Search
Pete Silva - Daily Dose of Pete
You are here: DevCentral > Weblogs

network security

1 if by land, 2 of by sea, 0 if by IP I know I’ve said this before but it sure seems like almost daily there is a security breach somewhere.  Over the years, the thought process has changed from prevent all attacks to, it is inevitable that we will be breached.  The massive number of attacks occurring daily makes it a statistical reality.  Now organizations are looking for the right solution (both technology and practice) to quickly detect a breach, stop it, identify what occurred and what data may have been compromised.  Over the last couple of days various entities...

posted @ Tuesday, January 17, 2012 1:59 PM | Feedback (3)

It’s that time of year when we gift and re-gift.  And the perfect opportunity to re-post, re-purpose and re-use my 2011 blog entries.  If you missed any of the approximately 50 blogs, 11 audio whitepapers or 47 videos, here they are wrapped in one simple entry.  I read somewhere that lists in blogs are good.  Have a Safe and Happy New Year. F5 Security Vignette Series 2012 IT Staffing Crisis? The Top 10, Top Predictions for 2012 Pearl Harbor, Punchbowl and my...

posted @ Tuesday, December 20, 2011 5:04 AM | Feedback (0)

Over the last couple weeks, we’ve been rolling out a series of short Security Vignette videos about various IT security challenges.  We’ve posted them to the F5News blog account but also wanted to share in case you missed them.  If we were going to sum up the role of security in corporate IT today we'd have to say it's to "be prepared." This series looks at many of those security concerns which can be addressed proactively, before they are exploited or become a fire drill.  F5 Security Vignette: Proactive Security - The F5 Security Vignette series...

posted @ Thursday, December 15, 2011 10:24 AM | Feedback (1)

When creating any security-enabled network device, development teams must fully investigate security of the device itself to ensure it cannot be compromised.  A gate provides no security to a house if the gap between the bars is large enough to drive a truck through.  Many highly effective exploits have breached the very software and hardware that are designed to protect against them.  If an attacker can breach the guards, then they don’t need to worry about being stealthy, meaning if one can compromise the box, then they probably can compromise the code.  F5 BIG-IP Application Delivery Controllers are positioned at...

posted @ Tuesday, November 15, 2011 11:46 AM | Feedback (1)

I chat with Andy Oehler, F5 Product Manager about BIG-IP Access Policy Manager, the integration with Oracle Access Manager and what APM brings to BIG-IP. </p> <p><font size="2">ps</font></p> <p><font size="2">Related:</font></p> <ul> <li><a href="http://devcentral.f5.com/weblogs/psilva/psilva/archive/2011/10/03/oracle-openworld-2011-alohafind-f5-booth-1527.aspx" _fcksavedurl="http://devcentral.f5.com/weblogs/psilva/psilva/archive/2011/10/03/oracle-openworld-2011-alohafind-f5-booth-1527.aspx"><font size="2" face="Tahoma">Oracle OpenWorld 2011 - Aloha:Find F5 Booth 1527</font></a><font size="2" face="Tahoma"> </font></li> <li><a href="http://devcentral.f5.com/weblogs/psilva/psilva/archive/2011/10/03/oracle-openworld-2011-big-ip-wanop-amp-oracle-goldengate.aspx" _fcksavedurl="http://devcentral.f5.com/weblogs/psilva/psilva/archive/2011/10/03/oracle-openworld-2011-big-ip-wanop-amp-oracle-goldengate.aspx"><font size="2" face="Tahoma">Oracle OpenWorld 2011: BIG-IP WANOp & Oracle GoldenGate</font></a><font size="2" face="Tahoma"> </font></li> <li><a href="http://devcentral.f5.com/weblogs/psilva/psilva/archive/2011/10/03/oracle-openworld-2011-f5-arx-amp-oracle-zfs-storage.aspx" _fcksavedurl="http://devcentral.f5.com/weblogs/psilva/psilva/archive/2011/10/03/oracle-openworld-2011-f5-arx-amp-oracle-zfs-storage.aspx"><font size="2" face="Tahoma">Oracle OpenWorld 2011: F5 ARX & Oracle ZFS Storage</font></a><font size="2" face="Tahoma"> </font></li> <li><a href="http://www.youtube.com/user/f5networksinc" _fcksavedurl="http://www.youtube.com/user/f5networksinc"><font size="2" face="Tahoma">F5 YouTube Channel</font></a><font size="2"...

