Description
This succinct book departs from other security literature by focusing exclusively on ways to secure Cisco routers, rather than the entire network. The rational is simple: If the router protecting a network is exposed to hackers, then so is the network behind it. This is a reference for protecting the protectors, and author Thomas Akin supplies all the tools necessary to turn a potential vulnerability into a strength.
Full Description
Table of Contents
-
Chapter 1 Router Security
-
Router Security?
-
Routers: The Foundation of the Internet
-
What Can Go Wrong
-
What Routers Are at Risk?
-
Moving Forward
-
-
Chapter 2 IOS Version Security
-
The Need for a Current IOS
-
Determining the IOS Version
-
IOS Versions and Vulnerabilities
-
IOS Security Checklist
-
-
Chapter 3 Basic Access Control
-
Authentication Versus Authorization
-
Points of Access
-
Basic Access Control
-
Remote Administration
-
Protection with IPSec
-
Basic Access Control Security Checklist
-
-
Chapter 4 Passwords and Privilege Levels
-
Password Encryption
-
Clear-Text Passwords
-
service password-encryption
-
Enable Security
-
Strong Passwords
-
Keeping Configuration Files Secure
-
Privilege Levels
-
Password Checklist
-
-
Chapter 5 AAA Access Control
-
Enabling AAA
-
Local Authentication
-
TACACS+ Authentication
-
RADIUS Authentication
-
Kerberos Authentication
-
Token-Based Access Control
-
AAA Security Checklist
-
-
Chapter 6 Warning Banners
-
Legal Issues
-
Example Banner
-
Adding Login Banners
-
Warning Banner Checklist
-
-
Chapter 7 Unnecessary Protocols and Services
-
ICMP
-
Source Routing
-
Small Services
-
Finger
-
HTTP
-
CDP
-
Proxy ARP
-
Miscellaneous
-
SNMP
-
Unnecessary Protocols and Services Checklist
-
-
Chapter 8 SNMP Security
-
SNMP Versions
-
Securing SNMP v1 and v2c
-
Securing SNMP v3
-
SNMP Management Servers
-
SNMP Security Checklist
-
-
Chapter 9 Secure Routing and Antispoofing
-
Antispoofing
-
Routing Protocol Security
-
Routing Protocol and Antispoofing Checklist
-
-
Chapter 10 NTP
-
NTP Overview
-
Configuring NTP
-
NTP Checklist
-
-
Chapter 11 Logging
-
Logging in General
-
Router Logging
-
ACL Violation Logging
-
AAA Accounting
-
Logging Checklist
-
-
Appendix A Checklist Quick Reference
-
Hardening Your Routers
-
Auditing Your Routers
-
Cisco Router Security Checklist
-
-
Appendix B Physical Security
-
Protection Against People
-
Protection Against Murphy and Mother Nature
-
Physical Security Checklist
-
-
Appendix C Incident Response
-
Warning!
-
Keys to Investigating
-
Attack Versus Accident
-
Discover What Happened and the Scope of the Incident
-
Evidence Preservation
-
Recovering from the Incident
-
Preventing Future Incidents
-
Incident Response Checklist
-
-
Appendix D Configuration Examples
-
Basic Example Configuration
-
AAA Example Configuration
-
SNMP Example Configuration
-
HTTP Configuration
-
-
Appendix E Resources
-
Web Sites
-
Books
-
-
Colophon
Product Details
- Title: Hardening Cisco Routers
- By: Thomas Akin
- Publisher: O'Reilly Media
- Print Release: October 2004
- Ebook Release: February 2009
- Pages: 192 pages
- Print ISBN: 978-0-596-00166-7 | ISBN 10: 0-596-00166-5
- Ebook ISBN: 978-0-596-10329-3 | ISBN 10: 0-596-10329-8
Colophon
Our look is the result of reader comments, our own experimentation, and feedback from distribution channels. Distinctive covers complement our distinctive approach to technical topics, breathing personality and life into potentially dry subjects. The animal on the cover of Hardening Cisco Routers is a North African wild ass. This mammal, an ancestor of the domestic donkey, once lived in the Moroccan Atlas Mountain range and possibly through out North Africa. The small population of wild asses is now confined to Sudan, Somalia, and Ethiopia.
Adapted to arid grasslands, the North African wild ass eats thorny, dry plants and grass. It retreats to rocky areas for shade during the hot, sunny hours of the day and is active in the early morning, at dusk, and at night. The wild ass needs water every two to three days and lives alone or temporarily in small groups of offspring to conserver food and water. Males generally live alone, especially when defending territory that contains sources of water.
The North African wild ass is in grave danger of extinction. Domestication, breeding with domestic animals, hunting, and competition with other animals (including humans) for water has diminished the population to a few hundred. Well-meaning tourist who chase the animals for photographs often exhaust the wild asses to the point of death. The animal is now one of the rarest mammals in the world, despite conservation efforts. Ann Schirmer was the production editor and proofreader, and Norma Emory was the copyeditor, for Hardening Cisco Routers. Claire Cloutier, Tatiana Apandi Diaz, and Rachel Wheeler provided quality control. Johnna VanHoose Dinse wrote the index.
Emma Colby designed the cover of this book, based on a series design by Edie Freedman. The cover image is a 19th-century engraving from the Dover Pictorial Archive. Emma Colby produced the cover layout with QuarkXPress 4.1 using Adobe's ITC Garamond font.
Melanie Wang designed the interior layout, based on a series design by David Futato. Mihaela Maier converted the files from Microsoft Word to FrameMaker 5.5.6 using tools created by Mike Sierra. The text font is Linotype Birka; the heading font is Adobe Myriad Condensed; and the code font is LucasFont's TheSans Mono Condensed. The illustrations that appear in the book were produced by Robert Romano and Jessamyn Read using Macromedia FreeHand 9 and Adobe Photoshop 6. The tip and warning icons were drawn by Christopher Bing. This colophon was written by Ann Schirmer.
