network security : introduction 01 introduction 20110527

Upload: lee-chan

Post on 14-Jan-2016

11 views

Category:

Documents


0 download

DESCRIPTION

Network Security : Introduction

TRANSCRIPT

Network Security : Introduction

Network Security : Introduction

SecurityCIA ( Confidentiality , Integrity , Availability)AAA (Authentication , Authorization , Accounting)PDR (Prevent , Detect , Respond) CIA,AAA,PDR / / Certificate Software Engineering Software Testing Security Testing

SecurityCIAAAAPDRCIAConfidentiality : Integrity : Availability : AAAAuthentication : Authorization : Accounting :

PDRPrevent : Detect : Respond : CIA,AAA,PDR IP Protocol : IP SecurityWorld Wide Web : SSLWireless Network : WEP,WPA, MAC FilteringNetwork Flow : Firewall, IDS/IPSNetwork Service Security : Vulnerability Scanner Tools

.. .. ..

SecurityISO/IEC 27000

CertificateCISSPCISMCISAGIAC

CISSP : Certified Information Systems Security Professional1989. International Information Systems Security Certification Consortium (ISC)2. Certificate multiple choice information security 10 'Cryptology', 'Law, Investigation and Ethics'.www.cissps.com , www.isc2.org CISM : Certified Information Security Manager Information Systems Audit and Control Association (ISACA). IT, , , , , www.isaca.orgCISA : The Certified Information Systems Auditor www.isaca.orgGIAC : Global Information Assurance Certification 1999. SANS institute. technical specialists. Intrusion Detection, Incident Handling, Firewalls and Perimeter Protection, Forensics and Hacker Techniques. 2 4 www.giac.orgResourcesComputer Security Division Computer Security Resource Center / National Institute of Standard and Technology (CSRC/NIST)csrc.nist.govComputer Emergency Response Team(CERT)www.cert.orgSANSwww.sans.orgSecurity Focuswww.securityfocus.com