Host versus Network Security - PowerPoint PPT Presentation

1 / 10
About This Presentation
Title:

Host versus Network Security

Description:

'In the Wake of Web-Site Hacking, No Easy Answers, or ... 'Highway robbery' doesn't mean that someone stole the pavement... 4. Denial of Service Attacks ... – PowerPoint PPT presentation

Number of Views:37
Avg rating:3.0/5.0
Slides: 11
Provided by: Bellovi
Category:

less

Transcript and Presenter's Notes

Title: Host versus Network Security


1
Host versus Network Security
  • Steven M. Bellovin
  • smb_at_research.att.com
  • http//www.research.att.com/smb

2
Whats a Network Problem?
  • Hackers Break Into Microsofts Network (Wall
    Street Journal, 10/27/00)
  • In the Wake of Web-Site Hacking, No Easy
    Answers, or Solutions (New York Times, 2/9/00)

3
Microsoft Break-in
  • A host problem, not a network problem.
  • The network was the vehicle for the attack.
  • Highway robbery doesnt mean that someone stole
    the pavement...

4
Denial of Service Attacks
  • These attacked the network, not Web sites.
  • A real network problem.
  • Cant be solved by end-systems, firewalls, etc.

5
Model of the Internet
  • Smart hosts, dumb network.
  • Networks concern is packet transport.
  • Hosts concern is packet processing.

6
Network Security Issues
  • Availability
  • Protocol infrastructure (i.e., DNS)
  • Routing
  • Link-flooding
  • Theft of Service
  • Primarily for switched services and shared media

7
Availability
  • How many backhoes are needed?
  • How many backbones are needed?

8
Host Security Issues
  • Break-ins
  • Data confidentiality
  • Transmission confidentiality
  • Remote user authentication
  • Buggy software

9
Who Does What?
  • ISPs
  • Provide sufficient redundancy to protect links
  • Harden infrastructure protocols
  • Protect their own resources
  • End users
  • Encryption
  • Suitable authentication
  • Firewalls

10
Why ISPs Cant Protect Users
  • They dont know what users want to do
  • Your odd behavior is my new, cutting-edge
    application
  • Your allowed service is my vulnerability
  • But what of ordinary consumers?
Write a Comment
User Comments (0)
About PowerShow.com