DHS: Networking Security Worth the Money

By Robert McMillan
Thu, August 07, 2008

IDG News Service —

When it comes to investing in computer security, the U.S. federal government could get a good return on investment by shoring up its networking protocols, according to the man who's been hired to coordinate computer security between federal agencies.

Though Rod Beckstrom said he's still working out his initial plans for his new role as director of the U.S. Department of Homeland Security's National Cybersecurity Center, he said he's been focused on the economics of security and of networking protocols like DNS (Domain Name System) and BGP (Border Gateway Protocol) in particular.

He'd like to see government and industry shore up these widely used but insecure protocols. "We want to invest in protocols because it may be some of the cheapest security dollars we can spend," Beckstrom said, speaking at a keynote address at the Black Hat security conference Thursday. "These are the long-term underlying things that don't take that much money to move forward."

Beckstrom has been looking at the big picture since taking his new job in May. "I'm actually doing some work right now on developing some models on the economics of networks to answer the simple question of 'How valuable is a network?'" he said. "We need to understand this to drive some of the re-architecting of the system."

Beckstrom has a personal interest in security. He was in New York during the Sept. 11 terrorist attacks on the World Trade Center, and his wife was at one point booked on the doomed United Airlines flight 93, which crashed in a Pennsylvania field that day after being hijacked by terrorists. She had rescheduled her flight 10 days earlier.

Being in New York, Beckstrom saw first-hand how critical networks performed in a crisis. Mobile phones stopped working that day, but the low-bandwidth SMS (Short Message Service) system, used by mobile phones to send text messages, kept working.

Beckstrom said that because the SMS system is dependent on the Internet as well, it's important to focus on the plain old telephone system, to have something that works should the Internet be taken out in an attack.

A technology entrepreneur and co-author of a book praising the virtues of decentralized organizations, Beckstrom is a bit of a Washington outsider. "He doesn't look like a typical govvie," said Andrew Cushman, director of security response and outreach at Microsoft, in an introduction to Beckstrom's talk.

Whether he will be able to make Washington's computer systems more nimble and more secure remains to be seen, but at least Beckstrom has a budget now. Congress approved the National Cybersecurity Center's initial funding just last week, he said.

Beckstrom cited DNSSEC (DNS Security), an effort to secure the DNS system, as the type of project that would make a good investment. Although DNSSEC solves many of the problems cited at the heart of the recent widely publicized bug in the DNS system, it is still not widely adopted.

In an interview after his keynote, Beckstrom said that he believes DNSSEC adoption will eventually happen within the federal government. "The question is, does it happen before the big crisis or after?" he said.

As you know, everything is mobile, connected, interactive, and immediate. This is exactly why organizations need a highly agile IT infrastructure in order to keep pace with extreme fluctuations in business demand. This book will help you understand why infrastructure convergence has been widely accepted as the optimal approach for simplifying and accelerating your IT to deliver services at the speed of business while also shifting significantly more IT resources from operations to innovation.
For this white paper, IDC performed an in-depth analysis of the business value of VMware View, defined as the expected ROI associated with the use of the solution as a platform for the targeted deployment of a virtual desktop infrastructure.
This paper explains virtualization, its benefits for mid-sized business and how IBM's virtualization strategy can help these companies reduce costs, improve services and simplify management.
Forrester Research makes recommendations on best practices to optimize branch virtualization and consolidation initiatives. See how a "thin" branch architecture, with key servers, services and applications in the data center that relies on a high-performing WAN connection, can offer the greatest efficiencies.
When trying to achieve continuous compliance with internal policies and external regulations, organizations need to replace traditional processes with a new best practice approach and new innovative technology, such as that provided by IBM Tivoli Endpoint Manager.
IBM Tivoli Endpoint Manager helps organizations automatically manage patches for multiple operating systems and applications across hundreds of thousands of endpoints regardless of location, connection type or status.  
Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as support considerations
Many enterprises have discovered that the use of virtualization to support desktop workloads creates a range of significant benefits. These benefits include price efficiencies, improved IT management and greater agility and choice for end users.

This VMware sponsored webcast with IDC will provide both quantitative measurement of the business value -- defined as the expected ROI -- and qualitative analysis associated with the use of VMware View™. IDC will also provide an analysis of the View Composer and ThinApp™ features of VMware View, including the business value of these solutions and an overview of how they work.

Attend this webcast to learn about:
- Challenges and barriers that might impede the adoption of desktop virtualization
- Navigating roadblocks to facilitate a strategic implementation
- Optimizing qualitative and quantitative benefits to IT and your business
Applications are changing - they're increasingly web-oriented, global in nature and run from multiple device types. Additionally, the volume of data is growing exponentially every year. How do you ensure your applications have fast, accurate, up-to-date information in this new world? Modern applications are data-intensive; delivering data the old way using monolithic databases isn't working. What's needed is a modern approach to data. One that scales-out as needed and delivers predictable high performance, but without sacrificing data consistency or integrity.
VMware View™ 5 simplifies IT management while increasing end user freedom by delivering desktop services from your cloud. Building upon VMware's leadership in desktop virtualization, VMware View 5 delivers a high-performance user experience while giving IT greater policy control.

View this webcast and find out how VMware View 5 can help you:
- Deliver the highest fidelity experience of desktop services across any device and any network
- Simplify and automate IT management, security and control of desktop services
- Reduce the costs associated with your desktop environment
IT professionals are being asked to deliver faster "time-to-value" than ever before. An IDG Research survey found that CIOs are eager to invest in technologies that will enable them to get new applications and services up quickly, achieving faster time-to-value.
Learn how to reduce IT management overhead, ease revision control, guarantee data security, scale systems more quickly and reduce server and software costs.
Newsletter Sign-Up »

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all Newsletters | Privacy Policy
Resource Center