Home

Medical Pages

Car Reviews

Archives

New Archives

RSS Feed

Subscribe

Links

Letters

Advertise

Bogota Free Planet


CFP Menu

CFP Archives

CFP Automotive

CFP Magazine





terrorism




broken watermains
Profitable Property For Retirement…Overseas!
International Living
Brent MacLean  Bio
Email Article
Email Us
printPrint friendly

Firewalls, Passwords and Viruses

The Top Internet Security Screw Ups

 By Brent MacLean  Sunday, October 21, 2007

With over 14 years experience of defending against Internet Security threats, Brent MacLean, Managing Director of J.B. MacLean Consulting Inc., has seen it all. The top ten Internet security screw ups. So here they are, in reverse order (saving the best to last):

10) Failing to archive firewall log files. Firewalls are often correctly configured with full logging enabled. This tends to generate massive amounts of data, but often they are referred to only when there is a problem. However, left unattended, they can become a problem by their own permissions. Before you know it, you have 10GB of data and a terrible shortage of disk space. Complete system failure soon follows and often the system has to be rebuilt from scratch; not a good thing.

9) Not knowing where your sensitive passwords are documented. Nothing makes supporting customers more of a challenge than if they cannot remember where their passwords are documented and/or stored. That is, of course, if they had correctly and securely documented them at all. Often, passwords remain in the heads of administrators, and are simply shared by word of mouth or by voice mail or email. You might as well write them on a poster and display them on an office wall. Let’s get security protocols in place people.

8) Not systematically scanning all incoming emails for harmful viruses. Without question, email borne viruses are today the biggest internet security threat. Fortunately, most corporations and large networks have aggressive email virus scanning techniques and methodologies--either deployed in-house or using one of the growing number of managed services. Unfortunately, some businesses, still don’t see the need, thinking that it is sufficient to deploy workstation virus products. Why let the viruses through the front door in the first place?

7) Not blocking Instant Messaging on your firewall. With Microsoft now in a big push to get people using their IM technology, we are beginning to see IM clients freely deployed in businesses, mainly by users. Without proper auditing and control procedures, IM simply opens up a porthole that can be used by the unscrupulous to disseminate viruses and worms. If you haven’t thought through the challenges of allowing IM onto your network, the simplest thing to do is to block it at the firewall. Plain and simple.

6) Depending too much on users to patch their own workstations. Let’s face it people; users are terrible at following even the simplest of instructions. We all know how difficult Microsoft makes it for administrators to keep their products properly patched. There are tools to make life easier, although it has to be said that some seem to make the task of patching more difficult. Hopefully one day MS will crack the problem, but until then, depending on users to patch reliably and regularly is a strategy targeted for disaster.

5) Not having an incident response plan (IRP). All networking and security professionals know that even with the best planning in the world, something will always go wrong with technology growing by leaps and bounds. It simply isn’t possible, with today’s complex environments, to be 100% secure. As luck would have it, the first major problem will come while you are on a glorious vacation up some remote hillside in Tuscany. Have an incident response plan, even a very simple one; at least it is a start. What are you going to do when a problem arises, who are you going to call for help and why didn’t you print if off rather than leave it stored on a fileserver which no-one can now log into? Let’s get some emergency policies in place, everyone. It is simple protocol.

4) Failing to disable accounts for departed employees. You would not believe how frequently HR fails to tell IT that an employee has left the business. They might, if you are lucky, remember to ask them for their mobile phone, but hey, why not let’s leave all their remote access in place! Can we say a disaster waiting to happen?

3) Failing to configure any security on a wireless access point. We all know wireless is here to stay. But, if you are going to broadcast all your company’s data to the world and potential hackers, perhaps it is a good idea to enable the basic security features that comes standard with the product. It may not be the greatest, and it may be inconvenient, but it sure beats having to explain to the boss why he was able to connect to the network from the car park on his new wireless PDA, just purchased at Best Buy.

2) Not keeping your firewall patched. This is pretty much tantamount to paying for an expensive lock on your front door at home and then leaving the keys in the lock--on the outside! And of course if you are going to patch the firewall software, don’t forget to patch the underlying operating system if there is one.

And the oscar goes to...not securing home PCs with their own firewall, VPN and virus detection. It was difficult to decide what should be top of the list, but this won out. With broadband and laptops becoming widely deployed, users are accessing corporate resources from outside your logical boundary. If these machines are not properly secured, then neither is your network!

