<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>THE LATEST ADVISORIES</title>
	<atom:link href="http://www.automatedit.tv/advisories/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.automatedit.tv/advisories</link>
	<description>From Automated IT</description>
	<pubDate>Mon, 22 Feb 2010 12:06:27 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>AUTOMATING SECURITY CONSOLIDATION</title>
		<link>http://www.automatedit.tv/advisories/uncategorized/automating-security-consolidation/</link>
		<comments>http://www.automatedit.tv/advisories/uncategorized/automating-security-consolidation/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 12:06:27 +0000</pubDate>
		<dc:creator>The Automeister</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.automatedit.tv/advisories/?p=267</guid>
		<description><![CDATA[Enterprises are finding that if principal security functions such as firewall, AV, IPS and content filtering are not sufficiently integrated, then they face the double-whammy of sluggish network/application performance and weakened overall security posture. Hardly surprising then that 90% of European mid-sized and large organisations are seeking to consolidate some security functions in order to [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: left;">Enterprises are finding that if principal security functions such as firewall, AV, IPS and content filtering are not sufficiently integrated, then they face the double-whammy of sluggish network/application performance and weakened overall security posture. Hardly surprising then that 90% of European mid-sized and large organisations are seeking to consolidate some security functions in order to reduce opex, lower management complexity and tighten security against blended threats and sophisticated application exploits.</p>
<p align="center"><strong></strong></p>
<p>Can encouraging &#8216;teamwork&#8217; within your security infrastructure ever be that easy?  With the correctly automated approach, it can be. Certainly, this should include a licensing model that doesn&#8217;t unduly complicate or hinder the evolution of your network, as well as a technology set that brings best-of-breed security capabilities but without the attendant truckload of hardware, and continuing frustrations over network latency.</p>
<h3><span style="color: #99cc00;">AUTOMATED IT RATING: 4.6</span></h3>
<p><span id="more-267"></span></p>
<p><img src="http://www.automatedit.tv/images/pdf.gif" border="0" alt="" align="absMiddle" /><strong><a href="http://www.automatedit.tv/pdf/Automating_Security_Consolidation.pdf" target="_blank">PDF version available</a></strong></p>
<p>This advisory describes the process and impact of automating security consolidation to achieve optimum benefits to your security infrastructure and to your business as a whole.</p>
<ul type="disc">
<li><strong>Situation Analysis </strong>
<ul type="circle">
<li><strong>- Before Automation</strong></li>
<li><strong>- </strong><strong>After Automation</strong></li>
</ul>
</li>
<li><strong>The Business Criticality of </strong><strong>Automating Security Consolidation</strong><strong></strong></li>
<li><strong>Automation Impacts</strong>
<ul type="circle">
<li><strong>- </strong><strong>Running Costs</strong></li>
<li><strong>- </strong><strong>Time/Labour</strong></li>
<li><strong>- </strong><strong>Space &amp; Power</strong></li>
<li><strong>- </strong><strong>Decision Making</strong></li>
<li><strong>- </strong><strong>Uptime</strong></li>
</ul>
</li>
<li><strong>Implementing Automation</strong></li>
<li><strong>Fortinet Solutions</strong></li>
</ul>
<h2><span style="color: #99cc00;"><strong><br />
Situation Analysis</strong></span></h2>
<p><strong></strong><strong></strong></p>
<h3><span style="color: #99cc00;"><strong>Before Automation</strong></span></h3>
<ul class="unIndentedList">
<li><strong>- </strong>Datacentres are overcrowded with multiple security appliances from multiple vendors all taking up valuable space and energy. As well as eating up significant budget, this can be especially detrimental to IT departments meeting CRC (Carbon Reduction Commitments) targets on behalf of the organisation as a whole.</li>
<li><strong>- </strong>Despite investing heavily in specialised, high-specification standalone security solutions, organisations are vulnerable to sophisticated, blended threats (such as those derived from Web 2.0 applications) which exploit the gaps in the armoury.</li>
<li><strong>- </strong>Multi-vendor infrastructures escalate management overhead by consuming time, distracting IT staff and duplicating efforts on supplier relations.</li>
<li><strong>- </strong>Licensing costs are high with per-user licensing models that spring from single vendor point solutions, and the process of ensuring the appropriate level of licensing coverage is an administrative burden.</li>
<li><strong>- </strong>Network latency and delays in application response times are the direct results of deploying a large array of layered security systems, creating bottlenecks that provoke expensive investments in higher capacity network infrastructure and connectivity made in an attempt to over-compensate.</li>
<li><strong>- </strong>Business scalability is constrained by the complexity of the silo&#8217;d security infrastructure and ongoing management/reporting can only be achieved by duplicating these processes.</li>
</ul>
<h3><span style="color: #99cc00;"><strong>After Automation</strong></span></h3>
<ul class="unIndentedList">
<li><strong>- </strong>The datacentre becomes more space and power efficient with elimination of unnecessary appliances, saving costs and increasing the organisation&#8217;s ability to improve carbon efficiency.</li>
<li><strong>- </strong>Vulnerability to new blended threats is decreased, through a tightly integrated and efficient security solution.</li>
<li><strong>- </strong>Reducing the number of security vendors means that supplier management is simplified, and more time is freed up to concentrate on innovative projects, whilst any technical issues are identified and dealt with more quickly.</li>
<li><strong>- </strong>Replacement of per-user licensing models with a &#8216;per-box&#8217; licensing approach results in significant savings for the IT department, as well as reduced administrative burdens.</li>
<li><strong>- </strong>Integration of multiple security functions means that performance is optimised, and with each element working in sync with one another, latency is reduced.</li>
<li><strong>- </strong>Flexibility offered by consolidated, integrated security means that IT departments gain the ability to scale security infrastructure with the needs of the business.</li>
</ul>
<h2><span style="color: #99cc00;"><strong><br />
The Business Criticality of Security Consolidation</strong></span></h2>
<p>With Web 2.0 applications and social media becoming increasingly integral to business communications, the likelihood of businesses falling victim to new sophisticated, blended threats through these new avenues of attack has increased. Adopting a consolidated security solution composing essential security functions that are all tightly integrated, is vital to maintaining ongoing resilience to counter the evolving threatscape.</p>
<p>A security solution that is intelligent, fast and responsive is an essential element needed to maintain business continuity. By consolidating security solutions, organisations can achieve cost effectiveness without impinging on business performance. Consolidation of security solutions means optimum security is achieved as well as carbon efficiency, reflecting cost savings across the board.</p>
<h2><span style="color: #99cc00;"><strong><br />
Automation Impacts</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Running Costs </strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>By following a &#8216;per user&#8217; licensing approach to security requirements, costs are unnecessarily high.  The impact on both budget and time is an expense that can be dramatically reduced by implementing a cost effective per-box licensing model. In addition, with the capability to turn single functions on and off at your convenience and according to business needs, more flexibility is at your disposal.</p>
<p>Introduction of a multifunctional security appliance/s to automate your security needs will in turn reduce the total cost of ownership. By cutting down on number of physical appliances in use, IT departments can reduce costs involved in the running and upkeep of security.</p>
