Skip to main content

Designing and Building Enterprise DMZs

  • 1st Edition - October 9, 2006
  • Latest edition
  • Author: Hal Flynn
  • Language: English

This is the only book available on building network DMZs, which are the cornerstone of any good enterprise security configuration. It covers market-leading products from Microsoft,… Read more

Data Mining & ML

Unlock the cutting edge

Up to 20% on trusted resources. Build expertise with data mining, ML methods.

Description

This is the only book available on building network DMZs, which are the cornerstone of any good enterprise security configuration. It covers market-leading products from Microsoft, Cisco, and Check Point.

One of the most complicated areas of network technology is designing, planning, implementing, and constantly maintaining a demilitarized zone (DMZ) segment. This book is divided into four logical parts. First the reader will learn the concepts and major design principles of all DMZs. Next the reader will learn how to configure the actual hardware that makes up DMZs for both newly constructed and existing networks. Next, the reader will learn how to securely populate the DMZs with systems and services. The last part of the book deals with troubleshooting, maintaining, testing, and implementing security on the DMZ.

Key features

  • The only book published on Network DMZs on the components of securing enterprise networks
  • This is the only book available on building network DMZs, which are the cornerstone of any good enterprise security configuration. It covers market-leading products from Microsoft, Cisco, and Check Point
  • Provides detailed examples for building Enterprise DMZs from the ground up and retro-fitting existing infrastructures

Readership

Designing and Building Enterprise DMZs: This audience is comprised of engineers and administrators, who: 1. Protect their network and storage data from theft and/or corruption. 2. Ensure both Web-based and internal application and data availability to customers, business partners, and employees. 3. Optimize network hardware, software, storage, and bandwidth resources. They accomplish these tasks by installing, configuring, troubleshooting, and maintaining a combination of commercial and open source firewalls/VPNs, security appliances, Intrusion Detection Systems (IDSs), packet analyzers (Sniffers), and AntiVirus applications. This audience is task oriented and focused on executing IT objectives mandated by their ever-changing business needs.

Table of contents

1: DMZ Concepts, Layout and Conceptual Design

2: Windows 2000 DMZ Design

3: Solaris DMZ Design

4: Wireless DMZ’s (WDMZs)

5: Firewall Design: Cisco PIX

6: Firewall and DMZ Design: Checkpoint NG

7: Firewall and DMZ Design: Nokia Firewall

8: Firewall and DMZ Design: ISA Server 2000

9: DMZ Router and Switch Security

10: DMZ Based VPN Services

11: Wireless DMZ Implementation

12: Sun Solaris Bastion Hosts

13: Windows 2000 Bastion Hosts

14: Hacking the DMZ

15: Intrusion Detection in the DMZ

Product details

  • Edition: 1
  • Latest edition
  • Published: October 9, 2006
  • Language: English

About the author

HF

Hal Flynn

Affiliations and expertise
Vulnerability Analyst for Symantec Corporation

View book on ScienceDirect

Read Designing and Building Enterprise DMZs on ScienceDirect