{"id":19,"date":"2005-12-24T06:48:47","date_gmt":"2005-12-24T11:48:47","guid":{"rendered":"http:\/\/raffy.ch\/blog\/?p=19"},"modified":"2005-12-24T08:02:46","modified_gmt":"2005-12-24T13:02:46","slug":"information-security-magazine-december-2005","status":"publish","type":"post","link":"https:\/\/raffy.ch\/blog\/2005\/12\/24\/information-security-magazine-december-2005\/","title":{"rendered":"Information Security Magazine December 2005"},"content":{"rendered":"<p>Yes, I am reading not just old issues of magazines &#8230; So here is a jewel I found in the December issue of the Information Security Magazine:<\/p>\n<blockquote><p>if you work with large, high-performance networks, make sure yo uare using system such as Windows 2000 or Linux kernels 2.1.9 or later.<\/p><\/blockquote>\n<p>2.1.9? I am not even sure whether kernel.org still has those around \ud83d\ude42 Does he mean 2.4.9? Maybe. I think he&#8217;s another author that has not used Linux. At least not in a while. The quote stems from an article called <em>&#8220;The Weakest Link&#8221;<\/em> by Michael Cobb. Another author who is coming up with new terminology. This time it&#8217;s <b>Application Level Firewall<\/b>. While I have definitely heard this term, the author manages very well to confuse me:<\/p>\n<blockquote><p>Where IDS informs of an actual attack, IPS tries to stop it. IPS solutions tend to be deployed as added security devices at the network perimeter because they don&#8217;t provide network segmentation.<br \/>\nALFs provide the application-layer protection of an IPS by merging IDS signatures and application protocol anomaly detection rules into the traffic-processing engine, while also allowing security zone segmentation.<\/p><\/blockquote>\n<p>That&#8217;s a long one and reading it, I don&#8217;t really see the difference between ALFs and IPSs. Network segmentation? Hmm&#8230; Interesting. Is that really the difference? I have to admit, I don&#8217;t know, but this seems like a &#8220;lame&#8221; difference. I bet the IPSs out there can do network segmentation. <\/p>\n<p>The report manages to omit something that I think is quite important. When the author talks about decision factors for buying ALFs (by the way, this reminds me of the brown creature ALF on the TV series&#8230;), he does not mention that logs need to be monitored! And that requires from the application that the logs they produce need to be useful. What a concept. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Yes, I am reading not just old issues of magazines &#8230; So here is a jewel I found in the December issue of the Information Security Magazine: if you work with large, high-performance networks, make sure yo uare using system such as Windows 2000 or Linux kernels 2.1.9 or later. 2.1.9? I am not even [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9],"tags":[],"class_list":["post-19","post","type-post","status-publish","format-standard","hentry","category-security-article-reviews"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/posts\/19","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/comments?post=19"}],"version-history":[{"count":0,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/posts\/19\/revisions"}],"wp:attachment":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/media?parent=19"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/categories?post=19"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/tags?post=19"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}