Design of the host guard firewall for network protection

  • Authors:
  • Kamel H. Rahouma;Khalid S. Nasr

  • Affiliations:
  • Electrical Engineering Department, Faculty of Engineering, Minia University, Minia, Egypt;Electrical Engineering Department, Faculty of Engineering, Minia University, Minia, Egypt

  • Venue:
  • ISP'08 Proceedings of the 7th WSEAS international conference on Information security and privacy
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper presents a new design for a packet filtering firewall, called Host Guard Firewall (HGF) which helps to mitigate the most pressing problems facing the global Internet It presents also a new designed Host Guard Protocol (HGP) which help to authenticate the authorized packet. The new designed HGF firewall acts in the reverse direction like a military check point that does not allow any one to cross the point without an authenticated permission. The authenticated permission here is an authentication mark given to the passing authorized packets. The HGF is used as a DoS defense system deployed at a source-end network. The HGP guarantees the authenticity between the hosts on the network. This is done by signing the trusted outgoing packets with the HGP authentication mark which is the permission of passing of these packets through the network. The HGP mark is proposed as a puzzle which is generated and identified with the same intended programs. The authentication mark could be generated and protected using electronic and encryption means at the data link layer of the open system interconnected network configuration.