摘要
1 引言传统的防火墙设计基于两大假设:①在防火墙内部各主机是受信的。②防火墙外部每一个访问都是攻击性访问,至少是有潜在攻击性的访问。这种假设越来越不能适应Internet发展的现状。大量的事实告诉我们来自内外结合的攻击是当前企业网最大的威胁。显然传统防火墙结构是难以解除这一威胁的。
With the rapid development of Internet in the world,more and more people pay attention to the importance of the information security in the network. The thesis brings forward the architecture of new hybrid firewall including distributed concept and IPSec technology. It resolves the problems that are resolved difficultly by the traditional firewall.
出处
《计算机科学》
CSCD
北大核心
2000年第8期18-20,共3页
Computer Science
基金
教育部科学技术重点项目资助