NETWORK SECURITY
Presented by :
Sangeeta Bhandari
PG Department of Computer Sc. & I.T.
HMV, Jalandhar
What is Computer Network?
Network Security Basics
2
8/15/2022
What is “Security”?
Network Security Basics
3
8/15/2022
Why do we need security?
Network Security Basics
4
8/15/2022
Why Network Security?
• To protect company assets: One of the primary goals of computer and network security is the protection of company assets.
• To gain a competitive advantage: Developing and maintaining effective security gives competitive advantage in the market. Eg. A bank with proven record of security will attract more customers.
Network Security Basics
5
8/15/2022
Why Network Security? Cont..
To comply with regulatory requirements : Corporate officers of every company have a responsibility to ensure the safety and soundness of the organization. Accordingly, organizations that rely on computing devices(PCs, Mobiles, Tabs, Laptops etc. for their continuing operation must develop policies and procedures that address organizational security requirements.
• To keep your job: Finally, to secure one's position within an organization and to ensure future career prospects. Failure to perform adequately can result in termination.
Network Security Basics
6
8/15/2022
Who is vulnerable?
Network Security Basics
7
8/15/2022
Basic terms in Network Security
Identification is simply the process of identifying one's self to another entity or determining the identity of the individual or entity with whom you are communicating.
Authentication serves as proof that you are the one, who you claim to be.
Authentication is normally based on combination of following three schemes:
Network Security Basics
8
8/15/2022
Basic terms in Network Security
Authentication is normally based on combination of following three schemes:
Network Security Basics
9
8/15/2022
Basic terms in Network Security
This refers to whether the network, system, hardware, and software are reliable and can recover quickly and completely in the event of an interruption in service.
This can also be called privacy or secrecy and refers to the protection of information from unauthorized disclosure.
Usually achieved either by restricting access to the information or by encrypting the information so that it is not meaningful to unauthorized individuals or entities.
This can be thought of as accuracy. This refers to the ability to protect information, data, or transmissions from unauthorized, uncontrolled, or accidental alterations.
Network Security Basics
10
8/15/2022
Security Models�
Three basic approaches used to develop a network security model.
Security by obscurity relies on stealth for protection. The concept behind this model is that if no one knows that a network or system is there, then it won't be subject to attack.
The problem with this approach is that it never works in the long term, and once detected, a network is completely vulnerable.
Network Security Basics
11
8/15/2022
Security Models�
2. The Perimeter Defense
When using this model in network security, organizations harden or strengthen perimeter systems and border routers, or an organization might "hide" its network behind a firewall that separates the protected network from an untrusted network. Not much is done to secure the other systems on the network. The assumption is that perimeter defenses are sufficient to stop any intruders so that the internal systems will be secure. There are several flaws in this concept:
Network Security Basics
12
8/15/2022
Security Models Contd..
Problems of Perimeter Defense
First, this model does nothing to protect internal systems from an inside attack. As we have discussed, the majority of attacks on company networks are launched from someone internal to the organization. Second, the perimeter defense almost always fails eventually. Once it does, the internal systems are left wide open to attack.
Network Security Basics
13
8/15/2022
Security Models Contd..
3. The Defense in Depth
The most robust approach to use is the defense in depth model. The defense in depth approach strives for security by hardening and monitoring each system; each system is an island that defends itself. Extra measures are still taken on the perimeter systems, but the security of the internal network does not rest solely on the perimeter systems..
Network Security Basics
14
8/15/2022
Common security attacks and their countermeasures
Network Security Basics
15
8/15/2022
Firewalls
Network Security Basics
16
8/15/2022
Firewalls
computer network.
Network Security Basics
17
8/15/2022
Types of firewalls
Network Security Basics
18
8/15/2022
Intrusion Detection
Network Security Basics
19
8/15/2022
Dictionary Attack
Network Security Basics
20
8/15/2022
Denial of Service
Network Security Basics
21
8/15/2022
Denial of Service
Network Security Basics
22
8/15/2022
TCP Attacks
Network Security Basics
23
8/15/2022
Network Security Basics
24
8/15/2022
TCP Attacks
TCP Attacks
Network Security Basics
25
8/15/2022
Packet Sniffing
Network Security Basics
26
8/15/2022
Packet Sniffing
Network Security Basics
27
8/15/2022
Packet Sniffing
Network Security Basics
28
8/15/2022
Social Problems
Network Security Basics
29
8/15/2022
Social Problems
Network Security Basics
30
8/15/2022
Social Problems
Network Security Basics
31
8/15/2022
Social Problems
Network Security Basics
32
8/15/2022
Conclusions
Network Security Basics
33
8/15/2022
References
Network Security Basics
34
8/15/2022
Network Security Basics
35
8/15/2022
?
Any Questions
THANKS
A
LOT
Network Security Basics
36
8/15/2022