什么是pinhole

In computer networking, a firewall pinhole is a port that is not protected by a firewall to allow a particular application to gain access to a service on a host in the network protected by the firewall.

Leaving ports open in firewall configurations exposes the protected system to potentially malicious abuse. A fully closed firewall prevents applications from accessing services on the other side of the firewall. For protection, the mechanism for opening a pinhole in the firewall should implement user validation and authorization.

For firewalls performing a network address translation (NAT) function, the mapping between the external {IP address, port} socket and the internal {IP address, port} socket is often called a pinhole.

Pinholes can be created manually or programmatically. They can be temporary, created dynamically for a specific duration such as for a dynamic connection, or permanent, such as for signaling functions.

Firewalls sometimes automatically close pinholes after a period of time (typically a few minutes) to minimize the security exposure. Applications that require a pinhole to be kept open often need to generate artificial traffic through the pinhole in order to cause the firewall to restart its timer.

源自维基百科 https://en.wikipedia.org/wiki/Firewall_pinhole

最后编辑于
©著作权归作者所有,转载或内容合作请联系作者
平台声明:文章内容(如有图片或视频亦包括在内)由作者上传并发布,文章内容仅代表作者本人观点,简书系信息发布平台,仅提供信息存储服务。

推荐阅读更多精彩内容

  • PLEASE READ THE FOLLOWING APPLE DEVELOPER PROGRAM LICENSE...
    念念不忘的阅读 13,565评论 5 6
  • 高中是一个人的成年前的阶段,既有对过往的感悟,也有着对即将成年的迷茫;能够相对立体,客观的看待事物,却...
    齐光灵阅读 317评论 1 9
  • 精进:老板做生意,就是赌博 感受:所有的困难都是上天给你预设的劫难,使你坚强,所有的挫折都会让你吃一堑长一智,使你...
    小鑫小磊阅读 420评论 0 1
  • 我一直都想写点什么文章,但是一直都没有完成一篇,一方面是懒,一方面是太“完美主义”,太纠结,总是写了一半,就搁置了...
    爱花者说阅读 209评论 0 0
  • 成长是一个生理变化过程,成熟是一个心理变化过程。
    奈良鹿丸的将棋阅读 203评论 0 0