search query: @keyword nat / total: 25
reference: 4 / 25
« previous | next »
Author:Pahlevan, Maryam
Title:Signaling and Policy Enforcement for Co-operative Firewalls
Publication type:Master's thesis
Publication year:2013
Pages:xii + 105 s. + liitt. 14      Language:   eng
Department/School:Tietoliikenne- ja tietoverkkotekniikan laitos
Main subject:Tietoverkkotekniikka   (S3029)
Supervisor:Kantola, Raimo
Instructor:Beijar, Nicklas
Electronic version URL: http://urn.fi/URN:NBN:fi:aalto-201305216411
OEVS:
Electronic archive copy is available via Aalto Thesis Database.
Instructions

Reading digital theses in the closed network of the Aalto University Harald Herlin Learning Centre

In the closed network of Learning Centre you can read digital and digitized theses not available in the open network.

The Learning Centre contact details and opening hours: https://learningcentre.aalto.fi/en/harald-herlin-learning-centre/

You can read theses on the Learning Centre customer computers, which are available on all floors.

Logging on to the customer computers

  • Aalto University staff members log on to the customer computer using the Aalto username and password.
  • Other customers log on using a shared username and password.

Opening a thesis

  • On the desktop of the customer computers, you will find an icon titled:

    Aalto Thesis Database

  • Click on the icon to search for and open the thesis you are looking for from Aaltodoc database. You can find the thesis file by clicking the link on the OEV or OEVS field.

Reading the thesis

  • You can either print the thesis or read it on the customer computer screen.
  • You cannot save the thesis file on a flash drive or email it.
  • You cannot copy text or images from the file.
  • You cannot edit the file.

Printing the thesis

  • You can print the thesis for your personal study or research use.
  • Aalto University students and staff members may print black-and-white prints on the PrintingPoint devices when using the computer with personal Aalto username and password. Color printing is possible using the printer u90203-psc3, which is located near the customer service. Color printing is subject to a charge to Aalto University students and staff members.
  • Other customers can use the printer u90203-psc3. All printing is subject to a charge to non-University members.
Location:P1 Ark Aalto  1237   | Archive
Keywords:CES
NAT
NAT traversal
CETP
tunneling
address exhaustion
firewall
Abstract (eng):The Internet environment has been changing dramatically during the recent years.
Plenty of new requirements and problems such as the IPv4 address shortage, traversing middle boxes and mobility that cannot be solved with the current Internet architecture have emerged.
Among those problems, the IPv4 address exhaustion is recognized as one of the key challenges in the original Internet design.
The reason is the unprecedented growth in the number of user devices and regular network nodes which are addressed with IPv4 locators.Several solutions including Network Address Translator (NAT) and IPv6 (a new version of IP) have been proposed to alleviate the scalability problem.
NAT postpones the depletion of the IP address space by reusing the IPv4 address space and isolating customer networks from the public network; it makes hosts in the private address space unreachable from the public Internet.
To be exact, a NAT, like a strict firewall, filters out all inbound data flows while outbound traffic from private hosts can go through it.
The proposed NAT traversal techniques by IETF have many disadvantages.
The Customer Edge Switching aims to replace NAT with a new device called co-operative firewall and eliminate the problems of existing NAT traversal solutions.
A CES device provides global connectivity over the Internet using different types of identifiers, global unique domain names and private addresses.In this thesis, Customer Edge Traversal Protocol (CETP) is introduced as an edge-to-edge protocol and prototyped so as to tunnel data and control information while transporting the source and destination IDs from one customer network to another.
This work also includes the policy management of co-operative firewalls.
The testing results assure the suitability of CETP for inter-CES communication and edge-to-edge signaling.
ED:2013-05-21
INSSI record number: 46744
+ add basket
« previous | next »
INSSI