Home > Security Tips > Network Security Tactics > How to build a secure network from the ground up
Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

NETWORK SECURITY TACTICS

How to build a secure network from the ground up


SearchSecurity.com
10.24.2005
Rating: -3.80- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



The following question and answer thread is excerpted from ITKnowledge Exchange. Click here to read the entire thread or to start a new one.

A user identified as enghashem posed this question:
I am interested in building a network for 100 users. It needs to be reliable, have an impeccable disaster recovery system and have other security features, including a firewall, antivirus and antispam. I will install this on Windows Server 2003, Exchange and ISA. Are there any resources that will show me how to create this complete network? I need information on router switches, security appliances and backup systems available on the market.

A user identified as DrillO advised:
"First, meet with EVERYONE who will be involved, from the CEO and CFO to department heads. Next, take a long hard look at your company's business plan and build your business case around it. When you are ready to start building the network, examine your budget and then add to it, for you will be building your network around it. There are several key resources you should look for; however, no one source will have everything you need. Do your homework, research, Google your questions, and look at some of the sites you find. Ask questions in forums, such as this one, when you have specific ones. Whatever you do, make sure your infrastructure will be able to handle what you want it to do and build in room for growth now, because getting more money later will be difficult, if not impossible."

A user identified as HumbleNetAdmin advised:<...



/b>
"When you're talking about building a network infrastructure from the ground up, you should incorporate several disciplines, including: Systems Admin, Network Admin, Network Engineer and Security Admin/Engineer. I have worked in the IT field for many years as a Network Admin and have brought these disciplines together in one form or another. However, I did not find the information in a single source, but multiple. Here are some links that I believe will help you:
  • http://www.techtutorials.info/index.html
  • http://www.techwebpipelines.com/;jsessionid=WSZHO5GENY0P4QSNDBGCKHSCJUMEKJVN
  • http://www.networkworld.com/
  • http://www.enterprisenetworkingplanet.com/
  • http://techrepublic.com.com/5221-10872-0.html?tag=header
  • http://www.microsoft.com/technet/prodtechnol/windowsserver2003/default.mspx

The previous post outlined some initial steps that will help make this project happen. Remember, management's support is crucial, because if you don't have their support and the money to back it, the project is unfortunately, doomed."

A user identified as mks3rd advised:
"Have you heard of BADNT? It is a top down business model. If you use the acronym properly, you'll receive some great results. From the top down, check the business, the applications, the data, the network and then technology."

A user identified as larrythethird advised:
"DrillO hit it on the nose. Unless every business unit in the company is on board with the infrastructure's design, you'll be rebuilding and wasting time on things that could have been implemented correctly the first time. Plan for the unexpected. Business groups will say, "that's not what I asked for." Look for missing requirements before moving ahead. They'll be waiting to cause undo tension and delays. And, most importantly, remember the credo of networks: KIS (keep it simple)."

A user identified as Paul144hart advised:
"There are too many possibilities. You should consider writing a Request for Proposal and submit it to several contract houses."

A user identified as BinooDas1234 advised:
"Microsoft Solutions Framework Model will definitely help you. Go through the Process Model, Team Model and Risk Management Models. Details and white papers are also available at the Microsoft site."

Rate this Tip
To rate tips, you must be a member of SearchSecurity.com.
Register now to start rating these tips. Log in if you are already a member.




BROWSE BY TAG
Network Security Tactics,   Network Security: Tools, Products, Software,   Network Firewalls, Routers and Switches,   Enterprise Network Security,   Network Intrusion Detection (IDS),   Network Intrusion Detection and Analysis,   Network Intrusion Prevention (IPS),   Information Security Incident Response,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Network Security Tactics
How to keep networks secure when deploying an 802.11n upgrade
Screencast: Find rogue wireless acess points with Vistumbler
How to prepare for a secure network hardware upgrade
Preventing SQL injection attacks: A network admin's perspective
Screencast: How to launch an OpenVAS scan
Wireless network guidelines for PCI DSS compliance
Aligning network security with business priorities
Scanning with N-Stalker offers basic Web application security assessment
Lifecycle of a network security vulnerability
Screencast: BackTrack 4 offers an arsenal of penetration testing tools

Network Firewalls, Routers and Switches
How to prepare for a secure network hardware upgrade
Best Network Firewall Products
What is the difference between static and dynamic network validation?
Screencast: Smoothwall offers firewall defense in lean times
New Cisco IOS bugs pose tempting targets, says Black Hat researcher
How to implement virtual firewalls in a complex network infrastructure
How to manage network bandwidth with distributed ISP bandwidth
Firewall rule management best practices
Should enterprises be running multiple firewalls?
What are the disadvantages of proxy-based firewalls?

Network Intrusion Detection (IDS)
Preventing SQL injection attacks: A network admin's perspective
Lifecycle of a network security vulnerability
Best Intrusion Prevention and Detection Products
Rogue AP containment methods
SIMs tools and tactics for business intelligence
IPS and IDS deployment strategies
Know when you need IDS, IPS or both
Trend Micro to acquire Third Brigade for virtualization, cloud security
New product aims to control rogue applications that avoid firewalls
How to perform a network forensic analysis and investigation
Network Intrusion Detection (IDS) Research

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
bastion host  (SearchSecurity.com)
firewall  (SearchSecurity.com)
Firewall Builder  (SearchSecurity.com)
screened subnet  (SearchSecurity.com)
virus  (SearchSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Research Solutions for Network Security, Access Control and Security Threats
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts