Home > Security News > BlueCat appliance offers rock-solid security
Security News:
EMAIL THIS

BlueCat appliance offers rock-solid security

By Sandra Kay Miller, Contributing Writer
02 Jun 2006 | Information Security magazine

Security Wire Daily News
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google

Adonis 1000
BlueCat Networks
Price: Starts at $9,995

BlueCat Networks' Adonis 1000 appliance bundles DNS and DHCP into an enterprise-class appliance for the centralized secure operation of network addressing. Featuring rock-solid security and terrific management capabilities, this device quickly tames networks' ragtag patchwork of DNS and DHCP services, regardless of enterprise size.

Placing DNS and DHCP services on a single hardened appliance minimizes maintenance and centralizes administration. Instead of having to keep track of new threats associated with the OS, BIND and DHCP, it's all amalgamated into a single system.

A skilled attacker can easily exploit flaws in DNS software and the OS on which it runs through cache poisoning, DoS attacks and buffer overflows. Adonis is highly resistant to these kinds of attacks. It runs on a Debian Linux kernel (with an option for a solid-state flash drive) that is completely hardened, so any application that might pose a security risk, such as ping, telnet or ftp, is stripped off. Only two ports are left open by default: 53 for DNS, and 10042 for the SSL communication between the appliance and the client. An attacker querying Adonis gets no information about the system at all.

BIND, patch, kernel, client and security vulnerability updates all take place through the client, so the appliance is never at risk by communicating with an external server. Native BIND 9.3.1 runs under the hood for DNS, and DHCP is based on ISC 3.0.2.

Flooding a DNS server with spoofed SYN packets can fill up all available TCP ports, thereby preventing communication to the server via TCP. Because Adonis can handle queries well above normal levels, it can mitigate or thwart DoS attacks. It's capable of supporting 23,000 queries per second--most large organizations' servers top out at a couple hundred per second.

Setup and management are a pleasure through the richly featured Adonis Management Console, a cross-platform Java client that runs on Windows, UNIX, Linux, Solaris and Mac. An intuitive wizard walked us through setting up the appliance for both DNS and DHCP, determining first what type of architecture will ultimately be configured, then issuing a domain name and internal address. A single click automatically generates host records, reverse pointers, glue records and ACLs.

Automatic data population saves network administrators time and cuts down on errors. For example, when we added a Web server by choosing "New Host" and filled in a name and IP address, the server was instantly listed in the architecture tree, complete with the extensions, reverse zones and reverse pointers. The Adonis 1000 has comprehensive data checkers that analyze the configuration for logical and syntax errors.

Recognizing that most network administrators have existing DNS/DHCP installations, Adonis offers the ability to import old BIND, DHCP configuration and Windows 2000 DHCP dump files.

A master/master configuration using a virtual IP address provides high availability -- a real problem with distributed DHCP servers--mirroring configuration data from one appliance to another.

The Adonis 1000 makes good business sense, increasing security and reducing the management overhead of multiple DNS/DHCP servers in large, complex organizations.

This article originally appeared in the June 2006 edition of Information Security magazine.

Tags: Network Device ManagementVIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


RELATED CONTENT
Network Device Management
Firewall rule management best practices
What are best practices for fiber optic cable security?
Enterprise UTM security: The best threat management solution?
Making the case for network security configuration management
Know when you need IDS, IPS or both
SIEM: Not for small business, nor the faint of heart
Evaluating MSSP security before taking the plunge
Ixia network security tool exposes problems
Product Review: Deepdive's DD300
Security services: Fiberlink's MaaS360 Mobility Platform

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
OCSP  (SearchSecurity.com)
trusted computing base  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



More Tips to Secure Your Network
Focused on Channel Security?
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts