home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers



Security
F E A T U R E  
Ever-Present Security Concerns Spur Market Growth

  May 1, 2003
  By Mike Fratto


TOC Issue TOC
Printer Print full article
Printer Print this page
Printer Download as PDF
E-Mail E-Mail this URL
Discuss Discuss this article
flame author Flame the author
 
  In this article
arrow
Introduction
arrow
Categories and Winners
arrow
Security Product of the Year
arrow
Web Links

Fear of cyberterrorism, new regulations like HIPAA and a rash of well-publicized network vulnerabilities have moved security to the top of many organizations' agendas: Forty percent of nearly 1,000 IT managers surveyed by IDC rated security their highest priority. And IDC predicts security spending will grow from $66 billion in 2001 to $155 billion in 2006. Lots of vendors are angling for a slice of this pie, so if there isn't a piece of hardware or software out there yet to solve your problem, just wait a minute.

Two key areas to watch are automated attack blocking and endpoint protection.

• Automated attack blocking: IDSs and firewall integration were the forerunners of this product field, which is putting an emphasis on NIP (network intrusion prevention). The only way NIP will succeed is if intrusion detection increases in accuracy. Blocking authorized traffic hinders business processes while allowing malicious traffic keeps your network vulnerable. Vendors are trying to increase accuracy by blending multiple detection methods--such as signature and traffic-anomaly detection. Thorough testing of the accuracy of the IDS component is required prior to enabling automatic blocking. NIP products can act as high-speed, high-performance IDSs, so they can pay off even if you're skeptical about intrusion prevention.


Application firewalls can raise the network protection bar, too, though you'll pay a price in performance because of the extra processing required to delve deeper into the application protocol. We have found, however, that many application proxies can break the 100-Mbps barrier, making them suitable for internal firewalls in addition to their conventional placement at the perimeter, with minimal degradation.


• Endpoint protection: Much attention has been focused on pushing protection not just to the edge but inward, toward internal resources, and rightly so (see "Secure to the Core," at www.nwc.com/1401/ 1401f1.html). Guarding typical ingress and egress points is not enough. You need to deploy protection where the vulnerabilities reside--on the host. HIP (host intrusion prevention) is one way to ensure that applications access only those host resources that are required; they do this by capturing requests or modifying system calls for resources, such as files and network access. Because many attacks force an application to access unnecessary services, HIP products are well-situated to block attacks against the operating system--if the requesting application is denied access to resources at the kernel, attacks against the operating system are stopped in their tracks.

Finally, application-level attacks, such as those targeting Web applications, can be stymied by protocol-specific products, and desktop firewalls add a layer of protection by inspecting all the data that enters or leaves the machine and regulating network access for PCs and applications. Mobile users are particularly prime candidates for this type of protection; while desktop firewalls are not foolproof, they do block inbound network access and can regulate which applications have outbound access, further challenging potential attackers.


start top Introduction Categories and Winners 





Looking for a new job?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
The tumbling of IT jobs stopped in the second quarter, as the IT sector added about 44,000 jobs.

It's just a glimmer, but Oracle is starting to see a bit of light at the end of the recession tunnel.










2009 IT Salary Survey: Meager Raises, Solid Prospects
Though raises are notably smaller than a year ago, and job security’s shrinking, IT careers are looking safer than many others in this economic downturn. Get all the findings in InformationWeek's 2009 IT Salary Survey. Available FREE for a limited time.
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



Techweb
Informationweek Business Technology Network
InformationweekInformationweek 500Informationweek 500 ConferenceInformationweek AnalyticsInformationweek Events
Informationweek MagazineGlobal CIOIWK Government ITbMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingPlug Into The CloudDr. DobbsContentinople
space
TechWeb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0Mobile Business ExpoNoJitter
Black HatGTECEnergy CampCloud ConnectGov 2.0 ExpoGov 2.0 Summit
space
Light Reading Communications Network
Light ReadingLight Reading AsiaUnstrungCable Digital NewsInternet EvolutionPyramid Research
Heavy ReadingLight Reading LiveLight Reading InsiderEthrnet ExpoTelco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems and TechnologyInsurance and TechnologyWall Street and TechnologyAccelerating WallstreetBST SummitBuyside Trading SummitIT Summit
space
Microsoft Technology Network
MSDNTechNetTotal IT ProTotal Dev ProNET Total Dev Pro CommunitySQL Total Dev Pro Community
space


App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Technology Marketing Solutions  |  Advertising Contacts  |   Briefing Centers
Copyright © 2009  United Business Media LLC  |  Privacy Statement  |  Terms of Service