The top ten tips for using vro security skills: Now every household has their own computer and understands the vro Security usage skills. The setting of wireless security makes it easier for you to understand the wonderful world of the Internet.
◆ Vro security tips: update your vro Operating System: Like a network operating system, the vro operating system also needs to be updated to correct programming errors, software flaws, and cache overflow problems. Always query the current update and operating system version from your vro manufacturer.
◆ Router security tips: Modify the default password: According to the Computer Emergency Response Team at Carnegie Mellon University, 80% of security events are caused by weak or default passwords. Avoid using common passwords, and use a mix of uppercase and lowercase letters as stronger password rules.
◆ Disable HTTP settings and SNMP (Simple Network Management Protocol): the HTTP settings of your vro are easy to set for a busy network administrator. However, this is also a security problem for vrouters. If your vro has a command line setting, disable HTTP and use this setting method. If you are not using SNMP on your vro, you do not need to enable this function. A Cisco router has an SNMP security vulnerability that is vulnerable to GRE tunnel attacks.
◆ Router security tips: Block ICMP (Internet Control Message Protocol) ping requests: ping and other ICMP functions are very useful tools for network administrators and hackers. Hackers can use the ICMP feature enabled on your vro to find information that can be used to attack your network.
◆ Router security tips: Disable telnet commands from the Internet: In most cases, you do not need an active telnet session from an Internet interface. If you access your vro from the inside, the configuration will be safer.
◆ Router security tips: Disable IP-targeted broadcast: IP-targeted broadcast allows you to launch denial-of-service attacks on your devices. The memory and CPU of A vro cannot withstand too many requests. This result may cause cache overflow.
◆ Router security tips: Disable IP routing and IP redirection: re-targeting allows data packets to come in from one interface and then exit from another interface. You do not need to redirect specially designed data packets to a dedicated internal network.
◆ Router security tips: Packet Filtering: packet filtering only transmits the data packets that you are allowed to access your network. Many companies only allow port 80 (HTTP) and Port 110/25 (email ). In addition, you can block and allow IP addresses and ranges.
◆ Router Security usage tips: review security records: by simply taking advantage of some time to review your record files, you will see obvious attack methods and even security vulnerabilities. You will be surprised when you have experienced so many attacks.
◆ Unnecessary services: disable unnecessary services, whether on routers, servers, or workstation. Cisco devices provide small services by default through network operating systems, such as echo, chargen and discard ). These services, especially their UDP services, are rarely used for legal purposes. However, these services can be used to launch denial-of-service attacks and other attacks. Packet filtering can prevent these attacks.