IPv6 Security (Paperback)
暫譯: IPv6 安全性 (平裝本)
Scott Hogg, Eric Vyncke
- 出版商: Cisco Press
- 出版日期: 2008-12-01
- 定價: $2,240
- 售價: 8.0 折 $1,792
- 語言: 英文
- 頁數: 576
- 裝訂: Paperback
- ISBN: 1587055945
- ISBN-13: 9781587055942
-
相關分類:
IPV6、資訊安全
立即出貨 (庫存 < 3)
買這商品的人也買了...
-
$650$514 -
$580$568 -
$1,930$1,834 -
$1,078Operating System Principles, 7/e(IE) (美國版ISBN:0471694665-Operating System Concepts, 7/e) (平裝)
-
$780$741 -
$650$514 -
$650$585 -
$1,180$932 -
$720$569 -
$2,050$1,948 -
$590$460 -
$800$632 -
$580$458 -
$520$411 -
$580$458 -
$560$437 -
$490$387 -
$480$379 -
$750$638 -
$399$315 -
$580$458 -
$550$468 -
$780$616 -
$680$544 -
$400$316
商品描述
IPv6 Security
Protection measures for the next Internet Protocol
As the world’s networks migrate to the IPv6 protocol, networking professionals need a clearer understanding of the security risks, threats, and challenges this transition presents. In IPv6 Security, two of the world’s leading Internet security practitioners review each potential security issue introduced by IPv6 networking and present today’s best solutions.
IPv6 Security offers guidance for avoiding security problems prior to widespread IPv6 deployment. The book covers every component of today’s networks, identifying specific security deficiencies that occur within IPv6 environments and demonstrating how to combat them.
The authors describe best practices for identifying and resolving weaknesses as you maintain a dual stack network. Then they describe the security mechanisms you need to implement as you migrate to an IPv6-only network. The authors survey the techniques hackers might use to try to breach your network, such as IPv6 network reconnaissance, address spoofing, traffic interception, denial of service, and tunnel injection.
The authors also turn to Cisco® products and protection mechanisms. You learn how to use Cisco IOS® and ASA firewalls and ACLs to selectively filter IPv6 traffic. You also learn about securing hosts with Cisco Security Agent 6.0 and about securing a network with IOS routers and switches. Multiple examples are explained for Windows, Linux, FreeBSD, and Solaris hosts. The authors offer detailed examples that are consistent with today’s best practices and easy to adapt to virtually any IPv6 environment.
Scott Hogg, CCIE® No. 5133, is Director of Advanced Technology Services at Global Technology Resources, Inc. (GTRI). He is responsible for setting the company’s technical direction and helping it create service offerings for emerging technologies such as IPv6. He is the Chair of the Rocky Mountain IPv6 Task Force.
Eric Vyncke, Cisco Distinguished System Engineer, consults on security issues throughout Europe. He has 20 years’ experience in security and teaches security seminars as a guest professor at universities throughout Belgium. He also participates in the Internet Engineering Task Force (IETF) and has helped several organizations deploy IPv6 securely.
- Understand why IPv6 is already a latent threat in your IPv4-only network
- Plan ahead to avoid IPv6 security problems before widespread deployment
- Identify known areas of weakness in IPv6 security and the current state of attack tools and hacker skills
- Understand each high-level approach to securing IPv6 and learn when to use each
- Protect service provider networks, perimeters, LANs, and host/server connections
- Harden IPv6 network devices against attack
- Utilize IPsec in IPv6 environments
- Secure mobile IPv6 networks
- Secure transition mechanisms in use during the migration from IPv4 to IPv6
- Monitor IPv6 security
- Understand the security implications of the IPv6 protocol, including issues related to ICMPv6 and the IPv6 header structure
- Protect your network against large-scale threats by using perimeter filtering techniques and service provider–focused security practices
- Understand the vulnerabilities that exist on IPv6 access networks and learn solutions for mitigating each
This security book is part of the Cisco Press® Networking Technology Series. Security titles from Cisco Press help networking professionals secure critical data and resources, prevent and mitigate network attacks, and build end-to-end self-defending networks.
Category: Networking: Security
Covers: IPv6 Security
商品描述(中文翻譯)
《IPv6安全》
下一代網際網路協定的保護措施
隨著全球網路逐漸轉向IPv6協定,網路專業人員需要更清楚地了解這一轉變所帶來的安全風險、威脅和挑戰。在《IPv6安全》一書中,兩位全球領先的網際網路安全專家回顧了IPv6網路所引入的每一個潛在安全問題,並提出當前最佳解決方案。
《IPv6安全》提供了在廣泛部署IPv6之前避免安全問題的指導。該書涵蓋了當今網路的每一個組成部分,識別出在IPv6環境中出現的具體安全缺陷,並展示如何應對這些問題。
作者描述了在維護雙棧網路時識別和解決弱點的最佳實踐。然後,他們描述了在遷移到僅IPv6網路時需要實施的安全機制。作者調查了駭客可能使用的技術,以試圖侵入您的網路,例如IPv6網路偵查、地址欺騙、流量攔截、拒絕服務和隧道注入。
作者還轉向Cisco®產品和保護機制。您將學習如何使用Cisco IOS®和ASA防火牆及ACL來選擇性過濾IPv6流量。您還將了解如何使用Cisco Security Agent 6.0來保護主機,以及如何使用IOS路由器和交換機來保護網路。對於Windows、Linux、FreeBSD和Solaris主機,提供了多個示例。作者提供的詳細示例與當今最佳實踐一致,並且易於適應幾乎任何IPv6環境。
Scott Hogg,CCIE®編號5133,是Global Technology Resources, Inc. (GTRI)的高級技術服務總監。他負責設定公司的技術方向,並幫助公司為IPv6等新興技術創建服務產品。他是洛基山IPv6工作小組的主席。
Eric Vyncke,Cisco傑出系統工程師,負責歐洲的安全問題諮詢。他在安全領域擁有20年的經驗,並作為客座教授在比利時的多所大學教授安全研討會。他還參與了網際網路工程任務組(IETF),並幫助多個組織安全地部署IPv6。
- 了解為什麼IPv6已經在您的IPv4-only網路中成為潛在威脅
- 提前規劃以避免在廣泛部署之前的IPv6安全問題
- 識別IPv6安全中的已知弱點及當前攻擊工具和駭客技能的狀態
- 了解每種高層次的IPv6安全方法,並學習何時使用每種方法
- 保護服務提供商網路、邊界、局域網和主機/伺服器連接
- 加固IPv6網路設備以抵禦攻擊
- 在IPv6環境中利用IPsec
- 保護移動IPv6網路
- 在從IPv4遷移到IPv6的過程中保護使用的過渡機制
- 監控IPv6安全
- 了解IPv6協定的安全影響,包括與ICMPv6和IPv6標頭結構相關的問題
- 通過使用邊界過濾技術和以服務提供商為中心的安全實踐來保護您的網路免受大規模威脅
- 了解IPv6接入網路中存在的漏洞,並學習減輕每個漏洞的解決方案
這本安全書籍是Cisco Press®網路技術系列的一部分。Cisco Press的安全書籍幫助網路專業人員保護關鍵數據和資源,防止和減輕網路攻擊,並建立端到端的自我防禦網路。
類別:網路:安全
涵蓋:IPv6安全