Design