Virtualization is a black hole in your security? 5 ways to make it sure does not
virtualization technology for over 40 years, but they Wasna? t until recently that it has really put himself in the company through its promise of material savings and improved agility.
Due to the encapsulation and isolation of operating systems and applications from the underlying hardware enables virtualization, IT departments to multiple independent virtual machine package, each with its own operating system and applications on a single server. This has resulted in real economic benefits for organizations in terms of administrative efficiency and cost. has more free virtualization software such as VM Player, pointed to the potential of virtualization to a boom in the use of virtualization software on the desktop. This upward trend should continue, “Gartner Inc. predicted? Virtualization trend higher the impact of the change in the infrastructure and operations through 2012A ????. 1
virtualization in a few words
can run more applications on fewer computers and applications and use operating systems
to extract more value from their investment in equipment and reduces administrative costs
can be quickly and automatically to the new systems
easy to deploy and manage virtual systems
administrative expenses
reduces the availability of low cost easy storage and bandwidth virtual environments on standard servers and computers to provide
Virtualization a black hole in your security? 5 ways to ensure that Dona? was T
security issues
The advantages of virtualization may have recognized, but is understood not as good, the < / output strong> it increases security. Server virtualization, with its chamber, managed highly secure data center environment, not much more prone as a non-virtualization. Also, virtual offices , which are managed by it are not running important
increased risk. The real thorny problem of security today is the proliferation of unauthorized virtual software
, which will run on your desktop and laptop companies could be two reasons:
reviews, games and other software are often distributed to virtual appliances and players free virtual machine
Staffdeliberately not authorized applications to run in a virtual environment not to. discovered too? they could even run a private company.
There are also risks associated with unmanaged virtualization refers, however, including the test facility and full Q & A environments created by developers. The Hidden ThreatAll of these VMs introduce a new set of challenges, vulnerabilities and management issues they face, to protect its infrastructure against viruses, hackers and other security threats.
such as smart phones, Instant Messaging and other technologies that can be used in the organization through the back door that is hidden Squeeze, unmanaged virtual environments for your employees, installed on purpose or inadvertently on their systems business without your knowledge, bypass the traditional policies and privileges, and create a black hole in your organizationâ? s security system install a virtual machine on a network computer is basically the same as the installation of a physical desktop. Thus, each new virtual machine means in accordance with security policies. This, it must have its own anti-virus and security software on your other end pointpolitical mandate and must be upgraded with the appropriate security patches. Even if the computer probably has all these security measures in place, the virtual machine to separate all practical purposes need to be corrected, and safe as a separate computer.
Unfortunately, an easy download and install the virtual machine doesnâ likely t, in line with the corporate security policy or security software running companydeployed. It is what not see its contents Thereâ? not know if this is the case. Worse still, the virtual machine can contain viruses or other threats thatYou can infect or hack into your network. This not only compromises your security but also creates a substantial risk that you no longer with the increase in legal certainty and the industry meet
regulations that you must protect confidential data.
Hidden
, unmanaged virtual environments circumvent traditional policies and privileges, and create a black hole in your organizationâ? s security system
the virtualization of a black hole in the security? to provide 5 ways Dona? Tto take 5 steps to control
Despite these daunting challenges, it is possible to secure your network from the dangers of desktop virtualization. It doesnâ? t necessarily require new types of security tools, or a completely new approach to security. With the important caveat that are your existing business, politics and technology tools effectively ensure the height of a non-virtualized environment that you’re doing, that they also to take into account virtualization.
Here are five steps you can effectively secure your network against the dangers of virtual. 1Update your Acceptable Use Policy and train your employeesMost organizations have Acceptable Use Policy (AUP) was held with the rules and policies, users must follow when their computers and the Internet. Itâ time to update your PEN virtualization address, specifying the exact conditions under which virtual software installed, which requires permits to be able to, what types can be executed by software, and how they should be protected. You have to expect the consequences if employees are their bodies unauthorized overdrafts can.
At the same time, itâ? is important to your employees on your AUP policy as a whole, including > what are the dangers as they put into policy, and the real costs and consequences of an invasion of rail safety.> 2 the Limit Using virtual machines for users itsure each virtual machine has started the same personal firewall experienced bodies, anti-virus, intrusion detection and other security software client your physical workstations and laptops. providers, security software, which can in the virtual machine hypervisor developed by integrating a sit do? ways in which virtualization is possible? but these solutions have not needed on the depth and context-sensitive behavior analysis to detect the latest malware in action.
Network Access Control (NAC) software to help on any computer depending on the configuration (virtual machines in bridged mode, where they operate directly with the network, or can the host, difficult NAC pass), because it can block access to the network until a physical or virtual machine is up to date with company policy. is the virtualization of a black hole in the security? to ensure 5 Ways that Dona? TAs with any software, virtualization software itself is used be, if ATI? Importantly, all of your software virtualization known and applications with the appropriate security patches from the manufacturers to keep up to date. Some patches centralized solutions do not provide detection capabilities for rehabilitation or patch for virtualization products that your administrator define guidelines for virtualization vendors means S-Tools update
4Choose security products that virtualization supportThings to consider when you are supporting security products that virtualization?.
The security provider supports virtualization software, you want to use,
Is there? known conflicts exist with virtualization platforms?
security software allows you to control the use of virtualization software? 5Create and maintain a library of virtual machines based secureOne of the surest ways for developers and testers to create virtual machines that your security needs must be drawn just there to do quickly and easily. Create built a collection of virtual machine with all the configuration settings, security software and patches from your security policy that users can simply download the required use and reuse requirements.
What future?
Today, security issues with virtualization are around the difficulty of identifying and centered
protection for virtual environments unauthorized emerging in the corporate network. This is the case, but remain in the future, the danger is more likely to increase.
The threats that particular virtual machine target, such as hacking tools and rootkit Redpill Bluepill have raised concerns about the risk to the virtual machines themselves. This type of threat, attack the hypervisor are really only “proof of concept. But as virtualization increasingly replaced todayâ? The infrastructure,increasingly supported in the operating system and used by multiple applications, it is very likely
We’re seeing more attacks hypervisor much more a real threat will be.
Conclusionvirtualization can represent real value, especially in a time of increasingly limited budgets, IT proliferation and its popularity seems to continue to turn the computer as are used in the company. As organizations deploy virtual desktops are managed without significantly increasing the risk of unauthorized desktop virtualization is bringing a variety of challenges to IT security. By integrating virtualization into your overall security strategy, you can protect your network from threats and takes advantage of its benefits.
is the virtualization of a black hole in the security? 5 ways to ensure that Dona? TVirtualization software