<p>Latency problems can occur when multi-vendor solutions work in silos and out of sync, making vital data slow and inefficient.  With a consolidated, well integrated solution this can be substantially minimised. Budgets no longer need to be wasted on attempts to over-engineer faster throughput; IT departments can achieve optimum security speed from the get go.</p>
<h3><span style="color: #99cc00;"><strong>Time/Labour </strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>Individual vendor contracts<strong> </strong>can mean countless hours spent on managing suppliers. By reducing the number of vendors, management is simplified significantly; one contract, one bill and one training regime, in turn this saves the IT department endless amounts of time to be put to better use.</p>
<p>The process of maintaining multiple systems is time-consuming and complex, requiring a high threshold of skills spread thinly across the IT department. With a consolidated security solution, the skills barrier is lowered, allowing skills to be distributed widely.</p>
<p>It can be hard enough to maintain upkeep of individual security functions as it is, but when they are all in different places, and with each appliance built from entirely different proprietary codes, management becomes extremely complex. With each function communicating with one another, implementation is fast and effective and time that would have been wasted on the upgrading process and other essential maintenance tasks is ceased.</p>
<h3><span style="color: #99cc00;"><strong>Space/Power </strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>Consolidation of point products into multifunctional appliances is an opportunity for security to occupy far less space in the datacentre. If IT departments are using a hosted infrastructure there will be a reduced strain on available space and there may be no need to pay the overheads involved with third party suppliers.</p>
<p>Those that have embraced server virtualisation (studies show 90% of UK organisations are looking to in the next 12 months) need to do the same with their security. The 10% that are left behind may find themselves faced with unnecessary expense that could have been avoided. For example; with CRC coming into play, financial penalties for using up too much space and power and not meeting targets will be high.</p>
<h3><span style="color: #99cc00;"><strong>Decision Making </strong></span></h3>
<p><strong>MED </strong><strong><img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>Adapting to a consolidated security strategy means that scalability is optimised and IT decision making becomes a lot easier and more flexible.</p>
<p>If you can&#8217;t measure it, you can&#8217;t manage it. Consolidation of security solutions gives greater visibility and the ability to monitor and analyse performance as well as potential vulnerabilities. The advantage of management tools that provide a clear view of the goings-on of the entire network is paramount for efficient and effective IT decision making. Having automated clarity and control of multiple functions will itself prove to be a key decision making tool.</p>
<h3><span style="color: #99cc00;"><strong>Uptime </strong></span></h3>
<p><strong>MED </strong><strong><img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>Improved security means improved uptime. The benefits of having each individual security element working together at optimum speed, means even less chance of any downtime occuring.</p>
<p>With new and sophisticated blended threats emerging fast, coming from all angles to all networks, IT departments are in need of sophisticated wire speed security solutions to tackle them. Point solutions can often struggle when one fails to keep up with the next. Blended threats require a blended response.</p>
<h2><span style="color: #99cc00;"><strong><br />
Implementing Automation</strong></span></h2>
<p>Consolidation of tightly integrated security solutions can be established with comparative ease. The ability to try and test each aspect with a few keystrokes means that single elements of the solution can slowly integrate with your existing security infrastructure until your existing licences expire, without impinging on performance. This type of implementation process is almost impossible with any other kind of approach.</p>
<h2><span style="color: #99cc00;"><strong><br />
Fortinet Solutions</strong></span></h2>
<p>This advisory has been produced with support from Fortinet, a worldwide provider of enterprise network security appliances and the market leader in unified threat management (UTM). The FortiGate product range delivers ASIC-accelerated performance and integrates multiple layers of security designed to provide high-performance protection against dynamic application and network threats, whilst simplifying the IT security infrastructure.  For more information, visit <a href="http://www.fortinet.com/" target="_blank">www.fortinet.com</a></p>
<p>Click <a href="http://www.fortinet.com/registration/?oid=106" target="_blank">here</a> to download the FortiGate-620-B demo</p>
<p>Click <a href="http://www.fortinet.com/registration/?oid=202" target="_blank">here</a> to download the Beyond UTM - The Value of a Purpose-Built Network Security Platform white paper</p>
<p>Click on the links to download information on the following Fortinet consolidated security solutions:</p>
<p><a href="http://www.fortinet.com/products/fortigate/110C.html" target="_blank">FortiGate-110C</a></p>
<p><a href="http://www.fortinet.com/products/fortigate/310B.html" target="_blank">FortiGate-310B</a></p>
<p><a href="http://www.fortinet.com/products/fortigate/620B.html" target="_blank">FortiGate-620B</a></p>
<p><a href="http://www.fortinet.com/products/fortigate/3810A.html" target="_blank">FortiGate-3810A</a></p>
<table style="display:;border: dotted 1px #888888;" border="0" cellspacing="5" cellpadding="5" width="100%" bgcolor="#f5f5fa">
<tbody>
<tr>
<td class="inset" valign="top">
<div>
<div class="hr">
<table border="0" cellspacing="5" cellpadding="0" width="100%">
<tbody>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/costs-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td valign="top">
<div><strong><span class="inset-subheader">SLASH COSTS</span></strong><br />
<span class="inset">- Avoid unnecessary costs sprouting from per-user licensing models<br />
- Reduce total cost of ownership by cutting down on appliances<br />
- Significantly cut wasted budget costs on upgrading</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/time-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">SAVE MAN-HOURS<br />
</span></strong><span class="inset">- Reduce time spent on managing various suppliers<br />
- Lower skills barrier and time spent on training individuals</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/power-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">CUT SPACE/POWER</span></strong><br />
<span class="inset">- Cutting down on volume of appliances reduces space and power consumption in the datacentre<br />
- Reduce power usage that will significantly aid in meeting climate targets</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/mngt-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BETTER DECISION-MAKING</span></strong><br />
<span class="inset">- Flexibility and versatility allows IT department ability to scale with the business<br />
- Acquire visibility of incoming threats with advantage of flexible management tools<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/bomb-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BOOST UPTIME</span></strong><br />
<span class="inset">- Decrease chances of systems failure with tight-knit, intelligent security<br />
- Eliminate impact on network performance with wire speed technology</span></div>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
			<wfw:commentRss>http://www.automatedit.tv/advisories/uncategorized/automating-security-consolidation/feed/</wfw:commentRss>
		</item>
		<item>
		<title>AUTOMATING COMPLIANCE MONITORING AND REPORTING</title>
		<link>http://www.automatedit.tv/advisories/compliance-monitoring-and-reporting/automating-compliance-monitoring-and-reporting/</link>
		<comments>http://www.automatedit.tv/advisories/compliance-monitoring-and-reporting/automating-compliance-monitoring-and-reporting/#comments</comments>
		<pubDate>Fri, 08 Jan 2010 13:58:35 +0000</pubDate>
		<dc:creator>The Automeister</dc:creator>
		
		<category><![CDATA[Compliance Monitoring and Reporting]]></category>

		<category><![CDATA[auditing]]></category>

		<category><![CDATA[automated]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[cut costs]]></category>

		<category><![CDATA[free up skills]]></category>

		<category><![CDATA[IT resources]]></category>

		<category><![CDATA[logging]]></category>

		<category><![CDATA[monitoring]]></category>

		<category><![CDATA[reporting]]></category>

		<category><![CDATA[save time]]></category>

		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.automatedit.tv/advisories/?p=221</guid>
		<description><![CDATA[Whether it is PCI, CoCo, SOX, HIPAA or MIFID, overcoming the next compliance &#8216;hurdle&#8217; can be an enormous drain on already overstretched IT resources.
As well as being highly disruptive, compliance mandates, and the compliance auditors who scrutinise organisations against them, place extraordinary demands upon logging, reporting and auditing processes.  Frustratingly, these will be different for [...]]]></description>
			<content:encoded><![CDATA[<p>Whether it is PCI, CoCo, SOX, HIPAA or MIFID, overcoming the next compliance &#8216;hurdle&#8217; can be an enormous drain on already overstretched IT resources.</p>
<p>As well as being highly disruptive, compliance mandates, and the compliance auditors who scrutinise organisations against them, place extraordinary demands upon logging, reporting and auditing processes.  Frustratingly, these will be different for every compliance requirement and, because there are few hard-and-fast guidelines about what really constitutes compliance, they will emerge in unique response to an organisation&#8217;s business apparatus.</p>
<p>The resulting mish-mash of compliance management systems, controls and templates can take an age to construct, cost a huge budget to maintain, and consume significant resources to develop and improve.  To alleviate these problems, and improve the ongoing compliance status of your organisation, automation of these processes is essential.</p>
<h3><span style="color: #99cc00;">AUTOMATED IT RATING: 4.4</span></h3>
<p><span id="more-221"></span></p>
<p><img src="http://www.automatedit.tv/images/pdf.gif" border="0" alt="" align="absMiddle" /><strong><a href="http://www.automatedit.tv/pdf/Automating_Compliance_Monitoring_and_Reporting.pdf" target="_blank">PDF version available</a></strong></p>
<p>This advisory describes the process and impact of automating audit, log and report management to meet compliance.</p>
<ul type="disc">
<li><strong>Situation Analysis (Before &amp; After Automation)</strong></li>
<li><strong>The Business Criticality of </strong><strong>Automating Compliance Monitoring and Reporting</strong><strong></strong></li>
<li><strong>Automation Impacts</strong></li>
<li><strong>- Running Costs</strong></li>
<li><strong>- Time/Labour</strong></li>
<li><strong>- Space &amp; Power</strong></li>
<li><strong>- Decision Making</strong></li>
<li><strong>- Uptime</strong></li>
<li><strong>Implementing Automation</strong></li>
<li><strong>Q1 Labs Solutions</strong></li>
</ul>
<h2><span style="color: #99cc00;"><strong>Situation Analysis</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Before Automation</strong></span></h3>
<ul class="unIndentedList">
<li>- Compliance can be seen as a burden with a tight deadline and therefore meeting the standard is viewed as the only end-game. This is to the detriment of security objectives, as the IT department is in danger of considering &#8216;being compliant&#8217; the same thing as &#8216;being secure&#8217;.</li>
<li>- IT professionals are negative and fearful about the compliance process, leading to team morale problems.</li>
<li>- Individuals are forced to abandon other projects at short notice in order to rapidly respond to an urgent, poorly planned compliance validation request.</li>
<li>- Each requirement of the compliance mandate is painstakingly interpreted and implemented using a manual process.</li>
<li>- Where there are multiple compliance mandates, the organisation unwittingly duplicates processes in the haste of making certain they are covered all ends up. Any new compliance requirements must be learned and implemented from scratch, often by separate groups in a company, blind to the efforts of their peers.</li>
</ul>
<h3><strong>After Automation</strong></h3>
<ul class="unIndentedList">
<li>- Meeting compliance is viewed as a positive process, and the organisation is empowered to proactively identify and attain compliance and quality-standards based certifications. Because compliance validation can be achieved on the road to better security there is no complacency about meeting compliance requirements equating directly to &#8216;being secure&#8217;.</li>
<li>- The prospect of urgent and disruptive compliance-related impacts on the IT department is removed, and activity planning can remain focussed upon strategically valuable projects.</li>
<li>- The process of mining, interrogating and presenting specific audit/log/report information is straightforward and intuitive, and based upon accepted control frameworks and templates. Manual intervention is eliminated.</li>
<li>- Intelligence for compliance management is centralised, which promotes the most efficient use of data. This eradicates unnecessary duplication of effort, and enables the organisation to meet future compliance goals more easily based upon what it has learnt to date.</li>
</ul>
<p><strong></strong></p>
<h2><span style="color: #99cc00;"><strong>The Business Criticality of Compliance Monitoring and Reporting</strong></span></h2>
<p>All compliance mandates are underpinned by a monitoring requirement to prove and record individual activities through acutely specified and granular logging, auditing and reporting.  Without these audit safeguards, no regulatory standard would ever been signed off by a QSA (Qualified Security Assessor) or auditor.</p>
<p>However, these aspects of compliance are often the most resource-intensive to establish and the most prone to failure.  Collecting and then making sense of, millions of pieces of data (and under threat of such damaging penalties) is a significant challenge.  The only course is to implement a system to automate and manage these processes, ensuring budgets and resources are used efficiently, and that the goals of compliance and better security are met rapidly and effectively.</p>
<p><strong></strong></p>
<h2><span style="color: #99cc00;"><strong>Automation Impacts</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Running Costs<br />
</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>The biggest cost saving that can be achieved through automation relates to the amount of time freed up by stripping away unnecessary manual processes and duplications.</p>
<p>In addition, some solutions can provide additional benefits by way of their embedded compliance intelligence.  For example, a comprehensive tool-set of rules and thousands of proven report templates which are known to satisfy compliance auditors with specific regard to individual regulatory standards.</p>
<p>Moreover, some solutions are converged with other related capabilities that, when deployed, do the job of four &#8216;point product&#8217; solutions, for around the same cost as one.  This illustrates the importance of developing compliance reporting strategy alongside other IT management must-dos such as log management, network behaviour analysis, and security event and information management (SIEM).</p>
