1、 负载均衡技术在防火墙中的应用研究负载均衡技术在防火墙中的应用研究 摘要 从防火墙诞生之日起,防火墙最热门的话题便是其性能与功能。其一、网络应用的防护 功能要求不断提高, 包括以 Web 应用为代表的各种高层协议的应用过滤和对包含视频、 音频、 用户数据等多种数据流的多媒体应用的安全防护得到高速发展; 其二, 网络的发展对防火墙 的性能要求进一步提高。现在许多业务已移到网络上去运行,导致网络数据量不断增加,终 端用户的网络带宽也在快速提高。 为了确保防火墙不成为整体网络的瓶颈, 防火墙的性能对 用户来说需要不断提高。 文中将从防火墙与负载均衡的知识出发, 提出如何利用负载均衡技术解决网络中的防
2、火 墙瓶颈。文章首先分析防火墙的概念、技术分类、体系结构、发展趋势和优缺点等。然后对 负载均衡技术进行分析,包括负载均衡定义、指标、技术分类、要解决的问题、方案的选择 与评估和算法。 再具体分析如何在防火墙上实现负载均衡, 包括硬件的负载均衡和软件的负 载均衡应用,通过防火墙的负载均衡应用发挥防火墙最大功能,解决网络瓶颈。最后进行工 作总结及下一步工作的展望。 关键词:负载均衡;防火墙集群;可用性;多重 Cluster IP The Application Study Of Load Balance Technique In Firewall Abstract From the emerge
3、of firewall,the most popular topic about firewall are its performance and function. Firstly,the requirement of protection function in network application is continuously improved,and the application filtering of various upper level protocal,which takes Web application as its representative, and the
4、safety protection of multimedia application of multiple data streams,which contains vedio,audio frequency,and user data, are rapidly development. Secondly,the development of Network requires a further improvement function of firewall. At present,many business have been done through the Internet,maki
5、ng a continuous increase of Newwork data,leading to a raipd improvement of terminal users in Network bandwidth. To ensure the firewall cannot be a bottleneck of the entire Network,the performance of firewall needs to improve. This paper starts with firewall and load balance,then proposing how to use
6、 load balance technique to solve the bottleneck problems infirewall in the Network. In this paper,we firstly analyse the conception of firewall,its technical classification, architecture,development trend,and relative merits.Then we analyse the load balance technique,including load balance definition,its index, its technical classification,the problems need to be solve,the chosen scheme,evaluation and arithmetic. Finally, specifically, we analyze how to achieve the load balance in firewall,wh