
17.5.5 Static IP filtering
IP firewalls work by filtering IP packets on the network. Each IP
packet trying to cross the IP layer is compared with an Access
Control List (ACL), using rules concerning the source and destina-
tion address, protocol, service, time frame, etc. These rules are used
to decide whether the packet is allowed to cross the firewall. Such
static filtering devices, like filtering routers, provide a very simplistic
filtering, with a low level of protection.
17.6 Demilitarized zone focus
The DMZ is the bridge between the controlled information system
and the external world. This is where very important security mech-
anisms take place. ...