8
Chapter 1: Understanding the Gauntlet Firewall
Application-Level Security Services (Proxies)
The software on the Gauntlet firewall includes security services on a per-application
protocol basis. As noted above, all packets, and therefore all application requests, go to
the firewall. On the firewall, proxy software relays information from one side of the
firewall to the other. The proxy prevents the applications on outside networks from
talking directly with the applications on your inside network, and vice versa. No IP
packets pass directly from one side of the firewall to the other. All data is passed at the
application level. (The “trusted ports” feature in this implementation is an exception to
this generalization.)
Each application generally talks through a different proxy that understands the protocol
for that application. Currently, the Gauntlet firewall includes proxies for the following
types of services:
•
Terminal services (TELNET and rlogin)
•
Electronic mail (SMTP and POP3)
•
File transfer services (FTP)
•
Remote Execution (Rsh)
•
Usenet news (NNTP)
•
Web services (HTTP, SHTTP, SSL)
•
Gopher services (Gopher, )
•
X Window services (X11)
•
Printing services (lp)
•
SQL services (Sybase SQL Server)
•
Audio service (Real Audio)
In addition, the Gauntlet firewall includes a generic plug-board proxy. This proxy
connects TCP traffic from a particular port on one side of the firewall to a particular port
on another system on the other side of the firewall. As with the service specific proxies,
no IP packets pass directly from one side of the firewall to the other. If you have not
installed a proxy for a service, that type of traffic does not pass through the firewall.
Because the proxies use the same protocols to communicate as the applications, you do
not need to modify the original client or server applications. For example, when the
TELNET application connects to the firewall it and the proxy both communicate using
Содержание Gauntlet
Страница 1: ...Gauntlet for IRIX Administrator s Guide Document Number 007 2826 004 ...
Страница 16: ......
Страница 26: ......
Страница 27: ...PART ONE Understanding the Gauntlet Internet Firewall I ...
Страница 28: ......
Страница 43: ...PART TWO Configuring and Using Proxies II ...
Страница 44: ......
Страница 50: ......
Страница 56: ......
Страница 64: ......
Страница 72: ......
Страница 94: ......
Страница 109: ...PART THREE Administering General Gauntlet Firewall Services III ...
Страница 110: ......
Страница 140: ......
Страница 146: ...120 Chapter 17 The Graphical Management Interface Figure 17 3 Gauntlet Introductory Management Form 1 of 3 ...
Страница 147: ...Introductory Management Form 121 Figure 17 4 Gauntlet Introductory Management Form 2 of 3 ...
Страница 148: ...122 Chapter 17 The Graphical Management Interface Figure 17 5 Gauntlet Introductory Management Form 3 of 3 ...
Страница 150: ...124 Chapter 17 The Graphical Management Interface Figure 17 6 Networks and Interfaces Configuration Form 1 of 2 ...
Страница 151: ...Networks and Interfaces Configuration Form 125 Figure 17 7 Networks and Interfaces Configuration Form 2 of 2 ...
Страница 155: ...Routing Configuration Form 129 Figure 17 8 Routing Configuration Form ...
Страница 162: ...136 Chapter 17 The Graphical Management Interface Figure 17 10 Proxy Servers Configuration Form 1 of 3 ...
Страница 163: ...Proxy Servers Configuration Form 137 Figure 17 11 Proxy Servers Configuration Form 2 of 3 ...
Страница 164: ...138 Chapter 17 The Graphical Management Interface Figure 17 12 Proxy Servers Configuration Form 3 of 3 ...
Страница 170: ...144 Chapter 17 The Graphical Management Interface Figure 17 13 DNS Configuration Form 1 of 2 ...
Страница 171: ...DNS Configuration Form 145 Figure 17 14 DNS Configuration Form 2 of 2 ...
Страница 177: ...Sendmail on Gauntlet Servers 151 Figure 17 15 Sendmail Configuration Form ...
Страница 187: ...Logfiles and Reports Configuration Form 161 Figure 17 20 Reports and Logfiles Form 1 of 2 ...
Страница 191: ...Authorizing Users Form 165 Figure 17 22 Authorizing Users Form ...
Страница 192: ...166 Chapter 17 The Graphical Management Interface Figure 17 23 Add User Form ...
Страница 214: ......
Страница 232: ......
Страница 233: ...Appendixes IV ...
Страница 234: ......
Страница 294: ......
Страница 305: ......