<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Tech-Life in Pink &#187; Firewalls</title>
	<atom:link href="http://techlifeinpink.com/tag/firewalls/feed/" rel="self" type="application/rss+xml" />
	<link>http://techlifeinpink.com</link>
	<description>A mish-mash of technology, life, and everything in this lady's world.</description>
	<lastBuildDate>Sat, 10 Mar 2012 21:19:16 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='techlifeinpink.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://0.gravatar.com/blavatar/62119425e51958d10ed82ddac4fca977?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Tech-Life in Pink &#187; Firewalls</title>
		<link>http://techlifeinpink.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://techlifeinpink.com/osd.xml" title="Tech-Life in Pink" />
	<atom:link rel='hub' href='http://techlifeinpink.com/?pushpress=hub'/>
		<item>
		<title>Cisco PIX Firewall Basics</title>
		<link>http://techlifeinpink.com/2009/03/31/cisco-pix-firewall-basics/</link>
		<comments>http://techlifeinpink.com/2009/03/31/cisco-pix-firewall-basics/#comments</comments>
		<pubDate>Tue, 31 Mar 2009 11:00:14 +0000</pubDate>
		<dc:creator>annasaldivar</dc:creator>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Tech]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Network security]]></category>

		<guid isPermaLink="false">http://techlifeinpink.com/?p=286</guid>
		<description><![CDATA[Firewalls are essential components of an effective information security infrastructure. At its most basic level, a firewall is a hardware or software that filters traffic between your network and the Internet. The firewall (hardware) I am most familiar in using is the Cisco PIX (Private Internet eXchange) Firewall. It was one of the first products [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=techlifeinpink.com&#038;blog=7018595&#038;post=286&#038;subd=annasaldivar&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Firewalls are essential components of an effective information security infrastructure. At its most basic level, a firewall is a hardware or software that filters traffic between your network and the Internet. The firewall (hardware) I am most familiar in using is the Cisco PIX (Private Internet eXchange) Firewall. It was one of the first products in the IP firewall and NAT appliance market segments.</p>
<p><img class="size-full wp-image-295 alignright" title="Cisco PIX 501 Firewall" src="http://annasaldivar.files.wordpress.com/2009/03/cisco-pix-501.jpg?w=510" alt="Cisco PIX 501 Firewall"   /><strong>PIX firewalls include the following security and network services features:</strong></p>
<ul></ul>
<ul>
<li>Network Address Translation (NAT) or Port Address Translation (PAT)</li>
<li>Content filtering</li>
<li>URL filtering</li>
<li>IPsec VPN</li>
<li>DHCP client/server</li>
<li>PPPoE support</li>
<li>Advanced security services for multimedia applications including Voice over IP (VoIP), H.323, SIP, Skinny</li>
</ul>
<p>Managing the firewall can be done through its integrated web-based management interface called PIX Device Manager (PDM), command-line interface (CLI), Telnet, Secure Shell (SSH), console port, SNMP, and syslog.</p>
<p><strong>Here are 10 steps to ensure your PIX Firewall is as secure as it can be:</strong></p>
<ol>
<li>Password protect it</li>
<li>Know your access-lists</li>
<li>Log denials and errors</li>
<li>Use SSH in place of Telnet</li>
<li>Understand the ASA</li>
