思科推出 Network Foundation Protection。
http://www.cisco.com/warp/public/732/Tech/security/infrastructure/
印证我说过的, 要建立安全的网络, 必须有安全,可靠的网络设备。为什么会有FW, IDS/IPS出现,其更本原因是原来的 Router / Switch 不具有FW /IPS的功能,但今天这种情况正在改变。
微软的系统没有漏洞了, 网络世界是否就安全了? 我看不尽然。因为人们已经学会了一些攻击手段,
DDOS 时时都有爆发的可能。
要想解决问题, 网络层上就靠 QoS !! 我一直认为 CoS /ToS /Q0S 是解决DDOS的好办法。
今后, 安全问题会慢慢从网络,系统转向应用, 内容的监控!! 尤其在中国, 不良信息的传播一定会严格控制。例如, 短信平台的监控, 卫星电视的监控, WEB 内容, email的内容, 电话监控, 手机监控等。今天听说了要对网络上传播的 语音数据, 视频数据进行监控, 所以内容安全(我更愿意说监控)是一个永久的话题。
"拖拉机" 就不能上高速。救护车, 救火车就是有特权。公交车有专用道。开车要系保险带。骑摩托车要带头盔。这些基本的安全原则,一样适用于网络这个虚拟社会。
Tuesday, February 22, 2005
Tuesday, February 15, 2005
Monday, February 14, 2005
FREEDOM IS NOT FREE
http://www.nps.gov/kwvm/memorial/freedom.htm
1950.06.25 -- 1953.07.27
Tae Guk Gi
我想网络安全也需要我们付出才有可能回报。如果不付出, 肯定没回报。还是哪句话, 努力了不一定成功, 但是, 不努力, 肯定不成功。
Freedom is not Free!!
GNU is not Unix.
http://www.nps.gov/kwvm/memorial/freedom.htm
1950.06.25 -- 1953.07.27
Tae Guk Gi
我想网络安全也需要我们付出才有可能回报。如果不付出, 肯定没回报。还是哪句话, 努力了不一定成功, 但是, 不努力, 肯定不成功。
Freedom is not Free!!
GNU is not Unix.
Friday, February 04, 2005
KAO, 春节要到了,MSN病毒又来了。
【赛迪网讯】从2月3日上午9点20分开始,许多MSN Messenger用户都收到好友传来的“underware.pif”、“bedroom-thongs.pif”、“Hot.pif”、 “LOL.scr”文件。文件名会不断自动更改,文件大小为185KB,实质是一个MS-DOS可执行文件。这是最新的未知MSN病毒,MSN 6.0/6.2.7.0Beta用户都有可能受到感染。用户中毒后会反复登录MSN Messenger并向所有在线好友发送不断自动生成新文件名的病毒。
赛迪网在第一时间通知了各大反病毒软件厂商,并将继续予以关注,本站接到的瑞星公司分析报告称:用户点击运行病毒文件之后,会看到一只 鸡的搞笑图片,这时候用户就已经中毒。该病毒除了利用MSN向外发送病毒文件,消耗系统资源之外,还会在中毒电脑里放置后门程序,使黑客可以远程控制该电 脑,从而使用户面临极大的安全威胁。根据病毒发作状况,瑞星公司将之命名为“性感烤鸡(worm.msn.chicken)”病毒。
http://news.ccidnet.com/pub/article/c1032_a212277_p1.html
MSN Messenger爆新病毒 接收文件一定要小心!
赛迪网在第一时间通知了各大反病毒软件厂商,并将继续予以关注,本站接到的瑞星公司分析报告称:用户点击运行病毒文件之后,会看到一只 鸡的搞笑图片,这时候用户就已经中毒。该病毒除了利用MSN向外发送病毒文件,消耗系统资源之外,还会在中毒电脑里放置后门程序,使黑客可以远程控制该电 脑,从而使用户面临极大的安全威胁。根据病毒发作状况,瑞星公司将之命名为“性感烤鸡(worm.msn.chicken)”病毒。
http://news.ccidnet.com/pub/article/c1032_a212277_p1.html
Tuesday, February 01, 2005
Thursday, January 27, 2005
思科的路由器也有漏洞! 今天,一口气给了三个。
Cisco Security Advisory: Multiple Crafted IPv6 Packets Cause Reload
Revision 1.0
For Public Release 2005 January 26 1600 UTC (GMT)
Cisco Security Advisory: Crafted Packet Causes Reload on Cisco Routers
Revision 1.0
For Public Release 2005 January 26 1600 (GMT)
Cisco Security Advisory: Crafted Packet Causes Reload on Cisco Routers
Revision 1.0
For Public Release 2005 January 26 1600 (GMT)
Cisco Security Advisory: Multiple Crafted IPv6 Packets Cause Reload
Revision 1.0
For Public Release 2005 January 26 1600 UTC (GMT)
Cisco Security Advisory: Crafted Packet Causes Reload on Cisco Routers
Revision 1.0
For Public Release 2005 January 26 1600 (GMT)
Cisco Security Advisory: Crafted Packet Causes Reload on Cisco Routers
Revision 1.0
For Public Release 2005 January 26 1600 (GMT)
Wednesday, January 26, 2005
IPS 的评测文章, 思科,McAfee, Symantec 都没参加这次测试。
到底有多少厂家可以提供IPS呀? 防火墙热潮过去之后, IPS又来了。
Detecting network intrusions is no longer enough.
