论文部分内容阅读
“病毒防火墙”这个概念早在两三年前就已经被大肆宣传了,但是那时所谓的病毒防火墙与防火的的意义还离得很远,它准确地说只是“病毒实时检测和清除系统”,只是反病毒软件的一种工作模式。它在运行时将病毒特征监控的程序驻留内存中,随时查看系统的运行中是否有病毒的迹象,包括下载存盘的文件和从 mail 附件保存下来的文件,以及监控网上邻居的共享目录。这种病毒防护实际上仍然无法防止病毒和恶意代码通过网络传播,Email用户可能每天还是要花费大量宝贵的时间去删除那些透过防火墙进入的包含病毒的 email。传统的防火墙是在受保护网络和外部网络之间建立的屏障,用户通过设定协议层上的规则来决定允许或阻止内网与外网之间的数据传输。防火墙通过NAT 和状态检测技术能有效地抵制包括DoS 在内的通常的黑客攻击,但是它对于隐藏在网页和 email 通信中的病毒和蠕
The concept of “antivirus firewall” was hyped as early as two or three years ago, but at the time the so-called virus firewall was far removed from the meaning of fire protection, which is more precisely the “real-time virus detection and removal system” It’s just a working model of anti-virus software. It keeps the program of virus signature monitoring in memory at runtime, and keeps track of whether there is any virus sign in the running of the system, including downloading and saving the file saved from the mail attachment, and monitoring the shared directory of the network neighborhood. This virus protection is actually still unable to prevent the spread of viruses and malicious code through the network, Email users may still have to spend every day a lot of valuable time to delete those through the firewall to enter the virus-containing email. The traditional firewall is a barrier between the protected network and the external network. The user can decide to allow or block the data transmission between the intranet and the extranet by setting the rules in the protocol layer. Firewalls can effectively counteract the usual hacker attacks, including DoS, through NAT and stateful detection techniques, but it is also effective against viruses and creeps hidden in web pages and email communications