home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers



  F E A T U R E

The Survivor's Guide to 2001: Security

December 11, 2000
By Mike Fratto

When someone says network security, what comes to your mind? Firewalls? Access control? VPNs? Encryption? All of the above? Or do you imagine running around poking your fingers in cracks in the dikes until you look like you're playing vertical Twister? With security sites and newsletters proliferating like mushrooms, 20 to 30 new exploits announced each week, and a rabid security industry vying for your dollars at every turn, it's no wonder you can't keep up. At times, neither can we.

There's no cookie-cutter solution to network security; however, while it is a complex topic, it's not rocket science--and it is controllable. You and your organization simply need to invest sufficient resources in a proactive network-security program. Attempting to defend your organization against every newly published exploit is like trying to herd cats.

Therefore, rather than put up point products, such as firewalls and virus scanners, to guard against some perceived risk or respond to an intrusion, you need to build security into your IT infrastructure from the ground up.

Your security stance must be driven by business requirements, not technological needs. The first step is to analyze risk as it pertains to your business plan. You'll have to focus on your most valuable assets first and then work downward. Once you understand the risks, you can begin to implement security products and strategies effectively.

Besides controlling access inbound and outbound (you are restricting outbound traffic, right?), network security, when built to meet business needs, lets you provide services to customers over the network in a safe, secure, reliable manner. It's a process that needs to be attended to daily, but the payoff is increased customer confidence in your organization as a safe place to do business. Having a Web page defaced, a credit-card database posted to a Web site, or your weak cookie encryption exposed on Bugtraq (www.securityfocus.com) or another public mailing list does not inspire customer confidence. And while you can never be 100 percent secure, striving for that high mark ensures you'll get closer to the goal.

The building blocks for network security vary, depending on what you're trying to accomplish. Firewalls form the cornerstone of any security implementation, and for the most part, their security feature lists have flattened out over the past year or so. We expect this trend to continue, because there are limits to what the technology can do. Firewall vendors are looking to enhance products' raw performance, high availability, failover and load-balancing.

The ASP market is poised to explode in this decade, and security vendors want a piece of that pie. ASPs must provide secure, reliable, high-bandwidth, low-latency connectivity, and that means firewalls will have to pass high-volume traffic quickly. There are two ways to accomplish this: The first is to use bigger, faster hardware devices to overcome processing overhead. But this method has limitations; solutions based on monolithic hardware are tied directly to performance advances in hardware. If performance enhancements are slow to arrive, so will be your ability to scale upward. The second path is load-balancing, or distributing the connections across a firewall farm. Load-balancing requires special processing, either through dedicated load-balancing hardware or via policy and state replication among the firewalls. A load-balanced firewall farm will always offer better scalability, because more firewalls can be added as needed. It will also provide much needed redundancy; if one firewall fails, the load will be distributed among the remaining firewalls.




PAGE: 1 I 2 I 3 I 4 I NEXT PAGE
 





Ready to take that job and shove it?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
Go beyond Google and get vertical. These specialized search sites will help you find the business information you need -- fast.

Ari Balogh was named to the post of chief technology officer as the companys for a "realignment" of employees.










InformationWeek U.S. IT Salary Survey 2008
Salaries for business technology professionals are falling. Here's what you need to know in order to make good hiring decisions and personal career choices. Download Today
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



InformationWeek Business Technology Network
InformationWeekInformationWeek 500InformationWeek 500 ConferenceInformationWeek AnalyticsInformationWeek CIO
InformationWeek EventsInformationWeek ReportsInformationWeek MagazinebMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingNo Jitter
space
Techweb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0 ConferenceMobile Business ExpoSoftware ConferenceCSI - Computer Security Institute
Black HatGTECEnergy CampMashup CampStartup Camp
space
Light Reading Communications Network
Light ReadingLight Reading EuropeUnstrungLight Reading's Cable Digital NewsConstantinopleInternet Evolution
Heavy ReadingLight Reading Live!Light Reading InsiderEthernet ExpoOptical ExpoTeleco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems & TechnologyInsurance & TechnologyWall Street & TechnologyAccelerating Wall StreetBank Systems & Technology Executive SummitBuyside Trading SummitInsurance & Technology Executive Summit
space
Microsoft Technology Network
MSDN MagazineTechNetThe Architecture Journal
space
App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Technology Marketing Solutions  |  Advertising Contacts  |   Briefing Centers
Copyright © 2008  United Business Media LLC  |  Privacy Statement  |  Terms of Service  |  Your California Privacy Rights