Firewall
What is it? Do we need one?
Oxford Hills School District • March 5, 2018
Firewall What is it? Do we need one? Oxford Hills School District - - PowerPoint PPT Presentation
Firewall What is it? Do we need one? Oxford Hills School District March 5, 2018 What is a firewall? Term first used in 1851 Henry Ford used them to protect passengers from engine fires, smoke and heat. Computer networks: a part of a
Oxford Hills School District • March 5, 2018
Term first used in 1851 Henry Ford used them to protect passengers from engine fires, smoke and heat. Computer networks: a part of a computer system or network that is designed to block unauthorized access while permitting authorized communication.
Data firewalls protect machines, people and data on inside from uglies on outside. Allows good stuff to pass through Firewalls distinguish themselves by their ability to:
Viruses Bots Ransomware DDoS attacks Phishing (r.colpitts@msadl7.org) "Dark Overlord" targeting school districts
WatchGuard for a number of years. Too slow, too old. Untangle until two years ago. Became a bottleneck. Crashed frequently. Currently have very limited protection from the NetworkMaine router. Currently protecting payroll via private IP. SIS is protected by NAT and InfiniteCampus.
99% of them used evasion techniques.1
the average cost of breaches was $3.6 million. The cost of cleaning up a small business after it has been hacked is $690,000.4
1 Minerva Labs Research Report 2 Infosecurity Magazine: 360K New Malware Samples Hit the Scene Every Day 3 Identity Theft Resource Center 4 2017 Ponemon Cost of Data Breach Study
Fortunately, I have a large security team! Staff and students A bit of regular training is needed.
Unfortunately, I have a large un-security team! Staff and students A bit of regular training is needed.
Traffic composition Traffic shaping, quality of service (QoS) Google integration Switch and/or WAP integration Reporting
One hour's usage 1/19/2018 7:30am-8:30am
15 minutes of usage 1/19/2018 8:30 - 8:45AM
One hour's usage 1/19/2018 7:50am-8:50am
From 6:45AM 2/15 through 6:30AM 2/16 Why a peak at 8:00PM?
02/15 19:30:00- 02/15 20:29:59 Exacqvision is security camera video traffic. 2 users.
From 6:45AM 2/15 through 6:30AM 2/16
Firewall demo installed in tap mode 21 page report produced analyzing one week of HS traffic in January Good news: no malware detected Bad news: lots of threats, CnC traffic detected
ERate supported* Conferred with 7 vendors Released RFP for each of 6 vendors Developed feature matrix Arrived at rank order of firewalls excluding cost Added in cost to find best mix of features and cost Recommend to Board Budget Committee for inclusion in budget
*Up to ERate limit of $157,000 for HS, but that has to include WiFi also!
Yes, we need a very serious firewall Yes, we can afford a good one Having a firewall is no guarantee of safety! Questions?