The Experts below are selected from a list of 6 Experts worldwide ranked by ideXlab platform
Volpe Fabrizio - One of the best experts on this subject based on the ideXlab platform.
-
Getting started with Fortigate
Packt Publ., 2013Co-Authors: Fabbri Rosato, Volpe FabrizioAbstract:This book is a step-by-step tutorial that will teach you everything you need to know about the deployment and management of Fortigate, including high availability, complex routing, various kinds of VPN working, user authentication, security rules and controls on applications, and mail and Internet access.This book is intended for network administrators, security managers, and IT pros. It is a great starting point if you have to administer or configure a Fortigate Unit, especially if you have no previous experience. For people that have never managed a Fortigate Unit, the book helpfully walks
Fabbri Rosato - One of the best experts on this subject based on the ideXlab platform.
-
Getting started with Fortigate
Packt Publ., 2013Co-Authors: Fabbri Rosato, Volpe FabrizioAbstract:This book is a step-by-step tutorial that will teach you everything you need to know about the deployment and management of Fortigate, including high availability, complex routing, various kinds of VPN working, user authentication, security rules and controls on applications, and mail and Internet access.This book is intended for network administrators, security managers, and IT pros. It is a great starting point if you have to administer or configure a Fortigate Unit, especially if you have no previous experience. For people that have never managed a Fortigate Unit, the book helpfully walks
Brleković Daniel - One of the best experts on this subject based on the ideXlab platform.
-
IMPLEMENTACIJA UREĐAJA ZA SVEOBUHVATNO UPRAVLJANJE PRIJETNJAMA
Algebra University College., 2016Co-Authors: Brleković DanielAbstract:Sve većom potrebom za komunikacijom i poslovanjem putem računalnih mreža i Interneta razvijaju se i sve složenije prijetnje računalnim sustavima. Kako bi se osigurao kontinuitet poslovanja, tvrtke se moraju zaštititi od prijetnji. Jedno od rješenja za tvrtke srednje veličine, uz dodatne metode zaštite, je implementacija uređaja za sveobuhvatno upravljanje prijetnjama. Implementacijom uređaja za sveobuhvatno upravljanje prijetnjama dodaje se mrežnoj sigurnosti dodatni set funkcionalnosti. Uređaji ove vrste uz osnovne mrežne funkcionalnosti usmjeravanja i preklapanja sadrže skupinu dodatnih funkcionalnosti za zaštitu od prijetnji. Rad opisuje zamjenu Cisco ASA 5510 vatrozida uređajem za sveobuhvatno upravljanje prijetnjama Fortinet Fortigate 300D u poslovnom sustavu tvrtke s 250 radnih stanica i internih korisnika, 50 regionalnih ureda te vlastitom poslužiteljskom infrastrukturom i javno dostupnim servisima. Prikazan je proces od izbora uređaja do same implementacije unutar postojećeg sustava. Uređaj se povezuje na ključne servise sustava te se podešavaju osnovne mrežne funkcionalnosti i upravljački pristup uređaju. Udaljene lokacije tvrtke povezuju se u virtualnu privatnu mrežu, a sav se promet prema Internetu i s Interneta usmjerava preko Fortigate uređaja. Kako bi se omogućilo nesmetano legitimno korištenje informacijskog sustava, a spriječile nelegitimne radnje unutarnjih i vanjskih korisnika tvrtke i potencijalnih napadača, konfiguriraju se funkcionalnosti za zaštitu od prijetnji i izrađuju politike pristupa. Kreiraju se profili za zaštitu od zloćudnog koda, web filteri, zaštita od upada u sustav, zaštita od napada uskraćivanjem pristupa, inspekcija kriptiranog mrežnog prometa i filtriranje elektroničke pošte. Vrlo je važan i izvještajni sustav putem kojeg je moguća analiza događaja i sigurnosnih incidenata. Nakon implementacije uređaja provode se funkcionalni testovi kojima se ocjenjuje uspješnost obrane od prijetnji.With growing needs for communication and commerce over computer networks and the internet, increasingly complex threats to computer systems are emerging . In order to ensure bussiness continuity, companies must protect themselves against such threats. With additional methods of protection in place, one of the solutions for midsized companies is the unified threat management appliances. With implementation of the unified threat management appliance, we are adding another set of functionalities to network security. Devices of this type, among basic network routing and switching capabilities, contain additional functionalities for advanced threat protection. This paper describes replacement of the Cisco ASA 5510 statefull firewall with unified threat management appliance Fortinet Fortigate 300D in the enterprise company with 250 workstations and internal users, 50 branch offices with their own server infrastructure and publicly available web services. The entire process of implementation, from device selection to the actual implementation, within the existing system is described below. We are connecting unified threat mananagement appliance to the key IT services and systems of the company and configuring basic networking functionalities and management access to the device. Branch offices are being connected to the virtual private network and the entire internet trafic is sent through the Fortigate Unit. In order to facilitate smooth legitimate use of the IT system and to prevent illegitimate actions from internal and external users and potential attackers, advanced functionalities for protection against threats are set up. We are creating profiles for protection against malicious code, web filtering, intrusion protection system, protection against Denial of Service attack, inspection of encrypted network traffic and e-mail filtering and combining them into security and access policies. Reporting and alerting system is an important component of appliance through which it is possible to analyze events and security incidents. After implementation of the device, functional tests that evaluate the success of defense against threats will be carried out