Module 3: Mitigating Threats Flashcards
What is the CIA Triad
Confidentiality, Integrity, Availability
What are the 4 stages to mitigate a worm?
- Containment
- Inoculation
- Quarantine
- Treatment
What is containment?
Limiting the spread of the worm
What is inoculation?
All infected systems are patched. Ie jabbed.
What is quarantine?
Tracking down and identifying all infected machines
What is treatment?
disinfected the machines and systems
How do you mitigate a access attack?
Using strong passwords, disable accounts etc
How do you mitigate malware
with a antivirus
How do you mitigate reconnaissance attacks
It is impossible to mitigate port scanning. Using an IPS and firewall can limit the information that can be discovered with a port scanner.
How to mitigate a DoS attack
To minimize the number of attacks, a network utilization software package should be running at all times.
Cisco NFP Framework 3 Parts
Control Plane, Management Plane and Data Plane
What is the Control Plane
Responsible for routing data correctly.
What is the Management Plane
Responsible for managing network elements.
What is the Data plane
Responsible for forwarding data correctly
How do you secure the Control Plane
Routing Protocol Authentication or Control Plane Policing CoPP
What does CoPP do?
designed to prevent unnecessary traffic from overwhelming the route processor.
How do you secure the Management Plane
Login and password policy, Present legal notification and RBAC
How do you secure the Data Plane?
using Access Control Lists