Design and Implementation of IPv6 Transparent Firewall with Virus Filtering

张玉芳,熊忠阳,赖苏,张科,刘君,王银辉
DOI: https://doi.org/10.3969/j.issn.1002-137x.2009.04.028
2009-01-01
Computer Science
Abstract:The existing packet filtering firewall is helpless for the spread of network virus,making a study on the designed of anti-virus firewall is very necessary.This paper designed and realized an experimental anti-virus firewall in IPv6.The firewall was realized in the form of kernel loadable module,and can be used to filter virus above link layer.The special TCP/IP used for firewall is rebuilt because transparent mode firewall cannot be run in the original TCP/IP of Linux.The firewall can get and resolve IPv6 packets and the IPv6 in IPv4 tunnel packet.It can also traverse every extension header until higher protocol layers.The firewall uses open source software to filter the virus in the network and ensures network security.For working in the kernel mode,the detecting speed was improved.The experimental results show that the performance and function of the firewall achieve the desired objectives.
What problem does this paper attempt to address?