今企業が取るべきセキュリティ対策とは策

Similar documents
1. 2

NTTannual2015.indd


Copyright

IW2002-B5 1 Internet Week ( ) 9:30 12:30 ( ) Copyright 2002 All Rights Reserved, by Seiji Kumagai ADSL FTTH 24 IP LAN

IW2001-B2 1 Internet Week 2001 ( ) Copyright 2001 All Rights Reserved, by Seiji Kumagai IW2001-B2 2 CodeRed Copyright 2001 All Rights

スライド 1

情報セキュリティの現状と課題

PDF

2 Web Security for the Enterprise

82801pdf.pqxp


IP IP DHCP..

GTSC Security Response Team Microsoft Asia Limited ( ) 2

Zurich, CH Brussels, BE Wrocław, PO Toronto, CA Ottawa, CA Herzliya, IL Almaden, US Detroit, US Tokyo, JP Boulder, US TJ Watson, US Tokyo, JP Atlanta,

fusion.PDF

Zurich, CH Brussels, BE Wrocław, PO Toronto, CA Ottawa, CA Herzliya, IL Almaden, US Boulder, US Detroit, US TJ Watson, US Tokyo, JP Tokyo, JP Atlanta,

untitled

VNSTProductDes3.0-1_jp.pdf

橡セキュリティポリシー雛形策定に関する調査報告書

...i A


untitled

untitled

suguru.PDF

集中講義 インターネットテクノロジー 第5回

PowerPoint プレゼンテーション

SSO Sales/Tech combined webinar template

The F5 DDoS Mitigation Reference Architecture | F5 White Paper

untitled

2006/6/ /9/1 2007/11/9 () 2011/4/ ( ()) ii

PowerPoint プレゼンテーション

ウイルスバスター2012 クラウド ガイドブック

意外と簡単!? Oracle Database 11g -バックアップ・リカバリ編-

Oracle Policy Automation 10.0システム要件

1.1 WG WG ( ) Copyright (c) 2002 NPO Page SQLSlammer WG 13 CordRed Copyright (c) 2002 NPO Page 4

1 基本的考え方

FileMaker Instant Web Publishing Guide

FUJITSU Software Systemwalker Operation Manager V13 カタログ

ガイドブック

インスタント・メッセージングのセキュリティ

クラウド時代のインフラ構成/変更管理とコンプライアンス管理

FileMaker Instant Web Publishing Guide

Oracle Application Server 10gリリース2( )Oracle HTTP Serverの概要

A book

高度な標的型攻撃:包括的な保護

/ 100 Base-TX5 160Mbps 4, ( ) 3( /NAT) HTTPHTTPS TelnetSSHSNMP L2 L2 - - L2 10 / 100 Base-TX Gbps VLAN Telnet SNMP Tag-VLAN IEEE8

今から間にあう仮想化入門とXenについて

1 Microsoft Windows Server 2012 Windows Server Windows Azure Hyper-V Windows Server 2012 Datacenter/Standard Hyper-V Windows Server Windo

bc0710_010_015.indd

FileMaker Server Getting Started Guide

Oracle Fail Safe For Windows NT and Windows 2000 リリース・ノート、リリース 3.1.2

2

rzat10pdf.ps

untitled

JP1/Integrated Management - Service Support 操作ガイド

1 OS OS OS Macintosh

Oracle Application Server 10g( )インストール手順書

untitled

122

Logitec NAS シリーズ ソフトウェアマニュアル

クララパンフレット2011冬1P-P40

wpEnterpriseSvr.doc

Si-R180 ご利用にあたって

Oracle8 Personal Edition for Windows 95/98/NTリリース・ノート, リリース8.0.6

FirePass Edge Client TM Edge Client LAN Edge Client 7.0 Edge Client Edge Client Edge Client Edge Client Edge Client Edge Client LAN Edge Client VPN Wi

<Documents Title Here>

1

FileMaker Instant Web Publishing Guide

Windows と Linux のセキュリティ: 噂の真相

内閣官房情報セキュリティセンター(NISC)

ITSM.PDF

Office BCP () Office Microsoft Exchange Exchange Server Exchange Online Exchange Server Exchange Online Exchange Exchange 1997 Exc

Microsoft Global Briefing Technical Briefing


Systemwalker Desktop Patrol V15 資産管理集計機能 説明書

FUJITSU Network Si-R Si-R Gシリーズ Webユーザーズガイド

Copyright (c) 2002 NPO Page 2

FileMaker Instant Web Publishing Guide

Cisco Identity Services Engine Supported Mac OS X AV/AS Products Version

Cisco Identity Services Engine Supported Mac OS X AV/AS Products Version

NTT NTT

ESA_UI_1110.PDF

1 Linux UNIX-PC LAN. UNIX. LAN. UNIX. 1.1 UNIX LAN. 1.2 Linux PC Linux. 1.3 studenta odd kumabari studentb even kumabari studentc odd kumabari student

new_logo.eps

Logitec NAS シリーズ ソフトウェアマニュアル



ESMPRO/ServerAgent Extension インストレーションガイド

FileMaker Server 9 Getting Started Guide


<834E C F D E657073>

養育費相支セ_NL04.indd

はじめに

Printer Driverセットアップ編

untitled

IIJ Technical WEEK セキュリティ動向 2012

TCP/IP Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.3 Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.4 2

アンケート調査のお願い

Web Web ( (SOAP (SOAP/http (WSDL UDDI 1. 2.XML 3. (XDoS http, https SOAP XML Web/App ( App

Transcription:

AGENDA 2 2 2002 Symantec Corporation.

