官术网_书友最值得收藏!

Security in the OSI model

Network security spans several layers in the OSI model. The following diagram gives us a breakdown of the different attack vectors and the representation of the percentage of attacks that succeeded in compromising an application in 2018:

As we can see, more than half of all attacks are represented by network layer attacks. These are spread out over multiple layers of the OSI model. Network attacks are most commonly layer 3 and layer 4 attacks, and they usually do the following:

  • Attack the network service's availability by overloading the network link
  • Attack the services on the network that deliver packets to the application such as routers, firewalls, and load balancers

The other half is shared by the other two types of attacks, which are intended to attack the application itself or the services that support the application being available on the internet:

  • Application attacks that send malformed or malicious packets on layer 7 directly to the application
  • Infrastructure service attacks, which include network attacks against the infrastructure supporting the application

In this section, we will look at all the relevant layers of the OSI model where our services typically reside and look at the approaches to security on these layers.

主站蜘蛛池模板: 浦北县| 磐安县| 紫云| 华容县| 曲阳县| 高尔夫| 乐安县| 茂名市| 商河县| 尼玛县| 阿合奇县| 七台河市| 察哈| 石城县| 沅陵县| 上犹县| 凤台县| 南涧| 通海县| 长武县| 漳州市| 嘉善县| 青阳县| 沙湾县| 治多县| 太谷县| 义马市| 沁阳市| 灵川县| 健康| 庄河市| 湖州市| 鄂伦春自治旗| 洛浦县| 海晏县| 水城县| 铜山县| 襄樊市| 盐亭县| 白玉县| 沈丘县|