Saturday, January 5, 2013

The 4 leading causes of data security breakdowns

This vendor-written tech primer has been edited by Network World to eliminate product promotion, but readers should note it will likely favor the submitter's approach.

A string of high-profile data breaches in 2012, from LinkedIn to Global Payments, have kept enterprise data security in the limelight. But most organizations still tend to be reactive and focus on firefighting when it comes to data security, rather than implementing a more effective long-term strategy. Let's examine the four most common pitfalls of this short-sighted approach.

* Lack of standards. Ad hoc security is often based upon multiple "standards" and solutions across disparate functional IT groups. For example, data encryption is often poorly implemented by IT professionals who don't really understand data security requirements. Some organizations are adopting emerging industry standards for encryption like the Key Management Interoperability Protocol (KMIP). However, it is still immature and thus no panacea. This overall lack of IT security standards leads to higher management costs, redundant processes, and greater risk of a data breach.

YEAR IN REVIEW: Worst security snafus of 2012

* No central control. In a similar fashion, individual security and encryption tools provide their own management consoles for administration, monitoring/auditing and key management. Each ad hoc solution needs to be configured separately and will provide different levels of functionality, sophistication and certification. This creates an operations quagmire. It also introduces varying degrees of risk depending upon each tool and how it is implemented. Of equal concern, CISOs have no central way to assess, monitor, address and report on how effectively these disparate security measures are working. That's because each individual security tool has its own policies, provisioning and management system. This translates into escalating costs and complexity.

* Disconnected management systems. Multiple security technologies each have to be provisioned, managed and monitored separately. Again, with no centralized management or policies, administration must be performed within each tool. The sheer number of management operations increases the risk of configuration errors, which can lead to a security breach or unrecoverable critical file.

* IT misalignment. Ad hoc security tools are often deployed in a manner where functional IT groups have access to and control over these systems. A good example is encryption keys. When multiple encryption solutions are implemented across an enterprise, encryption keys are exposed to numerous IT staff members. This violates a key information security best practice, namely, separation of duties. Since encryption keys are exposed to a wide group of individuals, this greatly increase the risk of an insider attack.
Three-step strategy to centralize security

There are several steps organizations can take to address the shortcomings associated with ad hoc security implementations.

The first is to consolidate core IT management disciplines. These include policy management, configuration management and reporting/auditing. All of these management activities should be controllable from one central location with actual execution occurring throughout the enterprise. In the reverse direction, all management information should flow back to the centralized management repository for storage, analysis, and reporting purposes.

Second, implement distributed policy enforcement. Centralized security policies must be enforced on heterogeneous systems distributed throughout the enterprise. To accomplish this, central management consoles must be able to distribute agents, configure individual systems, securely manage them and log all activities.

Third, deploy tiered administration. This enables enterprises to set and enforce both enterprise and departmental policies and allows separation of duties where security administrators, not functional IT staff, maintain management control over their security domains. For example, a database administrator at a financial services firm can be granted the power to maintain an Oracle database, but not rights to access regulated financial data. This approach protects the confidentiality and integrity of sensitive data by limiting access to security management based on job requirements.

Deploying a centralized enterprise security management strategy will require financial and IT resource investments. However, it will enable organizations to control and share information while managing risk. Most importantly, it will help prevent data security breakdowns that lead to breaches and costly public disclosures.


Best CCNA Training and CCNA Certification and more Cisco exams log in to examkingdom.com


Thursday, November 15, 2012

Office 365 email conks out twice within a week

Office 365 email conks out twice within a week
Antivirus issue, infrastructure failures to blame

Microsoft's Office 365 service has suffered two email outages within a week of each other that affected some customers in North and South America that stemmed from different causes but ended in the same result: failed email delivery.

The first outage Nov. 8 stemmed from an overwhelmed antivirus engine and the subsequent backup that caused the service degradation. The second on Nov. 13 resulted from the failure of unspecified network elements, routine maintenance and increased load that combined to degrade service, according to the Office 365 blog posted by Rajesh Jha, the corporate vice president of Microsoft's Office division.

HELP: 11 (FREE!) Microsoft tools to make life easier

NEWS: AT&T offers Microsoft Office 365

He didn't say how many customers were affected or where they were located other than somewhere on the two continents. Both outages affected just Office 365 Exchange Online mail services.

Affected customers are entitled to a service credit. Jha apologizes and promises a post mortem on the outages as well as an update on how the Office 365 service level agreement was affected.

The Nov. 8 incident started when an antivirus engine bogged down as it processed emails that the engine determined carried a particular virus. That delay processing emails led to retries that further bottlenecked email flow including legitimate emails, he says.

The issue was resolved by intercepting the tainted messages and quarantining them directly.

To head off similar problems down the line, the company has set a lower threshold for diverting problem emails and implementing faster remediation tools. It is also adding unspecified safeguards that automate remediation of this type of problem, Jha says.

The second incident Nov. 13 started with some scheduled maintenance that required shifting some of the load out of those data centers undergoing maintenance. During this work unspecified network elements failed but sent no alerts of their failure, he says. And finally the entire infrastructure was handling more traffic from new customers, all of which resulted in some customers being unable to access email services.

Traffic for affected users was shifted to healthy data centers while the issues were dealt with.

Jha says the company is in the midst of increasing capacity and is automating how equipment failures are handled to speed up recovery time.

In addition, the company is reviewing its processes to head off future outages.

"As I've said before," Jha blogs, "all of us in the Office 365 team and at Microsoft appreciate the serious responsibility we have as a service provider to you, and we know that any issue with the service is a disruption to your business - that's not acceptable. I want to assure you that we are investing the time and resources required to ensure we are living up to your - and our own - expectations for a quality service experience every day."


MCTS Certification, MCITP Certification

Microsoft MCTS Certification, MCITP Certification and over 3000+
Exams with Life Time Access Membership at http://www.actualkey.com

Tuesday, November 6, 2012

WIN! One of two £180 Cobra Courier M heavy duty laptop bags

WIN! One of two £180 Cobra Courier M heavy duty laptop bags
Protect your 15 or 17-inch laptop


If you thought skimping on a laptop bag was the right thing to do, you wouldn't be alone. Many of us invest little in the things we carry around our precious hardware in.

But is that the right thing to do? After all, our laptops aren't exactly throwaway; we invest a lot of money in them. So shouldn't we do the same with our laptop bags?

The £179.99 Cobra Courier M is a heavy duty, stylish messenger bag that really protects your laptop in a high quality padded compartment – and you grab one of three we've got for you to win. It's a "shoulder bag done right"

The Courier M has been custom-tailored to fit your 15-inch MacBook Pro inside a removable quilted laptop laptop sleeve that comes with the bag or, alternatively, a naked 17-inch MacBook Pro, without a sleeve.

You'll also find the bag has the right amount of room for all your essential gear – a quick access front pocket perfect for an iPad fitted with a weatherproof YKK zipper as well as other open leather trimmed pockets and a roomy main compartment ideal for storing a power adaptor, extra mobile phone; whatever you need for the road.

For easy travel, the bag's zippered back pocket lets you put it over luggage trolley handle, while the rugged leather-wrapped carrying handle provides a great way to lift the bag wherever it needs to go.

The bag is made from tough 1680 denier ballistic nylon and comes with an extremely comfortable, smooth seatbelt-nylon shoulder strap. There's also a highly abrasion-resistant water-resistant rubberized material on the base of the bag.

Each Cobra Courier M bag is also tagged with a Terralinq serial number. Once registered, the Terralinq service can help reunite you with your bag should you use it.

To win, click here and answer the multiple choice question.

Wednesday, October 3, 2012

Cisco 642-415 Study Guide

Cisco CCNA Training, Cisco CCNA Certification
Best CCNA Training and CCNA Certification
and more Cisco exams log in to Certkingdom.com


QUESTION 1
Consider the following customer attributes and choose the correct IP telephony call processing model:
- a large campus that spans two PSAP areas
- a single group of buildings connected via fiber optics
- data VPNs that support multiple contractors and suppliers
- a fully developed three-tier network hierarchy
- connectivity to two different service providers for Internet access

A. single-site call processing
B. centralized call processing
C. hybrid call processing
D. distributed call processing

Answer: A

Explanation:


QUESTION 2
What information is relevant to choosing an IP telephony centralized call processing model?

A. multiple PRIs to the PSTN
B. a campus of six buildings connected via an ATM backbone
C. three small regional sales offices located in the three Western time zones
D. centralized order processing, shipping, and billing for all customer products
E. connectivity to a single service provider that hosts the company web site and provides for
Internet access
F. a single six-story building with an IDF on each floor and an MDF in the computer room on the
second floor

Answer: C

Explanation:


QUESTION 3
In a TDM PBXto Cisco Unified Communications Manager migration, which three things must be
verified from the LAN perspective before IP telephony can be deployed? (Choose three.)

A. the type of wiring in the office
B. the number of PSTN connections needed
C. the number of public IP addresses available
D. the amount of rack space in the equipment rack
E. the amount of power that is available to support new LAN switches

Answer: A,D,E

Explanation:


QUESTION 4
The intranet will have three VLAN types to support voice and data traffic; one type for voice, one
type for data, and one type for the Cisco Unified Communications Manager cluster. How should
inter-VLAN connectivity by deployed? Drag and drop the type of connectivity to each type of
connection. Types of connections may be used more than once.



Answer:



Explanation:





QUESTION 5
Ajax wants to ensure that their employees are safe and that they comply with the law. What are
four general E911 responsibilities of an enterprise telephony system? (Choose four.)

A. Enable PSAP call-back.
B. initiate the update of ALI records.
C. Provide a detailed map of all ERLs.
D. Allow conferencing with internal security personnel.
E. Route calls to the appropriate point (on-net or off-net).
F. Deliver appropriate calling party number digits to LEC

Answer: A,B,E,F

Explanation:


Cisco CCNA Training, Cisco CCNA Certification
Best CCNA Training and CCNA Certification
and more Cisco exams log in to Certkingdom.com

Saturday, September 22, 2012

Free Share 642-374 Study Guide

Cisco CCNA Training, Cisco CCNA Certification
Best CCNA Training and CCNA Certification
and more Cisco exams log in to Certkingdom.com


QUESTION 1
A potential client wants inexpensive remote access and fast deployment of new sites. Which two
options would you focus on? (Choose two)

A. ACL management
B. cable and DSL route models
C. CiscoAnyConnect and SSL VPN
D. CBAC
E. remote security

Answer: B,C


QUESTION 2
When should you run multiple protocols?

