Development of distributed firewall system architecture

Other Title(s)

تطوير نظام الجدار الناري المنتشر

Dissertant

al-Naimi, Isra Ali Abd al-Razzaq

Thesis advisor

al-Shammari, Mahmud Karim

Comitee Members

al-Qarawi, Salih
Abd Allah, Muhammad N.
al-Mukhtar, Mumtaz

University

University of Technology

Faculty

-

Department

Department of Computer Engineering

University Country

Iraq

Degree

Ph.D.

Degree Date

2007

English Abstract

With single-firewall architecture, firewalls often form the first, and most times the only, line of defense against attack.

Such architecture is practical for a small network, but it fails in large and enterprise networks.

Some of problems faced by single-firewall architecture are insider threats, bandwidth bottleneak, and low-trust level.

This brings in the need for the distributed firewall architecture, wherein security can be provided at different levels in the network (add extra layers of defense).

This aim is achieved by dividing the complete network into smaller parts namely subnets and securing each of which with its own firewall.

That leads to increase the performance of the firewall.

This thesis presents the first step towards such architecture - distributed firewall architecture for large network as the solution for some problems about issues related to network security. The proposed software was developed using Microsoft Visual Basic 6.0 programming language.

The implementation of the proposed system uses the packet filtering mechanism as a technical method to filter the IP packets and the Dual-Homed host as an architecture in which firewall components are managed to provide effective protection against unauthorized users.

In this thesis the distributed firewall model implemented by distribute the localized firewalls in three positions in the protected network to add extra levels for protection and to reduce the number of rules in the border firewall, thereby the load on the Border Firewall is also reduce. Hence architecture provides higher trust level, high performance and mitigates the Bandwidth bottleneck, defense in depth, all that resulting in secure network.

Main Subjects

Information Technology and Computer Science

No. of Pages

108

Table of Contents

Table of contents.

Abstract.

Abstract in Arabic.

Chapter One : Introduction.

Chapter Two : Network security.

Chapter Three : Distributed firewall.

Chapter Four : The proposed system design and implementation.

Chapter Five : Conclusions and future work.

References.

American Psychological Association (APA)

al-Naimi, Isra Ali Abd al-Razzaq. (2007). Development of distributed firewall system architecture. (Doctoral dissertations Theses and Dissertations Master). University of Technology, Iraq
https://search.emarefa.net/detail/BIM-748858

Modern Language Association (MLA)

al-Naimi, Isra Ali Abd al-Razzaq. Development of distributed firewall system architecture. (Doctoral dissertations Theses and Dissertations Master). University of Technology. (2007).
https://search.emarefa.net/detail/BIM-748858

American Medical Association (AMA)

al-Naimi, Isra Ali Abd al-Razzaq. (2007). Development of distributed firewall system architecture. (Doctoral dissertations Theses and Dissertations Master). University of Technology, Iraq
https://search.emarefa.net/detail/BIM-748858

Language

English

Data Type

Arab Theses

Record ID

BIM-748858