How the feds are locking down their networks

August 12, 2008, 11:41 AM —  Network World — 

The federal government is locking down its networks through an ambitious and fast-paced effort to eliminate connections to the Internet that are vulnerable to attack.

In the past nine months, the feds have reduced the number of external network connections they operate from more than 8,000 to about 2,700. By next year, the feds plan to have fewer than 100, many of them shared by multiple agencies. 

It's an approach experts say large private-sector organizations would do well to emulate.

The federal government's remaining Internet access points will have state-of-the-art security policies and managed security services, including antivirus, firewall, intrusion detection and traffic monitoring.

Bush administration officials say the consolidation effort will help agencies fend off a barrage of viruses, worms, denial of service and other attacks, while improving their ability to respond when a hacker gets through its multilayered defenses.

"It will reduce our risk," says Karen Evans, administrator for E-Government and IT in the Office of Management and Budget (OMB). "We will have better situational awareness for what's happening on our networks so we can take actions that will help enhance the trust of the American people that we are protecting their information."

OMB announced the Trusted Internet Connections (TIC) initiative in November. It joins several other administration efforts designed to bolster cybersecurity, including encrypting data on laptops and migrating agencies to a standard desktop operating system configuration. 

Sign up for ITworld's Daily newsletter
Follow ITworld on Twitter @IT_world

I like it!
Close

On Twitter now

vulnerabilities

Powered by Twitter
You are logged in | Sign out
Sign in and post to Twitter

What are you thinking?

Cancel Tweet sent

On Twitter now

Comments

all the preventions such as dissconnecting isnt gonna be enough.

i can only trust that if the fbi lives up to their name, then i can only trust you know what your doing. if ya had the info i have, you would know the disconnect isnt gonna work. since aug of 2008 when the worm was being built, i am still today fighting it. i disconnected all hardware that emits a signal, formated over 500 times, baught original restore disk, threw away all burned cds. and still questionable about all my usb drives. and all the extras, and still today, the worm is into the operating system before i finish a full restore. there are 2 parts that i am lacking knowledge that if your also lacking will be a big mistake. one being that it digs deeply into all storage levels. i believe the firmware of hardware and bios alterations give it a home it calls global. the 2nd being that frequencys are involved and possible phone companys to spread. i wenth through 3 phone companys and if you do a search online using "airtel" and "montana" youll see...

the hackers used the conficters as decoys to infect machines with an undetectable nightmare with success...

| reply
peer-to-peer

Esther Schindler
If the comments are ugly, the code is ugly

claird
SVG a graphics format for 21st century

pasmith
Take Chrome OS for a test spin

Sandra Henry-Stocker
Solaris Tip: Have Your Files Changed Since Installation?

sjvn
64-bits of protection?

jfruh
Android fragments vs. the iPhone monolith

mikelgan
What Gizmodo missed about the Pro WX Wireless USB disk drive

 

Sidekick: The Good News & the Bad News
Either way you look at it Microsoft Data Center management did not follow standards or best practices in this failure. In which case it makes me wonder more about the outsourcing of corporate data much less personal data.
- mburton325

Join the conversation here

The Daily Tip

The Daily TipQuick, practical advice for IT pros. Made fresh daily.

Hot tips:

Want to cash in on your IT savvy? Send your tip to tips@itworld.com. If we post it, we'll send you a $25 Amazon e-gift card.

Newsletters

Subscribe to ITWORLD TODAY and receive the latest IT news and analysis.

I would like to receive offers via email from ITworld partners.
By clicking submit you agree to the terms and conditions outlined in ITworld's privacy policy.
Featured Sponsor

AISO founders envisioned a Web hosting company that was environmentally friendly. While the company employed energy-efficient innovations like solar panels, its infrastructure produced unacceptable power and cooling requirements. Find out how AISO leveraged AMD technology to overcome their challenge in this case study white paper.

In this whitepaper, Scalar explores the opportunity to change the landscape with respect to mission critical databases built around Oracle. Leveraging technologies such as Linux, high-end commodity processing power and Oracle RAC technology to architect, design, build and maintain database infrastructure that delivers maximum availability, reliability and performance at a fraction of traditional cost.

On a typical day, weather.com, the Web site for The Weather Channel in Atlanta, serves up between 15 million and 20 million page views. But in September 2004, when back-to-back hurricanes ransacked Florida, the peak traffic on one day more than tripled: over 70 million page views by more than 7 million unique visitors. Read the full success story now.

Marketplace