官术网_书友最值得收藏!

Security in the OSI model

Network security spans several layers in the OSI model. The following diagram gives us a breakdown of the different attack vectors and the representation of the percentage of attacks that succeeded in compromising an application in 2018:

As we can see, more than half of all attacks are represented by network layer attacks. These are spread out over multiple layers of the OSI model. Network attacks are most commonly layer 3 and layer 4 attacks, and they usually do the following:

  • Attack the network service's availability by overloading the network link
  • Attack the services on the network that deliver packets to the application such as routers, firewalls, and load balancers

The other half is shared by the other two types of attacks, which are intended to attack the application itself or the services that support the application being available on the internet:

  • Application attacks that send malformed or malicious packets on layer 7 directly to the application
  • Infrastructure service attacks, which include network attacks against the infrastructure supporting the application

In this section, we will look at all the relevant layers of the OSI model where our services typically reside and look at the approaches to security on these layers.

主站蜘蛛池模板: 灵山县| 汝南县| 盐亭县| 闸北区| 闻喜县| 鄄城县| 博乐市| 苏州市| 信宜市| 西贡区| 友谊县| 克东县| 枣强县| 南京市| 二手房| 和平区| 五大连池市| 邯郸县| 兰州市| 兴义市| 德化县| 黎川县| 榆树市| 望城县| 安吉县| 唐海县| 天长市| 东台市| 冷水江市| 古丈县| 扶沟县| 古浪县| 济南市| 托里县| 抚远县| 行唐县| 安庆市| 花莲市| 留坝县| 永德县| 武安市|