The self-defending network should be the key point of your security policy. | |
Security is static and should prevent most known attacks on the network. | |
Integrate security throughout the existing infrastructure. | |
Upper management is ultimately responsible for policy implementation. |
They operate in inline mode. | |
They operate in promiscuous mode. | |
They have no potential impact on the data segment being monitored. | |
They are more vulnerable to evasion techniques than IDS. |
Configure an automated network monitoring system for event correlation. | |
Configure synchronized syslog reporting. | |
Configure Network Time Protocol. | |
Configure a common repository of all network events for ease of monitoring. |