See buying choices for this item to see if it's one of the millions that are eligible for Amazon Prime.

66 used & new from $0.01

Have one to sell? Sell yours here
 
 
Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing)
 
 
Tell the Publisher!
I’d like to read this book on Kindle

Don’t have a Kindle? Get yours here.
 
  

Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing) (Paperback)

by William R. Cheswick (Author), Steven M. Bellovin (Author)
4.3 out of 5 stars See all reviews (22 customer reviews)


Available from these sellers.


11 new from $5.95 55 used from $0.01
Also Available in: List Price: Our Price: Other Offers:
Paperback (2) $54.99 $37.11 64 used & new from $4.10
What Do Customers Ultimately Buy After Viewing This Item?
Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing)
78% buy the item featured on this page:
Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing) 4.3 out of 5 stars (22)
Firewall Fundamentals
6% buy
Firewall Fundamentals 4.9 out of 5 stars (7)
$40.46
Building Internet Firewalls (2nd Edition)
6% buy
Building Internet Firewalls (2nd Edition) 4.5 out of 5 stars (37)
$50.59
Network Security: Private Communication in a Public World (2nd Edition) (Radia Perlman Series in Computer Networking and Security)
6% buy
Network Security: Private Communication in a Public World (2nd Edition) (Radia Perlman Series in Computer Networking and Security) 4.5 out of 5 stars (17)
$48.71

Customers Who Bought This Item Also Bought

Network Security: Private Communication in a Public World (2nd Edition) (Radia Perlman Series in Computer Networking and Security)

Network Security: Private Communication in a Public World (2nd Edition) (Radia Perlman Series in Computer Networking and Security)

by Charlie Kaufman
4.5 out of 5 stars (17)  $48.71
Security Engineering: A Guide to Building Dependable Distributed Systems

Security Engineering: A Guide to Building Dependable Distributed Systems

by Ross J. Anderson
4.7 out of 5 stars (30)  $56.00
Counter Hack Reloaded: A Step-by-Step Guide to Computer Attacks and Effective Defenses (2nd Edition) (Radia Perlman Series in Computer Networking and Security)

Counter Hack Reloaded: A Step-by-Step Guide to Computer Attacks and Effective Defenses (2nd Edition) (Radia Perlman Series in Computer Networking and Security)

by Edward Skoudis
4.8 out of 5 stars (44)  $40.94
Building Internet Firewalls (2nd Edition)

Building Internet Firewalls (2nd Edition)

by Elizabeth D. Zwicky
4.5 out of 5 stars (37)  $50.59
Practical Unix & Internet Security, 3rd Edition

Practical Unix & Internet Security, 3rd Edition

by Simson Garfinkel
4.3 out of 5 stars (35)  $34.62
Explore similar items

Editorial Reviews

Amazon.com Review
Essential information for anyone wanting to protect Internet-connected computers from unauthorized access. Includes:
  • thorough discussion of security-related aspects of TCP/IP;
  • step-by-step plans for setting up firewalls;
  • hacking and monitoring tools the authors have built to rigorously test and maintain firewalls;
  • pointers to public domain security tools on the net;
  • first-hand step-by-step accounts of battles with the "Berferd" hackers; and
  • practical discussions of the legal aspects of security.


Review
Firewalls and Internet Security: Repelling the Wily Hacker gives invaluable advice and practical tools for protecting our computers. You will learn how to plan and execute a security strategy that will thwart the most determined and sophisticated of hackers, while still allowing your company easy access to Internet services. In particular, the authors show step-by-step how to set up a "firewall" gateway - a dedicated computer equipped with safeguards that acts as a single, more easily defended, Internet connection. They even include a description of their most recent gateway, the tools they used to build it, and the hacker attacks they devised to test it. In addition, there is vital information on cryptography, a description of the tools used by hackers, and the legal implications of computer security. With Firewalls and Internet Security, anyone will be well equipped to provide their organization with effective protection from the wily Internet hacker. -- Midwest Book Review

See all Editorial Reviews

Product Details

  • Paperback: 320 pages
  • Publisher: Addison-Wesley Professional (April 30, 1994)
  • Language: English
  • ISBN-10: 0201633574
  • ISBN-13: 978-0201633573
  • Product Dimensions: 9.2 x 7.4 x 0.8 inches
  • Shipping Weight: 1.4 pounds
  • Average Customer Review: 4.3 out of 5 stars See all reviews (22 customer reviews)
  • Amazon.com Sales Rank: #1,234,862 in Books (See Bestsellers in Books)

    Popular in this category: (What's this?)

    #61 in  Books > Computers & Internet > Security & Encryption > Firewalls

Look Inside This Book


Suggested Tags from Similar Products

 (What's this?)
Be the first one to add a relevant tag (keyword that's strongly related to this product).
Check a corresponding box or enter your own tags in the field below.
(11)

Your tags: Add your first tag
 
Help others find this product — tag it for Amazon search
No one has tagged this product for Amazon search yet. Why not be the first to suggest a search for which it should appear?

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

 

Customer Reviews

22 Reviews
5 star:
 (13)
4 star:
 (5)
3 star:
 (3)
2 star:    (0)
1 star:
 (1)
 
 
 
 
 
Average Customer Review
4.3 out of 5 stars (22 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

 
37 of 40 people found the following review helpful:
3.0 out of 5 stars A nice internet security overview, March 22, 2003
By Stephen Northcutt (Kauai, HI USA) - See all my reviews
(REAL NAME)   
My hope was that reading Firewalls and Internet Security - Second Edition would be a chance to sit at the feet of the masters, but I was disappointed. Part of the problem is the title, this is not a firewall book; this is an internet oriented security overview. The writing style is professional, but terse, you will learn the names of many important things, but you will not learn how to DO anything and you will not even learn ABOUT very much. However the book gives you the NAMES of many important topics that you can go research on your own and is valuable for that. It is well edited and has a flawless layout making it a fast easy read because the technical level is low and the book is short.

The book opens with a few pages on security truisms, my favorite part of the book and a dazzling display of intellect! All the material after the truisms and up to chapter 9 is a quick tour of topics like Security Policy, Host-Based Security and Perimeter Security, Authentication, and all the Protocols in a couple paragraphs each.

Chapters 9 - 12 are where the book covers perimeters. Chapter 9 is dated material, Static Packet Filters, Network Topology, Application Gateways, and SOCKS. The book begins to improve in Chapter 10, remember, these authors really know their stuff and if you read closely there is wisdom here. The "Use the phone?" comment in the H.323 and SIP example firewall rule was a classic. Sadly, this whole critically important section got one thin paragraph.

In Chapter 13, there is a fascinating discussion about using routing tricks to protect a host, but it isn't clear to me you can implement this with the four sentences of information the authors provide. As you march on to Chapter 16, they have a few paragraphs on host security, name some types of IDSes and so forth.

Chapter 16 is from the original edition, An Evening with Berferd is a lovely read especially if you have a Unix background. Chapter 17, The Taking of Clark, another war story, was also fun.

The ending of the book is sad, the technical material concludes with three and a half pages titled: Where do we go from here? They briefly mention IPv6, but come to no conclusion as to its future. DNSsec gets two paragraphs, we do not even learn what it is, (a new resource record where the information that is stored can be signed).

In the final paragraph the authors conclude we are going backward not forward, that we cannot achieve the security level Multics had in the 1970s with modern operating systems. I sincerely hope that is not true; take a look at OpenBSD, one exploitable remote vulnerability in seven years. Think about the progress RedHat and Microsoft are making. Take a look at the work The Center for Internet Security is doing, take the Unix or Windows tracks at SANS, but never, ever give up.

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
10 of 11 people found the following review helpful:
3.0 out of 5 stars Exceptional authors, but not an exceptional book, March 16, 2003
I wish I could give "Firewalls and Internet Security, 2nd Edition" (FAIS:2E) more stars. I eagerly awaited the next edition of this security classic with the rest of the community. However, like many sequels, it fails to live up to expectations. Nine years ago the first edition was revolutionary. In 2003, despite the addition of skilled practitioner Avi Rubin, the authors make few original contributions to the security scene.

The book's strengths include sharing certain keen insights and summarizing key technical data. They repeat the conclusion that frequent password changes tend to decrease security, rather than improve it. They succinctly describe BGP and IPv6. They accurately explain that TCP sequence numbers count bytes of data, not packets -- unlike many other authors. Their case studies, while dating from the early 1990s, are the most enjoyable parts of FAIS:2E. Like Avi Rubin's "White Hat Security Arsenal" (a better book), they cite scholarly work. Attention is paid to the firewall software of my favorite OS, FreeBSD, in ch 11.

On the negative side, the book is a mix of simplistic and advanced material. In some areas the authors start with basics, while in others they use terms like "black-hole" (p. 249) with little regard for newbies. The book seems disorganized; readers will find it hard to separate key points from normal text. The "forensics" advice, admittedly labeled as "crude" in ch 17, gives incomplete recommendations which do not reflect best forensic live response practices. (The "best thing to do" is "run ps and netstat" and then "turn the computer off"?) The authors are also very negative about the Windows OS, saying on p. 255 "We do not know how to secure them, or even if it is possible." While Windows is admittedly difficult to configure and operate securely, this statement is a cop-out. Better to direct readers to "Securing Windows NT/2000 Servers for the Internet" by Stefan Norberg. Examples with IPChains in ch 11 should have been updated with IPTables, or at least IPTables should not have been dismissed as being the same except for syntax.

FAIS:2E does contain useful information. I just think books like O'Reilly's "Building Internet Firewalls, 2nd Edition" and New Riders' "Linux Firewalls, 2nd Edition" are more helpful. Addison-Wesley's "White Hat Security Arsenal" is more enlightening, as well. Review FAIS:2E in a store before you commit to buying it -- you might find it helpful.

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)



 
9 of 10 people found the following review helpful:
5.0 out of 5 stars Yet another worthwhile book for us all in the IT industry!, October 10, 2003
By Christos Partsenidis (Thessaloniki, Greece - www.Firewall.cx) - See all my reviews
(REAL NAME)   
Addison-Wesley in cooperation with William Cheskwick, Steven Bellovin and Aviel Rubin have produced yet another well-researched publication.

This book is all about Internet security, firewalls, VPNs and much more, all of which are hot topics and renowned buzzwords within today's IT industry.

In the first chapter, the authors express their view on network security and demonstrate the different methods an Administrator can use in order to secure their network(s). This is carried out by categorizing security into Host-Based and Perimeter security.

The second and third chapters are approximately 50 pages covering basic protocols, including IPv6, DNS, FTP, SNMP, NTP, RPC-based protocols and a several more like the famous NAT. The chapters are concluded with a summary on wireless security.

The next five chapters (chapter 4 to 8 inclusive), analyze various attacks used against networks and server operating systems in an attempt to exploit them. There is a wealth of information concerning hacking, allowing the reader to enter the mind of a hacker in terms of what they think and how they proceed to meet their goal.

One complete chapter is dedicated to various password tactics in which one can ensure that a hacker's life is made more difficult should they attempt to break into a few accounts using well-known methods related to password guessing. CHAP, PAP, Radius and PKI are also analyzed.

Chapter 9 to 12 are dedicated to Firewalls and VPNs which, in passing, happen to be my favourite chapters. They offer an in-depth analysis of the Firewall concept, packet filtering, application-level filtering and circuit level gateways. It proceeds with information about the filtering services, giving detailed examples on how one could use IPChains to create a simple or complex set of rules to efficiently block/permit packets entering in and out the network. This is perhaps the only downside to this informative book, where IPTables would have been beneficial to include, since people rarely use IPchains these days.

Lastly, chapter 12 talks about VPNs, their encryption methods, and considers both their weaknesses and advantages.

In addition to this, the book continues with several more chapters covering general questions that may arise for the reader, such as intranet routing, administration security and intrusion detection systems.

Towards the end, the authors talk about their personal experiences with people trying to hack into their companies and, as a result, explain the step- by- step process of how they managed to fight them and secure their networks. These pages are simply a goldmine for anyone interested in this area.

In summary, I'd say that the book is well worth its money and would suggest it to anyone interested in network security and firewalls. I am certain they won't be disappointed simply because the book has a lot to offer...

Comment Comment | Permalink | Was this review helpful to you? Yes No (Report this)


Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews

3.0 out of 5 stars Decent overview
Nutshell review - This book provides a good overview and starting point for firewall and internet related security issues. Read more
Published 13 months ago by Jos Pols

5.0 out of 5 stars What, you don't own this?
You should buy this book. Then you should read this book.
Published on March 3, 2006 by Gary McGraw

4.0 out of 5 stars A great overview, but a little thin on details.
This book is an excellent comprehensive introduction to computer security from policies to technologies. Read more
Published on April 22, 2005 by Joseph W. Shaw II

5.0 out of 5 stars Good upgrade to a classic
This second edition has all the qualities the first edition had 10 years ago: Their writing is clear, they provide a sober assessment of the costs & benefits of various... Read more
Published on April 5, 2004 by microtherion

5.0 out of 5 stars No longer the only, but still the best, book on the topic.
This book is not just about firewalls, although that is its
primary focus. Nor does it try to cover the entire field of
Internet security, although it does provide a fairly... Read more
Published on October 7, 2003 by Lowell Gilbert

5.0 out of 5 stars The book on firewalls
This is THE book on firewalls.

If you want information from the authoritative sources, this is the book to get.

If you can tolerate the anti-Microsoft aspect, read on!

Published on September 12, 2003 by Eric Kent

5.0 out of 5 stars Excellent update to a classic work
(I reviewed the manuscript before publication for the publisher, but
here I'm speaking for myself. Read more
Published on July 20, 2003 by Win Treese

5.0 out of 5 stars A Holistic Approach to Internet Security..
A timely and much needed update to the first edition, Fwais 2.0 is an excellent overview of the current landscape and psychology involving intranet, VPN and Internet host security... Read more
Published on July 4, 2003 by D Bruce Curtis

4.0 out of 5 stars Fun and useful read
This great security book is written by the three famous members of a
security community "old school". Read more
Published on June 11, 2003 by Dr Anton Chuvakin

5.0 out of 5 stars Worth waiting for, a second time
(I had the pleasure of doing a pre-release review for the publisher. My wife and I enjoyed the meal they paid for. However this posting is done on my own. Read more
Published on May 21, 2003 by Dave Crocker

Only search this product's reviews



Customer Discussions

 Beta (What's this?)
New! See all customer communities, and bookmark your communities to keep track of them.
This product's forum (0 discussions)
  Discussion Replies Latest Post
  No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
  [Cancel]

   


Product Information from the Amapedia Community

Beta (What's this?)



Look for Similar Items by Category


Hot Deals on Hitachi

Hitachi power tools
Routers don't get much more powerful than the "Incredible Hulk." Check out the entire line of Hitachi routers sold by Amazon.com.

Shop all Hitachi

 

Best Books of 2008

Best of 2008
Find our top 100 editors' picks as well as customers' favorites in dozens of categories in our Best Books of 2008 Store.
 

Find the Air Compressor to Fill Your Needs

Shop for compressors
Whether you need to power a pneumatic tool or fill a tire, an air compressor provides the power you need.

Shop for compressors

 

Best Books

Best of the Month
See our editors' picks and more of the best new books on our Best of the Month page.
 

 

Feedback

If you need help or have a question for Customer Service, contact us.
 Would you like to update product info or give feedback on images?
Is there any other feedback you would like to provide?

Your comments can help make our site better for everyone.



Where's My Stuff?

Shipping & Returns

Need Help?

Your Recent History

  (What's this?)
You have no recently viewed items or searches.

After viewing product detail pages or search results, look here to find an easy way to navigate back to pages you are interested in.

Look to the right column to find helpful suggestions for your shopping session.

Continue shopping: Top Sellers
Free
Free by Chris Anderson
Paranoia
Paranoia by Joseph Finder
My Soul to Lose
My Soul to Lose by Rachel Vincent
Glenn Beck's Common Sense

Conditions of Use | Privacy Notice © 1996-2009, Amazon.com, Inc. or its affiliates