TAILIEUCHUNG - Site Security Handbook

Use caution when testing. Certain types of testing, including network scanning, vulnerability testing, and penetration testing, can mimic the signs of attack. It is imperative that testing be done in a coordinated manner, with the knowledge and consent of appropriate officials. Ensure that security policy accurately reflects the organization’s needs. The policy must be used as a baseline for comparison with testing results. Without appropriate policy, the usefulness of testing is drastically limited. For example, discovering that a firewall permits the flow of certain types of traffic may be irrelevant if there. | Network Working Group Request for Comments 2196 FYI 8 Obsoletes 1244 Category Informational B. Fraser Editor SEI CMU September 1997 Site Security Handbook Status of this Memo This memo provides information for the Internet community. It does not specify an Internet standard of any kind. Distribution of this memo is unlimited. Abstract This handbook is a guide to developing computer security policies and procedures for sites that have systems on the Internet. The purpose of this handbook is to provide practical guidance to administrators trying to secure their information and services. The subjects covered include policy content and formation a broad range of technical system and network security topics and security incident response. Table of Contents 1. Purpose of this Work. 3 Audience. 3 Related Basic Approach. 4 Risk 2. Security What is a Security Policy and Why Have One .6 What Makes a Good Security Policy .9 Keeping the Policy 3. Network and Service Firewalls. 20 4. Security Services and Fraser Ed. Informational Page 1 RFC 2196 Site Security Handbook September 1997 Authorization. 29 Access. 30 Auditing. 34 Securing Backups. 37 5. Security Incident Preparing and Planning for Incident Notification and Points of Identifying an Handling an Aftermath of an Incident. 58 6. Ongoing 7. Tools and 8. Mailing Lists and Other 9. 1. Introduction This document provides guidance to system and network administrators on how to address security issues within the Internet community. It builds on the foundation provided in RFC 1244 and is the collective work of a number .

TỪ KHÓA LIÊN QUAN
TAILIEUCHUNG - Chia sẻ tài liệu không giới hạn
Địa chỉ : 444 Hoang Hoa Tham, Hanoi, Viet Nam
Website : tailieuchung.com
Email : tailieuchung20@gmail.com
Tailieuchung.com là thư viện tài liệu trực tuyến, nơi chia sẽ trao đổi hàng triệu tài liệu như luận văn đồ án, sách, giáo trình, đề thi.
Chúng tôi không chịu trách nhiệm liên quan đến các vấn đề bản quyền nội dung tài liệu được thành viên tự nguyện đăng tải lên, nếu phát hiện thấy tài liệu xấu hoặc tài liệu có bản quyền xin hãy email cho chúng tôi.
Đã phát hiện trình chặn quảng cáo AdBlock
Trang web này phụ thuộc vào doanh thu từ số lần hiển thị quảng cáo để tồn tại. Vui lòng tắt trình chặn quảng cáo của bạn hoặc tạm dừng tính năng chặn quảng cáo cho trang web này.