<h3><span style="color: #99cc00;"><strong>Time/Labour<br />
</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>Automation of compliance monitoring and reporting means dramatically less fire-fighting, especially at short notice.  This enables significant reallocations of planned and unplanned resources.  It also positively impacts the morale of IT professionals within the team who no longer dread the processes involved in attaining compliance, and who have more of their time available to pursue strategically valuable initiatives, like better security.</p>
<p>Automation also lowers skills barriers, meaning it can be carried out by a number of people without the expertise needed to do it manually.</p>
<p>The best automated systems come pre-loaded with easy to follow configuration wizards, minimising time and expertise required to implement and fine-tune.</p>
<h3><span style="color: #99cc00;"><strong>Space/Power<br />
</strong></span></h3>
<p><strong>MEDIUM </strong><strong><img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>While its overall potential efficiencies are outstanding, this automation strategy has a limited overall impact on space and power in the datacentre.  However, in the event that the automation occurs as part of a consolidation strategy that combines SIEM with log management, network behavioural analysis and compliance management, the space and power savings of rationalising four separate systems into one will create a beneficial space/power impact.  Moreover, whatever is done in the physical datacentre can also apply to the &#8216;virtual&#8217; datacentre without the requirement for additional product silos.</p>
<h3><span style="color: #99cc00;"><strong>Decision Making<br />
</strong></span></h3>
<p><strong>MEDIUM </strong><strong><img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>Compliance is a critical driver for business; the requirements it places upon organisations are very real and IT departments must respond as a result.  Ultimately compliance mandates attempt to drive a more efficient security operation in many areas particularly incident response.</p>
<p>Automation gives certainty to the decision-making process, enabling organisations to provide auditors and assessors with exactly the validation they require, presented in the format they need.</p>
<h3><span style="color: #99cc00;"><strong>Uptime</strong></span></h3>
<p><strong>MEDIUM </strong><strong><img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>When regulatory bodies demand you to achieve a certain level of compliance, what they are really demanding is that for you to achieve a certain, <em>validated</em> level of security.</p>
<p>Any measure than seeks to do a better job of meeting compliance requirements, particularly if this gives rise to a more progressive and positive view of the compliance process, must be supporting that organisation to achieve an improved security posture.</p>
<h2><span style="color: #99cc00;"><strong>Implementing Automation</strong></span></h2>
<p>Implementation of tools to automate compliance monitoring and reporting can be accomplished almost immediately.  Users find the process of fine-tuning their systems to their specific requirements easy and intuitive.  Value can be derived from the first day of install.</p>
<p>Increasingly, smaller organisations are required to meet stringent and exhaustive compliance requirements, for example small UK councils endeavouring to attain GSX CoCo compliance.  Automating technology is available which scales from this level of requirement right up to the huge multi-standard demands of the very largest organisations.</p>
<p><strong></strong></p>
<h2><span style="color: #99cc00;"><strong>Q1 Labs Solutions</strong></span></h2>
<p>This advisory has been produced with support from Q1 Labs, a global provider of high-value, cost-effective security management and compliance solutions.  The QRadar family provides key technology underpinnings for a company&#8217;s efforts to deliver security best practices as required by specific industry regulations.  For more information, visit <a href="http://www.q1labs.com/">www.q1labs.com</a></p>
<p>Click <a href="http://www.automatedit.tv/pdf/Q1_Labs-Gordon_Food_Service_Case_Study.pdf" target="_blank"><span style="text-decoration: underline;">here</span></a> to download the case study on Gordon Food Service</p>
<p>Click <a href="http://www.automatedit.tv/pdf/Q1_Labs-Meeting_and_Exceeding_GSI_&amp;_GCSx_Information_Security-Whitepaper.pdf" target="_blank"><span style="text-decoration: underline;">here</span></a> to download the Meeting and Exceeding GSI/GCSx Compliance white paper</p>
<p>Cilck <a href="http://www.automatedit.tv/pdf/Q1_Labs-Business_Case_for_PCI-compliant_Security_Management.pdf" target="_blank"><span style="text-decoration: underline;">here</span></a> to download the Business Case for PCI-Compliant Security Management solution note</p>
<table style="display:;border: dotted 1px #888888;" border="0" cellspacing="5" cellpadding="5" width="100%" bgcolor="#f5f5fa">
<tbody>
<tr>
<td class="inset" valign="top">
<div>
<div class="hr">
<table border="0" cellspacing="5" cellpadding="0" width="100%">
<tbody>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/costs-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td valign="top">
<div><strong><span class="inset-subheader">SLASH COSTS</span></strong><br />
<span class="inset">- Cut management costs caused by unnecessary manual processes<br />
- Create savings through freed up time<br />
- One system performing the roles of four point products</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/time-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">SAVE MAN-HOURS<br />
</span></strong><span class="inset">- Eliminate significant reallocations of planned and unplanned resources<br />
- Lower skills barriers allowing more people to possess expertise</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/power-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">CUT SPACE/POWER</span></strong><br />
<span class="inset">- Achieve power savings through rationalising systems<br />
- Transfer benefits in physical datacentre into virtual datacentre</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/mngt-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BETTER DECISION-MAKING</span></strong><br />
<span class="inset">- Achieve certainty to decision making process<br />
- Ability to provide auditors with validation they require<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/bomb-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BOOST UPTIME</span></strong><br />
<span class="inset">- Achieve validated level of security<br />
- Gain a more progressive and positive view of the compliance process</span></div>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
			<wfw:commentRss>http://www.automatedit.tv/advisories/compliance-monitoring-and-reporting/automating-compliance-monitoring-and-reporting/feed/</wfw:commentRss>
		</item>
		<item>
		<title>AUTOMATING DATABASE SECURITY CONTROLS</title>
		<link>http://www.automatedit.tv/advisories/database-security-control/automating-database-security-controls/</link>
		<comments>http://www.automatedit.tv/advisories/database-security-control/automating-database-security-controls/#comments</comments>
		<pubDate>Mon, 30 Nov 2009 08:02:48 +0000</pubDate>
		<dc:creator>The Automeister</dc:creator>
		
		<category><![CDATA[Database Security Control]]></category>

		<category><![CDATA[compliance]]></category>

		<category><![CDATA[Database Security Controls]]></category>

		<category><![CDATA[IT Automation]]></category>

		<category><![CDATA[IT management]]></category>

		<category><![CDATA[IT security]]></category>

		<category><![CDATA[PCI]]></category>

		<category><![CDATA[policies]]></category>

		<category><![CDATA[SOX]]></category>

		<guid isPermaLink="false">http://www.automatedit.tv/advisories/?p=188</guid>
		<description><![CDATA[Databases hold the most critical information within an organisation, and so require a tightly orchestrated range of controls to secure and audit their usage.
Many such controls are manual, making them very expensive and time-consuming to manage, and have difficulty keeping pace as application versions, staff members and threats constantly evolve.
Automation of database security controls, meanwhile, [...]]]></description>
			<content:encoded><![CDATA[<p>Databases hold the most critical information within an organisation, and so require a tightly orchestrated range of controls to secure and audit their usage.</p>
<p>Many such controls are manual, making them very expensive and time-consuming to manage, and have difficulty keeping pace as application versions, staff members and threats constantly evolve.</p>
<p>Automation of database security controls, meanwhile, can dramatically increase the efficiency of security enforcement, assure compliance to mandates such as PCI &amp; SOX, and improve working practices.  Without it, organisations struggle to maintain intelligence around what databases exist, how they are patched, who has access to them, and what individual access policies allow.  The problem is compounded within multi-vendor database environments.</p>
<p>Being able to accelerate security and compliance enables organisations to drive down costs but also decrease the risks inherent with managing databases. Organisations seeking to protect themselves from attack by the implementation of controls can minimise risk and effectively secure their database assets through automation.</p>
<h3><span style="color: #99cc00;">AUTOMATED IT RATING: 4.7</span></h3>
<p><span id="more-188"></span></p>
<p><img src="http://www.automatedit.tv/images/pdf.gif" border="0" alt="" align="absMiddle" /><strong><a href="http://www.automatedit.tv/pdf/Automating_Database_Security_Controls.pdf" target="_blank">PDF version available</a></strong></p>
<p>This advisory describes the process and impact of automating database security controls.</p>
<ul type="disc">
<li><strong>Situation Analysis (Before &amp; After Automation)</strong></li>
<li><strong>The Business Criticality of </strong><strong>Automating Database Security Controls</strong><strong></strong></li>
<li><strong>Automation Impacts</strong></li>
<li><strong>- Running Costs</strong></li>
<li><strong>- Time/Labour</strong></li>
<li><strong>- Space &amp; Power</strong></li>
<li><strong>- Decision Making</strong></li>
<li><strong>- Uptime</strong></li>
<li><strong>Implementing Automation</strong></li>
<li><strong>Fortinet Solutions</strong></li>
</ul>
<h2><span style="color: #99cc00;"><strong>Situation Analysis<br />
</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Before Automation</strong></span></h3>
<ul class="unIndentedList">
<li>- The organisation invests massively in time-consuming and inefficient processes and specialist skills in order to manually enforce its database controls.</li>
<li>- The developing and constant tuning of a comprehensive control model for database security/access may also be inconsistent and inefficient.</li>
<li>- The number of databases in deployment, the users privileged to access them, and the extent to which that access is managed are not fully understood by the organisation. IT professionals are likely to be unaware that this is in fact the case.</li>
<li>- Security patching for databases may not be up to date, and the organisation struggles to understand the extent of this problem.</li>
<li>- Compliance mandates governing database security are a significant distraction to the IT department, diverting strategic and tactical resources away from services development and delivery elsewhere within the organisation.</li>
<li>- Even with a robust control model in place, and efficient processes for enforcement, the organisation struggles to respond to the dynamic nature of the database environment (e.g. changing roles of individual users, new technology versions, evolving compliance standards, extent/posture of new threat and vulnerability profiles). As such, the organisation&#8217;s best-laid plans rapidly unravel over time into an unworkable and potentially insecure status.</li>
</ul>
<h3><span style="color: #99cc00;"><strong>After Automation</strong></span></h3>
<ul class="unIndentedList">
<li>- The organisation maintains an accurate picture of its database estate via an intelligent and automated process, and is able to address internal/external auditors with an authoritative perspective on database vulnerability posture at any given time.</li>
<li>- Despite constant change to the database environment, its users and its prevalent threats, the database control model continues to be enforced without the need for prolonged or time-consuming manual intervention.</li>
<li>- The organisation is significantly more confident of the security of its databases, and of having its automated multi-vendor patching cycles completely up-to-date at all times.</li>
<li>- The IT team is less distracted by compliance anxieties and the constant need for intervention in database control and enforcement. This directly benefits the organisation&#8217;s other more progressive IT-driven business goals.</li>
</ul>
<p><strong></strong></p>
<h2><span style="color: #99cc00;"><strong>The Business Criticality of Database Security Controls</strong></span></h2>
<p>All organisations use databases, relying and trading upon the value of the data they hold.  Controlling access, alerting leaks and breaches and adapting to rapidly changing technological demands are therefore of vital business importance.  In highly regulated industry sectors such as financial services, the business criticality of database security controls is almost unparalleled.</p>
<p>Establishing a control framework is the first part of the challenge and one that consumes significant resources and expertise.  The second and concluding part of the challenge is enforcing those controls; arguably the larger and more critical undertaking.  Here, multi-disciplinary teams spend enormous amounts of time grappling with the most dynamic of technology environments; environments that they typically have only cloudy visibility into.</p>
<p>The answer is to implement a system to automate and manage these processes, ensuring budgets and resources are used efficiently, and that the ultimate goal of optimum security is met continually.</p>
<h2><span style="color: #99cc00;"><strong>Automation Impacts</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Running Costs</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>An automated database security control solution dramatically undercuts the running costs of the manually-driven equivalent, while enabling a series of new and valuable capabilities.   The biggest cost saving that can be achieved through automation relates to the amount of time freed up by stripping away unnecessary manual processes.</p>
<p>In addition, some solutions are converged with other related capabilities such as improved logging and event management.  Deploying a logical suite of automated processes, available in a single form-factor, can reduce or eliminate the need to purchase or maintain separate solutions.</p>
<h3><span style="color: #99cc00;"><strong>Time/Labour </strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>Automation of database security controls removes the labour burden of multiple time-consuming processes.</p>
<p>One example is the auto-discovery of every database on the network, regardless of subnet boundaries, and the automated determination of user privileges, user behaviour profiles, database version updates, and patching status.  A manual process capable of achieving the same level of accuracy would consume a huge amount of skilled resources; indeed, such a large amount that many organisations may decide against it.</p>
<p>The other main group of processes relates to enforcement of the database controls model.  Rather than task database analysts to write new scripts in response to perceived vulnerabilities, this process can be fully automated, freeing up time for other more strategically valuable tasks, and improving accuracy and prioritisation.  Database analysts typically focus their skills within a limited number of operating systems and applications, necessitating the duplication of script-writing tasks within a multi-disciplinary (often multi-departmental) team.  Automation enables those specialised skills to be used more progressively.</p>
<h3><span style="color: #99cc00;"><strong>Space/Power </strong></span></h3>
<p><strong>MED  <img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>The overall potential efficiencies of this approach are outstanding; however there is a limited impact on space and power in the datacentre.</p>
<p>A good automated database security control solution should be able to support databases within a virtualised environment, safeguarding the space/power saving virtualisation/consolidation strategy being pursued.  Moreover, an agentless operation option can further reduce the load on database operation.</p>
<h3><span style="color: #99cc00;"><strong>Decision Making </strong></span></h3>
<p><strong>MED </strong><img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></p>
<p>This automation approach provides a crystal-clear visibility of the database environment that many organisations will never have encountered before.  This will enable similarly precise decision making practices, particularly concerning the development and enhancement of database functionality, scale and user control.</p>
<p>Real-time enforcement, reporting and alerting against whatever comprehensive database control model is applied, will also inform the compliance process; enabling organisations to provide auditors and assessors with exactly the validation they require, presented in the format they need.</p>
<h3><span style="color: #99cc00;"><strong>Uptime </strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>This approach fundamentally enhances the security posture of an organisation, safeguarding compliance to critical regulations and promoting its integrity and public commitment to data protection.</p>
<p>This approach will rarely &#8216;displace&#8217; existing solutions of a similar ilk, but instead adds robust layers of added security control to an organisation&#8217;s most critical assets.</p>
<h2><span style="color: #99cc00;"><strong>Implementing Automation</strong></span></h2>
<p>Implementation of tools to automate database security controls can be accomplished almost immediately, particularly in terms of initial vulnerability assessment.  Following simple installation, the ongoing management of such a system is extremely straightforward; supported by a centralised, web-based management application.</p>
<p>Unlike equivalent manual processes which struggle to keep pace with the dynamic database environment, the beauty of an automated approach is its capacity to tirelessly meet those challenges.</p>
<p>The vendor-independent flexibility of such a solution is extremely important, as is the flexibility to either facilitate the development a new control model, or to enforce an imported set of control criteria.</p>
<h2><span style="color: #99cc00;"><strong>Fortinet Solutions</strong></span></h2>
<p>Fortinet is a leading provider of network security appliances and the leader of the unified threat management (UTM) market worldwide. Fortinet&#8217;s award-winning portfolio of security gateways, subscription services, and complementary products delivers the highest level of network, content, and application security for enterprises of all sizes, managed service providers, and telecommunications carriers, while reducing total cost of ownership and providing a flexible, scalable path for expansion. For more information, visit <a href="http://www.fortinet.com/" target="_blank">www.fortinet.com</a></p>
<p>Click <span style="text-decoration: underline;"><a href="http://www.fortinet.com/products/fortidb/" target="_blank">here</a></span> to download a free trial of FortiDB software version for automated database security controls.</p>
<p>Click <a href="http://www.automatedit.tv/pdf/FAQ-FortiDB.pdf" target="_blank">here</a> to download the FAQ guide on FortiDB.</p>
<p>Click <a href="http://www.automatedit.tv/pdf/FortiDB-datasheet.pdf" target="_blank">here</a> to download the FortiDB datasheet.</p>
<table style="display:;border: dotted 1px #888888;" border="0" cellspacing="5" cellpadding="5" width="100%" bgcolor="#f5f5fa">
<tbody>
<tr>
<td class="inset" valign="top">
<div>
<div class="hr">
<table border="0" cellspacing="5" cellpadding="0" width="100%">
<tbody>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/costs-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td valign="top">
<div><strong><span class="inset-subheader">SLASH COSTS</span></strong><br />
<span class="inset">- Cut management costs associated with database security enforcement<br />
- Further reduce opex spent on developing control models</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/time-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">SAVE MAN-HOURS<br />
</span></strong><span class="inset">- Free up skills for innovation<br />
- Eliminate time consuming practices</span></div>
<div><span class="inset">- Eliminate duplication of activity<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/power-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">CUT SPACE/POWER</span></strong><br />
<span class="inset">- Supports virtualised environments<br />
- Agentless option reduces database load<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/mngt-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BETTER DECISION-MAKING</span></strong><br />
<span class="inset">- Gain and maintain an accurate picture of database estate<br />
- Enforce controls and react to alarms in real-time<br />
- Become less distracted by compliance anxieties<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/bomb-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BOOST UPTIME</span></strong><br />
<span class="inset">- Achieve optimum database security<br />
- Add layers of security controls to your most critical data assets</span></div>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
			<wfw:commentRss>http://www.automatedit.tv/advisories/database-security-control/automating-database-security-controls/feed/</wfw:commentRss>
		</item>
		<item>
		<title>AUTOMATING PORT INTELLIGENCE</title>
		<link>http://www.automatedit.tv/advisories/port-intelligence/automating-port-intelligence/</link>
		<comments>http://www.automatedit.tv/advisories/port-intelligence/automating-port-intelligence/#comments</comments>
		<pubDate>Mon, 19 Oct 2009 15:35:46 +0000</pubDate>
		<dc:creator>The Automeister</dc:creator>
		