70,000 (Code Red, Nimda) Number of Known Threats 60,000 50,000 40,000 30,000 20,000 DOS (Yahoo!, ebay) (Love Letter/Melissa) 10,000 (Tequila) 3 3 2002 Symantec Corporation. Source: Symantec

4 4 2002 Symantec Corporation. 2001 BP

Disappearing Perimeter IDC 5 5 2002 Symantec Corporation.

6 IT 6 2002 Symantec Corporation.

7 CSI/FBI 2001 Computer Crime and Security Survey Source: Computer Security Institute 7 2002 Symantec Corporation. Internet 2001: 384 /72% 2000: 443 /68% 1999: 324 /62% 1998: 279 /54% 1997: 391 /69% 1996: 174 /40%

8 8 2002 Symantec Corporation. LAN LAN LAN V Web Web Web

9 9 2002 Symantec Corporation. DoS

CERT 10 CERT http://www.cert.org/archive/pdf/attack_trend.pdf 10 2002 Symantec Corporation.

DoS DDoS 11 11 2002 Symantec Corporation.

CodeRed 26.2US 12 12 2002 Symantec Corporation.

20021 6 Port 80 13 13 2002 Symantec Corporation.

20022 6 20 CodeRed 14 14 2002 Symantec Corporation.

(Cyber Space) 20029 THE NATIONAL STRATEGY TO SECURER CYBER SPACE http://www.whitehouse.gov/pcipb/ 15 15 2002 Symantec Corporation.

1995 2001 OS 99% CERT 16 16 2002 Symantec Corporation. OS CERT/CC http://www.cert.org/stats

Web OpenSSH http://www.jpcert.or.jp/at/2002/at020004.txt Apache Web http://www.jpcert.or.jp/at/2002/at020003.txt IIS http://microsoft.com/japan/technet/treeview/default.asp?u rl=/japan/technet/security/bulletin/fq02-028.asp http://www.microsoft.com/technet/treeview/default.asp?ur l=/technet/security/bulletin/ms02-028.asp 17 17 2002 Symantec Corporation.

Apache SecurityFocus DB 36 18 18 2002 Symantec Corporation. SecurityFocus DB

IIS SecurityFocus DB 150 19 19 2002 Symantec Corporation. SecurityFocus DB

JNSA 54 20011 12 TOP5 Ver.1.0 http://www.ipa.go.jp/ 66% 20 20 2002 Symantec Corporation.

21 21 2002 Symantec Corporation.

OS 22 22 2002 Symantec Corporation.

1. 2. 3. 4. 23 23 2002 Symantec Corporation.

1. 2. Symantec AntiVirus Family 3. Symantec Enterprise Security Architecture 24 24 2002 Symantec Corporation.

Symantec Enterprise Security Manager Security Focus DeepSight 25 25 2002 Symantec Corporation.

Symantec Enterprise Security Manager (ESM) Security Focus DeepSight 26 26 2002 Symantec Corporation.

ESM Symantec Enterprise Security Manager 27 27 2002 Symantec Corporation.

ESM ESM XX 28, etc & 28 2002 Symantec Corporation. ESM

ESM Phase1Phase3 ISO 17799 Symantec Security Response team CERT Coordination Center SANS Institute Computer Incident Advisory Center (CIAC) Center for Internet Security (CIS) National Infrastructure Protection Center (NIPC) National Security Agency (NSA) Information Systems Audit and Control Association (ISACA) Application and operating system vendors 29 29 2002 Symantec Corporation.

21 30 30 2002 Symantec Corporation.

Windows / Unix 31 31 2002 Symantec Corporation.

2 32 32 2002 Symantec Corporation.

3 Everyone Everyone RRAS RAS TCP TCP 33 33 2002 Symantec Corporation.

4 OS OS OS OS OS 34 34 2002 Symantec Corporation.

35 35 2002 Symantec Corporation. ESM3 InternetWAN ESM ESM

HTML 36 36 2002 Symantec Corporation.

Case Study 1 ESM 37 37 2002 Symantec Corporation.

Case Study ESM Windows Unix rc 38 38 2002 Symantec Corporation.

Case Study CodeRed OS ESM OS OS 39 39 2002 Symantec Corporation.

Case Study ESM MD5 40 40 2002 Symantec Corporation.

41 ISO 17799 OS 41 2002 Symantec Corporation. WindowsNT,2000,XP,Solaris,HP-UX,AIX Web Server IIS,Apache,iPlanet Database Oracle,DB2 Firewall Checkpoint FireWall-1,Symantec Enterprise Firewall AntiVirus Norton AntiVirus Corporate Edition

DeepSight 42 42 2002 Symantec Corporation.

NEW - DeepSight 43 43 2002 Symantec Corporation.

170 14,000 44 44 2002 Symantec Corporation.

IDS Attack Correlation Engine Vulnerability & Event Databases Threat Analysts IDS Analyzer DB Threat Management Local System Global 45 45 2002 Symantec Corporation.

DB IP IDS 46 46 2002 Symantec Corporation.

ThreatCon Level 1 Level 2 Level 3 Level 4 47 47 2002 Symantec Corporation.

ISP IP 48 48 2002 Symantec Corporation.

49 49 2002 Symantec Corporation. IDS

1300 2700 11,000 DB 50 50 2002 Symantec Corporation.

/ 51 51 2002 Symantec Corporation.

52 52 2002 Symantec Corporation.