Free Sample

The Complete Handbook of Network Security & Firewall Devices

A Practical Reference for Buyers, Installers, and Maintainers of Network Security & Firewall Devices

by Alumigogo Books

Chapter 1: Understanding Network Security & Firewall Devices

Every network, from the two devices on your desk to a multinational corporation's global infrastructure, operates on a simple premise: it must move data from one place to another. The very openness that makes this possible is also what makes it dangerous. Network Security & Firewall Devices are the mechanisms we place between our trusted internal networks and the vast, untrusted outside world to control precisely what data is allowed to pass through. They are not a single silver bullet, but a category of hardware and software designed to enforce a policy: this traffic is permitted, and this traffic is not.

To understand what these devices actually do, you need to think about them as gatekeepers with a very specific set of rules. They sit inline, meaning all network traffic destined for your internal systems must physically or logically cross through them. As data packets travel through, the device inspects them, checks them against a set of pre-defined security rules (the policy), and then makes a decision: allow the packet through, block it, or just log it for later analysis. This decision is made in fractions of a millisecond, and modern enterprise devices are designed to do this for millions of concurrent connections on a permanent basis.

The core concept behind this inspection, and the foundation for all modern firewalls, is the "packet." Everything you do on a network - sending an email, opening a web page, transferring a file - is

Enjoyed the sample?

Buy the full book →