Network °æ (¾«»ªÇø)
·¢ ÐÅ ÈË: login (waiter), ÐÅ Çø: Networking
±ê Ìâ: ·À»ðǽ£¨×ªÔضþ£©
·¢ ÐÅ Õ¾: ×Ï ¶¡ Ïã
ÈÕ ÆÚ: Fri Apr 18 21:47:51 1997
³ö ´¦: riee1.hit.edu.c
¶þ. Proxy Service
Proxy ServiceʹÓÃÁ˺ÍPacket filter²»Í¬µÄ·½·¨¡£ProxyʹÓÃÒ»¸ö¿Í»§³ÌÐò(»òÐí
±»Ð޸Ĺý), ʹÓÃÕâ¸ö³ÆÐòÓëÌض¨µÄÖмä½áµã(Firewall)Á¬½Ó, È»ºóÖмä½áµãÓëÆÚÍûµÄ
·þÎñÆ÷½øÐÐʵ¼ÊÁ¬½Ó¡£ÓëPacket filterËù²»Í¬µÄÊÇ, ʹÓÃÕâÖÖÀàÐ͵ÄFirewall, Íⲿ
ÍøÂçÖ®¼ä²»´æÔÚÖ±½ÓÁ¬½Ó¡£Òò´Ë, ¼´Ê¹Firewall·¢ÉúÁËÎÊÌâ, ÍⲿÍøÂçÒ²ÎÞ·¨»ñµÃÓë
±»±£»¤µÄÍøÂçµÄÁ¬½Ó¡£ÎÒÃÇͨ³£°ÑÄǸöÖмä½áµã³Æ֮Ϊ"dual-homed Host"(Ë«¶ËÖ÷»ú)¡£
ProxyÌṩÁËÏêϸµÄ×¢²á(log)¼°Éó¼Æ(audit)¹¦ÄÜ, Õâ´ó´óÌá¸ßÀÖÍøÂçµÄ°²È«ÐÔ, Ò²
Ϊ¸Ä½øÏÖÓÐÈí¼þµÄ°²È«ÐÔÄÜÌṩÁË¿ÉÄÜÐÔ¡£Proxy serverÔËÐÐÔÚdual-homed HostÉÏ, Ëü
ÊÇ»ùÓÚÌض¨Ó¦ÓóÌÐòµÄ¡£ÎªÁËͨ¹ýProxyÖ§³ÖÒ»¸öеÄÐÒé, ±ØÐë¸Ä½øProxyÒÔÊÊÓ¦ÐÂÐ
Òé¡£Ò»¸öÁ÷ÐеÄProxy¼¯ÊÇTIS Internet Firewll Toolkit(FWTK), Ëü°üÀ¨Õë¶Ôtelnet¡¢
rlogin¡¢ftp¡¢X-Window¡¢http/Web¡¢NNTP/VSenet NewsµÄProxy¡£»¹ÓÐÒ»¸öͨÓõÄProxy
ϵͳÊÇSOCKS, Ëü¿ÉÒÔÓÃÀ´±àÒë³ÉClient¶ËÓ¦ÓóÌÐò, ʹÕâЩ³ÌÐòͨ¹ýFirewall¹¤×÷¡£
SOCKSµÄÓŵãÔÚÓÚÒ×ÓÚʹÓÃ, ¿ÉÊÇȱ·¦Éí·ÝÑéÖ¤ºÍ»ùÓÚÐÒé×¢²áµÄ¹¦ÄÜ¡£¶øFWTKÔòȱ·¦
×ã¹»µÄ͸Ã÷ÐÔ, Óû§±ØÐë¾¹ýÒ»¶¨µÄѵÁ·¡£×îеÄProxy ServerÔÚ͸Ã÷ÐÔ·½ÃæÓÐÁ˺ܴó
µÄ¸Ä½ø¡£
Proxy Serverͨ³£ÓÉÁ½¸ö²¿·Ö¹¹³É: server¶Ë³ÌÐòºÍclient³ÌÐò¡£Ï൱¶àµÄProxy
ServerÒªÇóʹÓù̶¨µÄClient³ÌÐò¡£ÀýÈçsocksÒªÇóÊÊÓ¦SICKSµÄClient³ÌÐò¡£Èç¹ûÍøÂç
¹ÜÀíÔ±²»ÄܸıäËùÓеÄserverºÍClient³ÌÐò, ϵͳ¾Í²»ÄÜÕý³£¹¤×÷¡£ProxyʹÍøÂç¹ÜÀíÔ±