Security is here to stay and is a growing field in all aspects. So let’s get it right the first time. Here are just a few friendly tips...more to come so stay tuned.

Posted 10/21 at 05:26 AM   Email  (Permalink

 This piece is in Category: Security




What's New On CFP:
  1. Murdered Lebanese can Thank UN (Cover Story) May 11, 2008
  2. Force is the only Language that Hezbollah knows and understands (Middle East) May 11, 2008
  3. Do your part to fight Bill C-51 (Canada) May 11, 2008
  4. When you Call tech support… (American Politics) May 11, 2008
  5. Left with no market, growers destroy trees (Cover Story) May 11, 2008
  6. Living on the Edge of Destruction: Israel’s 60th Anniversary (World News) May 11, 2008
  7. The Facts about Institutional Campaign Funding (American Politics) May 11, 2008
  8. Does the Rule of Law Still Matter at All in America? (American Politics) May 11, 2008
  9. Former Leftist Talk Show Host, Child Pornographer Headed to Slammer! (Media - Media Bias) May 11, 2008
  10. The Immigration Disintegration (Immigration) May 11, 2008
  11. Hillary’s All or Nothing. (American Politics) May 11, 2008
  12. They’re Just Newfies… (Atlantic Canada) May 11, 2008
  13. Must We Suffer Global Famine Again? (Energy & Environment) May 11, 2008
  14. US Indicts Top Int’l Arms Dealer for Conspiracy to Kill Americans, Terrorism (True Crime) May 11, 2008
  15. Canadian Catholic priest and CFP columnist Father Bernard F. Heffernan is returning to Cannes (Entertainment) May 10, 2008
  16. “Without Adherence to Principle, There is Chaos!” (American Politics) May 10, 2008
  17. Obama & Ahmadinejad: Trust But Don’t Verify (American Politics) May 10, 2008
  18. Global warming hysteria: how the pendulum has swung (Global Warming) May 10, 2008
  19. Government of the People or By the Faction? (Collector's Corner) May 10, 2008
  20. American unions and their about face on immigration (American Politics) May 9, 2008
  21. The Charisma Kid (American Politics) May 9, 2008
  22. Colombian Paramilitary Leader Extradited to US to Face Drug Charges (True Crime) May 9, 2008
  23. The great strength of gold (Business News) May 9, 2008
  24. Electronics Recycling Tax Grab Between $105 and $210 million Per Year (Financial, Business, Economy) May 9, 2008
  25. The Troop Talk Scam (American Politics) May 9, 2008
  26. Let everyone, especially students, hear the whole story about climate science (Previous Covers) May 9, 2008
  27. Afrocentric schools- an exercise in self-marginalization (Canada) May 9, 2008
  28. Referrals: The Easiest Form of Advertising - How to Grow Your Client Base (Financial, Business, Economy) May 9, 2008
  29. PM Harper of Canada stands up for Israel, unequivocally (Canada) May 9, 2008
  30. Open Doors USA Urges Prayer for Cyclone Victims in Burma (Christianity) May 8, 2008
  31. Forecasting expert says polar bear models critically flawed (Global Warming) May 8, 2008
  32. Airport Wayfinder Arrives in Toronto - Travel Just Got Easier (Travel) May 8, 2008
  33. Gold’s “win-win situation” May 8, 2008
  34. Act Now to Stop Oklahoma NAFTA Superhighway! (American Politics) May 8, 2008
  35. Aid Urgently Needed in Myanmar (Burma) (Christianity) May 8, 2008
  36. Molly the heroic pony (Pets) May 8, 2008
  37. The Race is Now About “Race” (American Politics) May 8, 2008
  38. Tribune Covers for Obama’s Terrorist Friends (American Politics) May 8, 2008
  39. Operation Chaos and Hillary’s Future (American Politics) May 8, 2008
  40. New Study: Conservatives are Happier Because They Hate Everyone (American Politics) May 8, 2008

Pursuant to Title 17 U.S.C. 107, other copyrighted work is provided for educational purposes, research, critical comment, or debate without profit or payment. If you wish to use copyrighted material from this site for your own purposes beyond the 'fair use' exception, you must obtain permission from the copyright owner.

Views are those of authors and not necessarily those of Canada Free Press. Content is Copyright 2008 the individual authors.

Site Copyright 2008 CanadaFreePress.Com Privacy Statement
 
Fear no man












Powered by ExpressionEngine