Security is the set of preventative and reactive measures taken to minimize harm, whether intentional or not. Depending on your need for security, there are different measures that can be taken.

The basic implementations of security are as follows:

Physical Security

Physical security means to control the physical and electrical means by which access is gained to a system.

Physical security includes the following:

Fault Tolerance

Fault tolerance is the ability to recover from hardware failure or mistakes with little or no interruption.

Secured Transmissions

Secure transmission ensures that communications are only between the appropriate parties.

Secure transmission includes the following:

Audits

Audits involve logging activity for the purposes of determining what occurred.

Audits include the following:

Access Authentication

Control which accounts are created and what those accounts have access to.

Access to network resources is ultimately controlled on a per user basis. However there are two ways to do this:

A user account is usually a member of multiple groups. When a user is trying to access a resource and is a member of multiple groups that have different levels of access to that resource, then the permissions of the least restrictive group takes precedence unless the user is a member of a group that is specifically given "No Access" to that resource.

Here are some terms used in entity authentication:

Access authentication includes the following:

Network Access

A firewall is usually hardware (eg a screening router), software (eg a proxy server), or both. Most firewall systems use one or more of the following methods:

Here is a belt & suspenders firewall, a typical enterprise level setup for network access security:

Diagram of a firewall hardware

The SRs are screening routers, ie packet filters. The BHs (Bastion Hosts) are servers such as IIS, RAS, and Exchange. The DMZ (De-Militarized Zone) demarcate machines that have more exposure to the Internet than the LAN does.

Links

Here are links that lead to off-site pages about security.

Antivirus (AV)

Wikipedia

Wikipedia has many articles related to security. Here are just a few.

Miscellany

Page Modified: (Hand noted: 2007-08-31 10:33:15Z) (Auto noted: 2008-05-04 16:15:46Z)