Skip to main content

FIREWALL


WAHT IS A FIREWALL

1. Firewall Is A Network Security Device Which Is Used To Manage And Filter The Incoming And Outgoing Network Traffic. 

2. Firewall Is Handle Or Filter The Traffic Between Private And Public Network. The Main Function Of Firewall Is To Manage The Unwanted Access Over A Network And Also Out The Unfaith Traffic From The Network. 

3. Firewall Exist Since 1980's To Filter The Packet Over The Network. 

THERE ARE MANY TYPES OF FIREWALL

 1. Packet Filtering Proxy Services · 

2. Stateful Inspection
 
3. Next Generation Firewall.

WORIKING OF FIREWALL

1. Firewall Basically Work To Filter The Traffic And Remove The Malicious Activity Firewall Block The Malicious Access Over A Network It Senses Quickly And Detect The Outside Attack And Also Notify The Legitimate User Over A Network.

2. Especially Next Generation Firewalls, Focus On Blocking Malware And Application-Layer Attacks.

PACKET FILTERING INSPECTION

Packet Filtering Is A Firewall Technique Used To Control Network Access By Monitoring Outgoing And Incoming Packets And Allowing Them To Pass Or Halt Based On The Source And Destination Internet Protocol (IP) Addresses, Protocols And Ports.



____________


STATEFUL  INSPECTION

A Stateful Inspection Firewall Is A Type Of Firewall That Tracks And Monitors The State Of Active Network Connections. This Allows The Firewall To Make More Informed Decisions About Whether To Allow Or Deny Traffic, As It Can See The Context Of The Traffic And How It Relates To Existing Connections.

Stateful Inspection Firewalls Work By Examining The Headers Of Network Packets. The Headers Contain Information About The Source And Destination Of The Packet, The Protocol Being Used, And The Type Of Data Being Transferred. The Firewall Uses This Information To Track The State Of Each Connection And To Determine Whether The Traffic Is Allowed Or Denied.

Stateful Inspection Firewalls Are More Secure Than Stateless Firewalls, Which Only Examine The Headers Of Network Packets. Stateless Firewalls Can Only See The Source And Destination Of A Packet, So They Cannot See The Context Of The Traffic Or How It Relates To Existing Connections. This Makes Them More Vulnerable To Attacks That Exploit The State Of Network Connections.

____________

NEXT GENERATION FIREWALL(NGFW)

A NEXT-GENERATION FIREWALL (NGFW) IS A NETWORK SECURITY DEVICE THAT PROVIDES ADVANCED FEATURES BEYOND TRADITIONAL FIREWALLS, SUCH AS APPLICATION AWARENESS AND CONTROL, INTEGRATED INTRUSION PREVENTION, AND THREAT INTELLIGENCE. NGFWS CAN HELP ORGANIZATIONS TO PROTECT THEIR NETWORKS FROM A WIDE RANGE OF THREATS, INCLUDING MALWARE, INTRUSION PREVENTION, AND APPLICATION-LAYER ATTACKS.

____________

Comments

Popular posts from this blog

DOS AND DDOS ATTACK

A Dos (Denial-Of-Service) Attack and A DDOS (Distributed Denial-Of-Service) Attack Are Both Attempts to Make a Computer System or Network Resource Unavailable to Legitimate Users. However, They Differ in How They Achieve This: Dos Attack: Imagine A Single Person Throwing Rocks at A Castle Gate. A This Person Represents the Attacker, And the Rocks Represent the Malicious Traffic. The Castle Gate Represents the Target System or Network Resource. The Attacker Keeps Throwing Rocks, Trying to Overwhelm the Gate's Defenses and Gain Entry. Dos Attacks Are Typically Launched from A Single System. They Can Be Effective Against Small Systems or Networks, But Larger Systems Can Often Withstand Them. DDos Attack: Imagine An Army Throwing Rocks at A Castle Gate. This Army Represents the Attacker, And the Rocks Represent the Malicious Traffic. The Castle Gate Represents the Target System or Network Resource. The Attackers Coordinate Their Attack, Throwing Rocks from Multiple Directions at Once. ...

Types Of Attack in Network

Common Network Attacks Explained. 1. Overwhelming a Network (DoS/DDoS): Imagine a restaurant that's flooded with too many customers. In a DoS/DDoS attack: A website is overwhelmed with too much traffic. 2. Eavesdropping on Conversations (MitM): Imagine someone listening in on your phone call. In a MitM attack: An attacker listens to your online conversations. 3. Tricking You (Phishing): Imagine receiving a fake email from your bank. In phishing: Attackers try to trick you into giving them your personal information. 4. Finding a Weakness in a Website (SQL Injection): Imagine finding a hole in a fence. In an SQL injection attack: An attacker finds a weakness in a website to steal or change data. 5. Planting a Hidden Camera (XSS): Imagine someone hiding a camera in a party. In an XSS attack: An attacker hides harmful code on a website to spy on you. 6. Guessing Your Password (Password Attck): Imagine trying to guess a friend's password. In a pas...

FLAOT ROUTE + NAT

  TOPOLOGY GO TO ISP-1 ROUTER AND ENTER THIS COMMANDS IN CONFIGURATION TERMINAL MODE . inter f0/0 ip address 202.56.215.1 255.255.255.0 no shutdown exit ip dhcp excluded-address 202.56.215.1 202.56.215.20  ip dhcp pool isp1 network 202.56.215.0 255.255.255.0 default-router 202.56.215.1 exit inter loopback 0  ip address 8.8.8.8 255.0.0.0 no shutdown exit write GO TO ISP- 2 ROUTER AND ENTER THIS COMMANDS IN CONFIGURATION TERMINAL MODE . inter f1/1 ip address 200.200.200.1 255.255.255.0 no shutdown exit ip dhcp excluded-address 200.200.200.1 200.200.200.100  ip dhcp pool isp2 network 200.200.200.0 255.255.255.0 default-router 200.200.200.1 exit inter loopback 0  ip address 8.8.8.8 255.0.0.0 no shutdown exit write GO TO R1 ROUTER AND ENTER THIS COMMANDS IN CONFIGURATION TERMINAL MODE . inter fa0/0 ip address 192.168.100.1 255.255.255.0 no shut exit inter f1/0 ip address dhcp no shutdown inter f1/1 ip address dhcp no shut ip dhcp pool manan network 192.168.100.0 255....