<li>Enable optional security</li>
<li>Keep the PIX OS and PDM patched</li>
<li>Back up your configuration</li>
<li>Use secure encryption</li>
<li>Know your network</li>
</ol>
<p><em><strong>Read more in detail here:</strong></em> <a href="http://i.techrepublic.com.com/downloads/home/Lock_down_10--Cisco_PIX.zip">Cisco PIX Firewall: Lock it down in 10 steps</a></p>
<p>Most PIX Firewall models optionally support multiple outside or perimeter networks (also known as demilitarized zones (DMZs)). Connections between the networks can be controlled by the PIX Firewall.</p>
<p>A Demilitarized zone (DMZ) is the most common and secure firewall topology, often referred to as a screened subnet. A DMZ creates a secure space between your Internet and your network. It will typically contain the following:</p>
<ul>
<li>Web server</li>
<li>Mail server</li>
<li>Application gateway</li>
<li>E-commerce systems (It should contain only your front-end systems. Your back-end systems should be on your internal network.)</li>
</ul>
<p><img class="alignleft" title="Cisco ASA 5520 Firewall - Photo Credit: fzurell" src="http://farm1.static.flickr.com/146/342350600_1b6dadd27e.jpg?v=0" alt="" width="240" height="160" />In 2005, Cisco introduced the newer Adaptive Security Appliance (ASA) firewall that inherited much of PIX features, and in 2008 announced the <a href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5708/ps5709/ps2030/qa_eos_for_sale_for_cisco_pix_products_customer.html" target="_blank">PIX end-of-sale</a>. I actually just found out about their discontinuity of the PIX firewall as I was doing some research for this blog post. However, the PIX technology is still sold in a blade, the FireWall Services Module (FWSM), for the Cisco Catalyst 6500 switch series and the 7600 Router series.</p>
<p><em>Photo Credit: fzurell</em></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/annasaldivar.wordpress.com/286/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/annasaldivar.wordpress.com/286/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/annasaldivar.wordpress.com/286/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/annasaldivar.wordpress.com/286/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/annasaldivar.wordpress.com/286/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/annasaldivar.wordpress.com/286/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/annasaldivar.wordpress.com/286/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/annasaldivar.wordpress.com/286/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/annasaldivar.wordpress.com/286/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/annasaldivar.wordpress.com/286/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/annasaldivar.wordpress.com/286/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/annasaldivar.wordpress.com/286/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/annasaldivar.wordpress.com/286/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/annasaldivar.wordpress.com/286/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=techlifeinpink.com&#038;blog=7018595&#038;post=286&#038;subd=annasaldivar&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://techlifeinpink.com/2009/03/31/cisco-pix-firewall-basics/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a5c4a2d079563d713defff1da78291ba?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">annasaldivar</media:title>
		</media:content>