		<category><![CDATA[Port Intelligence]]></category>

		<category><![CDATA[decision making]]></category>

		<category><![CDATA[IT Automation]]></category>

		<category><![CDATA[IT management]]></category>

		<category><![CDATA[network]]></category>

		<category><![CDATA[port]]></category>

		<guid isPermaLink="false">http://www.automatedit.tv/advisories/?p=163</guid>
		<description><![CDATA[It is essential that IT managers know what each port in their network is being used for.  Yet even understanding that individual ports are being used at all is beyond most IT departments, who have to conduct time-consuming, inefficient and risky manual processes in order to make decisions that affect the entire organisation.
Instead, when called [...]]]></description>
			<content:encoded><![CDATA[<p>It is essential that IT managers know what each port in their network is being used for.  Yet even understanding that individual ports are being used at all is beyond most IT departments, who have to conduct time-consuming, inefficient and risky manual processes in order to make decisions that affect the entire organisation.</p>
<p>Instead, when called upon to isolate security breaches, investigate outages or to scope the network prior to expansions and upgrades, organisations have the opportunity to automate port intelligence.  This makes tasks far more cost-efficient, streamlined, responsive and less time consuming.</p>
<h3><span style="color: #99cc00;">AUTOMATED IT RATING: 4.7</span></h3>
<p><span id="more-163"></span></p>
<p><img src="http://www.automatedit.tv/images/pdf.gif" border="0" alt="" align="absMiddle" /><strong><a href="http://www.automatedit.tv/pdf/Automating_Port_Intelligence.pdf" target="_blank">PDF version available</a></strong></p>
<p>This advisory describes the process and impact of automating port intelligence.</p>
<ul type="disc">
<li><strong>Situation Analysis (Before &amp; After Automation)</strong></li>
<li><strong>The Business Criticality of Automating Port Intelligence</strong></li>
<li><strong>Automation Impacts</strong></li>
<li><strong>- Running Costs</strong></li>
<li><strong>- Time/Labour</strong></li>
<li><strong>- Space &amp; Power</strong></li>
<li><strong>- Decision Making</strong></li>
<li><strong>- Uptime</strong></li>
<li><strong>Implementing Automation</strong></li>
<li><strong>Infoblox Solutions</strong></li>
</ul>
<h2><span style="color: #99cc00;"><strong><br />
Situation Analysis</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Before Automation</strong></span></h3>
<ul class="unIndentedList">
<li>- IT professionals are unaware of the amount of available ports on the network, or their status/speed etc., so mistakenly purchase new switching equipment when extra capacity is not in fact required.</li>
<li>- Without visibility of ports and their status, opportunities are routinely missed to determine the performance of the network as a whole. Moreover, the potential impact of planned switch maintenance/upgrade is unknown. This makes measuring the success of such processes difficult, leading to inaccurate analysis that impacts on future spending decisions.</li>
<li>- Troubleshooting outages and other failures is ineffective and inefficient. The process of identifying the port in question likely involves manually researching logs that enable the conversion of IP address into MAC address, then into switch location, and finally switch port number. In many cases it will involve physically visiting the switch in question and sifting through cabling infrastructure.</li>
<li>- Shutting down urgent security issues takes too long, is time and labour intensive, and can provoke counterproductive errors. Attacks exploiting a specific port cannot be acted upon quickly enough, and occasionally the need to &#8216;pull the plug&#8217; on a suspected port is done hastily and incorrectly.<strong> </strong></li>
<li>- As the manual port intelligence processes in place are &#8216;learned&#8217;, only the most skilled and experienced IT professionals within the team are capable of supporting them.</li>
</ul>
<h3><span style="color: #99cc00;"><strong><br />
After Automation</strong></span></h3>
<ul class="unIndentedList">
<li>- Port wastage is eliminated, and the IT team is fully aware of how many ports are available, how many are in use, and what their individual status is. It is far easier to make informed capacity planning choices, reduce common configuration errors and predict the impact of IT infrastructure expansion and maintenance.</li>
<li>- With new ports costing between £100-300 each, the organisation is saving significant amounts of CAPEX and space/power by no longer procuring infrastructure it does not require, and instead making more efficient use of installed assets.</li>
<li>- The IT team can rapidly identify which ports need to be shut down in the event of a brute force attack, virus, security breach or DoS attacks, and take action with a simple keystroke.</li>
<li>- The organisation can seamlessly integrate its IP address management (IPAM) process with port intelligence to make overall network management as efficient as possible.<strong> </strong></li>
</ul>
<p><strong></strong></p>
<h3><span style="color: #99cc00;"><strong><br />
</strong></span></h3>
<h2><span style="color: #99cc00;"><strong>The Business Criticality of Port Intelligence </strong></span></h2>
<p>Access to real-time, granular information about the most fundamental elements of your network infrastructure means strategic and tactical decision making can be undertaken accurately and with confidence.  Without automation, organisations run the risk of prolonged security attacks, serious configuration/connection errors and immense wastage of time, money, space and power.</p>
<p><strong></strong></p>
<h2><span style="color: #99cc00;"><strong><br />
Automation Impacts</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Running Costs</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>According to Gartner, 30% of ports in a typical network are unused at any given time.  When it comes to extending the size of the network, IT decision makers, unaware of the unused capacity, buy unnecessary new switches.  Through automating port intelligence, the cost of operating the core network can be reduced by being able to correctly identify unused capacity, informing investment decisions accordingly.</p>
<p>Automation also lowers OPEX as well as CAPEX, by reducing the time and associated expense of maintaining inefficient manual processes for intelligence gathering and execution.  Look out for tools which are vendor agnostic, enabling management of all network ports in a multi-vendor environment.</p>
<h3><span style="color: #99cc00;"><strong>Time/Labour</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>The process of managing ports and securing them effectively is very time consuming if done manually.  Consider the workload of an IT Manager having to go through this process, which will be not only multifaceted, but multi-platform and multi-departmental.  Tasks are often fragmented and need information extrapolated from a number of different sources.  In a network environment of potentially thousands of ports, it can often take days or weeks to carry out a simple assessment, yet with automation in place it takes just a fraction of that time.</p>
<p>Added to this, automated port intelligence reduces the frequency of helpdesk enquiries, with each enquiry also being solved more quickly and underlying issues identified more swiftly. Prior to automation, issues would have involved a cross department response.  Indeed, many organisations will either lack the in-house skills to carry this out, or will have to second a highly skilled member of the team to manually carry out these processes.  Port intelligence automation lowers skills barriers, meaning it can be carried out by a number of people without the expertise needed to do it manually.</p>
<h3><span style="color: #99cc00;"><strong>Space/Power</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>By more efficient utilisation of available ports, organisations only need invest in new switches they actually require.  This avoids significant wastage of space and power on superfluous equipment.  Moreover, by leveraging hitherto unused port capacity on existing switch infrastructure, the organisation can achieve a better utilisation per user/device/application while maintain the same density footprint.</p>
<h3><span style="color: #99cc00;"><strong>Decision Making</strong></span></h3>
<p><strong>MED  <img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>Automated port intelligence provides IT decision makers with a platform for better visibility and faster troubleshooting. Automated port intelligence is a highly constructive &#8216;housekeeping&#8217; initiative that supports system performance, enables more strategic decision making (particularly with regard to capital investments and switch upgrade/maintenance projects) and reduces the disruption and distraction of valuable IT personnel.</p>
<p>Port intelligence tools with &#8216;historic&#8217; tracking and analysis capability can even track the connection activity of specific users, and determine the &#8216;net usage&#8217; of specific ports over time rather than simply reporting a current snapshot.</p>
<h3><span style="color: #99cc00;"><strong>Uptime</strong></span></h3>
<p><strong>MED  <img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>Automated port intelligence really comes into its own in a crisis; a faster and more granular security response will deliver better uptime.  Added to this, threats are less likely to spread and inaccurate responses - such as pulling out the wrong port - are minimised.</p>
<p>An example of this is when a firewall sends an alert that the device at a given IP address is sending worm packets.  Prior to automation, an IT manager would have to consult a myriad of manually stored logs, or else go and query all of the switches and routers in the network to find where the device is attached.  With 3-6 commands per switch, this can take hours before an informed decision can even be taken.  With automation in place IT Managers can immediately see the port that the device is on and take action.  Added to this, an automated audit history can help identify the &#8220;mobile&#8221; offender.  Note however, that only some automated solutions carry this &#8216;historic port intelligence&#8217; capability.</p>
<h2><span style="color: #99cc00;"><strong><br />
Implementing Automation</strong></span></h2>
<p>Embracing automated port intelligence involves a rapid and pain-free implementation process, whereby the deployed system auto-discovers all the ports on the network and builds an immediate picture of the switch estate.</p>
<p>To maximise the investment in an automated port intelligence solution, it is advisable to invest some time determining which auditing and alerting commands are to be utilised and in a configuration that suits the IT team.  In addition, organisations can further maximise the benefits of automated port intelligence by integrating this with an automated IP address management (IPAM) solution.</p>
<h2><span style="color: #99cc00;"><strong><br />
Infoblox Solutions</strong></span></h2>
<p>This advisory has been produced with support from Infoblox, pioneers of an appliance-based approach that controls and automates the core services that drive all networks and applications.  For more information on how Infoblox successfully automates port intelligence for businesses of all sizes, visit <a href="http://www.infoblox.com/">www.infoblox.com</a>.</p>
<p><a href="http://www.automatedit.tv/pdf/What_is_Port_IQ.pdf" target="_blank">Click here to read the Infoblox PortIQ solution note</a></p>
<p><a href="http://www.infoblox.com/library/l-genLibrary.cfm?section=l-productdemo" target="_blank">Click here to watch the Infoblox PortIQ demo</a></p>
<table style="display:;border: dotted 1px #888888;" border="0" cellspacing="5" cellpadding="5" width="100%" bgcolor="#f5f5fa">
<tbody>
<tr>
<td class="inset" valign="top">
<div>
<div class="hr">
<table border="0" cellspacing="5" cellpadding="0" width="100%">
<tbody>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/costs-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td valign="top">
<div><strong><span class="inset-subheader">SLASH COSTS</span></strong><br />
<span class="inset">- Lower hardware TCO<br />
- Better use of existing hardware<br />
- Slash opex by over 50%<br />
- Less hardware needed</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/time-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">SAVE MAN-HOURS<br />
</span></strong><span class="inset">- Free up skills for innovation<br />
- Typical 1,000 user organization can save 40 man-days per month</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/power-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">CUT SPACE/POWER</span></strong><br />
<span class="inset">- Maximise virtualisation opportunities<br />
- Use less infrastructure to manage network infrastructure</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/mngt-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BETTER DECISION-MAKING</span></strong><br />
<span class="inset">- Dramatically increase efficiency of IP address management<br />
- Dedicate less resources to fire-fighting<br />
- Platform for better business decision making<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"> </td>
<td> </td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/bomb-icon.png" border="0" alt="" width="80" height="80" align="absMiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BOOST UPTIME</span></strong><br />
<span class="inset">- Underwrite critical network services<br />
- Mitigate unnecessary human error/intervention<br />
- Improve security</span></div>
<p> </td>
</tr>
</tbody>
</table>
</div>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
			<wfw:commentRss>http://www.automatedit.tv/advisories/port-intelligence/automating-port-intelligence/feed/</wfw:commentRss>
		</item>
		<item>
		<title>AUTOMATING SECURITY INTELLIGENCE</title>
		<link>http://www.automatedit.tv/advisories/security-intelligence/automating-security-intelligence/</link>
		<comments>http://www.automatedit.tv/advisories/security-intelligence/automating-security-intelligence/#comments</comments>
		<pubDate>Tue, 15 Sep 2009 09:10:04 +0000</pubDate>
		<dc:creator>The Automeister</dc:creator>
		
		<category><![CDATA[Security Intelligence]]></category>

		<category><![CDATA[SIEM]]></category>

		<guid isPermaLink="false">http://www.automatedit.tv/advisories/?p=132</guid>
		<description><![CDATA[Somewhere deep inside the hundreds of millions of pieces of event data produced daily by routers, firewalls, identity and access management infrastructure, applications and all other components of a large enterprise network and security infrastructure are the key clues for how to avert potential disaster.  In fact, there is everything you need to respond [...]]]></description>
			<content:encoded><![CDATA[<p>Somewhere deep inside the hundreds of millions of pieces of event data produced daily by routers, firewalls, identity and access management infrastructure, applications and all other components of a large enterprise network and security infrastructure are the key clues for how to avert potential disaster.  In fact, there is everything you need to respond to ongoing threat levels, internally and externally.  While manually sifting through it all is good practice for security forensics and essential for proving business compliance, it is typically a hugely inefficient process; even more so when placed under necessarily heavy scrutiny.</p>
<h3><span style="color: #99cc00;">AUTOMATED IT RATING: 4.5</span></h3>
<p><span id="more-132"></span></p>
<p><img src="http://www.automatedit.tv/images/pdf.gif" border="0" alt="" align="absmiddle" /><strong><a href="http://www.automatedit.tv/pdf/Automating_Security_Intelligence.pdf" target="_blank">PDF version available</a></strong></p>
<p>This advisory describes the process and impact of automating the security intelligence of your network.</p>
<ul>
<li><strong>Situation Analysis (Before &amp; After Automation)</strong></li>
<li><strong>The Business Criticality of Security Intelligence</strong></li>
<li><strong>Automation Impacts</strong></li>
<li><strong>- Running Costs</strong></li>
<li><strong>- Time/Labour</strong></li>
<li><strong>- Space &amp; Power</strong></li>
<li><strong>- Decision Making</strong></li>
<li><strong>- Uptime</strong></li>
<li><strong>Implementing Automation</strong></li>
<li><strong>Q1 Labs Solutions</strong></li>
</ul>
<h2><span style="color: #99cc00;"><strong>Situation Analysis<br />
</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Before Automation</strong></span></h3>
<ul>
<li>- External attacks and fraudulent activity by insiders are missed</li>
<li>- It consumes large amounts of time and focus to manage the sheer weight of new security event data spewing out of your network’s thousands of devices</li>
<li>- Network and security operations teams are silo’d from each other, cannot leverage key data of interest to both teams, and are slowed in response to network threats</li>
<li>- Each device or device-set has its own attendant proprietary logging system/protocol, which consumes additional resources including space and power.  Stranded investments may also have already been made in log management products, network visibility products and obsolete security event management systems.</li>
<li>- The ‘skill’ of understanding how to collect and interrogate event data from disparate networked sources is difficult to transfer and is often exclusively silo’d among the team.</li>
<li>- On the surface, each piece of event data is conceivably of ‘equal merit’ in terms of its value to decision-making at least until it can be combined with context from other data sources.  A tremendous amount of time is wasted in prioritising responses into a manageable range of tasks</li>
<li>- There is real concern that the present ‘best effort’ security intelligence system (should one even exist in whole or part) is not only inefficient, but also endangers the ongoing security and compliance status of the business.  It is unlikely to offer any value in the event of a sustained attack, or an urgent audit.</li>
</ul>
<h3><strong><span style="color: #99cc00;">After Automation</span></strong></h3>
<ul>
<li>- Total security intelligence enables the detection of cross-enterprise threats that were previously being missed</li>
<li>- Time is no longer spent interrogating multiple sources for event data; instead all the information is collated into a single point and converted into security intelligence.</li>
<li>- Space/power and other resources are also conserved by a minimal hardware footprint for interpreting security intelligence.</li>
<li>- Out-of-the-box security value with easy to understand rules, results and reports, so any authorised member of the IT team can ‘pick-up’ security intelligence duties and search, analyse and respond to security log information.</li>
<li>- The IT team works from 10 or so prioritised tasks generated by the event log information, rather than randomly responding to issues of perceived importance that have been spotted ‘out-of-context’.</li>
<li>- Compliance and security responsiveness is far more assured, even with respect to zero-day attacks and sudden audit impositions.</li>
</ul>
<h2><span style="color: #99cc00;"><strong>The Business Criticality of Security Intelligence</strong></span></h2>
<p>Networked infrastructure elements are good at collecting evidence, and lots of it.  Yet it is the process of managing all of this data and converting it into intelligence about your threat/fraud detection ‘must-dos’, network/security operations needs and compliance outputs which is absolutely essential.</p>
<h2><span style="color: #99cc00;"><strong>Automation Impacts</strong></span></h2>
<h3><strong><span style="color: #99cc00;"><br />
Running Costs</span></strong></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>The bottom line impact of automating security intelligence is the radical reduction in operating costs, both in terms of skills employed and the consolidation of countless devices (log management products, network visibility engines, behavior analytics, proprietary logging appliances etc.) into a single interface stream/single product to configure, learn and maintain.</p>
<h3><span style="color: #99cc00;"><strong><strong>Time/Labour</strong></strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>The ability to locate and analyse information quickly – almost instantaneously – saves incredible amounts of time. For example, should a serious security incident be suspected, organisations may need to shut-down devices for several hours at a time and divert precious resources simply to find the location of a threat. A typical 500-user organisation will save between three and five man-days per month by automating security intelligence.</p>
<p>With a fully automated solution in place, IT departments can quickly – in a matter of minutes – locate the individual issue and shut down the activity before any damage can be wrought. Total security intelligence solutions can deliver significant data reduction capability for prioritised incident response to the order of 500,000:1 (accurately prioritising the one important incident out of 500,000 other pieces of security event information).</p>
<p>Automating security intelligence will also support the ongoing convergence and consolidation of network teams and security teams within your organisation. Even if your organisation is maintaining those teams as separate entities, automating security intelligence promotes the efficient sharing of critical data and avoids the possibility of anything important ‘falling through the gaps’.</p>
<h3><span style="color: #99cc00;"><strong><strong>Space/Power</strong></strong></span></h3>
<p><strong>MED  <img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>Automating security intelligence reduces the impact on space and power resources. For example, a large organisation generating 5,000 security events per second can run all of their security intelligence requirements out of a single 2U appliance. Using a virtualised form-factor, this impact can be reduced further still.</p>
<p>Beware of what analysts describe as ‘first generation SIEM systems’, which are essentially large ‘ERP-like’ software deployments with associated RDBMs costs. The next generation of SIEM uses far more efficient and performance-orientated database as well as an easy to deploy and maintain appliance form-factor.</p>
<h3><span style="color: #99cc00;"><strong><strong>Decision Making</strong></strong></span></h3>
<p><strong>MED  <img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>Security information and log event data is critical to the decision making process, though its success rests upon deploying a system capable of converting that into reliable, rapidly accessible and priority-led intelligence. An automated approach achieves just that. In addition, it provides all the intelligence an auditor needs to undertake a compliance inspection, or for senior managers to interrogate any aspect of network history.</p>
<p>The heterogeneous nature to true automated approach to security intelligence also supports transparency and flexibility in the procurement process. Knowing how painful and time-consuming it can be (in terms of making provisions for security event data etc.) to introduce a new vendor technology into any existing infrastructure can cloud and constrain capital investment judgements. Now you can deploy what you want without concern for additional security intelligence overheads.</p>
<h3><span style="color: #99cc00;"><strong><strong>Uptime</strong></strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>An efficient, rapid and comprehensive security intelligence system will clearly mitigate the risks to your organisation. Specifically, it will lead to a reduction in human error in terms of preventing individuals from:</p>
<ul>
<li>- jumping to the wrong conclusions and wasting valuable resources on wild goose chases because of a failure of analysis</li>
<li>- having to cover for absent team members who own device/technology specific event data skills</li>
<li>- forgetting or overlooking arcane processes which follow no policy or process other than those developed by habit, distant memory or scraps of paper.</li>
</ul>
<h2><span style="color: #99cc00;"><strong><br />
Implementing Automation</strong></span></h2>
<p>Automating security intelligence can be accomplished within minutes, particularly if solutions with ‘data discovery’ and auto-configuration capabilities are employed. Even with tweaking and user training, the entire process can be accomplished within a few days. Additionally, it may even be the case that the act of implementing a solution to automate security intelligence uncovers areas of historic processes which failed to account for individual devices and systems on the network.</p>
<p>Available technology should be flexible to all deployment scenarios, including among comparatively small/mid-sized businesses who may not have considered security intelligence solutions previously. Only very large organisations generating over 500 million security events per day would conceivably require an architecture where more than a single SIEM unit would need to be run in alignment.</p>
<h2><span style="color: #99cc00;"><strong>Q1 Labs Solutions</strong></span></h2>
<p>This advisory has been produced with support from Q1 Labs, a global provider of high-value, cost-effective network security management products. For more information on how Q1 Labs successfully integrates previously disparate functions such as log management, network behavior analytics and security event management into a total security intelligence solution for businesses of all sizes, visit <a href="http://www.q1labs.com" target="_blank">www.q1labs.com</a></p>
<p><a href="http://www.automatedit.tv/pdf/UDR_Case_Study.pdf" target="_blank">Click here</a> to view a case study on UDR</p>
<p><a href="http://www.automatedit.tv/pdf/Q1Labs_SIEM_White_Paper.pdf" target="_blank">Click here</a> to download the Q1 Labs ‘Business Case for a Next Generation SIEM’ white paper</p>
<table style="display:;border: dotted 1px #888888;" border="0" cellspacing="5" cellpadding="5" width="100%" bgcolor="#f5f5fa">
<tbody>
<tr>
<td class="inset" valign="top">
<div>
<div class="hr">
<table border="0" cellspacing="5" cellpadding="0" width="100%">
<tbody>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/costs-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td valign="top">
<div><strong><span class="inset-subheader">SLASH COSTS</span></strong><br />
<span class="inset">- Lower hardware TCO<br />
- Better use of existing hardware<br />
- Slash opex for incident response by over 75%<br />
- Less hardware needed<br />
- Less than 12 month return on investment</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/time-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">SAVE MAN-HOURS<br />
</span></strong><span class="inset">- Free up skills for innovation<br />
- Support security/network team convergence<br />
- Typical 500 user organisation can save 3-5 man-days per month</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/power-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">CUT SPACE/POWER</span></strong><br />
<span class="inset">- Maximise virtualisation opportunities<br />
- Reduce network and hardware footprint<br />
- Better ROI for storage strategy</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/mngt-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BETTER DECISION-MAKING</span></strong><br />
<span class="inset">- Dramatically increase efficiency of security management and intelligence gathering (500,000:1 data reduction/prioritisation capability for improved incident response)<br />
- Dedicate less resources to fire-fighting<br />
- Immediate readiness for compliance/auditing<br />
- Unconstrained future network/security procurement<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/bomb-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BOOST UPTIME</span></strong><br />
<span class="inset">- Underwrite critical network services<br />
- Mitigate unnecessary human error/intervention<br />
- Improve security, event zero-day attacks</p>
<p></span></div>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
			<wfw:commentRss>http://www.automatedit.tv/advisories/security-intelligence/automating-security-intelligence/feed/</wfw:commentRss>
		</item>
		<item>
		<title>AUTOMATING NETWORK SERVICES</title>
		<link>http://www.automatedit.tv/advisories/core-network-services/automating-network-services/</link>
		<comments>http://www.automatedit.tv/advisories/core-network-services/automating-network-services/#comments</comments>
		<pubDate>Tue, 04 Aug 2009 10:00:42 +0000</pubDate>
		<dc:creator>The Automeister</dc:creator>
		
		<category><![CDATA[Automating Network Services]]></category>

		<category><![CDATA[Network Services]]></category>

		<guid isPermaLink="false">http://www.automatedit.tv/advisories/?p=115</guid>
		<description><![CDATA[It seems the only people who really understand ‘core network services’ such as DHCP, DNS, RADIUS and TFTP are the ones who are up to their eyebrows in it every day. What strategic-level CIOs and IT directors need to understand is that it’s essential, it’s complicated and it’s ripe for automation.
AUTOMATED IT RATING: 4.3

