Defense in Depth

There is no silver bullet when it comes to security. At times, vendors would like to convince you otherwise, but the bottom line is a company must have multiple approaches to have a secure site—one mechanism is not going to do it. A firewall is a good start, but it is only a start, not a solution. After you add an IDS, multiple firewalls, active auditing, secure dial-in, virtual private networks, encryption, strong passwords, and access control lists, then you are getting close to having a secure network. This concept of having multiple mechanisms protecting a site is called defense in depth.

Get Hackers Beware now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.