		<media:content url="http://annasaldivar.files.wordpress.com/2009/03/cisco-pix-501.jpg" medium="image">
			<media:title type="html">Cisco PIX 501 Firewall</media:title>
		</media:content>

		<media:content url="http://farm1.static.flickr.com/146/342350600_1b6dadd27e.jpg?v=0" medium="image">
			<media:title type="html">Cisco ASA 5520 Firewall - Photo Credit: fzurell</media:title>
		</media:content>
	</item>
		<item>
		<title>Network Security Basics</title>
		<link>http://techlifeinpink.com/2009/03/28/network-security-basics/</link>
		<comments>http://techlifeinpink.com/2009/03/28/network-security-basics/#comments</comments>
		<pubDate>Sat, 28 Mar 2009 11:00:38 +0000</pubDate>
		<dc:creator>annasaldivar</dc:creator>
				<category><![CDATA[Tech]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Network security]]></category>

		<guid isPermaLink="false">http://techlifeinpink.com/?p=243</guid>
		<description><![CDATA[Securing the network may include implementing technologies such as firewalls, VPNs, antivirus, and anti-spam software. These are for first line of defense of the network. In addition, for enterprises, they need to have a comprehensive approach that includes Access Control, Data Privacy, and Compliance. Firstly, in order to know what kind of security measures should [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=techlifeinpink.com&#038;blog=7018595&#038;post=243&#038;subd=annasaldivar&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.flickr.com/photos/j_aroche/709468580/"><img class="alignleft" title="Windows, Mac, Ubuntu - Photo Credit: Javier Aroche" src="http://farm2.static.flickr.com/1038/709468580_06efc525bb.jpg?v=0" alt="" width="210" height="116" /></a>Securing the network may include implementing technologies such as firewalls, VPNs, antivirus, and anti-spam software. These are for first line of defense of the network. In addition, for enterprises, they need to have a comprehensive approach that includes Access Control, Data Privacy, and Compliance.</p>
<p>Firstly, in order to know what kind of security measures should be implemented, it is imperative that you know the network inside out. It is not possible to protect anything unless you clearly understand what you want to protect.</p>
<p>Secondly, you need to understand the different threats, both from internal and external sources. They may be human-based, automated, or a natural phenomenon.</p>
<p>Thirdly, physical security should be established, then partitioning and protecting network boundaries with firewalls, and also putting up workstation firewalls.</p>
<p><a href="http://www.flickr.com/photos/18474854@N00/2928329542/"><img class="alignright" title="Tiny firewall - Photo credit: JoePhoto" src="http://farm4.static.flickr.com/3051/2928329542_890261c450.jpg?v=0" alt="" width="210" height="158" /></a>For the enterprise security network, <strong>Access Control</strong> will include Authentication, Authorization, User Provisioning &amp; Identity Administration, and Role Management.</p>
<p>Authentication includes the use of passwords, token cards, and/or biometrics. Authorization policies should be centralized.  User Provisioning &amp; Identity Administration should be automated to prevent human errors. As well, user roles/privileges should be properly managed.</p>
<p><strong>Data Privacy</strong> will include encrypting data, classifying data based on sensitivity, and putting up access control lists. Adding a security layer to enterprise search results will additionally prevent access of confidential information.</p>
<p>Automated <strong>Compliance</strong> controls and processes flexible enough to adapt to meet changing requirements should be used to conform with governance and privacy regulations.</p>
<p><span style="color:#ff00ff;"><em><strong>Read these whitepapers for more detailed information:</strong></em></span><br />
<a href="http://www.oracle.com/security/docs/securitybrochure.pdf" target="_blank">Security Inside Out</a><br />
<a href="http://www.apcmedia.com/salestools/SADE-5TNRPG_R0_EN.pdf" target="_blank">Fundamental Principals of Network Security</a></p>
<p><em>Photo Credits: Javier Aroche, JoePhoto</em></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/annasaldivar.wordpress.com/243/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/annasaldivar.wordpress.com/243/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/annasaldivar.wordpress.com/243/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/annasaldivar.wordpress.com/243/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/annasaldivar.wordpress.com/243/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/annasaldivar.wordpress.com/243/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/annasaldivar.wordpress.com/243/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/annasaldivar.wordpress.com/243/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/annasaldivar.wordpress.com/243/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/annasaldivar.wordpress.com/243/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/annasaldivar.wordpress.com/243/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/annasaldivar.wordpress.com/243/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/annasaldivar.wordpress.com/243/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/annasaldivar.wordpress.com/243/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=techlifeinpink.com&#038;blog=7018595&#038;post=243&#038;subd=annasaldivar&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://techlifeinpink.com/2009/03/28/network-security-basics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a5c4a2d079563d713defff1da78291ba?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">annasaldivar</media:title>
		</media:content>

		<media:content url="http://farm2.static.flickr.com/1038/709468580_06efc525bb.jpg?v=0" medium="image">
			<media:title type="html">Windows, Mac, Ubuntu - Photo Credit: Javier Aroche</media:title>
		</media:content>

		<media:content url="http://farm4.static.flickr.com/3051/2928329542_890261c450.jpg?v=0" medium="image">
			<media:title type="html">Tiny firewall - Photo credit: JoePhoto</media:title>
		</media:content>
	</item>
		<item>
		<title>Cisco IOS 10 Basic Commands That Should Be Mastered</title>
		<link>http://techlifeinpink.com/2009/03/25/cisco-ios-10-basic-commands-that-should-be-mastered/</link>
		<comments>http://techlifeinpink.com/2009/03/25/cisco-ios-10-basic-commands-that-should-be-mastered/#comments</comments>
		<pubDate>Wed, 25 Mar 2009 11:00:43 +0000</pubDate>
		<dc:creator>annasaldivar</dc:creator>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Tech]]></category>
		<category><![CDATA[Commands]]></category>
		<category><![CDATA[Firewalls]]></category>
		<category><![CDATA[Routers]]></category>
		<category><![CDATA[Switches]]></category>

