Network Convergence and the NAT/Firewall Problems
نویسندگان
چکیده
Voice over IP technology is fueling the rapid growth on network convergence and we are seeing the successful deployment of converged networks within enterprises. However, most enterprises today sit behind Firewalls and also use private IP addressing behind NATs (Network Address Translators). These NATs and Firewalls cause significant problems for multimedia over IP to work and function properly. There are presently two standards for VoIP signaling: H.323 (from ITU-T) and SIP (Session Initiation Protocol from IETF). In this paper we present the details of the problems and issues associated with NATs/Firewalls and then survey some ways to solve this problem for SIP. There is no single best solution yet. However, this paper discusses how such a simple and elegant solution can be built. This problem remains a significant obstacle for the successful adoption of convergence as security has become even more important to enterprises than adoption of emerging technologies.
منابع مشابه
Research on Redirect Technology Based on Interest Association Rules in NAT
For lack of resources for IP address and the Network attack become diversity, the NAT technology is used for address extension. So, the requirement of Network security is improved. This paper mainly research on the security policy of NAT, and proposes Intrusion Redirect, protection of the Network effectively. Base on Apriori mining, proposes Interest association rules for the IDS Intrusion log ...
متن کاملFor a Secure Mobile IP and Mobile IPv6 Deployment
This paper addresses the security problems raised by the introduction of Mobile IP and Mobile IPv6 protocols into existing networks. First, a protocol-based analysis highlights several malicious attacks like masquerade, and denial of service. Then a classical network architecture is studied for the best placements of mobility entities from the security point of view. Firewalls and, possibly NAT...
متن کاملExtending Firewall Session Table to Accelerate NAT, QoS Classification and Routing
security and QoS are the two most precious objectives for network systems to be attained. Unfortunately, they are in conflict, while QoS tries to minimize processing delay, strong security protection requires more processing time and cause packet delay. This article is a step towards resolving this conflict by extending the firewall session table to accelerate NAT, QoS classification, and routi...
متن کاملEvaluation of Three Approaches for CORBA Firewall/NAT Traversal
Applications that use CORBA as communication layer often have some restrictions for multi-domain deployment. This is particularly true when they have to face firewall/NAT traversal. Furthermore, nowadays there isn’t a well-accepted unique or standardized solution adopted by all ORBs, compelling applications using this middleware to use proprietary solutions that sometimes do not address the env...
متن کاملInternet Engineering Task Force ( IETF ) D
The Port Control Protocol allows an IPv6 or IPv4 host to control how incoming IPv6 or IPv4 packets are translated and forwarded by a Network Address Translator (NAT) or simple firewall, and also allows a host to optimize its outgoing NAT keepalive messages.
متن کامل