Zum Hauptinhalt springen
Nicht aus der Schweiz? Besuchen Sie lehmanns.de
NTP Security - Allan Liska

NTP Security (eBook)

A Quick-Start Guide

(Autor)

eBook Download: PDF
2016 | 1st ed.
XV, 90 Seiten
Apress (Verlag)
978-1-4842-2412-0 (ISBN)
Systemvoraussetzungen
34,99 inkl. MwSt
(CHF 34,15)
Der eBook-Verkauf erfolgt durch die Lehmanns Media GmbH (Berlin) zum Preis in Euro inkl. MwSt.
  • Download sofort lieferbar
  • Zahlungsarten anzeigen

Learn  the risks associated with Network Time Protocol (NTP) security and how to minimize those risks in daily deployment. Disruption of NTP services can interrupt communication between servers on the network and take an entire network offline.

Beyond disrupting communication, flaws in the NTP daemon itself can make servers vulnerable to external attack-attacks that often go unnoticed. NTP is being used more frequently in Distributed Denial of Service (DDoS) attacks. It is a User Datagram Protocol (UDP) with encryption schemes that are not often used or are poorly implemented, making it susceptible to spoofing.

Despite all of the security challenges, the fact is that NTP is critical to most modern networks. It is one of those 'set it and forget it' protocols that network administrators and even security professionals don't understand in depth. However, an attacker who does understand the security flaws can wreak havoc on an insecure network.

NTP Security: A Quick-Start Guide provides a deeper understanding of the protocol itself and how to deploy a strategy using the protocol throughout a network in a secure manner. Your security team will be able to provide better guidance to the system and network teams who will then be able to better manage the day-to-day implementation.

This succinct resource offers practical guidance to an underserved topic (actually, not served at all). Coverage includes:

    An understanding of NTP and the importance of time synchronization in modern networks
  • Issues in NTP security, including an analysis of NTP traffic
  • A review of the vulnerabilities and flaws in the protocol
  • Practical solutions for securing NTP and building a robust infrastructure
  • Effective alternatives to NTP

 What you'll learn

  • A better understanding of the risks associated with the Network Time protocol (NTP)
  • How to configure NTP on servers and workstations in the network in a more secure manner
  • How to configure NTP on network platforms in a secure manner
  • Ways to bring more NTP capability inside the network, thus creating a smaller attack surface
  • Alternatives to NTP, including how to synchronize network clocks in other ways 

Who This Book Is For

System Administrators, Network Engineers, and Security Analysts



Allan Liska is a Consulting Systems Engineer with FireEye, and has more than 16 years of experience in the world of information security. He has worked both as a security practitioner and an ethical hacker, so he is familiar with both sides of the security aisle and, through his work at Symantec and iSIGHT Partners, has helped countless organizations improve their security posture using more effective intelligence. In addition to security experience, Mr. Liska also authored The Practice of Network Security, Building an Intelligence-Led Security Program, and contributed the security-focused chapters to The Apache Administrators Handbook.


Learn the risks associated with Network Time Protocol (NTP) security and how to minimize those risks while deploying and managing the protocol. You will be able to reduce the disruption of communication between servers on the network and the risk that the entire network will be taken offline.NTP Security: A Quick-Start Guide provides an understanding of how NTP is critical to modern networks and how it can be exploited. You will understand how an attacker can wreak havoc on an insecure network and guidance is provided to help you manage your system and make it more secure. What You Will Learn:Understand the vulnerabilities, flaws, and risks associated with the Network Time protocol (NTP)Analyze NTP traffic and configure NTP on servers and workstations in the network in a more secure manner Use practical solutions to secure NTP and build a robust infrastructure, such as bringing more capability inside the network and creating a smaller attack surfaceDetermine the alternatives to NTP, including how to synchronize network clocks in other ways Who This Book Is For:System administrators, network engineers, and security analysts

Allan Liska is a Consulting Systems Engineer with FireEye, and has more than 16 years of experience in the world of information security. He has worked both as a security practitioner and an ethical hacker, so he is familiar with both sides of the security aisle and, through his work at Symantec and iSIGHT Partners, has helped countless organizations improve their security posture using more effective intelligence. In addition to security experience, Mr. Liska also authored The Practice of Network Security, Building an Intelligence-Led Security Program, and contributed the security-focused chapters to The Apache Administrators Handbook.

Chapter 1. Understanding NTP.- Chapter 2. Issues in NTP Security.- Chapter 3. Vulnerabilities in NTP.- Chapter 4. Securing NTP.- Chapter 5. Building Robust NTP Infrastructure.- Chapter 6. Alternatives to NTP.

Erscheint lt. Verlag 10.12.2016
Zusatzinfo XV, 90 p. 3 illus.
Verlagsort Berkeley
Sprache englisch
Themenwelt Informatik Netzwerke Sicherheit / Firewall
Schlagworte DNS Round Robin NTP • Network Time Protocol • Ntimed • ntp • NTP Attacks • NTP Daemon • NTP Encryption • NTP over Anycast • NTPSec • NTP Security • Precision Time Protocol (PTP) • Time Synchronization • tlsdate
ISBN-10 1-4842-2412-4 / 1484224124
ISBN-13 978-1-4842-2412-0 / 9781484224120
Informationen gemäß Produktsicherheitsverordnung (GPSR)
Haben Sie eine Frage zum Produkt?
PDFPDF (Wasserzeichen)

DRM: Digitales Wasserzeichen
Dieses eBook enthält ein digitales Wasser­zeichen und ist damit für Sie persona­lisiert. Bei einer missbräuch­lichen Weiter­gabe des eBooks an Dritte ist eine Rück­ver­folgung an die Quelle möglich.

Dateiformat: PDF (Portable Document Format)
Mit einem festen Seiten­layout eignet sich die PDF besonders für Fach­bücher mit Spalten, Tabellen und Abbild­ungen. Eine PDF kann auf fast allen Geräten ange­zeigt werden, ist aber für kleine Displays (Smart­phone, eReader) nur einge­schränkt geeignet.

Systemvoraussetzungen:
PC/Mac: Mit einem PC oder Mac können Sie dieses eBook lesen. Sie benötigen dafür einen PDF-Viewer - z.B. den Adobe Reader oder Adobe Digital Editions.
eReader: Dieses eBook kann mit (fast) allen eBook-Readern gelesen werden. Mit dem amazon-Kindle ist es aber nicht kompatibel.
Smartphone/Tablet: Egal ob Apple oder Android, dieses eBook können Sie lesen. Sie benötigen dafür einen PDF-Viewer - z.B. die kostenlose Adobe Digital Editions-App.

Buying eBooks from abroad
For tax law reasons we can sell eBooks just within Germany and Switzerland. Regrettably we cannot fulfill eBook-orders from other countries.

Mehr entdecken
aus dem Bereich
Technische und organisatorische Schutzmaßnahmen gegen Datenverlust …

von Thomas H. Lenhard

eBook Download (2025)
Springer Vieweg (Verlag)
CHF 34,15
Methodische Kombination von IT-Strategie und IT-Reifegradmodell

von Markus Mangiapane; Roman P. Büchler

eBook Download (2024)
Springer Fachmedien Wiesbaden (Verlag)
CHF 45,90
Das Praxishandbuch zu Krisenmanagement und Krisenkommunikation

von Holger Kaschner

eBook Download (2024)
Springer Fachmedien Wiesbaden (Verlag)
CHF 38,95