<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IT Info Magazine &#187; logs</title>
	<atom:link href="http://www.itinfomag.com/tag/logs/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.itinfomag.com</link>
	<description></description>
	<lastBuildDate>Thu, 02 Feb 2012 08:26:00 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
		<item>
		<title>A three-layer approach to Internet security</title>
		<link>http://www.itinfomag.com/security-governance/a-three-layer-approach-to-internet-security/</link>
		<comments>http://www.itinfomag.com/security-governance/a-three-layer-approach-to-internet-security/#comments</comments>
		<pubDate>Wed, 29 Sep 2010 03:18:18 +0000</pubDate>
		<dc:creator>George</dc:creator>
				<category><![CDATA[Security Governance]]></category>
		<category><![CDATA[BCP]]></category>
		<category><![CDATA[compliance]]></category>
		<category><![CDATA[DR]]></category>
		<category><![CDATA[Governance]]></category>
		<category><![CDATA[Internet Security]]></category>
		<category><![CDATA[logs]]></category>
		<category><![CDATA[Monitoring]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[Web Security]]></category>
		<category><![CDATA[Web Services]]></category>

		<guid isPermaLink="false">http://www.backupmyhost.com/blog/?p=648</guid>
		<description><![CDATA[Internet Security is everybody&#8217;s concern, whether you are an SMB or a big corporation offering e-commerce services, you are at risk if you do not secure and monitor your web assets. Internet security is a multifaceted task where many organizations dedicate highly skilled personnel on security governance; however, they still may find weaknesses in their web infrastructure or may ignore certain aspects of security. Therefore, an organization needs to find a holistic approach when governing security. Whichever, approach an organization takes; it needs to relate Internet security with its logical and physical boundaries and activities. The following article explains a three layer approach to Internet Security for a typical organization that provides services to web customers. The Organization Customers From a business perspective, customers are the main stakeholders and as such, an organization needs to build a trust factor that is transmitted to its customers. If customers are confident that they are dealing with a reliable and secure entity then the business prospers. The outer layer deals with security considerations related to the business customers: The need to know your customers, their trends and features as this will help you identify non-customers or better criminals Monitoring techniques (automated processes) that [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: left;">Internet Security is everybody&#8217;s concern, whether you are an SMB or a big corporation offering e-commerce services, you are at risk if you do not secure and monitor your web assets. Internet security is a multifaceted task where many organizations dedicate highly skilled personnel on security governance; however, they still may find weaknesses in their web infrastructure or may ignore certain aspects of security. Therefore, an organization needs to find a holistic approach when governing security. Whichever, approach an organization takes; it needs to relate Internet security with its logical and physical boundaries and activities. The following article explains a three layer approach to Internet Security for a typical organization that provides services to web customers.</p>
<p style="text-align: center;"><img class="aligncenter size-full wp-image-649" style="border: 0px;" title="Boundaries of Internet Security Governance" src="http://www.itinfomag.com/wp-content/uploads/2010/09/internet-security.jpg" alt="" width="425" height="397" /></p>
<p style="text-align: center;"><strong><span id="more-648"></span></strong></p>
<p style="text-align: center;"><strong>The Organization Customers</strong></p>
<p style="text-align: left;">From a business perspective, customers are the main stakeholders and as such, an organization needs to build a trust factor that is transmitted to its customers. If customers are confident that they are dealing with a reliable and secure entity then the business prospers. The outer layer deals with security considerations related to the business customers:</p>
<ul>
<li>
<div style="text-align: left;">The need to know your customers, their trends and features as this will help you identify non-customers or better criminals</div>
</li>
<li>
<div style="text-align: left;">Monitoring techniques (automated processes) that flag abnormal trends or find irregularities</div>
</li>
<li>
<div style="text-align: left;">Compliance with regulatory requirements &#8211; Ex: PCI, ISO and others</div>
</li>
<li>
<div style="text-align: left;">Customers&#8217; authentication considerations &#8211; the famous <em>&#8220;something you have&#8221; + &#8220;something you know&#8221;</em> concept</div>
</li>
<li>
<div style="text-align: left;">Strong data encryption techniques, SSL certificates, Security seals (Hacker Free Site), etc.</div>
</li>
</ul>
<p style="text-align: center;"><strong>The Organization Web presence</strong></p>
<p style="text-align: left;">As you drill down to inner layers, the security approach shifts its attention towards the technical requirements with respect to its web services. Note, some of these requirements are defined by the outer layer and hence, you need to keep an interrelationship between the layers.</p>
<ul>
<li>
<div style="text-align: left;">Web server security considerations &#8211; web service starts with a restricted user acct, unused accts and services are disabled, admin strong passwords, SSL certificate from a top CA such as, VeriSign, log management, patch management, etc.</div>
</li>
<li>
<div style="text-align: left;">Monitor web traffic for malicious activities such as, DDOS and hacking attempts. Introduce adequate high level monitoring techniques such as, page load times, etc.</div>
</li>
<li>
<div style="text-align: left;">Web applications considerations &#8211; Database connection account restrictions for writes and reads, cross-site scripting and SQL injection threats &#8211; review and hardened application code</div>
</li>
<li>
<div style="text-align: left;">Web Load balancers &amp; DNS considerations &#8211; both pose a serious threat especially to banks and financial institutions &#8211; phishing, DNS poisoning, zone transfer, etc</div>
</li>
<li>
<div style="text-align: left;">Remote admin &amp; data transfer considerations &#8211; strong encrypted channel with Public/private keys if possible.</div>
</li>
</ul>
<p style="text-align: center;"><strong>The Organization</strong></p>
<p>At the core of the 3 layers, we find the organization physical, logical and personnel security aspects. Briefly, we find all security measures that an organization would normally implement, however, as described earlier you need to undertake each layer with respect to its outer layers&#8217; elements and build on them.</p>
<ul>
<li>A criminal may target the organization employees</li>
<li>The major threat being email as it spread viruses, spyware and malware.</li>
<li>Employee negligence can result in infected workstations &#8211; Employee training!</li>
<li>Another threat which is becoming major is social networking &#8211; the need of a good Internet Traffic monitoring &amp; blocking tool is a must!</li>
<li>A practical Email and Web usage policy needs to be in place and followed</li>
<li style="text-align: left;">Social engineering countermeasures such as, Policies &amp; Procedures</li>
</ul>
<p style="text-align: center;"><strong>Organization&#8217;s Physical &amp; Logical Security with respect to outer layers&#8217; elements</strong></p>
<ul>
<li>How are remote offices connected? &#8211; Secure channel over the Internet (ex: VPN), bridge connection (leased lines, SAT, others) &#8211; Each method has its own weaknesses in terms of performance and security</li>
<li>Office/s Internet connection setup needs double perimeter or a DMZ, an application based firewall, and an IDS or IPS</li>
<li>Employees&#8217; workstations &#8211; patch management, antivirus, anti spyware/malware with group polices that disallow users from stopping such services</li>
<li>Wireless considerations &#8211; does the wireless bridge the internal LAN with external Net?</li>
<li>LAN devices in general &#8211; replace default username &amp; passwords and configuration. Devices such as, network switches pose a serious threat.</li>
<li>The most critical assets are the internal servers that connect to the Internet such as, email, web proxies, DNS and web application backend servers</li>
<li>Determine all known vulnerabilities for each system and mitigate possible threats with adequate controls.</li>
<li>Configuration reviews and best practices must be followed</li>
<li>Adequate log management &#8211; collect, analyze &amp; report</li>
<li>Protocols, Operating Systems, user browsers, tools, applications &#8211; in need of a complete and detailed hardware &amp; software inventory</li>
</ul>
<p>Finally, the best security measure is making sure that an alternate option is always available, in case, all security measures fail. I am referring to business continuity (BCP) with tested data backups, adequate redundant systems, DR and contingency plans.<br />
<!-- ddpostsbyauthor --></p>
]]></content:encoded>
			<wfw:commentRss>http://www.itinfomag.com/security-governance/a-three-layer-approach-to-internet-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Virtualized Environments’ Challenges</title>
		<link>http://www.itinfomag.com/it-governance/virtualized-environments-challenges/</link>
		<comments>http://www.itinfomag.com/it-governance/virtualized-environments-challenges/#comments</comments>
		<pubDate>Tue, 07 Sep 2010 02:49:18 +0000</pubDate>
		<dc:creator>George</dc:creator>
				<category><![CDATA[IT Governance]]></category>
		<category><![CDATA[Virtualization]]></category>
		<category><![CDATA[challenges]]></category>
		<category><![CDATA[guidelines]]></category>
		<category><![CDATA[logs]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[procedures]]></category>
		<category><![CDATA[virtual machines]]></category>
		<category><![CDATA[virtualized environments]]></category>

		<guid isPermaLink="false">http://www.backupmyhost.com/blog/?p=615</guid>