posted @ Tuesday, October 04, 2011 7:46 PM | Feedback (0)

As they endeavor to secure their systems from malicious intrusion attempts, many companies face the same decision: whether to use a web application firewall (WAF) or an intrusion detection or prevention system (IDS/IPS).  But this notion that only one or the other is the solution is faulty.  Attacks occur at different layers of the OSI model and they often penetrate multiple layers of either the stack or the actual system infrastructure.  Attacks are also evolving—what once was only a network layer attack has shifted into a multi-layer network and application attack.  For example, malicious intruders may start with a network-based...

posted @ Wednesday, September 28, 2011 2:00 PM | Feedback (2)

Founder & CTO of WhiteHat Security, Jeremiah Grossman talks about the F5/WhiteHat partnership, the benefits of the WhiteHat Sentinel & BIG-IP ASM integration, the sophistication level of some of the recent attacks/breaches reported in the media, blocking SQL Injections and why organizations should consider an integrated WAF and Scanner like the WhiteHat/F5 solution. </p> <p><font size="2">ps</font></p> <p><font size="2">Related:</font></p> <ul> <li><a href="https://www.whitehatsec.com/index.html" _fcksavedurl="https://www.whitehatsec.com/index.html"><font size="2" face="Tahoma">WhiteHat Security</font></a></li> <li><a href="https://www.whitehatsec.com/resource/grossman.html" _fcksavedurl="https://www.whitehatsec.com/resource/grossman.html"><font size="2" face="Tahoma">WhiteHat Blog</font></a></li> <li><a href="http://jeremiahgrossman.blogspot.com/" _fcksavedurl="http://jeremiahgrossman.blogspot.com/"><font size="2" face="Tahoma">Jeremiah Grossman Blog</font></a></li> <li><a href="http://www.f5.com/solutions/technology-alliances/security/whitehat.html" _fcksavedurl="http://www.f5.com/solutions/technology-alliances/security/whitehat.html"><font size="2" face="Tahoma">F5/WhiteHat Partnership</font></a></li> ...

posted @ Monday, September 26, 2011 7:46 AM | Feedback (0)

Just when you were having all that fun running around the waterpark and playing those arcade games comes news that the card processing system of Vacationland Vendors Inc., a Wisconsin Dells firm that supplies arcade games and installs vending machines, was breached.  From the notice on their website, they say, ‘Vacationland Vendors recently discovered that an unauthorized person wrongfully accessed certain parts of the point of sales systems that Vacationland Vendors uses to process credit and debit transactions at the Wilderness Resorts.’  Up to 40,000 debit or credit cards that were used in the arcades any time between December 2008...

posted @ Wednesday, September 14, 2011 5:11 AM | Feedback (0)

With an increasing number of devices, applications, and services on the Internet, it’s becoming more difficult to achieve network and application response times that deliver a quality user experience. This problem is not only a bandwidth issue—it’s also closely tied to network and infrastructure architecture.  To provide high-quality user experiences on the Internet, networks must be designed with optimized, secure, highly available, and high-performance IP services. Domain Name System (DNS) is one of the most difficult, but important, IP services to optimize and secure. DNS Services in F5 BIG-IP version 11 provides an intelligent DNS architecture that delivers high performance...

posted @ Wednesday, August 24, 2011 7:56 AM | Feedback (1)

A couple days ago, The SANS Institute announced the release of a major update (Version 3.0) to the 20 Critical Controls, a prioritized baseline of information security measures designed to provide continuous monitoring to better protect government and commercial computers and networks from cyber attacks.  The information security threat landscape is always changing, especially this year with the well publicized breaches.  The particular controls have been tested and provide an effective solution to defending against cyber-attacks.  The focus is critical technical areas than can help an organization prioritize efforts to protect against the most common and dangerous attacks.  Automating security...

posted @ Tuesday, August 23, 2011 5:31 AM | Feedback (0)

