16.4. Summary

Monitoring is a critical component of any enterprise network. Extensive monitoring of a network helps to ensure the performance and availability of all network devices. Monitoring can also alert administrators to possible attacks before they escalate out of control. The quicker an attack can be stopped, the less damage can be done.

Monitoring can be used by attackers to map out a network and launch attacks on that network. Proper security measures are critical for a network’s monitoring infrastructure. This means not only securing the server, but also securing the protocols being used for monitoring.

One of the biggest monitoring security holes is SNMP. Because SNMP data is transmitted in clear text, it is easy for an attacker ...

Get The Practice of Network Security: Deployment Strategies for Production Environments now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.