| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:Zagotavljanje varnosti v domovih s segmentacijo omrežja : diplomsko delo visokošolskega študijskega programa Informacijska varnost
Authors:ID Voda, Gašper (Author)
ID Markelj, Blaž (Mentor) More about this mentor... New window
Files:.pdf VS_Voda_Gasper_2023.pdf (1,11 MB)
MD5: F804AB9A8F70EF1CCB5EC6272D021140
 
Language:Slovenian
Work type:Bachelor thesis/paper
Typology:2.11 - Undergraduate Thesis
Organization:FVV - Faculty of Criminal Justice and Security
Abstract:Preden sta tehnologija in omrežje doživela izjemno hitro rast, je bilo zagotavljanje varnosti teh storitev nekoliko lažje, in sicer se je izvajalo večinoma na fizični ravni. Računalniška tehnologija in omrežja so bili bolj nedostopni in omogočeni le višjim razredom ali strokovnjakom. Zdaj pa varnost brezžičnih in žičnih omrežij predstavlja vedno večji izziv za strokovnjaka na tem področju. Vedno več je naprav, ki se povezujejo na omrežje, prav tako je tudi vedno več napadalcev, ki poskušajo pridobiti informacije in jih razkriti, spremeniti ali pa onemogočiti dostop do njih. Varnost informacij dosežemo tako, da zadostimo trem glavnim lastnostim: zaupnost, celovitost in dostopnost. Kibernetskega napada ni mogoče čisto preprečiti, lahko pa omejimo možnosti, da sploh pride do napada. Držati se moramo priporočil in dobrih praks, ki jih priporočajo strokovnjaki. Ena izmed dobrih praks je zagotovo segmentacija omrežja. S segmentacijo omrežja razdelimo omrežje na več manjših področij in tako se lahko v primeru napada napadalec giblje samo po enem segmentu v omrežju. K varnosti omrežja pripomorejo tudi standardi in protokoli. Problema varovanja informacij se zaradi vseh njenih pojavnih oblik ne da rešiti izključno s tehničnimi ukrepi, ampak jih je vedno treba dopolnjevati z drugimi ukrepi, postopki, standardi in politikami. V zaključnem delu sta predstavljeni informacijska varnost in segmentacija. Pregledani in opisani so bili tudi vsi standardi družine ISO/IEC 27000 in nekateri glavni protokoli. Predstavljeni so tudi podjetje Aruba in njihove dostopne točke, stikala ter uporabniški portali. Vprašanje, ki smo si ga zastavili, pa je bilo, kako enostavni sta postavitev in varnostna konfiguracija dostopne točke in stikala Aruba.
Keywords:varnost, omrežja, dostopne točke, segmentacija, diplomske naloge
Place of publishing:Ljubljana
Place of performance:Ljubljana
Publisher:[G. Voda]
Year of publishing:2023
Year of performance:2023
Number of pages:[VII] f., 54, 1 str.
PID:20.500.12556/DKUM-83580-910c041c-dc4e-64ac-e4d4-b6b77df3b7d4 New window
UDC:004.056(043.2)
COBISS.SI-ID:141307395 New window
Publication date in DKUM:10.02.2023
Views:960
Downloads:147
Metadata:XML DC-XML DC-RDF
Categories:FVV
:
Copy citation
  
Average score:(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share



Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Licences

License:CC BY-NC-ND 4.0, Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International
Link:http://creativecommons.org/licenses/by-nc-nd/4.0/
Description:The most restrictive Creative Commons license. This only allows people to download and share the work for no commercial gain and for no other purposes.
Licensing start date:03.01.2023

Secondary language

Language:English
Title:Ensuring security in homes with network segmentation
Abstract:Before network technology experienced extremely rapid growth, ensuring the security of these services was easier, and it was mostly done by the physical level. Computers and networks were more inaccessible and only available to the upper class or professionals. Now, the security of wired networks has become a bigger challenge for experts in this field. There are more and more devices that are connected to the network, and there are also more and more attackers who try to obtain information, disclose it, change it or prevent someone from accessing it. Information security is achieved by fulfilling three main characteristics: confidentiality, integrity, and accessibility. It is not possible to completely prevent a cyber-attack, but we can limit the possibility of an attack occurring in the first place. We must follow rules and good practices which experts recommend. One of the good practices is certainly network segmentation. With network segmentation, we divide the network into several smaller areas, in the case of an attack, the attacker can only move along one segment in the network. Standards and protocols also contribute to network security. Due to complexity, the problem of information protection cannot be solved exclusively with technical measures, but must always be supplemented with other measures, procedures, standards, and policies. In this thesis information security and segmentation are presented. Also, all ISO/IEC 27000 family standards and some major protocols were reviewed and described. The Aruba company and their access points and switches are also presented in this thesis. The main question we asked in this thesis was how easy it is to set up and configure the Aruba access point and configure it securely.
Keywords:security, network, access point, segmentation


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica