var vKCArticle=new theArticle(null,'','9bad8980-f61c-43e4-8165-c26dd40f1bf0',5,'Information: Defense in Depth / How to best protect your network and your files.'); vKCArticle.SetStats(0,0,0,0,0,0); vKCArticle.AddProperty('Summary','This is a brief description of what Defense in Depth is and how to apply it.'); vKCArticle.AddProperty('Content','Defense In Depth stems from the idea that software is flawed; people make configuration errors and hardware can fail. To compensate for events like these, we do not want to rely on a single security solution. Instead, deployment of multiple layers of protection is necessary to maintain security in case one device fails or one firewall is not configured properly.\n

Security must be built into the network and not be an afterthought.\n

When applying Defense In Depth to your network, always start at your border. This is where your network meets your ISP’s connection or connections. A good firewall is where you want to start. Most firewalls will do network address translation also. From here you will want to segment your network. For example, separate accounts payable from marketing by placing a router or firewall between them. If someone breaks the security at your border firewall, you can minimize the damage by not allowing them into another section of your network.

\n

Run a software firewall and anti-virus on your desktops. If a worm gets in your network, they can be stopped at the desktop by a software firewall and up-to-date anti-virus. Software firewalls can not stop everything and can be shutoff by some viruses, however, it is still feasible to run such protection on the desktops. At the very least, if a computer gets infected and tries to spread the virus, your software should alert you to this activity and the machine can be isolated.\n

Run anti-virus and anti-spam on your mail server. Many viruses are delivered by email. They are just waiting for someone to ‘click’ them so they can infect your whole network. Stop them before they reach your users.\n

Sign up for alerts. Many companies are out there ready to provide you with assistance for free! Sign up for virus alerts from Mcafee or Norton. Receive alerts about software flaws at Secunia. There are many different alerts you can sign up for, these are just a few.\n

This is only a brief explanation of Defense In Depth. You should always audit your network and find where you are vulnerable then secure it as soon as possible.\n

For more information on Defense In Depth and what works in the ‘real world,\' visit SANS.

'); vKCArticle.AddProperty('Frequently Asked Questions',''); vKCArticle.AddProperty('Applies to','All Cox Business Service customers'); vKCArticle.AddProperty('Related Links','Netscreen
\n
Juniper
\nSonic Wall
\nCisco\nSANS
\nMcafee
\nNorton.');