Header
Home | Set as homepage | Add to favorites
Sections
Syndication


Blogroll:

||||| ALL Cisco-Network ARTICLES |||||  
CCIE Journey,
The CCIE Journey, 



Identifying the Critical Infrastructure and Services

image


 

Identifying the Critical Infrastructure and Services

As part of the network analysis, security administrators should identify the critical components both in terms of networks and service. After all, the network exists only to get people and machines to application services! On the network map, place symbols near the endpoints of critical services remembering the function of IDS and the Cisco SAFE axioms:

In a well-developed network and systems architecture, services should be aggregated in high bandwidth, manageable farms. Often, these are in DMZs, extranets, or intranets. Regardless, it is most likely that the map will highlight the following locations as critical:

  • Internet ingress/egress points

  • Server farm ingress/egress points

  • Remote Access networks

  • Wireless access points

Because wireless access points can involve encryption such as WEP, they, and VPNs in general, present a challenge for IDS systems. The encryption prevents IDS sensors from gaining cleartext access to the payload, and in some instances, the packet header and payload. Since IDS cannot decrypt these datastreams, the traffic passes without IDS inspection. This is precisely why it is beneficial to place IDS at the point of decryption in networks so that you may gain insight into the traffic passing through the tunnel.

In most instances, the critical network and services locations will be near existing security infrastructures such as firewalls. Once the critical infrastructure has been mapped, it's time to select the placement of sensors.

68 times read

Related news

» Deploying Cisco IDS Sensors
by admin posted on Nov 24,2008
» Secure
by admin posted on Nov 24,2008
» Placing Sensors Based on Network and Services Function
by admin posted on Nov 24,2008
» Understanding and Analyzing the Network
by admin posted on Nov 24,2008
» Cisco Enterprise IDS Management
by admin posted on Nov 26,2008
Did you enjoy this article?
(total 0 votes)

comment Comments (0 posted) 

More Top News
CCSP-Cisco Certified Security Professional
Most Popular
Most Commented
Featured Author