Countering The Greatest Fears

IN THE COMIC STRIP Peanuts, Linus is usually depicted clutching a security blanket; it gives him a great sense of security, even though it doesn't actually make him any safer. Security tools bought in response to fears of attack often strike a similar false sense of security. But carefully chosen products deployed in response to real needs and designed to work well within the enterprise can both make you feel better and counter real threats.

According to the 2002 InfoWorld IT Security Survey, security requirements are based as much on IT leaders' concerns about what might happen as on what they've actually experienced. For example, 58 per cent of respondents have had their enterprise infected by a virus, but 82 per cent are concerned. Respondents have also had worms, Trojan horses, and malicious code, which worry IT leaders (roughly 70 per cent to 80 per cent of respondents) most.

But their concerns go beyond these commonplace attacks to fears of intrusions by outsiders. Although only 3 per cent reported that traffic coming through ISPs has been monitored, 47 per cent are anxious about it. Another 3 per cent reported that their wireless networks have been eavesdropped, but 28 per cent worry about it.

Almost every company keeps anti-virus software on its computers -- 94 per cent of respondents consider it crucial, yet well over half continue to get viruses. The problem could be either that employees aren't using the software that they've been provided or that the desktop, where most anti-virus software runs, is the last line of defense. Viruses should be killed before they ever get to the desktop with tools such as GFI's MailSecurity, which performs content monitoring and protects Exchange and SMTP mail against viruses, malicious code, and worms at the server level.

You can perform some similar tasks with CacheFlow's new Security Gateway series of appliances, which work with existing routers and firewalls and also handle a variety of tasks, including authorisation management, virus scanning, content security, Web usage monitoring, content filtering, and network protection. The idea behind multifunction tools is to use a central appliance to simplify keeping your network secure.

By now, nearly everyone has heard of VPNs, which can prevent snooping on your sessions as they travel across the Internet. Eighty-five per cent of respondents use either firewalls, an IP VPN, or both, and 55 per cent outsource VPN services. You can get VPN support from many vendors, probably including the one that makes your remote access server. If you need to deploy a VPN, one solution that provides both secure connections and works as a firewall is Firewall/VPN from Symantec, a vendor popular among more than 20 per cent of respondents. This security appliance performs several additional functions, including load balancing, IP sharing, DHCP serving, intrusion detection, and logging.

Keeping intruders away from your network and out of the sessions your employees have with your network is always a priority. But it doesn't do your company much good to protect your data if outsiders can simply watch the traffic go by, either in a session with your ISP or by parking outside your building and reading your wireless traffic.

What Symantec doesn't cover are the unique needs of your wireless users. Only a small percentage of our respondents have had a wireless intrusion, but only a tiny percentage of them actually have large wireless installations -- it's a big problem among companies with wireless. The hottest bet out there is NetMotion Wireless Mobility, which offers a unique combination of encryption, authentication and highly flexible roaming.

And finally, of course, there's the question of firewalls, which should sit on every entry point of an outside network, not just the Internet. The right firewalls can help stop the spread of problems delivered by e-mail, from a disk brought from home, by malicious Web sites, and more. But you need more, at least a content filtering firewall on the outside as well as a personal firewall on each workstation.

The best of these is ZoneAlarm from Zone Labs. Your employees can download a free home version of this excellent product from For corporate use, however, you need something more complete, such as the company's Integrity product. ZoneAlarm gets the intruders that your primary firewall misses. Better yet, it bottles up attacks from viruses and worms, preventing them from spreading beyond the computer they originally infected.

When you have covered the basics, you're safe to worry a lot less. Although you can't retreat behind a security blanket until dangers fade away, at least you can rest assured knowing that you've taken care of the scariest security risks.


EXECUTIVE SUMMARY A few well-chosen products can solve both your greatest security worries and most pressing needs. There are no sure answers, but many companies share the same requirements, and it only takes a few products to meet them.

TEST CENTER PERSPECTIVE Whether it's a multifunction appliance that carries out tasks ranging from content filtering to creating a VPN, or software that protects against a broad range of threats, you don't need to go far to get your security up to snuff. Of course, you should also continue to keep your OSes patched, passwords updated, and physical security intact.

Join the newsletter!


Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.
Have an opinion on security? Want to have your articles published on CSO? Please contact CSO Content Manager for our guidelines.
Show Comments

Featured Whitepapers

Editor's Recommendations

Solution Centres

Stories by Wayne Rash

Latest Videos

More videos

Blog Posts