Full network security Archive

Blog Stats

Posts:285
Comments:98
Stories:0
Trackbacks:111
  

Post Categories

  Cloud Computing
  Security
  SSL VPN
  Information security
  pci
  PKI
  application attacks
  malware
  mitigation
  client security
  compliance
  notification laws
  social media
  social networks
  twitter
  facebook
  youtube
  digg
  peter silva
  social media stats
  ipv6
  ipv4
  2012
  context
  contextual aware
  user centric
  decision
  game show
  granular
  control
  identity
  cloud security
  virtualization
  sys-con
  cloud expo
  virtual
  glenn brunette
  sun microsystems
  Bruce Schneier
  Schneier on security
  research
  2009
  blog
  2010
  threat
  pci dss
  regulations
  espionage
  pentagon
  crown jewels
  tower of london
  health care
  banking
  prediction
  cybercrime
  cybercrime kits
  dyi
  dnssec
  dummies
  l0pht
  2600
  breach
  privacy
  breaches
  web security
  spam
  trojan
  gogrid
  blogger
  personal
  business
  H1N1 flu
  emergency preparedness
  disaster recovery
  network security
  oracle
  sso
  single sign on
  big-ip
  oracle access manager
  f5
  personal devices
  mobile devices
  mobile security
  windows
  microsoft
  windows 7
  desktop
  games
  gaming
  online games
  DDoS
  scams
  consolidation
  data center
  tech sector
  single purpose
  dedicated
  management
  access security
  policy enforcement
  utm
  processing power
  video
  audio
  multi-media
  dns
  webinar
  interview
  ioactive
  kaminsky
  dan kaminsky
  partner
  rsa
  xml
  splunk
  instructional
  in 5
  education
  training
  idc
  smart city
  smart grid
  infrastructure
  web 2.0
  standards
  inter-cloud
  interoperability
  application mobility
  peering
  confusion
  cloud confusion
  cloud survey
  edge gateway
  v10.1
  history
  words and meanings
  lists
  fun
  patent
  intellectual property
  trade secrets
  confucius
  cloudfucius
  series
  blog series
  a-z
  law
  constitution
  court
  fourth amendment
  gps
  government
  legal
  vmotion
  vmware
  case study
  interop
  v10.2
  database
  csrf
  asm
  adc
  arx
  data manager
  netapp
  storage
  WAN optimization
  application delivery
  optimization
  compression
  whitepaper
  statistics
  cloud research
  cloud stats
  LTM VE
  travel
  firepass
  encryption
  music
  humor
  uptime
  cloud outage
  SLA
  availability
  customer
  vmworld
  yankee group
  sports
  NFL
  performance
  acceleration
  peoplesoft
  rman
  recovery manager
  oow
  openworld
  replication
  integration
  apm
  wi-fi
  numbers
  firepass
  risk
  open source
  authentication
  smart card
  kerberos
  Business Challenges
  evidence
  SSL
  SSL offload
  NIST
  2048-bit
  certificate
  rss
  blog analytics
  web traffic
  e-cards
  hardware
  support
  diagnostics
  iHealth
  apple
  iPhone
  iPad
  iOS
  itunes
  smartphone
  v10.2.1
  citrix
  vdi
  parody
  satire
  entertainment
  andriod
  virus
  google
  mac
  comscore
  ID theft
  social security
  ssn
  synthetic ID theft
  credit report
  data privacy
  cyber threat
  reports
  50 ways
  2011
  trade show
  silva
  emc
  emc world
  ixia
  viprion
  ssl tps
  vCMP
  outtakes
  acting
  theatre
  tokens
  vpn
  remote access
  intrusion 2.0
  toys
  v11
  ajax
  SANS
  devcentral
  whitehat
  sentinel
  waf
  scanner
  grossman
  iApps
  wan op
  file virtualization
  hawaii
  emea
  ipexpo
  london
  UK
  human behavior
  risk managment
  tech center
  secure vault
  fips
  appliance mode
  copyright
  pearl harbor
  Dec 7
  punchbowl
  honolulu
  staffing
  jobs
  irules
  AppSec
  TradSec
  icsa
  v11.1
  community
  

82,243 Members in 102 Countries and Growing!

Join DevCentral Today!

About DevCentral

DevCentral has been a successful, thriving community for many years. We have always strived to bring you the best technical documentation, discussion forums, blogs, media and much more that we can.

So dive in, get familiar with DevCentral. We hope you like it, we hope it makes your job easier, and lets you get that much more power out of the community. To learn more, make sure to check out the Getting Started section. And if you have any problems, or think something could be easier to use, drop us a line to let us know.

Got It !

We've received your comment and transmitted it directly to DevCentral HQ.

Thanks for taking time to let us know what's on your mind. At DevCentral | Community Matters!

Get In Touch With Us

Have questions, suggestions or just want to get something off your chest?

Use our handy form below to Direct Connect with DevCentral Mission Control.

Send Us Feedback       or