首页> 外文会议>IEEE International Symposium on High Performance Distributed Computing >CODO: Firewall Traversal by Cooperative On-Demand Opening
【24h】

CODO: Firewall Traversal by Cooperative On-Demand Opening

机译:Codo:防火墙通过合作按需开放遍历

获取原文

摘要

Firewalls and network address translators (NATs) cause significant connectivity problems along with benefits such as network protection and easy address planning. Connectivity problems make nodes separated by a firewall/NAT unable to communicate with each other. Due to the bidirectional and multi-organizational nature of grids, they are particularly susceptible to connectivity problems. These problems make collaboration difficult or impossible and cause resources to be wasted. This paper presents a system, called CODO, which provides applications end-to-end connectivity over firewalls/NATs in a secure way. CODO allows applications authorized through strong security mechanisms to traverse firewalls/NATs, while blocking unauthorized applications. This paper also formalizes the firewall/NAT traversal problem and clarifies how a traversal system fits in the overall security policy enforcement by a firewall/NAT.
机译:防火墙和网络地址转换器(NATS)导致显着的连接问题以及网络保护和简单地址规划等优势。连接问题使由防火墙/ NAT分隔的节点无法彼此通信。由于网格的双向和多组织性质,它们特别容易受到连接问题的影响。这些问题使合作困难或不可能浪费资源。本文介绍了一个称为Codo的系统,它以安全的方式提供了防火墙/ NAT的端到端连接。 Codo允许通过强安全机制授权的应用程序来遍历防火墙/ NAT,同时阻止未经授权的应用程序。本文还规范了防火墙/ NAT遍历问题,并阐明了防火墙/ NAT的整体安全策略实施方式如何符合遍历系统。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号