You are here: silicon.com > Software > Security Strategy

Security Strategy

Logic of Logical rubbished

Too many firewalls spoil the fun...

By Heather McLean

Published: 12 October 2001 12:15 GMT

A top Ovum analyst has rubbished the growing security trend for splitting corporate departments into firewall-wrapped security zones

Graham Titterington, corporate network security analyst at Ovum, stated the zoning method of dissecting enterprises into specific departmental zones - as recommended by IT security consultancy Logical - is not economically viable and will block business processes.

Titterington said: "Putting barriers up between departments is getting in the way of business processes and I've never come across a company that needs to defend at a departmental level.

"Presumably this method is to increase the market for firewalls. I don't think Logical has got its strategy right."

Simon Clifford, consultant with the Logical security practice, said: "Users themselves are the biggest risk and they need to be protected. That's a good enough reason for them to be zoned off."

But Clifford added Logical has to be careful not to zone too much and cut the user off from file and print services and admitted his ideal recommendation of a firewall pair and intrusion detection around each department was expensive.

Clifford said: "The costs are prohibitive and it's painful to split the physical fabrics of a company. Zoning architecture will increase initial spend on IT, log traffic between zones generated by more firewalls and intrusion detection systems will quadruple.

"The time spent by the person that consolidates log files and watches for intrusions will increase according to the number of security policies added."

Gunter Ollmann, principle consultant at ISS, said overheads will definitely rise because of equipment, licensing costs of individual firewalls and the time taken to monitor the tools.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business


  • Jobs
IT Security Analyst - South

Must hold a current driving licence DESIRABLE Juniper SSL VPN RSA SecurID MailSweeper WSUS and patch management Ironport Web Content Filteringo ...

Security Consultant (Symantec SEP, SEE, SAV)

Salary: GBP35,000-GBP41,000 Dependant on experience Benefits: 20 days holiday + Bank Holidays + 3 extra days performance related ROLE: Primarily the ...

IT Support Analyst, Windows, Cisco, AS/400, Firewalls, Juniper, London

Any firewall experience would also be good; my client uses Juniper NetScreen firewalls. Other responsibilities include: - System saves and backups - ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: