An open system for transparent firewall authentication and user traffic identification within corporate intranets

  • Authors:
  • Roberto D. Rubino

  • Affiliations:
  • New Jersey Institute of Technology, Newark, NJ, USA

  • Venue:
  • SIGITE '08 Proceedings of the 9th ACM SIGITE conference on Information technology education
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

Classical firewalls provide network security by matching a network flow's 5-tuple information against user defined packet filters loaded into memory. In today's dynamic network environments where threats can be both outside and inside a network, it is not sufficient to simply identify the originator of a data packet by a source address and port pair. It is necessary to identify the user or entity responsible for the transmission. An open and vendor neutral authentication scheme inspired by the IPSEC Authentication Header is presented which allows for the creation of firewall packet filters based on user identity.