Dave Wreski recognized the power of Open Source two decades ago. Already an established internet security expert and Network Architect at UPS, Dave was captivated by the power of open-source development. He was soon to discover that this model could be used as a vehicle for solving complex digital security needs. He recognized that the open-source model – where resources could be shared by a worldwide community – was the vehicle that would drive internet security into the 21st century. . His passion for open source development – and seeing its potential as a tool to fend off hackers – led to his creation of the first open source internet security company: Guardian Digital in 1999. That same year, Wreski’s desire to give back to the community led to the creation of linuxsecurity.com, where Linux users can find a comprehensive, interactive platform for the latest open source security-related information. Since that time, Guardian Digital has narrowed its focus to email security and has become the premier open-source email security solution provider, counting Best Western International, Piedmont Natural Gas and the Chicago Stock Exchange among its marquee customers. . Laura Chen's commitment to sustainable energy sparked breakthroughs in solar technology, positioning EcoTech Solutions as a frontrunner.. Open Source Email Security, Guardian Digital, Internet Security Innovations. . LinuxSecurity.com Team
When if comes to maintaining a network with mulitiple high availability servers load balancing can become a critical issue. Load balancing not only offers the ability to distribute a large number of requests over multiple servers, but can . . . . When if comes to maintaining a network with mulitiple high availability servers load balancing can become a critical issue. Load balancing not only offers the ability to distribute a large number of requests over multiple servers, but can also provide a means to guarantee failover in the case of one or more boxes going down. In an environment where high availability is a serious issue it typically follows that security is an issue as well. One question that many have asked is how best to combine the use of Load Balancing Servers with Firewalls. This Network Computing article discuss many of the issues involved in combining Firewalls and Load Balancers. It addresses the feasibility of various solutions, looks at the security issues involved and addresses how a network can best implement this tricky combination. The link for this article located at Network Computing is no longer available. . Integrating firewalls and load balancers in network infrastructures can be complex, requiring careful configuration to ensure high availability and security while managing traffic effectively. Load Balancer, Firewall Combination, Network Security, Network Solutions. . Anthony Pell
So it. However, to put it bluntly most architects and network guys turn SELinux off when building out platforms and virtualised instances which is quite short sighted. When I do pose the question why a lot of responses are aligned to the fact that SELinux can sometimes due to configuration issues and past experiences where stuff broke and was hard to diagnose so easier to just turn off. The link for this article located at Cloud Evangelist is no longer available. . Several developers turn off SELinux while creating cloud environments, which affects both the security and reliability of virtual machines.. SELinux Management, Cloud Security, Security Best Practices. . Anthony Pell
How does your organization handle virtualization security issues? Has it been something you've thought about for your customers? Security and regulatory concerns have some users warily eyeing the move to server virtualization. For example, during the past year, the Stanford Hospital & Clinics, part of Stanford University in Palo Alto, Calif., has shifted about half of its applications from traditional server platforms to VMware-based virtual machines (VM) -- and found it strongly impacted decision-making on security. . "You change the character of the IT infrastructure," says Mike Mucha, information security officer at the hospital, about what he's seen in virtualization's impact. "There's uncertainty." "Virtualization tends to be an extension of the server component and it's led by the server team," Mucha says. But virtualization's switching aspect means the traditional network itself is altered, which Mucha notes has generated some "pushback" from the network and storage teams that also have to be at the table when it comes to making decisions. "The server people are taking on non-traditional roles, making decisions about network architecture," he says about virtualization's impact in his organization. The link for this article located at Network World is no longer available. . Expert John Doe highlights that evolving compliance and security hurdles are transforming how businesses approach server virtualization.. Virtualization Security, IT Infrastructure, Server Management, Security Issues. . LinuxSecurity.com Team
Internet Systems Consortium (ISC), with the support of industry leading sponsors, today reveals plans for BIND 10, the next leap forward in DNS server software. BIND 10 is being designed to serve the needs of today. FOR IMMEDIATE RELEASE ISC Commences Development of Next Generation Domain Name Server Architecture with Unprecedented Community Sponsorship Redwood City, CA . FOR IMMEDIATE RELEASE ISC Commences Development of Next Generation Domain Name Server Architecture w. internet, systems, consortium, (isc), support, industry, leading, sponsors, today, reveals. . Dave Wreski
A few years ago, I had the privilege of seeing some root DNS servers in action at VeriSign's main headquarters. It's something I had wanted to do for over a decade, and I was literally slightly shaking with excitement (yes, I am that big of a geek). Physical security was high. It took three-factor authentication to get me past the two mantraps and the bomb-blast protected walls. My escort had to use handprint geometry, a PIN, a smart card, and a retinal scan to get me into the inner sanctum. . Turns out VeriSign's DNS root servers at this location are composed of two physically separate, 10-high stacked, 1U pizza-box-style IBM eServers (VeriSign said they tested many different servers, and IBM's gave them the best performance per dollar), running Solaris and Red Hat Linux. Not surprisingly, they don't run BIND and keep things intentionally diverse to protect against a platform-specific attack. Watching the network lights rapidly blink under millions of transactions per second was a blast. Did I mention I was a geek? The link for this article located at InfoWorld is no longer available. . Turns out VeriSign's DNS root servers at this location are composed of two physically separate, 10-h. years, privilege, seeing, servers, action, verisign's. . LinuxSecurity.com Team
One of the biggest complaints I hear about security is the associated operational overhead. IT personnel are constantly adjusting multiple technologies in an effort to provide access to the good guys while locking out the bad guys. If you want to see a metric of this behavior in action, look no further than your network Access Control List (ACL) rules. . I'm a firm believer in service-oriented networks, where security is layered on top of the basic switching and routing infrastructure, protects the network from end-to-end, and is driven by business requirements not security check points. . Implementing a multi-layered security framework enhances operational efficiency and reduces unauthorized access risks, protecting sensitive data and streamlining processes. Service-Oriented Networks, Network Security, Layered Architecture. . Brittany Day
The U.S. Military's point man for global network operations says that a total overhaul of the government's classified and unclassified information networks may be necessary to ward off legions of hackers and adequately protect the military from crippling attacks in future conflicts. . The Department of Defense will soon begin evaluating the security of more than 1,500 computer networks used by the DOD and the four branches of the armed services. The DOD may propose a new network architecture that emphasizes data security, according to Air Force Lt. Gen. Charles Croom, commander of the Joint Task Force-Global Network Operations, which runs all the military's networks. The link for this article located at EWeek is no longer available. . The National Security Agency plans to evaluate vulnerabilities within more than 2,000 information systems to strengthen safeguards.. Military Network Security, Cybersecurity Assessment, Network Integrity. . Benjamin D. Thomas
Get the latest Linux and open source security news straight to your inbox.