Network IPSs (intrusion-prevention systems) can help keep your systems safe by identifying and blocking suspicious traffic.
http://www.nwc.com/story/singlePageFormat.jhtml?articleID=57700108
到底有多少厂家可以提供IPS呀? 防火墙热潮过去之后, IPS又来了。
Detecting network intrusions is no longer enough.
Network IPSs (intrusion-prevention systems) can help keep your systems safe by identifying and blocking suspicious traffic.
http://www.nwc.com/story/singlePageFormat.jhtml?articleID=57700108
Tuesday, January 25, 2005
Monday, January 24, 2005
百度发布正式声明 否认昨日攻击8848网站
http://news.ccidnet.com/pub/article/c951_a207783_p1.html某网络游戏不见收敛 “宽衣解带”仍在上演
http://news.ccidnet.com/pub/article/c1032_a133558_p1.html
http://bbs.ccidnet.com/index.php?forumid=4&threadid=150291
联众“财富值游戏”是网络游戏or变相赌博?
http://news.ccidnet.com/pub/html/news/zhuanti/0111game/index.htm
看看这些标题, 2005年的互联网给我的感觉就是"乱!" 居然有人采用 DDOS 的手段来攻击8848?
时间会给出答案的。
要不是因为有陈俊圣这三个字,我是不会关注这篇新闻的。
1月18日凌晨消息,英特尔公司宣布了一项涉及广泛的重组计划,公司创建了两个新部门,分别负责数字医疗业务以及全球渠道分销业务。
英特尔公司同时宣布,公司负责销售、市场业务的副总裁陈俊圣由于家庭健康原因,将在本月底离职。
当年从大I到了小i, 从Intel的销售经理坐起。经常在中关村活动,后来升任Intel全球付总裁。记得当年在UE时给我们讲台湾的销售送金名片的故事,当时真是深受启发。感觉外企的销售真是专业呀。
还记得在海南被众Intel网络设备的代理们起哄把他扔到了游泳池里。
10年了。IT业就是这样,10年应该是长时间了。今天看到这条消息, 感受颇多。
------------------------
1月18日凌晨消息,英特尔公司宣布了一项涉及广泛的重组计划,公司创建了两个新部门,分别负责数字医疗业务以及全球渠道分销业务。
英特尔公司同时宣布,公司负责销售、市场业务的副总裁陈俊圣由于家庭健康原因,将在本月底离职。
当年从大I到了小i, 从Intel的销售经理坐起。经常在中关村活动,后来升任Intel全球付总裁。记得当年在UE时给我们讲台湾的销售送金名片的故事,当时真是深受启发。感觉外企的销售真是专业呀。
还记得在海南被众Intel网络设备的代理们起哄把他扔到了游泳池里。
10年了。IT业就是这样,10年应该是长时间了。今天看到这条消息, 感受颇多。
------------------------

| 简历:2003年5月,Intel公司任命陈俊圣为全球副总裁兼销售市场部总经理。陈 俊圣于1988年毕业于密苏里大学工商管理学院,后在IBM公司任职。1991年陈俊圣加入英特尔,任台湾地区经销渠道经理。1993年,陈先生到北京任 职,负责中国区的销售工作。陈俊圣是英特尔公司副总裁、亚太区总裁,全面负责英特尔公在亚太区的销售、市场和产品工作。陈俊圣是第一个来自本地的亚太区总 经理,是英特尔鼓励当地人士进入高级管理层计划的成功代表。 |
Wednesday, January 19, 2005
思科终于有了中文的路由器说明书了。但只是3800的,估计以后还会有很多,很多。
http://cisco.com/application/pdf/en/us/guest/products/ps5855/c1616/ccmigration_09186a00802d15b7.pdf
http://cisco.com/application/pdf/en/us/guest/products/ps5855/c1616/ccmigration_09186a00802d15b7.pdf
Friday, January 14, 2005
Thursday, January 13, 2005
Tuesday, January 04, 2005
Friday, December 31, 2004
Friday, December 24, 2004
Friday, December 17, 2004
Security is no longer about simply keeping the bad guy out.
安全不只是简单的将坏人当在外面。说的好!!!
Firewalls and intrusion detection alone won't cut it. Web-based applications are increasingly vulnerable to attack.
Security is no longer about putting up walls around the data center and simply trying to keep the bad guys out.
Network managers, IT managers and security professionals must now focus security efforts at the application layer, using intelligence and insight to prevent attacks and unauthorized uses of corporate information.
安全不只是简单的将坏人当在外面。说的好!!!
Firewalls and intrusion detection alone won't cut it. Web-based applications are increasingly vulnerable to attack.
Security is no longer about putting up walls around the data center and simply trying to keep the bad guys out.
Network managers, IT managers and security professionals must now focus security efforts at the application layer, using intelligence and insight to prevent attacks and unauthorized uses of corporate information.
Subscribe to:
Posts (Atom)