NEXUS - Realtime Reader

Issue #75
April 2007

::New Series:
The Essentials Series: Messaging and Web Security Volume Two

::New Chapter:
Security and Infrastructure Considerations

New Series: The Essentials Series: Messaging and Web Security - Volume Two

The Definitive Guide® to Vista MigrationDownload the first two articles from this new series!

Volume Two of The Essentials Series: Messaging and Web Security examines new challenges to combating the growing proliferation of online threats that include spam, phishing, malware and spyware. The Essentials Series: Messaging and Web Security - Volume II is offered in twenty seven total articles and will be especially useful to small and mid-sized organizations that face the same challenges as larger enterprises, but are limited by their level of resources. Main topics in this new series include:

• New techniques for detecting spam
• Reducing the threat from phishing attacks
• Detecting and eliminating bots
• Mitigating the threat of spyware
• Security information management in small and mid-sized businesses

Download the first two articles, written by Dan Sullivan, at: http://www.realtime-websecurity.com/ESMWSv2_pro.asp

New Chapter: Security and Infrastructure Considerations

The Definitive Guide® to Vista MigrationDownload the newest chapter from The Definitive Guide® to Vista Migration!

This chapter begins the preparation of all of the engineering tasks required to perform the deployment. Once again, it follows the Desktop Deployment Lifecycle as well as the PC Migration Cycle. The project has now moved from the preparation phases, including Question and Understand and is beginning the Organize phase of the QUOTE System. There is however, one part of the activities listed here that is required as input to both of the first two phases: initial inventories, especially if you don't have existing inventory capabilities.

Chapter 5: Security and Infrastructure Considerations, written by Danielle Ruest and Nelson Ruest, is available at: http://nexus.realtimepublishers.com/DGVM.htm

New Chapter: Impact Analysis, Root Cause and Event Correlation

The Definitive Guide® to Converged Network ManagementDownload the newest chapter from The Definitive Guide® to Converged Network Management!

To conduct full impact and root cause analysis, event correlation engines are often used to provide data about what happened. Chapter 6 begins by building an understanding of the protocols involved in this process, examining their strengths and weaknesses. Key protocols include Simple Network Management Protocol (SNMP), the Internet Control Message Protocol (ICMP) tools, and even Network Time Protocol (NTP) for effective event correlation. Beyond protocols, the chapter will explore syslog. Syslog servers provide a part of the picture, but they really provide data collection mechanisms, not analysis engines.

Chapter 6: Impact Analysis, Root Cause and Event Correlation, written by Ken Camp, is available at: http://nexus.realtimepublishers.com/DGCNM.htm

New Article: Rebecca Herold's 25 Questions to Ask Every Security Vendor

The Essentials Series: IT Compliance - Volume IIDownload the newest article from the The Essentials Series: IT Compliance - Volume II!

Because of the complexities involved with networks and the rapidly increasing types of technologies deployed, no computer system that is useful can be completely secure. And likewise, no computer system security product can ever be guaranteed to be 100% secure. However, business leaders must still perform due diligence when choosing a security product to ensure that everything possible has been done by the vendor to remove all known vulnerabilities, and that the vendor will continue to diligently update their product to ensure all newly discovered security flaws are quickly and effectively removed.This article includes Rebecca Herold's 25 questions to ask a security product vendor when evaluating security solutions.

Article 7: Security Products Must Be Secure, by Rebecca Herold, is available at:
http://www.realtime-itcompliance.com/070409_herold.asp

Realtime Resource: 5 Steps to Improving Compliance for Midsize Organizations

The Realtime Windows Server Community PodcastDownload the latest white paper on Realtime IT Compliance!

What five steps can mid-size organizations take to increase their compliance posture? Results and recommendations are given based on research from securitycompliance.com.

White Paper: Improving IT Compliance: Guidance for Midsize Organization is available at:
http://www.realtime-itcompliance.com/ITCWP005.asp


New Podcast: A Technical Look at the Security Configuration Wizard Part III

The Realtime Windows Server Community PodcastListen to the newest podcast from The Realtime Windows Server Community!

