Blocking Java Applets at the Firewall

David Martin

DATE:Thursday, October 10, 1996
TIME:2:00pm
WHERE: 111 Cummington St.
Room MCS 135

The talk is based on research I performed with Raj and Avi Rubin at Bellcore this summer. The paper is called "Blocking Java Applets at the Firewall" and will be presented at the '97 Internet Society Symposium on Network and Distributed Security Systems.

This work is available as a technical report at ftp://ftp.cs.bu.edu/techreports/96-026-java-firewalls.ps.Z.

Abstract

This paper explores the problem of protecting a site on the Internet against hostile external Java applets while allowing trusted internal applets to run. Our strategies include packet-level filtering and application-level proxies. With careful implementation, a site can be made resistant to current Java security weaknesses as well as those yet to be discovered.


For more information contact Rob Pitts <rip@cs.bu.edu>