A
AAA (authentication, authorization, and accounting)
authentication login command, 393
configuring (fig.), 394
security standard, 9-10
server command (PIX), 249
switch configuration, 411
use described, 212, 249, 392-394
access, controlling with enterprise wireless gateway (fig.), 177
access-class command (routers), 388
access control, cryptographic, 513-517
access control lists. See ACLs
access-group command (PIX), 230, 231
access-list acl_name compiled command (PIX), 233
access-list command (PIX), 229, 231
access-list compiled command (PIX), 233
access points (APs), 157, 172
access rules
configuring Check Point NG, 277-279
configuring for PIX, 229-235
account lockout, Windows 2000 policy, 544
accounts (Windows 2000), 548, 589
ACID (Analysis Console for Intrusion Databases), 709-710
ACLs (access control lists)
adding another security layer using, 313
applying to interfaces, 382
configuring for ingress interface of Internet-facing routers, 383-385
file system, tightening (Windows 2000), 551-552
inbound, tips on creating, 234-235
in IPSO, 314-315
PIX feature, 229-235
routers and traffic filtering, 379-385
security. See SACLs
standard and extended, 380-381
Turbo (PIX), 232-233
Active Directory (AD)
domain authentication with LEAP and RADIUS, 491-493
domain structure and configuration, 537
security, 457-458
Adaptive Security Algorithm (ASA), 184
address-based access control, 510
Address Resolution Protocol (ARP), 167
address translation rules, configuring security (Check Point FireWall-1), 307
administering routers in the DMZ, 386-389
Administrator account (Windows 2000), disabling, 589
Adore SSH backdoor program, 566
Advanced Encryption Standard (AES), 451
Aironet Client Utility (ACU), 488
AiroPeek sniffer, 156, 159