This episode goes deep into the XML underbelly of the Security Configuration Wizard. We'll talk about when the SCW is useful (Microsoft apps!) and when it isn't all that useful right out of the box (non-Microsoft apps!). We'll also deep dive into the syntax you need to know to custom configure your SCW policy templates to handle non Microsoft applications.

Podcast: A technical look at the Security Configuration Wizard Part III, by Greg Shields, is available at: http://www.realtime-windowsserver.com/podcast/2007/03/a_technical_look_at_the_securi_2.htm

New Podcast: Auditing and Inventorying Your Enterprise to Identify File Transfers

The Shortcut Guide™ to Securing Automated File TransfersDownload the newest podcast for The Shortcut Guide™ to Securing Automated File Transfers!

Painstaking investigation and analysis is the only sure-fire way to find and replace insecure file transfer tools and technologies inside the enterprise. This means identifying all ports in use on clients and servers, and associating reserved or ephemeral ports with specific applications. Only then can all insecure instances of file transfer be identified, after which they must be prioritized, then replaced with more secure alternatives in priority order (or eliminated for unauthorized or low priority usage situations).

Podcast 2: Auditing and Inventorying Your Enterprise to Identify File Transfers, by Ed Tittel, is available at: http://nexus.realtimepublishers.com/SGSAFT.htm

Recently Announced Chapters

New eBook: The Shortcut Guide™ to Exchange Server 2007 Storage Systems
Chapter 1: Choosing an Exchange Server storage platform

New Chapte : The Definitive Guide® to Virtual Platform Management
Chapter 3: Virtualization Scenarios and Applications

New Chapter: The Definitive Guide® Service-Oriented Systems Management
Chapter 10: Managing Risks in Information Systems

New Volume: The Tips and Tricks Guide™ to Creating Business Continuity through Enterprise Storage Solutions
Volume 4

New Chapter: The Shortcut Guide™ to Securing Automated File Transfers
Chapter 3: Securing File Transfer

New Podcast: The Definitive Guide® to Vista Migration
Podcast 3: Build the Perfect Vista Migration Lab

New Podcast: The Definitive Guide® to Successful Deployment of VoIP and IP Telephony
Podcast 3: Network Design Considerations for VoIP/IP Telephony

Start Building Your Own IT Library at Realtime Nexus Today!

Realtime Nexus

Realtime Nexus™ is Realtime Publishers' site dedicated to providing eBook readers with a central location to access Realtime Publishers' entire library of publications. Access to all of our publications is offered at no charge. Once you are registered, you will be able to download all of our leading technology guides. Browse our "All Publications" section to start building your own personal IT library today! Also, subscribe to our RSS feeds in order to stay on top of all of our newest ePublications.

Add Realtime Nexus eBook Alerts to your RSS Reader!

Realtime Nexus is currently offering news of its newest eBooks and chapter releases through RSS. To sign up for up-to-the minute alerts of the newest Realtime Publishers eBook chapter releases, please add the Realtime Nexus eBook Chapter Alert feed to your preferred RSS reader.

Subscribe in Bloglines

Should your company sponsor an RTP Publication?

Is your company an industry leader looking for qualified leads and/or industry thought-leadership?

Realtime Publishers pairs leading technology companies with the industry's top experts who are authoring the latest must-read IT publications, including eBooks, videos, articles, webinars, and whitepapers. Companies sponsor Realtime Publishers' publications on an exclusive basis and interact with their market as subscribers register to receive the publication. .

For more information about becoming a sponsor contact us.

Learn more about Realtime Publishers

Learn more about Realtime Publishers corporate sponsored ePublishing solutions at:
http://nexus.realtimepublishers.com/links/newsletter/rtp.asp

Manage Your Subscriber Profile and Newsletter Subscription

You have subscribed as: [[EAddress]]

To unsubscribe from the Realtime Reader, follow this link: [[IDNumber]]


If you are unable to unsubscribe from this link, please email us with UNSUBSCRIBE in the title.

Want to sponsor the Realtime Reader?

Worldwide Leaders in Corporate Sponsored ePublishing

© 2007 Realtimepublishers.com, Inc. ® All rights reserved. Realtimepublishers.com and the Realtimepublishers logo are registered in the US Patent & Trademark Office. All other product or service names are the property of their respective owners.