The Optimization and Implementation of Iptables Rules Set on linux

被引:6
|
作者
Xuan, Lei-fei [1 ]
Wu, Pei-fei [1 ]
机构
[1] Hangzhou Vocat & Tech Coll, Informat Engn Inst, Hangzhou, Zhejiang, Peoples R China
关键词
linux; firewall; iptables; rules set; optimization;
D O I
10.1109/ICISCE.2015.223
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Firewall,as a mechanism of compulsory access control between the network or system,is an important means to ensure the network security.Firewall can be a very simple filter,but also it can be a carefully targeted gateway.But the principle is the same,which is monitoring and filtering all the information exchanged in internal and external networks.Linux as an open source operating system,is famous for it's stability and security.netfilter/iptables is a firewall system based on linux which has a great function.This thesis first analysed the working principle of iptables,then introduced iptables rule set,and last proposed an effective algorithm to optimize the rules set which is implemented based on linux system.In the part of implementation,some key code of the algorithm are given.
引用
下载
收藏
页码:990 / 993
页数:4
相关论文
共 50 条
  • [1] Design and implementation of firewall security policies using Linux iptables
    Mihalos M.G.
    Nalmpantis S.I.
    Ovaliadis K.
    Journal of Engineering Science and Technology Review, 2019, 12 (01): : 80 - 86
  • [2] IPTables规则保护Linux安全
    许红军
    网络安全和信息化, 2018, (10) : 131 - 135
  • [3] Accelerating Linux Security with eBPF iptables
    Bertrone, Matteo
    Miano, Sebastiano
    Risso, Fulvio
    Tumolo, Massimo
    SIGCOMM'18: PROCEEDINGS OF THE ACM SIGCOMM 2018 CONFERENCE: POSTERS AND DEMOS, 2018, : 108 - 110
  • [4] Securing Linux with a Faster and Scalable Iptables
    Miano, Sebastiano
    Bertrone, Matteo
    Risso, Fulvio
    Bernal, Mauricio Vasquez
    Lu, Yunsong
    Pi, Jianwen
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2019, 49 (03) : 2 - 17
  • [5] The design of an embedded system based on ARM microprocessor and implementation of an IP-sharer with IPtables of Linux
    Zhang Siquan
    Chen Tiequn
    Xing, Cai
    2007 IEEE INTERNATIONAL CONFERENCE ON CONTROL AND AUTOMATION, VOLS 1-7, 2007, : 2699 - +
  • [6] 使用iptables构建Linux防火墙
    施怡
    福建电脑, 2004, (10) : 71 - 63
  • [7] Linux中Netfilter/iptables的研究与应用
    赵亚楠
    马兆丰
    中国科技论文, 2014, 9 (10) : 1174 - 1177
  • [8] Detecting and preventing peer-to-peer connections by Linux iptables
    Othman, Mohamed
    Kermanian, Mostafa Nikpour
    INTERNATIONAL SYMPOSIUM OF INFORMATION TECHNOLOGY 2008, VOLS 1-4, PROCEEDINGS: COGNITIVE INFORMATICS: BRIDGING NATURAL AND ARTIFICIAL KNOWLEDGE, 2008, : 2243 - 2248
  • [9] Netfilter/Iptables与Linux安全性研究
    管希萌
    兰州文理学院学报(自然科学版), 2004, (04) : 28 - 30
  • [10] Linux中Netfilter/IPtables的应用研究
    胡安磊
    周大水
    李大兴
    计算机应用与软件, 2004, (10) : 56 - 57