Dr. Intranet: Preventing a VPN-based break-ins
In places where you have administrative control over a VPN-connected PC, audit the configuration, settings and behavior, and remotely reset them when you detect abnormalities. Where you don't have control, monitor the traffic and behavior, and remotely disconnect the devices when you detect abnormalities.
To lock out hijacked PCs authenticated to your VPN, you will need to authenticate an authorized user's physical presence or certified authorization at an application transaction level.
Smart cards, authentication tokens, one-time passwords, an intrusion-detection system working with a virus-scanning gateway and a PC configuration monitoring and management suite can be used to build the access-control, authentication, authorization, auditing, accounting and administration capability you need to detect and drop offensive connections. At a minimum, you should time out inactive sessions, perform configuration checks at logon and install an intrusion-detection system.
As a network architect at Change at Work in Houston, Blass understands the strain of developing and managing intranets. Send your problems to dr.intranet@changeatwork.com
» posted by ITworld staff
Network World
Symantec Backup Exec 12 and Backup Exec System Recovery 8 deliver industry leading Windows data protection and system recovery. Download this whitepaper to find out the top reasons to upgrade and how to get continuous data protection and complete system recovery.
Data and system loss — from a hard drive failure, malicious attack, natural disaster, or simple human error — can happen anytime. Don’t leave your business vulnerable. Make sure you have a secure recovery strategy in place. Symantec's latest backup and system recovery technology can efficiently restore critical applications, individual emails and documents and even restore your entire system in minutes in the event of a loss.
Businesses face a growing challenge to ensure that the IT environment is properly protected. Backup Exec 12 integrates with other applications in the Symantec family of products, to complement your current data protection strategy, keep your data securely backed up and make it recoverable when you need it most.
VMware ESX Server in the Enterprise
By Edward L. Haletky
Published Dec 29, 2007 by Prentice Hall.
Enter now! | Official rules | Sample chapter
Green IT
By Toby Velte, Anthony Velte, Robert C. Elsenpeter
To be published Oct. 10, 2008 by McGraw Hill Professional
Enter now! | Official rules | About the book







