Introduction To Network Security
Introduction To Network Security
Firewall
Intranet
Public
Un-trusted
Unreliable IP networks
Presentation Layer
SNMP
SMTP
HTTP
DNS
NFS
FTP
FTP
Session Layer
Network Layer IP
Original
Application Layer
Message
Original
Application Layer
Message
Original
Application Layer
Message
Original
Application Layer
Message
Original
Application Layer
Message
Original
Application Layer
Message
Original
Application Layer
Message
Packet
Network Layer
Packet
Original
Application Layer
Message
Original
Application Layer
Message
Implemented in end-hosts
Advantages
- Extend application without involving operating system.
- Application can understand the data and can provide the
appropriate security.
Disadvantages
- Security mechanisms have to be designed independently of
each application.
Implemented in end-hosts
Advantages
- Existing applications get security seamlessly
Disadvantages
- Protocol specific
Advantages
- Provides seamless security to application and transport layers
(ULPs).
- Allows per flow or per connection security and thus allows for
very fine-grained security control.
Disadvantages
- More difficult to to exercise on a per user basis on a multi-
user machine.
Advantages
- Speed.
Disadvantages
- Not scalable.
- Need dedicated links.
protected
Tunnel Mode: protect the entire IP payload
protected
Applicatio Applicatio
n n
Layer Protected Protected Layer
Transport Data Data Transport
Layer Layer
Intern
IP et IP
Layer Layer
SG = Security Gateway
IPSec IPSec
IP Layer IP Layer
Data Link Layer Data Link Layer
Host A Host B
Packet
Packet SAD
SAout
SPD
IPSec policies
SPD = Security Policy Database
SAD = Security Association Database
SA = Security Association
SPD
IPSec policies
SPD = Security Policy Database
SAD = Security Association Database
SA = Security Association
Internet
SG
Wireless
Internet
Secured networks.
Saves
cost tremendously from reduction of
equipment and maintenance costs.
Scalability
3 types
Intranet – Within an organization
Extranet – Outside an organization
Remote Access – Employee to Business