A firewall instance of Linux

Source: Internet
Author: User
Tags firewall linux

The Astaro security Linux firewall is used to manage data traffic between the internal network and the external network. Administrators can control each protocol, blocking or allowing access to any one of the internal networks, servers, services, and user groups. The firewall checks all online information (Baotou) as well as the application information (payload) to detect and block suspicious data traffic. The firewall is installed on a single standard PC device, and he must exist as the only export of the internal network, so as to play the role of a security guard.

Firewall Feature Description:

Stateful inspection packet filtering (Stateful Packet inspection)

Astaro Security Linux manages the data transfer between the Internet and the internal network, servers, and users by checking the network header. With an easy-to-use graphical interface, administrators can quickly work out rules that block or allow two of information sources and destination sites to be transmitted through protocols or ports.

Astaro Security Linux by checking personal information while Astaro Security Linux also discovers attacks or disturbances to normal programs by tracking the results of ongoing connections.

Packet filtering for application layer depth

Astaro Security Linux Firewall, using the application agent to scan the application-related packet transport content (payload), so as to ensure that it and network transport, e-mail, DNS and other broad application types of rules match.

Security Agent

Astaro Secur Linux provides a comprehensive representation of the following protocols.

These agents simplify management, enabling administrators to activate or cancel protocols and features quickly and easily, such as content filtering, buffering, whitelist and blacklist, file extension filtering, and MIME error checking.

HTTP |  DNS | SOCKS |  POP3 | Ident | Smtp

NAT address Translation and address camouflage

Dynamic and static network address translation (NAT) and the internal IP address hidden in the "public" IP address can effectively prevent hackers from the internal network, servers and users to obtain information.

DoS Protection

Astaro Security Linux Blocks common DoS attacks, such as TCP SYN Flood, ICMP Flood, UDP Flood, Smurf, Trinoo, and IP spoofing.

Bandwidth control and QoS



Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.