Il testo definisce i problemi di sicurezza che le aziende devono affrontare oggi su Internet, identifica i punti deboli delle tecnologie di sicurezza più popolari e illustra tutti i dettagli per la creazione di un firewall efficiente. "Firewall e sicurezza in rete" si propone di insegnare a pianificare e mettere in opera una strategia della sicurezza che consenta un facile accesso ai servizi Internet e tenga a bada anche gli hacker.
What a delightful read. The fundamentals are sound - passwords are the worst, don’t trust the “sent by” field in an email, and the human is the most vulnerable component of a computer system.
It is odd to imagine a world where stateful firewalls aren’t a thing, http isn’t the network service to rule them all, and TLS/SSL and IPSEC are merely working specifications and not underlying any serious communication. Oh, and SSH isn’t a thing yet. Phew. We are truly spoiled.
This book is more slanted to an admin, but a few things for the home users.
After reading I concluded the best thing to do is just disconnect from the wall and use your home computer to play video games, but since we're not going to do that there was a summary statement for us poor saps at home:
- for your browser, recommend turn off java, javascript, browser plugins, activex controls, if you can, of course many useful websites stop working when you do so.
java script, oddly this is not a Sun product, don't know where that comes from. anyway i turned it off from the preferences menu and the first site i visited wouldn't work as it needed java script.
for Microsofters turnoff AcitveX controls (not necessary on UNIX/apple systems using MS browsers). since i dont have access to a MS system i don't know if this is a pain or not.
Other tidbits:
- you should tier your passwords, that is if you do banking or your 401k online, make that the 44 character password.. ok maybe not that long, but use odd chars numbers etc.
for login into some public site, yahoo.music.download, use something else, etc
This book is amazing or useless, depending on how you look at it. :-D
If you need to simply "get it done" with a particular firewall, proxy etcetera, forget it. This book is useless.
If, however, you have worked with firewalls, proxies, and their kind for a while and you want to enrich your mastery of them, this book is amazing. Cheswick and Bellovin present fundamentals and subtleties that cut across particular products with amazing clarity and detail.
Back when Firewalls were first being put in to production, this was the classic text. Bellovin is still very active in the security community. Most of this book is outdated today but the fundamentals are still the same.