作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (12): 114-116. doi: 10.3969/j.issn.1000-3428.2009.12.040

• 安全技术 • 上一篇    下一篇

Windows平台通用个人防火墙的分析与设计

刘鹏远,孙宝林,桂 超   

  1. (湖北经济学院计算机学院,武汉 430205)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-06-20 发布日期:2009-06-20

Analysis and Design of Common Personal Firewall on Windows Platform

LIU Peng-yuan, SUN Bao-lin, GUI Chao   

  1. (School of Computer, Hubei University of Economy, Wuhan 430205)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-06-20 Published:2009-06-20

摘要: 定义个人防火墙系统应具备的主要功能,其核心技术是网络数据包的过滤。给出Windows系统网络协议分层体系结构,在对OSI参考模型和Windows网络体系结构对比分析的基础上给出实现包过滤的不同技术路线。对各技术路线进行评估,选择SPI作为实现方案,给出使用SPI进行包过滤的技术要点,个人防火墙系统的运行表明其具有较快的包过滤处理性能。

关键词: 个人防火墙, 包过滤, 传输层设备接口过滤驱动程序

Abstract: The main functional attributes of personal firewall system are defined. The core technology for realizing is packets filtering. The Architecture of Window’s Network(AWN) is presented, and on the basis of comparison between OSI and AWN, several solutions of packet filtering are listed. The solution using SPI is selected after reviewing and its key realization points to filter packets are offered. The personal firewall system realized using SPI shows good performance for filter network packets.

Key words: personal firewall, packet filter, transport layer device interface filter driver

中图分类号: