Buy Used
Used - Good See details
$2.91 & eligible for FREE Super Saver Shipping on orders over $25. Details

or
Sign in to turn on 1-Click ordering.
 
   
Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing)
 
 
Tell the Publisher!
I’d like to read this book on Kindle

Don’t have a Kindle? Get your Kindle here, or download a FREE Kindle Reading App.

Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing) [Paperback]

William R. Cheswick (Author), Steven M. Bellovin (Author)
4.4 out of 5 stars  See all reviews (21 customer reviews)


Available from these sellers.


18 new from $3.95 73 used from $0.01 1 collectible from $16.95

Formats

Amazon Price New from Used from
Paperback $40.49  
Paperback, April 30, 1994 --  
There is a newer edition of this item:
Firewalls and Internet Security: Repelling the Wily Hacker (2nd Edition) Firewalls and Internet Security: Repelling the Wily Hacker (2nd Edition) 4.4 out of 5 stars (21)
$40.49
In Stock.
What Do Customers Ultimately Buy After Viewing This Item?
Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing)
78% buy the item featured on this page:
Firewalls and Internet Security: Repelling The Wily Hacker (Addison-Wesley Professional Computing) 4.4 out of 5 stars (21)
Building Internet Firewalls (2nd Edition)
12% buy
Building Internet Firewalls (2nd Edition) 4.5 out of 5 stars (39)
Network Security: Private Communication in a Public World (2nd Edition)
5% buy
Network Security: Private Communication in a Public World (2nd Edition) 4.5 out of 5 stars (17)
$62.39
Firewall Fundamentals
2% buy
Firewall Fundamentals 4.9 out of 5 stars (7)
$40.46

Customers Who Bought This Item Also Bought


Editorial Reviews

Amazon.com Review

Essential information for anyone wanting to protect Internet-connected computers from unauthorized access. Includes:
  • thorough discussion of security-related aspects of TCP/IP;
  • step-by-step plans for setting up firewalls;
  • hacking and monitoring tools the authors have built to rigorously test and maintain firewalls;
  • pointers to public domain security tools on the net;
  • first-hand step-by-step accounts of battles with the "Berferd" hackers; and
  • practical discussions of the legal aspects of security.

Review

Firewalls and Internet Security: Repelling the Wily Hacker gives invaluable advice and practical tools for protecting our computers. You will learn how to plan and execute a security strategy that will thwart the most determined and sophisticated of hackers, while still allowing your company easy access to Internet services. In particular, the authors show step-by-step how to set up a "firewall" gateway - a dedicated computer equipped with safeguards that acts as a single, more easily defended, Internet connection. They even include a description of their most recent gateway, the tools they used to build it, and the hacker attacks they devised to test it. In addition, there is vital information on cryptography, a description of the tools used by hackers, and the legal implications of computer security. With Firewalls and Internet Security, anyone will be well equipped to provide their organization with effective protection from the wily Internet hacker. -- Midwest Book Review

Product Details

  • Paperback: 320 pages
  • Publisher: Addison-Wesley Professional (April 30, 1994)
  • Language: English
  • ISBN-10: 0201633574
  • ISBN-13: 978-0201633573
  • Product Dimensions: 9.2 x 7.4 x 0.8 inches
  • Shipping Weight: 1.4 pounds
  • Average Customer Review: 4.4 out of 5 stars  See all reviews (21 customer reviews)
  • Amazon Bestsellers Rank: #1,018,034 in Books (See Top 100 in Books)

More About the Author

William R. Cheswick
Discover books, learn about writers, read author blogs, and more.

Visit Amazon's William R. Cheswick Page

Look Inside This Book


Suggested Tags from Similar Products

 (What's this?)
Be the first one to add a relevant tag (keyword that's strongly related to this product).
 
(21)

Your tags: Add your first tag
 

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

 

Customer Reviews

21 Reviews
5 star:
 (13)
4 star:
 (5)
3 star:
 (2)
2 star:    (0)
1 star:
 (1)
 
 
 
 
 
Average Customer Review
4.4 out of 5 stars (21 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

 
38 of 41 people found the following review helpful:
3.0 out of 5 stars A nice internet security overview, March 22, 2003
By Stephen Northcutt (Kauai, HI USA) - See all my reviews
(REAL NAME)   
My hope was that reading Firewalls and Internet Security - Second Edition would be a chance to sit at the feet of the masters, but I was disappointed. Part of the problem is the title, this is not a firewall book; this is an internet oriented security overview. The writing style is professional, but terse, you will learn the names of many important things, but you will not learn how to DO anything and you will not even learn ABOUT very much. However the book gives you the NAMES of many important topics that you can go research on your own and is valuable for that. It is well edited and has a flawless layout making it a fast easy read because the technical level is low and the book is short.

The book opens with a few pages on security truisms, my favorite part of the book and a dazzling display of intellect! All the material after the truisms and up to chapter 9 is a quick tour of topics like Security Policy, Host-Based Security and Perimeter Security, Authentication, and all the Protocols in a couple paragraphs each.

Chapters 9 - 12 are where the book covers perimeters. Chapter 9 is dated material, Static Packet Filters, Network Topology, Application Gateways, and SOCKS. The book begins to improve in Chapter 10, remember, these authors really know their stuff and if you read closely there is wisdom here. The "Use the phone?" comment in the H.323 and SIP example firewall rule was a classic. Sadly, this whole critically important section got one thin paragraph.

In Chapter 13, there is a fascinating discussion about using routing tricks to protect a host, but it isn't clear to me you can implement this with the four sentences of information the authors provide. As you march on to Chapter 16, they have a few paragraphs on host security, name some types of IDSes and so forth.

Chapter 16 is from the original edition, An Evening with Berferd is a lovely read especially if you have a Unix background. Chapter 17, The Taking of Clark, another war story, was also fun.

The ending of the book is sad, the technical material concludes with three and a half pages titled: Where do we go from here? They briefly mention IPv6, but come to no conclusion as to its future. DNSsec gets two paragraphs, we do not even learn what it is, (a new resource record where the information that is stored can be signed).

In the final paragraph the authors conclude we are going backward not forward, that we cannot achieve the security level Multics had in the 1970s with modern operating systems. I sincerely hope that is not true; take a look at OpenBSD, one exploitable remote vulnerability in seven years. Think about the progress RedHat and Microsoft are making. Take a look at the work The Center for Internet Security is doing, take the Unix or Windows tracks at SANS, but never, ever give up.

Help other customers find the most helpful reviews  
Was this review helpful to you? Yes No


 
10 of 11 people found the following review helpful:
3.0 out of 5 stars Exceptional authors, but not an exceptional book, March 16, 2003
I wish I could give "Firewalls and Internet Security, 2nd Edition" (FAIS:2E) more stars. I eagerly awaited the next edition of this security classic with the rest of the community. However, like many sequels, it fails to live up to expectations. Nine years ago the first edition was revolutionary. In 2003, despite the addition of skilled practitioner Avi Rubin, the authors make few original contributions to the security scene.

The book's strengths include sharing certain keen insights and summarizing key technical data. They repeat the conclusion that frequent password changes tend to decrease security, rather than improve it. They succinctly describe BGP and IPv6. They accurately explain that TCP sequence numbers count bytes of data, not packets -- unlike many other authors. Their case studies, while dating from the early 1990s, are the most enjoyable parts of FAIS:2E. Like Avi Rubin's "White Hat Security Arsenal" (a better book), they cite scholarly work. Attention is paid to the firewall software of my favorite OS, FreeBSD, in ch 11.

On the negative side, the book is a mix of simplistic and advanced material. In some areas the authors start with basics, while in others they use terms like "black-hole" (p. 249) with little regard for newbies. The book seems disorganized; readers will find it hard to separate key points from normal text. The "forensics" advice, admittedly labeled as "crude" in ch 17, gives incomplete recommendations which do not reflect best forensic live response practices. (The "best thing to do" is "run ps and netstat" and then "turn the computer off"?) The authors are also very negative about the Windows OS, saying on p. 255 "We do not know how to secure them, or even if it is possible." While Windows is admittedly difficult to configure and operate securely, this statement is a cop-out. Better to direct readers to "Securing Windows NT/2000 Servers for the Internet" by Stefan Norberg. Examples with IPChains in ch 11 should have been updated with IPTables, or at least IPTables should not have been dismissed as being the same except for syntax.

FAIS:2E does contain useful information. I just think books like O'Reilly's "Building Internet Firewalls, 2nd Edition" and New Riders' "Linux Firewalls, 2nd Edition" are more helpful. Addison-Wesley's "White Hat Security Arsenal" is more enlightening, as well. Review FAIS:2E in a store before you commit to buying it -- you might find it helpful.

Help other customers find the most helpful reviews  
Was this review helpful to you? Yes No


 
10 of 11 people found the following review helpful:
5.0 out of 5 stars Yet another worthwhile book for us all in the IT industry!, October 10, 2003
By Christos Partsenidis (Thessaloniki, Greece - www.Firewall.cx) - See all my reviews
(REAL NAME)   
Addison-Wesley in cooperation with William Cheskwick, Steven Bellovin and Aviel Rubin have produced yet another well-researched publication.

This book is all about Internet security, firewalls, VPNs and much more, all of which are hot topics and renowned buzzwords within today's IT industry.

In the first chapter, the authors express their view on network security and demonstrate the different methods an Administrator can use in order to secure their network(s). This is carried out by categorizing security into Host-Based and Perimeter security.

The second and third chapters are approximately 50 pages covering basic protocols, including IPv6, DNS, FTP, SNMP, NTP, RPC-based protocols and a several more like the famous NAT. The chapters are concluded with a summary on wireless security.

The next five chapters (chapter 4 to 8 inclusive), analyze various attacks used against networks and server operating systems in an attempt to exploit them. There is a wealth of information concerning hacking, allowing the reader to enter the mind of a hacker in terms of what they think and how they proceed to meet their goal.

One complete chapter is dedicated to various password tactics in which one can ensure that a hacker's life is made more difficult should they attempt to break into a few accounts using well-known methods related to password guessing. CHAP, PAP, Radius and PKI are also analyzed.

Chapter 9 to 12 are dedicated to Firewalls and VPNs which, in passing, happen to be my favourite chapters. They offer an in-depth analysis of the Firewall concept, packet filtering, application-level filtering and circuit level gateways. It proceeds with information about the filtering services, giving detailed examples on how one could use IPChains to create a simple or complex set of rules to efficiently block/permit packets entering in and out the network. This is perhaps the only downside to this informative book, where IPTables would have been beneficial to include, since people rarely use IPchains these days.

Lastly, chapter 12 talks about VPNs, their encryption methods, and considers both their weaknesses and advantages.

In addition to this, the book continues with several more chapters covering general questions that may arise for the reader, such as intranet routing, administration security and intrusion detection systems.

Towards the end, the authors talk about their personal experiences with people trying to hack into their companies and, as a result, explain the step- by- step process of how they managed to fight them and secure their networks. These pages are simply a goldmine for anyone interested in this area.

In summary, I'd say that the book is well worth its money and would suggest it to anyone interested in network security and firewalls. I am certain they won't be disappointed simply because the book has a lot to offer...

Help other customers find the most helpful reviews  
Was this review helpful to you? Yes No

Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews

5.0 out of 5 stars What, you don't own this?
You should buy this book. Then you should read this book.
Published on March 3, 2006 by Gary McGraw

4.0 out of 5 stars A great overview, but a little thin on details.
This book is an excellent comprehensive introduction to computer security from policies to technologies. Read more
Published on April 22, 2005 by Joseph W. Shaw II

5.0 out of 5 stars Good upgrade to a classic
This second edition has all the qualities the first edition had 10 years ago: Their writing is clear, they provide a sober assessment of the costs & benefits of various... Read more
Published on April 5, 2004 by microtherion

5.0 out of 5 stars No longer the only, but still the best, book on the topic.
This book is not just about firewalls, although that is its
primary focus. Nor does it try to cover the entire field of
Internet security, although it does provide a fairly... Read more
Published on October 7, 2003 by Lowell Gilbert

5.0 out of 5 stars The book on firewalls
This is THE book on firewalls.

If you want information from the authoritative sources, this is the book to get.

If you can tolerate the anti-Microsoft aspect, read on!

Published on September 12, 2003 by Eric Kent

5.0 out of 5 stars Excellent update to a classic work
(I reviewed the manuscript before publication for the publisher, but
here I'm speaking for myself. Read more
Published on July 20, 2003 by Win Treese

5.0 out of 5 stars A Holistic Approach to Internet Security..
A timely and much needed update to the first edition, Fwais 2.0 is an excellent overview of the current landscape and psychology involving intranet, VPN and Internet host security... Read more
Published on July 4, 2003 by D Bruce Curtis

4.0 out of 5 stars Fun and useful read
This great security book is written by the three famous members of a
security community "old school". Read more
Published on June 11, 2003 by Dr Anton Chuvakin

5.0 out of 5 stars Worth waiting for, a second time
(I had the pleasure of doing a pre-release review for the publisher. My wife and I enjoyed the meal they paid for. However this posting is done on my own. Read more
Published on May 21, 2003 by Dave Crocker

4.0 out of 5 stars A timeless intro to Unix security
While written in 1994 (with a second edition coming soon), I feel that this book is nevertheless a must read for people who are first getting into Unix network security. Read more
Published on November 19, 2002 by Gerald Ford

Only search this product's reviews



Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 

Search Customer Discussions
Search all Amazon discussions
   





Look for Similar Items by Category


Look for Similar Items by Subject

 

Feedback

If you need help or have a question for Customer Service, contact us.
 Would you like to update product info or give feedback on images?
Is there any other feedback you would like to provide?

Your comments can help make our site better for everyone.



Your Recent History

 (What's this?)

After viewing product detail pages or search results, look here to find an easy way to navigate back to pages you are interested in.