home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers






Holy Intruders!: IP-Based Security Auditing Tools

By Greg Shipley
our customizable newsletter, sends you security alerts, product updates and software patches on the products you use. Sign up now at www.networkcomputing.com /express/
 It was a dark day in Gotham for our mild-mannered network administrator. Everywhere he turned, it looked like a job for a superhero. On one side loomed the challenge of backing up 40 GB of data on a nightly basis. No sooner had he reached for his utility belt, grabbed an enterprise backup solution using DLT (Digital Linear Tape) technology and extinguished the threat, when up popped the bandwidth beast. Fortunately, our hero had deployed a manageable infrastructure of intelligent equipment. Drawing on a few slick network management packages, he soon saw the light at the end of that tunnel--only to come face to face with the most overwhelming evildoer yet: the enterprise security attacker.

To view the Report card.He reached for a firewall but realized it was only part of the solution. IDS (Intrusion Detection System) technology had not been fully implemented. He turned to his vendor for patches and revisions, but found only a sea of vague hot fixes and dispersed descriptions. Holy exorbitant encounters!

Staying on top of the latest holes and attacks to hit any single OS is becoming practically a full-time job. If your network includes half a dozen OSes and a few router platforms, it's enough to make even a superhero's head spin.

The solution lies not in a skintight bat suit or an all-encompassing firewall, but in a set of next-generation security utilities, such as the security scanners we examined for this review. Evolved from tools such as Farmer and Venema's SATAN and Klaus' ISS, these packages take a snapshot of your network security setup, then use internal checks and patterns to poke and prod at designated hosts, searching for holes or misconfigurations.

We tested four security scanners across multiple sites: Cisco Systems' NetSonar Vulnerability Scanner and Network Mapping System 1.0, Internet Security Systems' (ISS) Internet Scanner 5.0, NETECT's Netective Site 1.0 and Secure Networks' Ballista Security Auditing System 2.4.

We were quite impressed by the overall functionality of these security scanners, however, we were also painfully aware of their immaturity. Each product was particularly strong in at least one area while falling short in several others. Netective was the only product that addressed binary integrity issues and provided truly efficient updates. But Netective and Internet Scanner had cumbersome licensing issues, and most of the reviewed products' reporting mechanisms were inflexible. If only we could combine Internet Scanner's interface and depth of reporting with Ballista's checks and flexibility, Netective's groundwork for push updates and integrity checking, and NetSonar's reporting flexibility, we would have something special.

Internet Scanner receives our Editor's Choice award for one simple reason: It found the holes we were looking for--and detected some we didn't know about--more accurately than the other scanners. Internet Scanner included the most comprehensive set of NT checks, ranging from base denial-of-service checks to "getadmin" vulnerability inspection. It also hacked away at passwords that intruders could easily guess. With a healthy range of Unix checks, low-level IP tests and some knowledge of VAX/VMS holes, Internet Scanner is a very well-rounded product.


For the Side Bar on

Setting Up Our Testing Environment

The Security Scanning Tools Features charts, in Acrobat format.


Related Links

Secure E-Mail Clients: Not Quite Ready For S/MIME Prime Time. Stay Tuned.
February 1, 1998

Old And New Novell Services Combine For A Clutch Hit In The Internet Rally
February 15, 1998

RFP: Security Services
April 1, 1998

PGP Grows Up
April 15, 1998

Fourth-Annual Well-Connected Awards
May 15, 1998

Six Biometric Devices Point The Finger At Security
June 1, 1998

RFP: VPNs Across Multiple Sites
July 1, 1998


Other Reviews

Seven Web Load Balancers Score With Round the Clock Access
By Greg Yerxa

Company Directory
to browse our data, starting with a particular company.

Network Computing Links
allows you to request additional product information from our advertisers.

Print This Page








Ready to take that job and shove it?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
Go beyond Google and get vertical. These specialized search sites will help you find the business information you need -- fast.

Ari Balogh was named to the post of chief technology officer as the companys for a "realignment" of employees.










InformationWeek U.S. IT Salary Survey 2008
Salaries for business technology professionals are falling. Here's what you need to know in order to make good hiring decisions and personal career choices. Download Today
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



InformationWeek Business Technology Network
InformationWeekInformationWeek 500InformationWeek 500 ConferenceInformationWeek AnalyticsInformationWeek CIO
InformationWeek EventsInformationWeek ReportsInformationWeek MagazinebMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingNo Jitter
space
Techweb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0 ConferenceMobile Business ExpoSoftware ConferenceCSI - Computer Security Institute
Black HatGTECEnergy CampMashup CampStartup Camp
space
Light Reading Communications Network
Light ReadingLight Reading EuropeUnstrungLight Reading's Cable Digital NewsConstantinopleInternet Evolution
Heavy ReadingLight Reading Live!Light Reading InsiderEthernet ExpoOptical ExpoTeleco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems & TechnologyInsurance & TechnologyWall Street & TechnologyAccelerating Wall StreetBank Systems & Technology Executive SummitBuyside Trading SummitInsurance & Technology Executive Summit
space
Microsoft Technology Network
MSDN MagazineTechNetThe Architecture Journal
space
App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Technology Marketing Solutions  |  Advertising Contacts  |   Briefing Centers
Copyright © 2008  United Business Media LLC  |  Privacy Statement  |  Terms of Service  |  Your California Privacy Rights