Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
More and more companies are letting staffers work remotely. In fact, the number of U.S. employees who work remotely at least one day per month has increased by nearly 40 percent since 2001, according to a recent study conducted by The Dieringer Research Group.. . .. More and more companies are letting staffers work remotely. In fact, the number of U.S. employees who work remotely at least one day per month has increased by nearly 40 percent since 2001, according to a recent study conducted by The Dieringer Research Group. But most of these companies still rely on IP security or Point-to-Point Tunneling VPNs to ensure secure access to internal resources. Sure, these protocols keep out prying eyes, but these setups have some inherent problems: Typically, VPNs struggle with NAT (network addres translation) traversal, access control for traffic in the tunnel and client anagement. As an alternative, you should consider Secure Sockets Layer VPNs. SSL VPNs eliminate nearly all the problems associated with IPsec and PPTP VPNs. The term SSL VPN is a bit of a misnomer, however. A VPN typically establishes the remote client as a node on the protected network; an SSL VPN extends secure access to protected resources for remote users. Other pluses: Users connect to the network over the Web; with the browser as the client, everything the user needs is readily available. And SSL over Port 443 is allowed nearly everywhere, so there is little chance your remote users won't be able to access corporate resources. However, like everything else in life, you get what you pay for. According to our estimates, the average per-user price of an SSL VPN is more than the $40 to $75 per user you'd pay for a traditional VPN setup. But for those companies with slightly deeper pockets, the increase in mobility and the decrease in support and maintenance costs make these products worth considering. The link for this article located at Network Computing is no longer available. . More and more companies are letting staffers workremotely. In fact, the number of U.S. employees wh. companies, letting, staffers, remotely, number, employees. . LinuxSecurity.com Team
Jan Kanclirz submits This is a paper describing security meassures one should take that are often overlooked at our Edge Routers. Securing routers with secure management protocols like SSH and filtering advise to prevent unwanted attacks. . .. Jan Kanclirz submits This is a paper describing security meassures one should take that are often overlooked at our Edge Routers. Securing routers with secure management protocols like SSH and filtering advise to prevent unwanted attacks . The link for this article located at MakeSecure is no longer available. . For strong edge router security, employ SSH for secure remote management, utilize robust authentication and regularly update firmware, ensuring robust defenses.. Edge Router Security, SSH Management, Network Safety. . Anthony Pell
The border gateway protocol, a widely used technology for efficiently routing data through the Internet, is rife with security holes and needs to be replaced, a security consultant warned.. . .. The border gateway protocol, a widely used technology for efficiently routing data through the Internet, is rife with security holes and needs to be replaced, a security consultant warned. However, a technological chicken-and-egg problem has stymied the development of a secure replacement for BGP, said Stephen Dugan, speaking at the Black Hat Security Briefings here on Thursday. There'll only be an improvement if the majority of routers use a secure protocol--but the high cost of implementing Secure BGP means that few companies will adopt it. "The people who are writing the (Internet engineering) drafts are running out of financing because people aren't listening," Dugan said. "We need to develop the technology before someone attacks the system. But until there is an attack, companies might not be willing to spend the money." The link for this article located at ZDNet is no longer available. . The border gateway protocol, a widely used technology for efficiently routing data through the Inter. border, gateway, protocol, widely, technology, efficiently, routing, through, inter. . LinuxSecurity.com Team
Securing your network activity is not difficult, but it does require an awareness of how certain protocols work. This article will attempt to address these protocols and situations and suggest ways of adding security.. . .. Securing your network activity is not difficult, but it does require an awareness of how certain protocols work. This article will attempt to address these protocols and situations and suggest ways of adding security. The tools and protocols discussed in this article all have one thing in common: they all send data over the Internet in plain text. What this means is, when the data is leaving one user's computer on the way to another computer, it's not encoded in any way. Imagine someone having a phone conversation with someone in another city. Then, in the first person's house, someone picks up an extension and hears the conversation. This person can now eavesdrop on the conversation without difficulty. This is exactly what can happen to network traffic as it travels between computers. The link for this article located at OS Opinion is no longer available. . Securing your network activity is not difficult, but it does require an awareness of how certain pro. securing, network, activity, difficult, require, awareness, certain. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.