教育网络——连接和安全的难题

格雷格Kovich
2018年10月23日

随着BYOD在校园里成为现实, a multi-layered strategy that secures networks from within is key to protecting data and devices.

It’s a digital explosion of 设备和东西, and it’s happening all around us. 问题是,你准备好了吗?

In recent years, the education sector has become not just a target, but rather 有利可图的目标,用于恶意的网络活动. 成千上万的学生, 工作人员和网络管理员都处于高度戒备状态, and institutions have been disrupted due to threats as extreme as a murder, 或者索要过高的赎金.

The sheer number of devices that flood a campus network on any given day can overwhelm most IT departments. Plugging the holes of vulnerability and devising new methods to protect against attacks from hackers and outsmart criminals is a full-time job.

一个人拿着装有博客网络安全软件的手机

One of the reasons that cyber attackers target schools is that the networks are easy to crack. In fact, school districts often set up wireless systems to make connecting easy for students. Unfortunately, it also makes it easy for those with bad intentions. With free Wi-Fi in school buildings and students glued to their devices, t在这里 are thousands of opportunities for hackers to gain access to school networks.

和, 如果蓄意的恶意攻击不足以应对, what about the unwitting student who finds a USB drive left on a desk in the school library and plugs it into a computer unleashing a virus that takes down the school’s network. These are the realities faced by network administrators every single day.

应对安全挑战

你从哪里开始呢? 首先要制定整个机构的安全策略. Most institutions have adopted the best practice advice of ‘defense in depth’ – meaning that t在这里 are multiple security layers which persons of ill intent would have to thwart.  In the era of GDPR, defense in depth has been expanded to mean securing both data and devices. It’s no longer about just setting up a firewall to protect a campus from exterior threats at the network perimeter and between servers. It’s about having a multi-layered strategy that protects the network from within by creating policies and procedures at the user, 设备层和应用层.

物联网 containment is one example w在这里 you can create virtual and segregated environments. These environments are known as ‘containers’, and exist within a single converged network. With 物联网 containment, specific connected devices can be isolated and managed using a set of policies. 该策略允许您将一组公共设备组合在一起, 只有一组定义的用户和服务器可以进行交互.

One example of this strategy would be in a college campus environment w在这里 only authorized security 工作人员 could access the IP security cameras. The cameras would be grouped in a ‘container’ and only able to communicate with the application that controls them. Defining a specific set of cameras in the group to only transmit video data would protect them, 并防止他们发送意外数据, 以防摄像头受损. 策略管理可以让IT人员看到完整的网络, which gives them the power to restrict or limit the privileges of devices and users to prevent deployment of unauthorized devices. 你可能还记得 2016 DDoS攻击 on the DNS provider DYN – if the compromised 物联网 devices had been containerized, 袭击就不会发生了. 大家可以想象, this containment strategy is quickly being adopted to ensure a cybersecure network.

你准备好了吗??

So what happened when the student plugged that wayward USB into the library computer? 嗯,这取决于网络设备. Some network devices can automatically detect known threats and isolate or quarantine them.  即使你的设备没有这些功能, 纵深防御, 最终你的IPS, id, NMS or Firewall will detect the anomalous traffic and alert you.

The reality is that students are going to continue to bring their devices and the campus network is going to continue to increase the number of 设备和东西 that need to be managed. 好消息是, a solid security strategy that creates policies and procedures at the user, the device and the application layers are ready to take on today’s security challenges.

Learn more about how the education sector is digitally transforming to ensure a secure environment for students, 工作人员, 设备和东西. 访问:http://www。.7858a.com/en/company/news/ale-expands-its-mobile-campus-solution

格雷格Kovich

格雷格Kovich

全球销售主管,教育垂直

格雷格Kovich领导ALE教育垂直业务的全球销售.  Greg has overseen or created several 教育解决方案s including “The Fundamentals of Communications” – a vendor neutral course on digital network communications; “安全的校园” – a solution uniting emergency alerts with first responder collaboration and mass notification; “Secure Campus” – a solution that allows instructors to limit student network access to determined sites; and “Pandemic 教育的连续性” – a solution that enables classroom instruction in the event the institution is closed due to health or environmental crisis. 

He is a 1992 graduate of Indiana University with over 20 yrs experience in Information Technology.

作者简介

最新的博客

一个人在看笔记本电脑
业务连续性

供应链弹性和业务适应性

Strategic supply chain resilience and business adaptability to thrive in the face of adversity

网- mod -压力- edu -博客- 402 x226形象.jpeg
业务连续性

以现代化校园网解决教育挑战

现代化的校园网有助于简化运营, 降低成本, 并为工作和学习提供了一个安全和关怀的地方.

网- mod -振兴- edu -博客- 402 x226形象.jpeg
业务连续性

以现代化校园网络振兴教育

一个现代, 校园范围内的网络升级与学术能力保持一致, 今天和明天的研究和业务重点. 

网- mod -学校- edu -博客- 300 x170形象.jpeg
业务连续性

今天的教育:为什么现代化校园网是必须的

教育al institutions worldwide must modernise their networks to meet today’s new requirements.

标签- 教育, 物联网, 手机

闲谈,聊天