A
acceptance as risk strategy, 15, 317
access
attacks, 77
different, for different organizations, 19 22
management, for PIX firewall, 142 143
policies for firewall configurations, 63
remote. See remote access
rules in SonicWALL, 162
Access Control Server (ACS), 39, 128, 436 444
ACLs (access control lists), 39
Adaptive Security Algorithm (ASA), 128 129
Adaptive Security Device Manager (ASDM), 126
Address Resolution Protocol (ARP), 417 419
addresses, IP. See IP addresses
AH (Authentication Header), 40, 225 226, 269
alerts, ISA Server, 196 197
ALF (Application Layer Filtering), 198 199
algorithms
cryptographic in IPsec, 233 234
Diffie-Hellman (DH), 234
message authentication, 234
anti-spoofing, PIX firewalls, 456
anti-virus software, 96, 462 463
Application Layer Filtering (ALF), 198 199
application layer inspection, 146 147
application proxy firewalls, 99 103, 114
ARP (Address Resolution Protocol), 417 419
ASA (Adaptive Security Algorithm), 128 129
assessments
home site survey, 399
infrastructure. See infrastructure security assessment
security, 7
assets, identifying and profiling network, 51 54
assigning network assets to security areas, 57 59
attacks
See also specific attack
buffer overflow, 94, 97 98, 323
categories of, 77
IP half-scan, 87 88
rootkit, 336 337
source-routing, 9
structured, unstructured, 23 24
TCP/IP vulnerabilities, 83 94
attributes, security area, 56 57
audits
infrastructure security, 308, 379
security, 7
authentication
and firewalls, 26, 352
ISA Server, 197
message, algorithms, 234
for remote access, 70
two-factor, 345 346
Authentication Header (AH), 40, 225 226, 269
availability, network
and network security policy, 4
and PIX firewalls, 133
Aventail SSL-VPN appliances, 283 284
avoidance as risk strategy, 14, 316