		<description><![CDATA[It is estimated that 25% of SMBs use virtualized environments and the forecast for the coming years looks very promising. There are various benefits gained with virtualization, such as, lower operational costs, resources scalability, IT automation, faster deployments of application servers and many more features. On the other hand, we tend to ignore or give low importance to challenges or risks that are introduced with virtualized environments. As the overall benefits outweigh the challenges, the perceived risks are low! Is this the approach we need to take to move forward towards secure and stable virtualized environments? What are the new challenges introduced with virtualization? As opposed to the traditional environment, we can hardly define a control structure for a virtualized environment. With the greater flexibility and rapid provisioning there is a risk of sprawl management and with the decentralized unrestricted access management, there is a risk of non-compliance or security breaches &#8211; virtualized control management needs to take a new form! The challenge is to create a structure that is dynamic, portable and accurate. Implementing a control structure to an existent uncontrolled environment may be painful as it may requires configuration changes! As regards to implementing best practices and procedural controls [...]]]></description>
			<content:encoded><![CDATA[<p>It is estimated that 25% of SMBs use virtualized environments and the forecast for the coming years looks very promising. There are various benefits gained with virtualization, such as, lower operational costs, resources scalability, IT automation, faster deployments of application servers and many more features. On the other hand, we tend to ignore or give low importance to challenges or risks that are introduced with virtualized environments. As the overall benefits outweigh the challenges, the perceived risks are low! <em>Is this the approach we need to take to move forward towards secure and stable virtualized environments?</em></p>
<p><em>What are the new challenges introduced with virtualization?</em> As opposed to the traditional environment, we can hardly define a control structure for a virtualized environment. With the greater flexibility and rapid provisioning there is a risk of sprawl management and with the decentralized unrestricted access management, there is a risk of non-compliance or security breaches &#8211; virtualized control management needs to take a new form! The challenge is to create a structure that is dynamic, portable and accurate.</p>
<p><span id="more-615"></span></p>
<p>Implementing a control structure to an existent uncontrolled environment may be painful as it may requires configuration changes! As regards to implementing best practices and procedural controls the tasks is somewhat less painful. Therefore, securing and controlling the virtualized environment should take into consideration both the technical aspects and human factors. The best approach would be to plan ahead all controls before implementing the virtualized environment.</p>
<p>There are various areas to consider when designing a virtualized environment. One concept often ignored by IT stuff is to separate the management network traffic from the data services network through separate subnets. Another common trend is to group Virtual Machines by performance levels instead of trust/criticality level first. <em>Is the IT including the hypervisor (virtualized platform) in its patch management exercise?</em> There may be even tougher design decisions at the network level.  As the network components in virtualized environments are all virtual, such as, vnics, virtual switches, etc. special attention is required to design the network layout. The environment may require a firewall or DMZ within the hypervisor or enabling virtual MAC protection. Remember, that certain vendor specific products enable nics in promiscuous mode and disable MAC protection!</p>
<p>If the company backup strategy is based on images and snapshots, then apart from the well defined procedures and policies one needs to test recovery procedures. In a Windows Active Directory environment, restoring an outdated or out of sync AD server will cause problems! Images of Virtual Machines are easily copied to external devices and taken off the premises. <em>Are there any controls in place or detection mechanisms to monitor such movements?</em></p>
<p>Once, the virtualized environment is up and running, guidelines, procedures and policies need to be put in place. These should include segregation of duties, identity and access management, asset and log management. As it is very difficult to track incidents, access restrictions to logs need to be established. While restricting access to virtualized resources is important, make sure that logs are enabled and collected from all components, including the hypervisor logs. Educating stuff about policies and procedures is essential, however, auditing such procedures on regular basis is vital!<br />
<!-- ddpostsbyauthor --></p>
]]></content:encoded>
			<wfw:commentRss>http://www.itinfomag.com/it-governance/virtualized-environments-challenges/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Performing a data backup in Windows XP</title>
		<link>http://www.itinfomag.com/data-backup-recovery/performing-a-data-backup-in-windows-xp/</link>
		<comments>http://www.itinfomag.com/data-backup-recovery/performing-a-data-backup-in-windows-xp/#comments</comments>
		<pubDate>Mon, 03 May 2010 02:29:05 +0000</pubDate>
		<dc:creator>George</dc:creator>
				<category><![CDATA[Data Backup & Recovery]]></category>
		<category><![CDATA[data backup]]></category>
		<category><![CDATA[logs]]></category>
		<category><![CDATA[Windows XP]]></category>

		<guid isPermaLink="false">http://www.backupmyhost.com/blog/?p=472</guid>
		<description><![CDATA[The Native backup utility found in Windows XP operating systems helps you protect data from accidental loss if your system experiences hardware or storage media failure. The backup storage medium can be any local drive but I recommend using a separate storage device such as, a removable disk or a large capacity USB drive. If the original data on your hard disk is accidentally erased or overwritten, or becomes inaccessible because of a hard disk malfunction, you can easily restore the data from the archived copy. Additionally, the backup utility helps you take a copy of your computer&#8217;s System State, which includes the system files and the registry while you can schedule regular backups. The backup program creates a volume shadow copy of your data, that is, creates a temporary copy of the data, including open files that are being used by the system. To start the backup utility, go to the Start menu, All Programs, Accessories, System Tools, and Backup The backup main window opens, by default the wizard loads first if this is the first time you are running the utility. I suggest that you uncheck the Always start in wizard mode option. From the backup main window, [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-473" title="Backup program interface" src="http://www.itinfomag.com/wp-content/uploads/2010/05/Backup-program-interface.jpg" alt="" width="372" height="284" />The Native backup utility found in Windows XP operating systems helps you protect data from accidental loss if your system experiences hardware or storage media failure. The backup storage medium can be any local drive but I recommend using a separate storage device such as, a removable disk or a large capacity USB drive. If the original data on your hard disk is accidentally erased or overwritten, or becomes inaccessible because of a hard disk malfunction, you can easily restore the data from the archived copy. Additionally, the backup utility helps you take a copy of your computer&#8217;s System State, which includes the system files and the registry while you can schedule regular backups. The backup program creates a volume shadow copy of your data, that is, creates a temporary copy of the data, including open files that are being used by the system.</p>
<p><span id="more-472"></span></p>
<ol>
<li>To start the backup utility, go to the <strong>Start</strong> menu, <strong>All Programs</strong>, <strong>Accessories</strong>,<strong> System Tools</strong>, and <strong>Backup<img class="size-full wp-image-475 aligncenter" title="Backup program" src="http://www.itinfomag.com/wp-content/uploads/2010/05/Backup-program.jpg" alt="" width="439" height="213" /></strong></li>
<li>The backup main window opens, by default the wizard loads first if this is the first time you are running the utility. I suggest that you uncheck the <strong>Always start in wizard mode</strong> option.</li>
<li>From the backup main window, click the <strong>Backup</strong> tab<a href="http://www.backupmyhost.com/blog/wp-content/uploads/2010/05/Data-selection-for-backup.jpg"></a></li>
<li>From the left-hand side pane, expand your data drive by clicking the <strong>+</strong> sign and searching through the folders structure find the data you want to back up</li>
<li>Select the data by checking the respective check box &#8211; I suggest you include the System State check box from time to time as to have a backup of your system important files<img class="size-full wp-image-478 aligncenter" title="Data selection for backup" src="http://www.itinfomag.com/wp-content/uploads/2010/05/Data-selection-for-backup1.jpg" alt="" width="482" height="312" /></li>
<li>From the <em>Backup media or file name:</em> <strong>Browse</strong> button, select the destination backup location- I suggest using removable media such as, a USB drive or a network share if available</li>
<li>Click the <strong>Start Backup</strong> to load the next window<a href="http://www.backupmyhost.com/blog/wp-content/uploads/2010/05/Advanced-Options.jpg"></a></li>
<li>From the <em>Backup Job Information </em>window, select the <em>Replace the data on the media with this backup</em> radio button and click the <strong>Advanced&#8230;</strong> button</li>
<li>From the <em>Advanced Backup Options</em> window, it is important to select the <em>Verify data after backup</em> check box and click <strong>OK</strong> - for info about backup types see &#8211; Data Backup Types<img class="size-full wp-image-480 aligncenter" title="Advanced Options" src="http://www.itinfomag.com/wp-content/uploads/2010/05/Advanced-Options2.jpg" alt="" width="436" height="277" /></li>
<li>Click the <strong>Schedule&#8230;</strong> button if you want to perform the job later &#8211; you are ask to save the options selected and to enter the admin password</li>
<li>Click the <strong>Start</strong> Backup button to initiate the backup job &#8211; the Backup Progress window loads and you can click the <strong>Report&#8230;</strong> button to view the status of the backup job<img class="size-full wp-image-481 aligncenter" title="Backup Progress" src="http://www.itinfomag.com/wp-content/uploads/2010/05/Backup-Progress.jpg" alt="" width="314" height="303" /><br />
 <br />
<strong>Note:</strong> It is important to check the log files for errors &#8211; for example, the number of backed up folders and files should match that of the Verify section and the value of the <em>Different:</em> element is 0. By default, all log files are saved in <em>C:\Documents and Settings\&#8217;your username&#8217;\Local Settings\Application Data\Microsoft\Windows NT\NTBackup\data</em></li>
</ol>
<p><!-- ddpostsbyauthor --></p>
]]></content:encoded>
			<wfw:commentRss>http://www.itinfomag.com/data-backup-recovery/performing-a-data-backup-in-windows-xp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

