Firewall Policies and VPN Configurations

Book description

A firewall is as good as its policies and the security of its VPN connections. The latest generation of firewalls offers a dizzying array of powerful options; they key to success is to write concise policies that provide the appropriate level of access while maximizing security.

This book covers the leading firewall products: Cisco PIX, Check Point NGX, Microsoft ISA Server, Juniper’s NetScreen Firewall, and SonicWall. It describes in plain English what features can be controlled by a policy, and walks the reader through the steps for writing the policy to fit the objective. Because of their vulnerability and their complexity, VPN policies are covered in more depth with numerous tips for troubleshooting remote connections.

· The only book that focuses on creating policies that apply to multiple products.
· Included is a bonus chapter on using Ethereal, the most popular protocol analyzer, to monitor and analyze network traffic.
· Shows what features can be controlled by a policy, and walks you through the steps for writing the policy to fit the objective at hand

Table of contents

  1. Cover image
  2. Title page
  3. Table of Contents
  4. Copyright page
  5. Acknowledgments
  6. Technical Editor
  7. Contributing Authors
  8. Part I: Security Policy
    1. Chapter 1: Network Security Policy
      1. Introduction
      2. Defining Your Organization
      3. Different Access for Different Organizations
      4. Untrusted Networks
      5. Summary
      6. Solutions Fast Track
      7. Frequently Asked Questions
    2. Chapter 2: Using Your Policies to Create Firewall and VPN Configurations
      1. Introduction
      2. What Is a Logical Security Configuration?
      3. Planning Your Logical Security Configuration
      4. Writing Logical Security Configurations
      5. Summary
      6. Solutions Fast Track
      7. Frequently Asked Questions
  9. Part II: Firewall Concepts
    1. Chapter 3: Defining a firewall
      1. Introduction
      2. Why Have Different Types of Firewalls?
      3. Back to Basics—Transmission Control Protocol/Internet Protocol
      4. Firewall Types
      5. Application Proxy
      6. Gateway
      7. Summary
      8. Solutions Fast Track
      9. Frequently Asked Questions
    2. Chapter 4: Deciding on a Firewall
      1. Introduction
      2. Appliance/Hardware Solution
      3. Software Solutions
      4. Summary
      5. Solutions Fast Track
      6. Frequently Asked Questions
  10. Part III: VPN Concepts
    1. Chapter 5: Defining a VPN
      1. Introduction
      2. What Is a VPN?
      3. Public Key Cryptography
      4. IPSec
      5. SSL VPNs
      6. Layer 2 Solutions
      7. SSH Tunnels
      8. Technical Description
      9. Others
      10. Summary
      11. Solutions Fast Track
      12. Frequently Asked Questions
    2. Chapter 6: Deciding on a VPN
      1. Introduction
      2. Appliance / Hardware Solution
      3. Software Solutions
      4. Summary
      5. Solutions Fast Track
      6. Frequently Asked Questions
  11. Part IV: Implementing Firewalls and VPNs (Case Studies)
    1. Chapter 7: IT Infrastructure Security Plan
      1. Introduction
      2. Infrastructure Security Assessment
      3. Project Parameters
      4. Project Team
      5. Project Organization
      6. Project Work Breakdown Structure
      7. Project Risks and Mitigation Strategies
      8. Project Constraints and Assumptions
      9. Project Schedule and Budget
      10. IT Infrastructure Security Project Outline
      11. Summary
      12. Solutions Fast Track
    2. Chapter 8: Case Study: SOHO (Five Computers, Printer, Servers, etc.)
      1. Introduction
      2. Determining More Information with lsof
      3. Employing a Firewall in a SOHO Environment
      4. Introducing the SOHO Firewall Case Study
      5. Designing the SOHO Firewall
      6. Summary
      7. Solutions Fast Track
      8. Frequently Asked Questions
    3. Chapter 9: Medium Business (< 2000 People)
      1. Introduction
      2. Mapping Your Systems
      3. Improving Accountability with Identity Management
      4. VPN Connectivity
      5. Summary
      6. Solutions Fast Track
      7. Frequently Asked Questions
  12. Index

Product information

  • Title: Firewall Policies and VPN Configurations
  • Author(s): Syngress, Dale Liu, Stephanie Miller, Mark Lucas, Abhishek Singh, Jennifer Davis
  • Release date: September 2006
  • Publisher(s): Syngress
  • ISBN: 9780080506517