Network Security Assessment: Know Your Network, 2/e (Paperback)
暫譯: 網路安全評估:了解您的網路,第二版 (平裝本)

Chris McNab

買這商品的人也買了...

相關主題

商品描述

Description

How secure is your network? The best way to find out is to attack it. Network Security Assessment provides you with the tricks and tools professional security consultants use to identify and assess risks in Internet-based networks-the same penetration testing model they use to secure government, military, and commercial networks. With this book, you can adopt, refine, and reuse this testing model to design and deploy networks that are hardened and immune from attack.

Network Security Assessment demonstrates how a determined attacker scours Internet-based networks in search of vulnerable components, from the network to the application level. This new edition is up-to-date on the latest hacking techniques, but rather than focus on individual issues, it looks at the bigger picture by grouping and analyzing threats at a high-level. By grouping threats in this way, you learn to create defensive strategies against entire attack categories, providing protection now and into the future.

Network Security Assessment helps you assess:
  • Web services, including Microsoft IIS, Apache, Tomcat, and subsystems such as OpenSSL, Microsoft FrontPage, and Outlook Web Access (OWA)
     
  • Web application technologies, including ASP, JSP, PHP, middleware, and backend databases such as MySQL, Oracle, and Microsoft SQL Server
     
  • Microsoft Windows networking components, including RPC, NetBIOS, and CIFS services
     
  • SMTP, POP3, and IMAP email services
     
  • IP services that provide secure inbound network access, including IPsec, Microsoft PPTP, and SSL VPNs
     
  • Unix RPC services on Linux, Solaris, IRIX, and other platforms
     
  • Various types of application-level vulnerabilities that hacker tools and scripts exploit
     
Assessment is the first step any organization should take to start managing information risks correctly. With techniques to identify and assess risks in line with CESG CHECK and NSA IAM government standards, Network Security Assessment gives you a precise method to do just that.

商品描述(中文翻譯)

**描述**

您的網路有多安全?找出答案的最佳方法就是攻擊它。《網路安全評估》提供了專業安全顧問用來識別和評估基於網際網路的網路風險的技巧和工具——這是他們用來保護政府、軍事和商業網路的滲透測試模型。藉由這本書,您可以採用、改進並重複使用這個測試模型,以設計和部署經過加固且免受攻擊的網路。

《網路安全評估》展示了決心的攻擊者如何在基於網際網路的網路中搜尋脆弱的組件,從網路層到應用層。這個新版本更新了最新的駭客技術,但並不專注於個別問題,而是通過將威脅分組和高層次分析來看待整體情況。通過這種方式分組威脅,您將學會針對整個攻擊類別創建防禦策略,提供當前及未來的保護。

《網路安全評估》幫助您評估:

- 網路服務,包括 Microsoft IIS、Apache、Tomcat,以及 OpenSSL、Microsoft FrontPage 和 Outlook Web Access (OWA) 等子系統
- 網路應用技術,包括 ASP、JSP、PHP、中介軟體,以及 MySQL、Oracle 和 Microsoft SQL Server 等後端資料庫
- Microsoft Windows 網路組件,包括 RPC、NetBIOS 和 CIFS 服務
- SMTP、POP3 和 IMAP 電子郵件服務
- 提供安全入站網路訪問的 IP 服務,包括 IPsec、Microsoft PPTP 和 SSL VPN
- 在 Linux、Solaris、IRIX 和其他平台上的 Unix RPC 服務
- 各種應用層漏洞,駭客工具和腳本利用的漏洞

評估是任何組織應該採取的第一步,以正確管理資訊風險。藉由符合 CESG CHECK 和 NSA IAM 政府標準的技術來識別和評估風險,《網路安全評估》為您提供了一種精確的方法來做到這一點。