		<guid isPermaLink="false">http://techlifeinpink.com/?p=122</guid>
		<description><![CDATA[David Davis wrote in TechRepublic about the ten commands that a Cisco professional or network administrator should know when using the Cisco IOS in routers, switches, and firewalls. This is a good reminder for me, and I’m glad to know that I have embedded all of it in my brain already. Below is the list [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=techlifeinpink.com&#038;blog=7018595&#038;post=122&#038;subd=annasaldivar&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://blogs.techrepublic.com.com/networking/?p=546&amp;tag=rbxccnbtr1" target="_blank">David Davis wrote in TechRepublic</a> about the ten commands that a Cisco professional or network administrator should know when using the Cisco IOS in routers, switches, and firewalls. This is a good reminder for me, and I’m glad to know that I have embedded all of it in my brain already.</p>
<p>Below is the list he made plus my comments on what I think about each item.</p>
<p><span style="color:#ff00ff;"><strong>1.    The “?”</strong></span><br />
This is the most helpful command ever. There are thousands of possible commands in the Cisco IOS and this is definitely useful when you don’t know or can’t remember the command to type, or the parameter that should come next.</p>
<p><span style="color:#ff00ff;"><br />
<strong>2.    show running-configuration</strong> <em>(sh run)</em></span><br />
If you want to check the current configuration of the router, switch, or firewall, this is what is used.</p>
<p><span style="color:#ff00ff;"><br />
<strong>3.    copy running-configuration startup-configuration</strong> <em>(copy run start)</em></span><br />
This command will save your current configuration, which is in the RAM, to the nonvolatile RAM (NVRAM). You can also use the <span style="color:#ff00ff;"><em>copy</em></span> command to copy to the TFTP server. If you must turn off your router, do not forget to use this command unless you don’t want to save the configuration changes you made.</p>
<p><span style="color:#ff00ff;"><br />
<strong>4.    show interface</strong> <em>(sh int)</em></span><br />
For troubleshooting, this command is used to check the status of the router’s interfaces.</p>
<p><span style="color:#ff00ff;"><br />
<strong>5.    show ip interface</strong> <em>(sh ip int)</em></span><br />
Much useful information about the configuration and status of the IP protocol and its services, on all interfaces are displayed with this command. Alternatively, you can add <em><span style="color:#ff00ff;">brief</span></em> at the end of the command to get a shorter quick status.</p>
<p style="text-align:left;"><span style="color:#ff00ff;"><img class="aligncenter size-full wp-image-144" title="Cisco 2801 Router" src="http://annasaldivar.files.wordpress.com/2009/03/2788417078_69548349d7.jpg?w=510" alt="Cisco 2801 Router"   /><br />
<strong>6.    config terminal, enable, interface, and router</strong> <em>(conf t, en, int, router)</em></span><br />
These are used to enter different modes in configuring the router.</p>
<p><span style="color:#ff00ff;"><br />
<strong>7.    no shutdown</strong> <em>(no shut)</em></span><br />
This is used to enable an interface, and also useful for troubleshooting when used with <span style="color:#ff00ff;"><em>shut</em></span> (to bring down interface then up).</p>
<p><span style="color:#ff00ff;"><br />
<strong>8.    show ip route</strong> <em>(sh ip ro)</em></span><br />
To check the routing table, use this command.</p>
<p><span style="color:#ff00ff;"><br />
<strong>9.    show version</strong><em> (sh ver)</em></span><br />
This will display the router’s firmware settings, the last time the router was booted, the version of the IOS, the name of the IOS file, the model of the router, and the router’s amount of RAM and Flash.</p>
<p><span style="color:#ff00ff;"><br />
<strong>10.    debug</strong></span><br />
This is helpful in troubleshooting. The <em><span style="color:#ff00ff;">debug</span></em> command is used with other commands like for example, <span style="color:#ff00ff;"><em>d</em><em>ebug ip route</em></span>.</p>
<p>Alright. That should be pretty simple to remember. Commands, stay in my brain please, thank you.</p>
<p><em>Photo Credit: dontthink.feel</em></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/annasaldivar.wordpress.com/122/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/annasaldivar.wordpress.com/122/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/annasaldivar.wordpress.com/122/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/annasaldivar.wordpress.com/122/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/annasaldivar.wordpress.com/122/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/annasaldivar.wordpress.com/122/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/annasaldivar.wordpress.com/122/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/annasaldivar.wordpress.com/122/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/annasaldivar.wordpress.com/122/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/annasaldivar.wordpress.com/122/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/annasaldivar.wordpress.com/122/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/annasaldivar.wordpress.com/122/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/annasaldivar.wordpress.com/122/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/annasaldivar.wordpress.com/122/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=techlifeinpink.com&#038;blog=7018595&#038;post=122&#038;subd=annasaldivar&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://techlifeinpink.com/2009/03/25/cisco-ios-10-basic-commands-that-should-be-mastered/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a5c4a2d079563d713defff1da78291ba?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">annasaldivar</media:title>
		</media:content>

		<media:content url="http://annasaldivar.files.wordpress.com/2009/03/2788417078_69548349d7.jpg" medium="image">
			<media:title type="html">Cisco 2801 Router</media:title>
		</media:content>
	</item>
	</channel>
</rss>
