★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/intrusion_detection_article-3318.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 
News: Intrusion Detection 7/11/2001 15:47

Building an In-Depth Defense

Network Computing
Posted By: Dave Wreski
7/11/2001

Enabling access to critical applications and data while maintaining the confidentiality, integrity and availability of these resources can be a daunting task. One of the first steps to completing it is to use network segmentation and access-control methodologies.

In many environments, defense in depth can be implemented with few incremental equipment costs. Most router and switch vendors provide access-control mechanisms within their products. Although many security professionals would not rely solely on VLANs (virtual LANs) and router ACLs (access-control lists) for Internet-based security controls, their implementation as internal controls can be valuable. The keys are to ensure that these mechanisms are implemented according to your business risks and that they are monitored and maintained.


Click here to go to this article.

Federal IT Integration Takes Shape
Jun 26

Upgrading OpenSSH Remotely Without Rebooting
Jun 26

OpenSSH 3.4 Released
Jun 26

ISS Issues OpenSSH Advisory
Jun 26

Security overview? Read Internet Lockdown
Jun 26

OpenSSH Remote Vulnerability Roundup
Jun 26

Lawmaker: Let studios hack P2P sites
Jun 26

Contact Us | Legal Notice | About Our Site
© Guardian Digital, Inc., 2000