ÓÐÁ˸ü´óµÄÄÜÁ¦¸ÄÉÆÍøÂçµÄ°²È«ÌØÐÔ¡£È»¶ø, ËüÒ²¸øÈí¼þ¿ª·¢Õß¡¢ÍøÂçϵͳԱºÍ×îÖÕÓÃ
»§´øÀ´Á˺ܴóµÄ²»±ã, Õâ¾ÍÊÇʹÓÃProxyµÄ´ú¼Û¡£Ò²ÓÐһЩ±ê×¼µÄClient³ÌÐò¿ÉÒÔÀûÓÃ
Proxy Serverͨ¹ýFirewallÔËÐÐ, Èçmail,FTPºÍtelnetµÈ¡£¼´±ãÈç´Ë, ×îÖÕÓû§Ò²Ðí
»¹ÐèҪѧϰÌض¨µÄ²½Öèͨ¹ýFirewall¡£
͸Ã÷ÐÔ¶Ô»ùÓÚProxy ServiceµÄFirewallÏÔÈ»ÊÇÒ»¸ö´óÎÊÌâ¡£¼´Ê¹ÊÇÄÇЩÉù³ÆÊÇ͸Ã÷
ÐÔFirewallµÄProxyÒ²ÆÚÍûÓ¦ÓóÌÐòʹÓÃÌض¨µÄTCP»òUDP¶Ë¿Ú¡£¼ÙÈçÒ»¸ö½ÚµãÔڷDZê×¼¶Ë
¿ÚÉÏÔËÐÐÒ»¸ö±ê×¼Ó¦ÓóÌÐò, Proxy½«²»Ö§³ÖÕâ¸öÓ¦ÓóÌÐò¡£Ðí¶àFirewallÔÊÐíϵͳ¹ÜÀí
Ô±ÔËÐÐÁ½¸öProxy¿½±´, Ò»¸öÔÚ±ê×¼¶Ë¿ÚÔËÐÐ, ÁíÒ»¸öÔڷDZê×¼¶Ë¿ÚÔËÐÐ, ³£Ó÷þÎñµÄ×î
´óÊýÄ¿È¡¾öÓÚ²»Í¨µÄFirewall²úÆ·¡£
»ùÓÚProxy ServiceµÄFirewall³§ÉÌÕýÔÚ¿ªÊ¼½â¾öÕâ¸öÎÊÌâ¡£»ùÓÚProxyµÄ²úÆ·¿ªÊ¼
¸Ä½ø³ÉÄܹ»ÉèÖó£Ó÷þÎñºÍ·Ç±ê×¼¶Ë¿Ú¡£È»¶ø, Ö»ÒªÓ¦ÓóÌÐòÐèÒªÉý¼¶, »ùÓÚProxyµÄ
Óû§»á·¢ÏÖËûÃDZØÐ뷢չеÄProxy¡£Ò»¸öÃ÷ÏÔµÄÀý×ÓÊÇÐí¶àµÄWebä¯ÀÀÆ÷ÖмÓÈëÁË´óÁ¿
µÄ°²È«´ëÊ©¡£FirewallµÄ¹ºÂòÕßÓ¦ÁôÐÄѯÎÊFirewall³§ÉÌËûÃǵIJúÆ·µ½µ×ÄÜ´¦ÀíÄÄЩӦ
ÓóÌÐò¡£
ÁíÍâ, »ùÓÚProxy ServiceµÄFirewall³£³£»áʹÍøÂçÐÔÄÜÃ÷ÏÔϽµ¡£ÔÚ¡¶Data Magzine¡
95Äê11Ôµı¨µÀ, Ï൱¶àµÄFirewall²»ÄÜ´¦Àí¸ß¸ºÔصÄÍøÂçͨÐÅ¡£ÔÚ±»Æä²âÊÔµÄ20ÖÖÉÌÒµ
FirewallÖÐ, ÔÚT1
Ìõ¼þÏÂ,Ö»ÓÐÁ½ÖÖûÓз¢Éúsession¶ªÊ§µÄÇé¿ö.ÓÉÓÚÒ»ÖÖ±»³ÆΪ"denial of service"
µÄºÚ¿ÍÊÖ·¨¶ÔFirewallµÄÍøÂçÐÔÄÜÌá³öÁ˺ܸߵÄÒªÇó,Èç¹ûFirewallµÄÍøÂçÐÔÄÜÌ«²î,
¾ÍºÜÈÝÒ×Êܵ½ÕâÖÖ¹¥»÷.
--
* *
^
¡ù Origin:¡¤×Ï ¶¡ Ïã pclinux¡¤[FROM: riee1.hit.edu.c]
Powered by KBS BBS 2.0 (http://dev.kcn.cn)
Ò³ÃæÖ´ÐÐʱ¼ä£º3.616ºÁÃë