Home|Login|Register|Feedback|Help  
Select a Location / Language
English
 
ASIA PACIFIC
PRODUCTIVITY NOW
IP Telephony
Security
Overview/Whitepapers
Case Studies
Products/Solutions
Cisco Services
Promotions
Contact us
Intelligent Switching
Wireless/Mobility


POWERnow

Welcome to a place where your network is top priority.
And defending it is top of mind.

Are there specific ports that worms attack?
NBAR blocked Code Red, does it work against current worms?
How do you battle worms that use needed ports and services?
Will blocking ports impact Windows Active Directory?
Do private VLANs span multiple switches?
With Blaster, port 135 TCP, port 4444 TCP, and port 69 UDP were used. In most enterprise environments, there is no need to open those ports to external access, so they can be closed.
With Blaster, port 135 TCP, port 4444 TCP, and port 69 UDP were used. In most enterprise environments, there is no need to open those ports to external access, so they can be closed.
NBAR is effective as a tactical tool, but needs to match the identifier value unique to this and all worms. With Code Red worms, Cisco uses an HTTP match on default traffic pattern identifiers. With Blaster worm, we look for SQL packets of a specific length.
Cisco Security Agent allows you to block any ports on hosts and provides layers of protection. Case in point, Cisco Security Agent prevented Blaster from spawning a command shell and executing its payload.
Yes. It is imperative to only filter these ports when there is normally no business need for them to exist. To mitigate these worms in cases where these ports must be open, other technologies, such as antivirus and HIPS, must be used.
Private VLAN ports can be on different network devices, as long as the devices are trunk-connected and the primary and secondary VLANs have not been removed from the trunk.

WHAT'S NEW

Need to Know
Formulate and implement an effective security strategy for your business.

W32.BLASTER Worm Mitigation
Learn about mitigation techniques and how to patch Cisco products properly.

SECURITY ADVISORY
Cisco IOS Interface Blocked by IPv4 Packet.

Protecting Productivity and Reducing Costs
Learn how customers are deploying Cisco's integrated network security solutions..

Business Solutions Security
Find the latest trends, best practices, roadmaps and more..
 
OVERVIEW/WHITEPAPERS
Internet Worm Attack Migration [88Kb pdf]
Cisco Security Agent [link]
Intrusion Detection Whitepapers [link]
 
» find out more.
 
CASE STUDIES
National University of Singapore [1.2Mb pdf]
NUS takes comprehensive approach to network security.
Seowon [1.2Mb pdf]
Seowan employ Cisco Security for e-commerce deployment.
Equant [75Kb pdf]
Cisco enables Equant to deliver converged vioce, video and data over IP APN architecture.
BPCL [88Kb pdf]
Security Special: VPN Case Study Cisco's Systemss Fuel BPCL Network.
 
» view more...
 
PROMOTIONS
Cisco Intrusion Detection System Promotion
Trend Micro Firewall and Anti-Virus
 
 
» find out more now.
 
PRODUCTS/SOLUTIONS
Hardware/Device
Software
Enterprise Management
Service Provider Management
Managed Security Services
 






Related Tools

VPN Savings Calculator
Security Investment - ROI Briefcase
PIX: Total cost of ownership
Top 10 Security Tips


Let Cisco Help You

Cisco Channel Promotions
Partner Locator
Contact Cisco Rep



Related Links

Security At Cisco

Korean Security Site

Chinese Security Site

FSB


Virtual Tour

INDUSTRY SOLUTIONS | NETWORKING SOLUTIONS | PRODUCTS & SERVICES | ORDERING | TECHNICAL SUPPORT & DOCUMENTATION | LEARNING & EVENTS | PARTNERS & RESELLERS | ABOUT CISCO
Home | Log In | Register | Contacts & Feedback | Help | Site Map
© 1992-2006 Cisco Systems, Inc. All rights reserved. Terms and Conditions, Privacy Statement, Cookie Policy and Trademarks of Cisco Systems, Inc.