Zorp is a new generation firewall. It is essentially a transparent proxy firewall, with strict protocol analyzing proxies, a modular architecture, and fine-grained control over the mediated traffic. Configuration decisions are scriptable with the Python based configuration language.
Zorp has been successfully deployed in demanding environments like the protection of high traffic web sites, or the protection of large intranets. Since the protocol analysis is strict and many of the common exploits violate the application protocol they are injected into, a large percentage of the attacks do not cross a Zorp based firewall even if the given service is permitted.
In a labor environment we could fully saturate a 100MBit ethernet link, and use up to about 600MBit of the bandwidth of an 1000MBit ethernet link. In real life situations we saturated a 10MBit internet link with 500 parallel sessions.
|
|
|
| 硬件架构 | 软件包大小 | 安装后大小 | 文件 |
|---|---|---|---|
| alpha | 97.6 kB | 516 kB | [文件列表] |
| amd64 | 97.3 kB | 512 kB | [文件列表] |
| armel | 96.0 kB | 492 kB | [文件列表] |
| hppa | 99.2 kB | 500 kB | [文件列表] |
| i386 | 96.9 kB | 496 kB | [文件列表] |
| ia64 | 105.6 kB | 548 kB | [文件列表] |
| m68k (非官方移植版) | 95.5 kB | 492 kB | [文件列表] |
| mips | 96.2 kB | 508 kB | [文件列表] |
| mipsel | 97.9 kB | 508 kB | [文件列表] |
| powerpc | 101.1 kB | 508 kB | [文件列表] |
| s390 | 100.0 kB | 504 kB | [文件列表] |
| sparc | 97.1 kB | 496 kB | [文件列表] |