Product



UsedRouter.Com

UsedRouter.Com buys and sells used Cisco equipment

 

Product Categories

Featured Products

Cisco PA-MC-2T3+ Cisco PA-MC-2T3+ $7,000.00

Cisco WIC-1DSU-T1 Cisco WIC-1DSU-T1 $18.95

Cisco 1721 Cisco 1721 $59.00

Adtran 1200755L1 Adtran 1200755L1 $699.00

Cisco NM-1T3/E3 Cisco NM-1T3/E3 $2,799.00

Cisco 7600-SIP-400 Cisco 7600-SIP-400 $9,382.00

Adtran 1200025L1 Adtran 1200025L1 $279.00

Cisco RSP16 Cisco RSP16 $3,100.00

Cisco 1720 Cisco 1720 $43.00

Cisco 2610 Cisco 2610 $24.00

Cisco ASA Users: Is Your Network Botnet Free?

PDF Print E-mail
User Rating: / 0
PoorBest 
Written by Dustin Welch   
Thursday, 21 January 2010 11:29

As our lives are becoming more and more dependant on computers, the internet, networking, and portable gadgets; network security is quickly becoming a household term and concern. Everyday I read reports of people, not just small or large businesses, regular people becoming victims of cyber attacks. Whether it's stolen passwords, phishing scams, data loss, denial of service, or full blown Identity Theft; your cyber security should be almost as important as the lock on your front door. Today I would like to talk about one threat in particular and the strides Cisco has made to help protect us from that threat.

Botnets are a collection of software robots or 'zombie computers' that are controlled by a single 'command and control center' usually ran by one person with the ultimate goal being to steal your personal data. Computers are usually infected via website or email and depending on the type of exploit (DoS, key logging, phishing scams, etc.) it will then launch an attack. Keeping up with security updates for your PC or Mac (Macs ARE NOT invulnerable to viruses, despite what Apple entusiasts would have you believe), up-to-date antivirus software, and malware blocking programs will keep most of the unwanted software out. No program is perfect though and hackers are coming up with new tricks all the time, so how do you know if something slips through undetected? Has your computer or a computer on your network become a zombie?

This is where Cisco's Layer 4 Traffic Monitoring feature comes in, referred to as L4TM. Botnets alll have one thing in common, they must 'call home' to their command center and relay what information, if any, that they were trying to steal. L4TM tracks and detects command and control data that is being sent back to the hacker by using modified technology that Cisco had previously used in their Ironport Web Security Appliance or WSA for short. The ASA is configured to install the Botnet database from the Ironport website and check every 60 minutes for updates. Then, the L4TM feature compares the destination IP addresses with the Botnet database, looking for known malicious IPs. When a match is found, an alert will be sent to the ASDM.

These features and a host of others can be found in ASA release 8.2/ASDM 6.2 and above, compatible with the entire ASA5500 line from 5505 to 5580. If you are currently running a pre-8.2 release, I strongly recommend upgrading as these features can help keep your 'electronic life' safe. Recently, Cisco has added a Botnet drop filter capability with ASA release 8.2.2/ASDM 6.2.5 along with a slew of bug fixes and extra features, including an SSL/VPN feature that helps conserve your licenses. For a full list of features and upgrades, search Cisco's webste for 'ASA 8.2.2'.

 

 

Equipment Search



Customer Login







Usedrouter.com Shopping Cart

Talk to us Live now
with AOL IM Click Below!

 

Shop with confidence!
Not even one complaint!

Whos On Line

We have 324 guests online

Random Products

Nortel Networks NT0H02AE Nortel Networks NT0H02AE
Nortel Networks 50038 Nortel Networks 50038
Nortel Networks 3334-ST Nortel Networks 3334-ST
Juniper Networks P-ES-800 Juniper Networks P-ES-800
HP Procurve J9146A HP Procurve J9146A
Cisco WS-X6582-2PA Cisco WS-X6582-2PA
Cisco NP-1A-MM Cisco NP-1A-MM
Cisco GLC-ZX-SM Cisco GLC-ZX-SM
Cisco 4OC12X/POS-M-SC-B Cisco 4OC12X/POS-M-SC-B
Cisco 3845-DC Cisco 3845-DC
Cisco 3560-E Series AAS Cisco 3560-E Series AAS