{"id":3101,"date":"2014-02-20T08:18:26","date_gmt":"2014-02-20T02:48:26","guid":{"rendered":"https:\/\/www.qadit.com\/blog\/?p=3101"},"modified":"2014-03-13T08:26:37","modified_gmt":"2014-03-13T02:56:37","slug":"secure-your-network-pitfalls-to-be-avoided","status":"publish","type":"post","link":"https:\/\/qadit.com\/blog\/secure-your-network-pitfalls-to-be-avoided\/","title":{"rendered":"Secure your network &#8211; Pitfalls to be avoided"},"content":{"rendered":"<p>We have all seen lists upon lists of &#8220;How to secure your network&#8221;. We have grown immune to these well meaning rants, just as a teenager blocks out his parent&#8217;s &#8220;lectures&#8221; (No parent would call it a &#8220;lecture&#8221; while all kids will insist it is a &#8220;lecture, a boring one at that&#8221;). So, we decided to put on our thinking caps, after vigorously dusting it, and tried to come up with a list pitfalls to avoid; that will, hopefully, not be relegated to the annals of lecture fiefdom.<br \/>\n<!--more--><br \/>\n&#8211; Too many users with administrative access to a critical resource. Think critical resource being managed by third party vendor, 3 shifts of 2 people each, changes in team composition, top it off with a generous sprinkling of generic user IDs. Recipe for disaster? We definitely think so.<br \/>\n&nbsp;<br \/>\n&#8211; A variation of the above: domain has &#8216;n&#8217; servers &#8211; each server with its own administrative person. Each of these individual administrators have domain administrator access.<br \/>\n&nbsp;<br \/>\n&#8211; Networking devices have trivial passwords. We don&#8217;t know why, but too often we have seen switches and firewalls having trivial passwords. We are tempted to ask &#8220;Why this kolaveri&#8221;, but being staid, we won&#8217;t.<br \/>\n&nbsp;<br \/>\n&#8211; Change management not given enough importance. Ever so often, we have asked &#8220;who authorised this particular change&#8221; and people are left scrambling.<br \/>\n&nbsp;<br \/>\n&#8211; Security patches, fixes not updated. This topic comes with its own debate, but, we thought it is worth mentioning here without going into the aforementioned debate.<br \/>\n&nbsp;<br \/>\n&#8211; GPOs are not used as a security tool; GPOs don&#8217;t push security policies. This one single item (GPOs push security related policies to the domain) can help homogenise security settings and ease administrative hassles.<br \/>\n&nbsp;<br \/>\nThere you go; not necessarily the top 5 pitfalls but the first 5 that came to mind. Lecture over.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We have all seen lists upon lists of &#8220;How to secure your network&#8221;. We have grown immune to these well meaning rants, just as a teenager blocks out his parent&#8217;s &#8220;lectures&#8221; (No parent would call it a &#8220;lecture&#8221; while all kids will insist it is a &#8220;lecture, a boring one at that&#8221;). So, we decided &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/qadit.com\/blog\/secure-your-network-pitfalls-to-be-avoided\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Secure your network &#8211; Pitfalls to be avoided&#8221;<\/span><\/a><\/p>\n","protected":false},"author":6,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[12],"tags":[],"class_list":["post-3101","post","type-post","status-publish","format-standard","hentry","category-itsec"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p9AH7Q-O1","_links":{"self":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts\/3101","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/comments?post=3101"}],"version-history":[{"count":0,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/posts\/3101\/revisions"}],"wp:attachment":[{"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/media?parent=3101"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/categories?post=3101"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/qadit.com\/blog\/wp-json\/wp\/v2\/tags?post=3101"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}