Solved

HomeWork-Network Security using TCP

Posted on 2011-03-20
4
469 Views
Last Modified: 2012-05-11
Hello:

I am interested in learning which protocol is best either TCP, UDP, or Tunneling (Proxy). Please see assignment question below.

Question:
Suppose there are two separate domains, one at SECRET (S) and one at Top Secret (TS), with a guard between them. Assume the guard is truly a “diode”, allowing packets in only one direction. What direction will the guard allow traffic to flow? Suppose you want to move traffic in the allowed direction. Can you run an ordinary TCP connection through the guard to pass it through the guard? Explain why/why not, and if not, what protocol can you use to move the data?
0
Comment
Question by:Sundayy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 31

Accepted Solution

by:
Justin Owens earned 500 total points
ID: 35182788
It would have to be one way.  Remember that each level of classification builds on other levels.  If you have Top Secret clearance, it assumes Secret clearance.  Because of this, a Secret domain will be allowed to pass information UP to a Top Secret domain, but not from Top Secret DOWN to Secret.

Because UPD is the only protocol listed which doesn't require two way traffic, it defaults to the type of traffic which must be utilized through the guard.  Ordinary TCP never works only one way.

DrUltima
0
 

Author Closing Comment

by:Sundayy
ID: 35186745
Thanks for the clarification.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
RHEL6 + dockers - No route to host 7 99
wireshark 2 computers 8 85
BGP prefix and routing 3 98
Opening Ports for Specific LAN IP Address on Juniper SRX240 3 78
If you are thinking of adopting cloud services, or just curious as to what ‘the cloud’ can offer then the leader according to Gartner for Infrastructure as a Service (IaaS) is Amazon Web Services (AWS).  When I started using AWS I was completely new…
PRTG Network Monitor lets you monitor your bandwidth usage, so you know who is using up your bandwidth, and what they're using it for.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

737 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question