Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 40 guests and 3 members online
EH-Net Donations

Enter Amount:
$

Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Hardwarearrow Cisco Security
Ethical Hacker Community Forums
December 01, 2008, 08:28:04 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: ChicagoCon 2-Day Ethical Hacking Conference with MS Blue Hats Oct 31 - Nov 1. Tickets Only $100! www.chicagocon.com/content/view/103/51/
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Cisco Security  (Read 2713 times)
0 Members and 1 Guest are viewing this topic.
scucci
Newbie
*
Offline Offline

Posts: 23


View Profile
« on: September 26, 2008, 11:27:03 AM »

Currently we have multiple different hardware vendors performing all different parts of our layered security. Now that I think of it, we don't have more than one vendor performing security in every part of our network. (Firewalls, SIEM, antivirus, IPS, etc.)

I like Cisco and seeing what they can do with all areas of security running Cisco products is impressive. From your standpoint, would it be better to diversify the equipment to different vendors or have one manage them all. I know that Cisco might not be #1 in all categories, but when all their equipment is working together, I feel that you have a tighter network.

Scucci
Logged
dalepearson
Full Member
***
Offline Offline

Posts: 153


View Profile
« Reply #1 on: September 27, 2008, 04:33:50 PM »

I am sure many people will have many different opinions on this.
Cisco is for sure a good brand, with some quality products, and alot of companies are Cisco houses.

My personal opinion is where possible go for best of breed, and just not to put all your eggs in one basket. So I like to have a few solutions in the mix by different vendors. That way when a major issues flares up (some zero day attack) I will hopefully have some layer providing some protection.

Just my thoughts.
Logged

RoleReversal
Sr. Member
****
Offline Offline

Posts: 469


View Profile WWW
« Reply #2 on: September 28, 2008, 03:49:32 AM »

In part I'd agree with Dale.

Cisco are generally superior in what they do best, routing and switching. However, often the attempts to branch into different fields and features can leave a bit to be desired. They usually design and create devices with a high level of security, however it is often seen that the advanced 'features' are less secure.

For example this months security advisory lists several vulnerabilities in 'security' features; including vulnerable IPS features, potential data leakage from a VPN and even an issue with the humble NAT. (Full advisory here)

I'm not trying to claim that Cisco devices are less secure than other manufacturers, it could easily be the case competitors are just less open regarding their bugs; and if you want to move to a single manufacturer for all devices you could certainly do worse than go with Cisco.

It is usually the case though that those specialising in a specific technology will produce a better product than generalists, providing you stick to the big boys. Best-of-breed devices usually have that label for a reason.

Good luck out there...
Logged

A little bit of sanity:
http://www.infosanity.co.uk
$w33p3R
Newbie
*
Offline Offline

Posts: 30


View Profile
« Reply #3 on: September 28, 2008, 04:45:11 AM »

I think Dale and RoleReversal summed up the majority of my opinion, other than, it is kind of like asking which is the best OS; MAC, Linux or Windows?  You are gonna get so many answers it is rediculous.  In most cases, he who throws the most money at promoting/advertising their product wins, which Cisco has done a great job at.

I can give you one product that I have not had much luck with...Linksys, which is put out by Cisco.  For their high-end stuff to work pretty good most of the time, they sure as hell can't get the home market down, of course, that's my opinion and the experience I have had with several Linksys routers.

To the OP, remember, don't put so much faith in one product.  One weak link can break the whole chain.  As RoleReversal pointed out, Cisco consistently has its share of vulnerabilities, which does not necessarily make it a bad product.  But, having other solutions in place is a wise choice.

Logged

MCP, CEH
dalepearson
Full Member
***
Offline Offline

Posts: 153


View Profile
« Reply #4 on: September 28, 2008, 09:20:02 AM »

Like I said, dont put all your eggs in one basket (all one vendor) unless there is a strategic reason.

Multiple layers is the key, and if this can incorporate various vendor offerings the better.
Logged

scucci
Newbie
*
Offline Offline

Posts: 23


View Profile
« Reply #5 on: October 06, 2008, 11:29:25 AM »

Thanks you everyone for your reviews.
Logged
charlottebandit
Newbie
*
Offline Offline

Posts: 25


View Profile
« Reply #6 on: October 23, 2008, 10:43:15 PM »


I think it matters a lot (personal preference) because Cisco security products have steered away from mostly being point products several years ago.  For the past couple of years, they've focused on collaborating each security controls together to integrate with another & even escalate the security of other Cisco security solutions. 

Security no longer becomes an afterthought or a necessary evil, but a security architecture that's designed to scale to Government & Compliancy requirements (like PCI, HIPPA, SOX) which goes far beyond just a simple firewall. 

Logged

MS, CPTS, CCNP, CCDP, CEH, CHFI
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2008, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.046 seconds with 23 queries.
 
Sponsors

cwnp_moto__120x90.gif

Polls
During the most recent election, I:
 
Support EH-Net


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

Sadikhov.com
Top IT Cert Sites

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2008 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.