Foundations of Network Security
Total Page:16
File Type:pdf, Size:1020Kb
© Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Digital_Art/Shutterstock © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION PART 1 © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION Foundations of Network Security © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION CHAPTER 1 Fundamentals of Network Security 3 CHAPTER 2 Network Security Threats 31 © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION CHAPTER 3 Common Network Topologies and Infrastructures 67 CHAPTER 4 Network Design Considerations 97 © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning,© Jones LLC & Bartlett Learning LLC, an Ascend Learning© Jones Company. & NOT Bartlett FOR SALE Learning, OR DISTRIBUTION. LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION 9781284183658_CH01_Stewart.indd 1 15/09/20 8:18 PM © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION © Jones & Bartlett Learning,© Jones LLC & Bartlett Learning LLC, an Ascend Learning© Jones Company. & NOT Bartlett FOR SALE Learning, OR DISTRIBUTION. LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION 9781284183658_CH01_Stewart.indd 2 15/09/20 8:18 PM © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION CHAPTER Fundamentals© Jones & Bartlett Learning, of Network LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE1 OR DISTRIBUTION © Digital_Art/Shutterstock Security © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOROMPUTER SALE ORNETWORK DISTRIBUTION SECURITY is very complex. New threatsNOT from FOR inside SALE and outside OR DISTRIBUTION networks appear constantly. In response, the security community is constantly developing Cnew products and procedures to defend against threats of the past and unknown threats of the future. © Jones & BartlettAs Learning, companies merge,LLC people lose their jobs, new© Jones equipment & comesBartlett online, Learning, and business LLC tasks change, people do not always do what you expect. Network security configurations that NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION worked well yesterday might not work quite as well tomorrow. In an ever-changing business climate, whom should you trust? Has your trust been violated? How would you even know? Who is attempting to harm your network this time? And why? Because of these complex issues, you need to understand the essentials of network security. This chapter will© Jonesintroduce & you Bartlett to the basic Learning, elements of LLC network security. Once you have© Jonesa firm & Bartlett Learning, LLC grasp of theseNOT fundamentals, FOR SALE you will OR be well DISTRIBUTION equipped to put effective security measuresNOT into FOR SALE OR DISTRIBUTION practice on your organization’s network. © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FORChapter SALE OR1 Topics DISTRIBUTION NOT FOR SALE OR DISTRIBUTION This chapter covers the following topics and concepts: • What is meant by network security • The items protected within the seven domains of a typical IT infrastructure © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC • The goals of network security NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION • How to assess the success of a network security implementation • Why written network security policies are important • Who is responsible for network security • ©Controls Jones to enhance & Bartlett wired and Learning, wireless local areaLLC network (LAN) infrastructure security© Jones & Bartlett Learning, LLC • NOTExamples FOR of internal SALE and externalOR DISTRIBUTION network issues NOT FOR SALE OR DISTRIBUTION • The common network security components used to mitigate threats throughout the IT infrastructure • The basics of Transmission Control Protocol/Internet Protocol (TCP/IP) © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION 3 © Jones & Bartlett Learning,© Jones LLC & Bartlett Learning LLC, an Ascend Learning© Jones Company. & NOT Bartlett FOR SALE Learning, OR DISTRIBUTION. LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION 9781284183658_CH01_Stewart.indd 3 15/09/20 8:18 PM © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION 4 CHAPTER 1 | Fundamentals of Network Security © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION Chapter 1 Goals When you complete this chapter, you will be able to: • Describe the key concepts and terms associated with network security © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC • Describe the importance of a written security policy; explain how policies help minimize risk NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION exposure and threats to a network infrastructure • Define network security roles and responsibilities; identify who within an IT organization is accountable for these security implementations © Jones & Bartlett Learning,• Identify LLC examples of network security concerns© Jones or threats & Bartlett that require Learning, enhanced security LLC counter NOT FOR SALE OR DISTRIBUTIONmeasures to properly minimize risk exposureNOT and FOR threats SALE OR DISTRIBUTION • Describe the security requirements needed for wired versus wireless LAN infrastructures in order to provide an enhanced level of security • Compare and contrast common network security components and devices, and their use throughout © theJones IT infrastructure & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTION NOT FOR SALE OR DISTRIBUTION What Is Network Security? © Jones & Bartlett Learning, LLC © Jones & Bartlett Learning, LLC NOT FOR SALENetwork OR security DISTRIBUTION is the control of unwanted intrusion into,NOT use FOR of, or damageSALE toOR communi DISTRIBUTION- cations on a computer network. This includes monitoring for abuses, looking for protocol errors, blocking nonapproved transmissions, and responding to problems promptly and accurately. Network security is also about supporting essential communication necessary to the organization’s mission and goals, avoiding the unapproved use of resources, and ensur- © Jones & Bartlett Learning,ing the integrity LLC of the information traversing© Jones the network.& Bartlett Learning, LLC NOT FOR SALE OR DISTRIBUTIONNetwork security includes elementsNOT that preventFOR SALE unauthorized OR DISTRIBUTION access and actions while supporting desirable activities, such as accessing customer records or managing inventory. This is hard to do efficiently, cost effectively, and transparently. Efficient network security provides quick and easy access to resources for users. Cost-effective network security con- trols user access to resources and services, as long as the risks justify the control costs. Transparent© Jones network & Bartlett security Learning, supports the LLC mission and goals of the organization© Jones through & Bartlett Learning, LLC enforcementNOT FOR of the SALE organization’s OR DISTRIBUTION network security policies, without unnecessaryNOT FOR steps SALE or OR DISTRIBUTION delay of valid users performing legitimate tasks. Computer networking technology is changing and improving faster today than ever before. Wireless connectivity is now a realistic option for most organizations and individu- © Jones & als.Bartlett Malicious Learning, hackers are LLC becoming more adept at using© every Jones means & Bartlettavailable to Learning, steal iden- LLC tities, intellectual property, and money. NOT FOR SALEToday,