Gioi Thieu Ve Bao Mat
Transcript of Gioi Thieu Ve Bao Mat
-
7/27/2019 Gioi Thieu Ve Bao Mat
1/17
TNG QUAN V
AN TON THNG TIN
1
-
7/27/2019 Gioi Thieu Ve Bao Mat
2/17
Ni dung
Xy dng chnh sch ATTT 2
An ton thng tin l g ?1.
Phn bit cc loi Attacker2.
Tn cng v phng th3.
Summary4.
-
7/27/2019 Gioi Thieu Ve Bao Mat
3/17
An ton thng tin l g ?
An ton thng tin l m bo tnh bo mt,tnh ton vn v sn sng ca thng tin
trn cc thit b lu tr v trong qu trnhtruyn thng
Xy dng chnh sch ATTT 3
-
7/27/2019 Gioi Thieu Ve Bao Mat
4/17
An ton thng tin l g ?
Xy dng chnh sch ATTT 4
-
7/27/2019 Gioi Thieu Ve Bao Mat
5/17
An ton thng tin l g ?
Confidentiality : tnh bo mt, m boch nhng ngi quyn mi c c
thng tin. Integrity : tnh ton vn, chc chn dliu l chnh xc v khng b sa i.
Availbility : tnh sn sng, m bo khnng truy xut d liu l nhanh nht cth.
Xy dng chnh sch ATTT 5
-
7/27/2019 Gioi Thieu Ve Bao Mat
6/17
An ton thng tin l g ?
Thut ng trong bo mt thng tin
Xy dng chnh sch ATTT 6
-
7/27/2019 Gioi Thieu Ve Bao Mat
7/17
An ton thng tin l g ?
Thut ng trong bo mt thng tin
Xy dng chnh sch ATTT 7
-
7/27/2019 Gioi Thieu Ve Bao Mat
8/17
Phn bit cc loi Attacker
Nhng ngi tn cng mng my tnhthng thng c chia vo nhng loi
sau : Hacker
Cracker
Script Kiddies Spies
Employees
CybercriminalsXy dng chnh sch ATTT 8
-
7/27/2019 Gioi Thieu Ve Bao Mat
9/17
Phn bit cc loi Attacker
Xy dng chnh sch ATTT 9
-
7/27/2019 Gioi Thieu Ve Bao Mat
10/17
Phn bit cc loi Attacker
Hacker : Nhng chuyn gia v my tnh
Tn cng h thng mng my tnh ch r nhng l hng
ca h thng (White Hats) Script Kiddies :
Khng phi l chuyn gia my tnh
S dng phn mm tn cng h thng mng vi mcch khng tt
Spies Nhng chuyn gia v my tnh
c thu tn cng h thng, khai thc thng tin,.
Xy dng chnh sch ATTT 10
-
7/27/2019 Gioi Thieu Ve Bao Mat
11/17
Phn bit cc loi Attacker
Employees : Mt trong nhng mi e da ln nht v an ton thng tin
Mc ch tn cng ca Nhn Vin :
Tm kim nhng l hng v khc phc Mun chng minh : Ti gii hn mi ngi
V Tin
Cybercriminals : Nhng ngi c kin thc v my tnh
Mc ch tn cng gy hong lon
Xy dng chnh sch ATTT 11
-
7/27/2019 Gioi Thieu Ve Bao Mat
12/17
Tn cng v phng th
Xy dng chnh sch ATTT 12
Thm nhp h thng
Chnh sa chnh sch
Tn cng nhng dch v khc trong h thng
Xa vt
Thm d thng tin
-
7/27/2019 Gioi Thieu Ve Bao Mat
13/17
Tn cng v phng th
Nguyn Duy Xy dng chnh sch ATTT 13
-
7/27/2019 Gioi Thieu Ve Bao Mat
14/17
Tn cng v phng thNguyn tc phng th theo chiu su
Xy dng chnh sch ATTT 14
Access Control, Encryption, Digital Signature
Security Policy
Unified Threat Management (UTM), Firewall,
VPN, Routers
Lock, Camera
VLAN, IPS, IDS
Application Control, Antivirus
Physical
Perimeter
Internal
Host
Application
Data
OS, Update Management, Enpoint Security
-
7/27/2019 Gioi Thieu Ve Bao Mat
15/17
Tn cng v phng thNguyn tc phng th theo chiu su
Xy dng chnh sch ATTT 15
-
7/27/2019 Gioi Thieu Ve Bao Mat
16/17
Summary
Hiu c bo mt thng tin l g ?
Phn bit cc loi Attacker
Cc bc c bn ca qu trnh tn cng Nm c m hnh phng th theo chiu
su
Xy dng chnh sch ATTT 16
-
7/27/2019 Gioi Thieu Ve Bao Mat
17/17
Question ???