Skip to main navigation Skip to search Skip to main content

An experimental study on firewall performance: Dive into the bottleneck for firewall effectiveness

  • Chenghong Wang
  • , Donghong Zhang
  • , Hualin Lu
  • , Jing Zhao*
  • , Zhenyu Zhang
  • , Zheng Zheng
  • *Corresponding author for this work
  • Harbin Engineering University
  • CAS - Institute of Software

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Performance is an important indicator of firewalls effectiveness, which represents capability of firewalls handling network requests. ModSecurity and iptables, two representative firewalls of packet filtering and application firewall, are studied experimentally in this paper. Firstly, we develop the experiments to test the capacity of these two kinds of firewalls. Secondly, we locate the bottlenecks for system resources such as CPU and memory usage that affect the firewalls performance by analyzing the collecting data from firewalls experiments. Finally, with the same settings, we compare the performance of the two kinds of firewalls by varying the parameters such as request rate, packet length, and maximum concurrent connections.

Original languageEnglish
Title of host publication2014 10th International Conference on Information Assurance and Security, IAS 2014
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages71-76
Number of pages6
ISBN (Electronic)9781479980994
DOIs
StatePublished - 19 Mar 2014
Event2014 10th International Conference on Information Assurance and Security, IAS 2014 - Okinawa, Japan
Duration: 28 Nov 201430 Nov 2014

Publication series

Name2014 10th International Conference on Information Assurance and Security, IAS 2014

Conference

Conference2014 10th International Conference on Information Assurance and Security, IAS 2014
Country/TerritoryJapan
CityOkinawa
Period28/11/1430/11/14

Keywords

  • application firewall
  • hardware resources
  • network security
  • packet filtering firewall
  • performance bottleneck

Fingerprint

Dive into the research topics of 'An experimental study on firewall performance: Dive into the bottleneck for firewall effectiveness'. Together they form a unique fingerprint.

Cite this