PDF version [...]]]></description>
			<content:encoded><![CDATA[<p>It seems the only people who really understand ‘core network services’ such as DHCP, DNS, RADIUS and TFTP are the ones who are up to their eyebrows in it every day. What strategic-level CIOs and IT directors need to understand is that it’s essential, it’s complicated and it’s ripe for automation.</p>
<h3><span style="color: #99cc00;">AUTOMATED IT RATING: 4.3</span></h3>
<p><span id="more-115"></span></p>
<p><img src="http://www.automatedit.tv/images/pdf.gif" border="0" alt="" align="absmiddle" /><strong><a href="http://www.automatedit.tv/pdf/Automating_Network_Services.pdf" target="_blank">PDF version available</a></strong></p>
<p>This advisory describes the process and impact of automating these network services.</p>
<ul>
<li><strong><span style="color: #99cc00;"><span style="color: #000000;">Situation Analysis (Before &amp; After Automation)</span></span></strong></li>
<li><strong>The Business Criticality of Network Services</strong></li>
<li><strong>Automation Impacts</strong></li>
<li><strong>- Running Costs</strong></li>
<li><strong>- Time/Labour</strong></li>
<li><strong>- Space &amp; Power</strong></li>
<li><strong>- Decision Making</strong></li>
<li><strong>- Uptime</strong></li>
<li><strong>Implementing Automation</strong></li>
<li><strong><span style="color: #99cc00;"><span style="color: #000000;">Infoblox Solutions</span></span></strong></li>
</ul>
<h2><span style="color: #99cc00;"></p>
<p></span></h2>
<h2><span style="color: #99cc00;"><br />
<strong>Situation Analysis</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Before Automation</strong></span></h3>
<ul>
<li><span style="color: #99cc00;"><span style="color: #000000;">- Keeping the ‘network glue’ of DNS, DCHP and other core network services in tact is as a result of thousands of onerous, time-consuming, repetitive tasks</span></span></li>
<li>- IP address management is time-consuming, complex, insecure and unreliable; typically administered via a range of spreadsheet records held by IT dept</li>
<li><span style="color: #99cc00;"><span style="color: #000000;">- Large number of general purpose servers used to host network services wastes computing resources as well as space/power overheads</span></span></li>
</ul>
<p><strong><br />
</strong></p>
<h3><strong> <span style="color: #99cc00;">After Automation</span></strong></h3>
<ul>
<li>- The IT team collectively spends hundreds of man-hours less per month on admin task drudgery; individually they are each liberated to concentrate efforts upon more strategically valuable work</li>
<li>- IP address management is fully controlled, secured, and rapidly administered</li>
<li>- Hardware resources and operating overheads are rationalized to a minimum, even though specialized appliances are now deployed</li>
</ul>
<h2><span style="color: #99cc00;"></p>
<p></span></h2>
<h2><strong><span style="color: #99cc00;">The Business Criticality of Network Services</span></strong></h2>
<p><span style="color: #99cc00;"><span style="color: #000000;">Managing these services (and their related IP address management requirements) is absolutely critical to maintaining business uptime.  If your organisation continues to function in any capacity, then it is because these core network services are being diligently and continually managed, tweaked and controlled.</span></span></p>
<h2><span style="color: #99cc00;"><br />
<strong>Automation Impacts</strong></span></h2>
<h3><span style="color: #99cc00;"><strong><br />
Running Costs</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<h3></h3>
<p><span style="color: #99cc00;"><span style="color: #000000;"> Operating costs can be drastically reduced through network services automation.  The principal contributors to these cost savings are in terms of labour and space/power.<br />
<strong><br />
</strong></span></span></p>
<h3><span style="color: #99cc00;"><span style="color: #000000;"><strong> <span style="color: #99cc00;">Time/Labour</span></strong></span></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p><span style="color: #99cc00;"><span style="color: #000000;"> Core network services consume massive amounts of personnel resources in repetitive, manual tasks that are often replicated among IT teams.<br />
We estimate that a typical 1,000 employee organization with 5,000 IP addresses will conduct (per month):</span></span></p>
<ul>
<li><span style="color: #99cc00;"><span style="color: #000000;">- 300 x Static IP address assignations = 30 mins each = 150 man-hours</span></span></li>
<li>- 500 x DNS host additions = 20 mins each = 167 man-hours</li>
<li>- 100 x IP address reclaims = 60 mins each = 100 man-hours</li>
<li>- 50 x new network provisioning = 60 mins each = 50 man-hours</li>
<li>- 5 x unauthorized device troubleshooting = 7.5 hours each = 37.5 man-hours</li>
</ul>
<p><span style="color: #99cc00;"><span style="color: #000000;"> The total in this example is just over 500 man-hours per month; the equivalent of three people working non-stop for the entire period.  By automating the management of core network services, this burden is reduced to less than 25 hours; about the same as one person spending one hour per day each month.</span></span></p>
<h3><span style="color: #99cc00;"><strong>Space/Power</strong></span></h3>
<p><strong>HIGH </strong><img class="alignnone" title="High" src="http://www.automatedit.tv/images/high.png" alt="" width="20" height="20" /></p>
<p>Core network services are typically hosted on general purpose servers located at each site.  This incurs a high cost for server management which is inefficient and unable to discharge effective IP address management.  The automated approach involves replacing these with dedicated appliances which are cheaper to run and which support centralized management.<br />
The effect upon space/power is minimal, though the result will net an estimated $168,755 three year overall saving (based upon replacing an architecture of five servers).</p>
<p>If space/power reduction is a key priority then automation can take place via a virtualized agent, thereby removing the need for dedicated appliance/server replacement.  Infoblox vNIOS Virtual Appliance software can be run on existing Riverbed and Cisco network equipment.  This process reduces TCO further, and makes ROI even more compelling.</p>
<h3><span style="color: #99cc00;"><strong>Decision Making</strong></span></h3>
<p><strong>MED  <img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p>The automation of network services enables the IT department to be far more knowledgeable and responsive in decision making.  This is due to the overwhelming management, visibility and reporting capabilities brought about the automation process and its underlying technology.</p>
<h3><span style="color: #99cc00;"><strong>Uptime</strong></span></h3>
<p><strong>MED  <img class="alignnone" title="Medium" src="http://www.automatedit.tv/images/medium.png" alt="" width="20" height="20" /></strong></p>
<p><strong></strong> In any set-up, continual ‘housekeeping’ of core network services is required in order to maintain the foundations of a fully operational enterprise network.  Therefore, an automated network services approach directly enhances the business continuity objectives of a business, adding resilience and accuracy to a hitherto piecemeal methodology.</p>
<h2><span style="color: #99cc00;"><br />
<strong>Implementing Automation</strong></span></h2>
<p><span style="color: #99cc00;"><span style="color: #000000;">Automating  network services is a comparatively straightforward undertaking, although given the criticality of the data and processes involved it requires a great deal of sensitive and intelligent planning.<br />
There are various deployment paths one could follow, so there is certainly scope for flexibility.  Migrating to a system of full network services automation could take place very quickly, and any initial outlay on new capital equipment would be recouped within the six months of operation.</span></span></p>
<h2><span style="color: #99cc00;"><br />
<strong>Infoblox Solutions</strong></span></h2>
<p><span style="color: #99cc00;"><span style="color: #000000;">This advisory has been produced with support from Infoblox, pioneers of an appliance-based approach that controls and automates the core services that drive all networks and applications.  For more information on how Infoblox successfully automates network services for businesses of all sizes, visit <a href="http://infoblox.com" target="_blank">www.infoblox.com </a></span></span></p>
<p><a href="http://www.automatedit.tv/pdf/Grainger_IPAM_Case_Study.pdf">Click here</a> to view a case study on Grainger<br />
<a href="http://www.automatedit.tv/pdf/wp_ipam.pdf">Click here</a> to download the Infoblox white paper on IPAM<br />
<a href="http://www.automatedit.tv/pdf/Infoblox_ROI_Presentation_Feb_09.ppt">Click here</a> for the Infoblox solutions interactive presentation</p>
<table style="display:;border: dotted 1px #888888;" border="0" cellspacing="5" cellpadding="5" width="100%" bgcolor="#f5f5fa">
<tbody>
<tr>
<td class="inset" valign="top">
<div>
<div class="hr">
<table border="0" cellspacing="5" cellpadding="0" width="100%">
<tbody>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/costs-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td valign="top">
<div><strong><span class="inset-subheader">SLASH COSTS</span></strong><br />
<span class="inset">- Lower hardware TCO<br />
- Better use of existing hardware<br />
- Slash opex by 50%<br />
- Less hardware need</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/time-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">SAVE MAN-HOURS<br />
</span></strong><span class="inset">- Free up skills for innovation<br />
- Typical 1,000 user organization can save 40 man-days per month<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/power-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">CUT SPACE/POWER</span></strong><br />
<span class="inset">- Maximise virtualisation opportunities<br />
- Use less infrastructure to manage network infrastructure<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/mngt-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BETTER DECISION-MAKING</span></strong><br />
<span class="inset">- Dramatically increase efficiency of IP address management<br />
- Dedicate less resources to fire-fighting<br />
- Platform for better business decision making<br />
</span></div>
</td>
</tr>
<tr>
<td width="80"></td>
<td></td>
</tr>
<tr>
<td width="80" valign="top"><img src="http://www.automatedit.tv/preview/images/bomb-icon.png" border="0" alt="" width="80" height="80" align="absmiddle" /></td>
<td class="inset-subheader" valign="top">
<div><strong><span class="inset-subheader">BOOST UPTIME</span></strong><br />
<span class="inset">- Underwrite critical network services<br />
- Mitigate unnecessary human error/intervention<br />
- Improve security</p>
<p></span></div>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
			<wfw:commentRss>http://www.automatedit.tv/advisories/core-network-services/automating-network-services/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