A. when you want to decrease the complexity of the network
B. when you want easier optimization
C. when you migrate from an old IGP to a new IGP
D. when you want higher efficiency

Answer: C


QUESTION 3
Which statement concerning the Active/Active failover feature is correct?

A. ASA security Appliance failover pair must have either an Unrestricted and UR license or a UR
and FO-A/A license to be able to support Active/Active failover
B. If an active security context within the primary security appliance fails, the status of the primary
security appliance unit changes tofailed , while the secondary failover security appliance unit
transitions to active
C. Active/Active failover is supported in multiple modeconfiguration only
D. Active/Active failover supports site-to-site IPSec VPNstateful failover

Answer: C


QUESTION 4
Cisco ISR Routers offer which three of these security benefits?(Choose three)

A. Onboard VPN accelerator
B. events correlation and proactive response
C. high-performance AIM VPN modules
D. virtual firewall
E. Cisco IOS firewall and IOS IPS
F. transparent firewall

Answer: A,C,E


QUESTION 5
What is used to avoid power drops and running power to access points?

A. CiscoAironet 1140 series
B. End-point PSE
C. Midspan PSE
D. PoE-enabled switches

Answer: D



Cisco CCNA Training, Cisco CCNA Certification
Best CCIE Training and CCIE Exams
and more Cisco exams log in to Certkingdom.com

Tuesday, September 18, 2012

642-359 Q&A / Study Guide / Testing Engine

Comptia A+ Training, Comptia A+ certification
Best comptia A+ Training, Comptia A+ Certification at Certkingdom.com


QUESTION 1
Which command would you use to determine if device aliases in VSAN 5 are configured for
fabriC.wide distribution?

A. show zoneset name alias vsan 5
B. show cfs application name device-alias
C. showfcalias distribution vsan 5
D. show vsan 5 device-alias status

Answer: B

Explanation:


QUESTION 2
Drop
Drag the Cisco analysis tool on the left to its appropriate description on the right.



Drag and drop question. Drag the items to the proper locations.

Answer:



Explanation:




QUESTION 3
The MDS 9000 family switches use what three technologies to protect against unauthorized
management access? (Choose three.)

A. SNMPV3
B. SSH
C. RBAC
D. RMON
E. E. ses
F. WEBM

Answer: A,B,C

Explanation:


QUESTION 4
What is a benefit of enhanced zoning?

A. fabric locked during configuration changes
B. larger zoning database size
C. database rollback in case of failure
D. zones allowed to span VSANs

Answer: A

Explanation:


QUESTION 5
Which two of these environments suggest the use of FCIP Write Acceleration? (Choose two.)

A. remote tape backup
B. Port Channel links between sites
C. applications that support multiple outstanding l/Os
D. fast network with minimal delays
E. DWDM links

Answer: B,C

Explanation:


Comptia A+ Training, Comptia A+ certification
Best comptia A+ Training, Comptia A+ Certification at Certkingdom.com

Saturday, September 15, 2012

642-357 Study Guide / 642-357 Testing Engine / 642-357 Videos

Cisco CCNA Training, Cisco CCNA Certification

Best CCNA Training and CCNA Certification and more Cisco exams log in to Certkingdom.com


QUESTION 1
Which SAN extension topology is a low-latency, cost-effective, high-bandwidth solution that is
suitable only within a limited geographical area?

A. FCIP
B. DWDM
C. CWDM
D. SONET/SDH

Answer: C


QUESTION 2
Your Cisco MDS 9509 configuration requires 2000 watts of power and is configured with two
2500W power supplies. If 110V power is provided to the switch, in which power mode does the
switch operate?

A. The director will operate in redundant mode only.
B. The director will operate in combined mode only
C. The director will operate in redundant mode or combined mode
D. The director cannot operate with 110V power

Answer: B


QUESTION 3
Which two kinds of applications require sustained throughput and are sensitive to latency?
(Choose two.)

A. synchronous replication
B. asynchronous replication
C. OLTP
D. tape backup
E.
F. mail

Answer: A,D


QUESTION 4
Which of the following designs would provide your customer with the highest performance and port
utilization?

A. multi-tier design
B. collapsed core design
C. corE.edge design
D. singlE.tier design

Answer: B


QUESTION 5
Refer to the exhibit.

A customer plans to add a tape backup subsystem to its existing storage network. In which
location should the customer place the tape backup device in order to provide the best
performance during backup and recovery?

A. A
B. B
C. C
D. D

Answer: B


Cisco CCNA Training, Cisco CCNA Certification
Best CCIE Training and CCIE Exams and more Cisco exams log in to Certkingdom.com