[Agenda]
[Examples]
[Network Partitioning]
[Concepts]
[Policy]
[Process]
[Organization]
[HW-SW]
[Cases studies]
[Conclusion]
[Resources]
Solutions?
What folks might suggest initially
A trainee sniffs the network and gets all mailboxes passwords
Move to a full switched network and avoid network sniffing
A subcontractor shuts down all the 300 WNT servers with a DoS
Secure your WNT servers, upgrade WNT, apply hot-fixes
Employees look at web site of a subsidiary in another country
Add user authentication and access control on the company web servers (100 +) and subsidiaries (30 +)
Someone hacked the bank wire transfers
Cut off the connection from internal network to the database server (it remains connected to the bank)
A cooperative partner steals the specifications of version N+1
Add stronger user access-security at the operating system layer on all servers
® ©
Hervé Schauer Consultants
December 1999 - 142, rue de Rivoli - F-75001 Paris - France
Phone: +33 141 409 700 - Fax: +33 141 409 709 - Email: <secretariat@hsc.fr>
- Page 5 -