Upcoming Events

Cloud Connect
Santa Clara
Feb 13-16, 2012

Cloud Connect brings together the entire cloud eco-system to better understand the transformation we're experiencing and promises to be the defining event of the cloud computing industry. Learn about the latest cloud technologies and platforms from thought leaders in Cloud Connect’s comprehensive conference.

Register Now!

More Events »

Subscribe to Newsletter

  • Keep up with all of the latest news and analysis on the fast-moving IT industry with Network Computing newsletters.
Sign Up
Security
R E V I E W  
Defense Starts Here

  February 20, 2003
  By Mike DeMaria


>> continued from previous page

The Layering Effect

TOC Issue TOC
Printer Print full article
Printer Print this page
Printer Download as PDF
E-Mail E-Mail this URL
Discuss Discuss this article
flame author Flame the author
 
  In this article
arrow
Introduction
arrow
Measuring Protection
arrow
Sygate Secure Enterprise 3.0
arrow
Other Products Reviewed
arrow
Executive Summary
arrow
Beyond the Initial Expense
arrow
The Layering Effect
arrow
Report Card

Shouldn't antivirus software and an e-mail server scanner be enough to protect desktops inside the LAN? If your organization keeps all its remote users away from the private LAN, all current and former employees are trustworthy, and you keep strict physical security, perimeter firewalls should prevent people from hacking in, while the antivirus software and e-mail server scanner catch any virus or Trojan. Right? Wrong. Antivirus software is reactive, not proactive. And desktop firewalls do only part of the job.

Antivirus software operates by matching a file against a database of existing virus signatures. New viruses and Trojans don't get caught. Antivirus and IDS vendors respond quickly, creating signatures for new viruses; still, a few hosts are always hit first. Attackers that target your organization directly have one advantage: They don't have to mass deploy their Trojan or virus. Your machines may be vulnerable to new Trojans that remain under the antivirus vendors' radar. Correctly configured, desktop firewalls should catch these Trojans and prevent them from sending data.

Firewalls do not replace antivirus software--they won't protect you from a virus aimed at unlinking every file from the system. And they won't eradicate the Trojan or guarantee that your system will be usable after infection, but they will help keep your data out of the wrong hands. At least that's the theory. If your desktop firewall contains bugs, it can crash or be compromised. If a new exploit is found, you're vulnerable until a patch is released. Meanwhile, the more layers you add, the more likely you'll survive an attack.


start top   Beyond the Initial Expense Report Card 

Research and Reports

Hypervisor Derby
August 2011

Network Computing: August 2011

TechWeb Careers