CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 937
Comments: 25
block bottom
spacer spacer
image Small Office/Home Office Network Security image
CastleCops

Small Office/Home Office Network Security: Part 1






By Dave Moore
Apr 27, 2006



The security needs of the individual Internet user, and those who work in small or home offices, often overlap in many areas. Just as there are many different ways to get to Chicago, there are many different ways to set up small computer networks. Methods to provide for secure file, application and Internet access to multiple computers can range from simple to downright complicated. To do the job properly, you need to put together a network/Internet security plan.

The first step is to prepare a formal security policy, which will be a template for your overall security plan, and will provide a way to judge progress. Some security policy documents may only be a few pages, others may be quite lengthy. Things to keep in mind when writing the policy are risk assessments, budgetary considerations, and ways to determine your network's weaknesses.

Start by deciding what information on your network should be protected, and who should, and should not, have access to this information. Determine who will be responsible for maintaining security, such as updating OS/software, running antivirus/spyware scans, teaching employees about their security responsibilities, and modifying the security plan to keep up with future needs. Also decide if remote network access is needed, or if employees in the field can do their jobs without the hassle of setting up virtual private networks.

Three areas to look at in detail are basic security measures, configuring existing security options, and network firewalls.

Basic security measures include the "obvious" things, such as physical security, password policies, virus protection, etc.

1. You may need to limit physical access to the office building, equipment closets, server rooms, etc., to authorized personnel only.

2. Develop password policies that employees can and will follow. Best practices dictate that passwords are changed frequently, reuse of old passwords is restricted, and passwords must meet length and complexity rules. No passwords on post-its stuck to the monitor. User accounts must be deleted, and passwords changed when an employee leaves the company.

3. Establish antivirus rules: get clearance from management before using data downloaded from the Internet or on disks that come from outside of the office; always virus scan data and disks before using them on a computer; don't open email attachments unless you are absolutely sure of the contents; run antivirus scans daily.

4. Find out if employees connect to outside networks (such as AOL) using modems, thereby compromising your networks integrity.

5. Are strangers, such as outside workers or visitors, able to access your network? Is this desirable, or not?

6. Decisions should be made regarding who in your office needs Internet access, and who does not. Besides being a potentially spectacular time-waster, unnecessary Internet access is also a security risk.

Next time, we'll look at configuring the existing security options that are built-in to your operating system, programs, and other hardware (such as routers), and move on to the subject of firewalls.
Posted on Saturday, 13 May 2006 @ 09:25:53 UTC by Paul (4904 reads)
[ Trackback ]
image

"Small Office/Home Office Network Security" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register
 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· HotScripts
· W3 Consortium
· America Online
· CastleCops
· More about CastleCops
· News by Paul


Most read story about CastleCops:
Join Computer Cops Club to Find A Cure!

block bottom
Article Rating
spacer
Average Score: 3.16
Votes: 6


Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer