Zorp is a new generation firewall. It is essentially a transparent proxy firewall, with strict protocol analyzing proxies, a modular architecture, and fine-grained control over the mediated traffic. Configuration decisions are scriptable with the Python based configuration language.
Zorp has been successfully deployed in demanding environments like the protection of high traffic web sites, or the protection of large intranets. Since the protocol analysis is strict and many of the common exploits violate the application protocol they are injected into, a large percentage of the attacks do not cross a Zorp based firewall even if the given service is permitted.
In a labor environment we could fully saturate a 100MBit ethernet link, and use up to about 600MBit of the bandwidth of an 1000MBit ethernet link. In real life situations we saturated a 10MBit internet link with 500 parallel sessions.
|
|
|
| アーキテクチャ | パッケージサイズ | インストールサイズ | ファイル |
|---|---|---|---|
| alpha | 97.6 kB | 516 kB | [ファイル一覧] |
| amd64 | 97.3 kB | 512 kB | [ファイル一覧] |
| armel | 96.0 kB | 492 kB | [ファイル一覧] |
| hppa | 99.2 kB | 500 kB | [ファイル一覧] |
| i386 | 96.9 kB | 496 kB | [ファイル一覧] |
| ia64 | 105.6 kB | 548 kB | [ファイル一覧] |
| m68k (非公式の移植版) | 95.5 kB | 492 kB | [ファイル一覧] |
| mips | 96.2 kB | 508 kB | [ファイル一覧] |
| mipsel | 97.9 kB | 508 kB | [ファイル一覧] |
| powerpc | 101.1 kB | 508 kB | [ファイル一覧] |
| s390 | 100.0 kB | 504 kB | [ファイル一覧] |
| sparc | 97.1 kB | 496 kB | [ファイル一覧] |