Search /
Docfinder:
Advanced search  |  Help  |  Site map
RESEARCH CENTERS
SITE RESOURCES
Click for Layer 8! No, really, click NOW!
Networking for Small Business
TODAY'S NEWS
iPhone 5 rumor rollup for the week ending Feb. 10
Forget Public Cloud or Private Cloud, It's All About Hyper-Hybrid
Apple passes HP as largest tech company
How to get the IRS' attention: Forge nearly $8 million in tax returns, steal identities
Much of Western U.S. is a 3G wasteland, says FCC
How the Phoenix Suns basketball team takes on social media attacks
Microsoft details Windows 8 for ARM devices
Resume Makeover: How an Information Security Professional Can Target CSO Jobs
Blogger exposes major Google Wallet security flaw
Web app lets enterprise set security, sharing for Google Apps users
Cloudscaling to offer OpenStack private cloud platform
Macs take on the enterprise
Valentine's Day Patch Tuesday: Microsoft to issue 9 patches, 4 critical
Mobile World Congress sneak peek: Quad-core smartphones, Ice Cream Sandwich & more


/
Send to a friend Feedback

3Com improves NIC security features

Company's card adds encryption support; prevents packet sniffing, IP address spoofing.

Related linksToday's breaking news
Send to a friendFeedback


SANTA CLARA - 3Com this week will announce a new firmware add-on for its network interface cards that could be used to lock down servers and PCs to prevent hacks from outside or inside a company.

The network firm says the new NICs let network professionals secure networked PCs and servers by controlling exactly what can be done from a client PC or who can access certain servers. 3Com says the NICs can boost the speed of nodes that send encrypted data by off-loading encryption algorithms and other packet processing tasks from a PC's processor to the NIC.

A firewall enhancement will also be available on 3Com's 3CR990 10/100M bit/sec NIC with the on-board 3X reduced instruction set chip processor. The firewall technology will reside on the NICs as firmware. 3Com developed it with security software firm Secure Computing.

On the client side, the NICs can be configured to prevent end users from sniffing packets or spoofing an IP address. The NICs can also prevent end users from sending fragmented packets - a technique used in some distributed denial-of-service attacks. The NICs can be configured to limit which network servers a PC can access.

In a server, the NICs can be configured to allow access only to certain users, such as an extranet business partner, based on IP address. Server NICs can be told not to send pings or fragmented packets, which can help stem distributed denial-of-service attacks if a server is taken over by hackers.

In order to set and distribute security policies across an organization, 3Com's Embedded Firewall Policy Server is required. The Windows NT/2000-based software lets users make standard security templates and distribute the settings to NICs across the network. The server is also required for retrofitting existing 3CR990 NICs with the firewall software and for upgrading the NICs as new versions are released.

As companies open their corporate firewalls to share resources with online business partners and extranet customers, securing resources inside the firewall becomes critical, according to John Harrison, product line manager for 3Com. Additionally, businesses must deal with the threat of network resource abuse by internal employees.

"There's a lot of contractors, temporary employees or even malicious insiders who can wreak havoc on a corporate network," Harrison says.

In a 2000 survey of 643 U.S. organizations conducted by the Computer Security Institute (CSI) in San Francisco and the FBI, more than 70% of the companies said they had at least one incident of unauthorized network use by someone inside their networks. The CSI/FBI survey found that external hacking occurred in only 30% of the companies and that the average monetary damage done by external hackers cost companies an average of $25,000, as opposed to the average cost of $1.8 million for internal system attacks.

The cost of a single desktop NIC firewall upgrade is $50. The Embedded Firewall Policy Server costs $1,000, and a single-client license for the server costs $200. The firewall upgrade and server software will be available in the third quarter. The 3CR990 PC and server NICs are available now, and cost $120 and $130 each.

Related Links

Contact Senior Writer Phil Hochmuth

Other recent articles by Hochmuth

Fired up over firewalls

Read how personal firewalls may finally stop the hacker, then debate over our latest performance review in our forum.

 
NWFusion offers more than 40 FREE technology-specific email newsletters in key network technology areas such as NSM, VPNs, Convergence, Security and more.
Click here to sign up!
New Event - WANs: Optimizing Your Network Now.
Hear from the experts about the innovations that are already starting to shake up the WAN world. Free Network World Technology Tour and Expo in Dallas, San Francisco, Washington DC, and New York.
Attend FREE
Your FREE Network World subscription will also include breaking news and information on wireless, storage, infrastructure, carriers and SPs, enterprise applications, videoconferencing, plus product reviews, technology insiders, management surveys and technology updates - GET IT NOW.