Skip to main content

Posts

Week 6 System Hardening and Network

  Access Control Lists (ACLs) are a set of rules that can control incoming or outgoing traffic in a network. They are typically used to selectively admit or reject inbound traffic, thereby preventing access to a network or specific resources on a network.   ACLs can be implemented in routers and switches, and they work by examining the source and destination IP addresses, protocols, and network traffic ports. Based on the rules defined in the ACL, the router or switch can allow or deny traffic.   ACLs are a valuable tool for controlling traffic in a network, but there are better ways to do so. For example, firewalls can provide more granular control over network traffic by examining the contents of packets and applying more complex rules. Additionally, intrusion detection and prevention systems can detect and block malicious traffic. In summary, ACLs are a valuable tool for controlling network traffic, but there are better ways. The best...

System Hardening and Networking week 4

  In computer networking,  static and dynamic routing are two   routing protocols. Static routing is a manual process where the network administrator manually enters the routes in the routing table. It does not use complex routing algorithms and provides high security. However, it is difficult to configure and is implemented in small networks. On the other hand, dynamic routing is an automated process that changes the routing table according to the change in topology. It uses complex routing algorithms and does not provide high security like static routing. However, it is easy to configure and is implemented in large networks. Dynamic routing requires additional resources and more bandwidth than static routing. When the network change occurs, it sends the message to the router to ensure that changes, and then the routes are recalculated to send updated routing information.

System hardening and networking week 5

  A Virtual Local Area Network (VLAN) is a logical network that groups devices based on their functionality, location, or security requirements. Here are some advantages of VLANs: Advantages: Improved network performance: VLANs can reduce congestion by segmenting the network into smaller broadcast domains. This reduces the amount of traffic that needs to be processed by each device, leading to faster network speeds. Enhanced network security: VLANs can isolate sensitive data and restrict access to it. This helps prevent unauthorized access to confidential information and reduces the risk of data breaches. Simplified network management: VLANs can simplify network management by allowing administrators to manage groups of devices as a single entity. This reduces the complexity of network management and makes it easier to troubleshoot network issues. Flexibility: VLANs can be easily reconfigured to meet changi...

System Hardening and Network week 3

  There are several tools available for identifying systems present on a network before conducting vulnerability tests .  One such tool is the Nessus Vulnerability Scanner. Nessus is a widely used vulnerability scanner that can identify IT assets, web applications, and cloud infrastructure vulnerabilities . It is designed to assess the modern attack surface and can be used to extend beyond traditional IT assets. Nessus is trusted by thousands of organizations worldwide and is considered the gold standard for vulnerability assessment. I like this tool because it helps network administrators access organizational threats .

System Hardening Week 2

  The  Application layer  is the seventh and highest layer of the OSI and TCP/IP models. It specifies the shared communication protocols and interface methods hosts use in a communications network. The protocols in the Application layer are responsible for providing services to the user, such as file transfer, email, and web browsing.

System Hardening and network week1

  The CompTIA Cybersecurity Analyst (CySA+) certification is a globally recognized certification that validates the skills required to perform cybersecurity analysis and response. The certificate is valid for three years from the exam date, after which it can be renewed through the   continuing education (CE) program.   ISO/ANSI accredits the CySA+ certification and meets the U.S. Department of Defense requirements. The certificate is designed to equip cybersecurity professionals with the necessary skills to identify and respond to security threats and vulnerabilities in real-world scenarios. Professionals must stay updated with the latest technologies and trends as the cybersecurity industry evolves . The CySA+ certification is a great way to demonstrate your knowledge and expertise in the field of cybersecurity and stay ahead of the curve.  

Week 11

  Managing risk and protecting the network is very important for an organization but it is also important to know that we will always carry some risk no matter how good our cyber defenses are, and it is important to have a security budget in place as most companies only increase or make a security budget after a major attack. Since there is always plenty of risk to manage, it is good to know where that risk is. There are several steps used to manage risk in a network, important ones are. 1.     Mapping out a network. To manage your risk, you’ll need to know where it lies. So first,  identify the asse ts  in your network that could be targeted by cybercriminals.   2.     Identify Network Risk. Once you’ve identified the weak points in your network, you’ll need to identify the risks that could affect your organization. You’ll want to examine external risks like attacks and breaches, as well as internal risks like poorly configured ...