0% found this document useful (0 votes)
8 views2 pages

Network Security Assignment

The document discusses the importance of SNMP (Simple Network Management Protocol) for monitoring network hardware and ensuring system health through a manager-agent model. It highlights the security risks associated with compromised routers, including breaches of confidentiality, integrity, and availability, and suggests countermeasures like complex passwords and Access Control Lists. Additionally, it emphasizes the need for a layered defense in infrastructure security using tools like firewalls, intrusion detection systems, and network segmentation to protect enterprise networks from cyber threats.

Uploaded by

pepakayalayasasvinivastarun.ai
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
8 views2 pages

Network Security Assignment

The document discusses the importance of SNMP (Simple Network Management Protocol) for monitoring network hardware and ensuring system health through a manager-agent model. It highlights the security risks associated with compromised routers, including breaches of confidentiality, integrity, and availability, and suggests countermeasures like complex passwords and Access Control Lists. Additionally, it emphasizes the need for a layered defense in infrastructure security using tools like firewalls, intrusion detection systems, and network segmentation to protect enterprise networks from cyber threats.

Uploaded by

pepakayalayasasvinivastarun.ai
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

ID: 2300032005

ASSIGNMENT 1
Network Management and Security

1. The Role of SNMP in Managing and Monitoring Networks


In a typical enterprise setup, SNMP (Simple Network Management Protocol) is essential
for keeping tabs on various hardware like routers, switches, servers, and even printers.
The system operates on a straightforward ”manager and agent” model: software agents
live on the devices themselves, while a central manager gathers all the data.
This setup allows network admins to keep a close eye on things like performance levels,
bandwidth consumption, and overall system health in real-time. One of the biggest perks
is that it can catch issues early by triggering alerts the moment something goes wrong.
Basically, SNMP simplifies the whole management process by providing a central hub for
monitoring and making it much faster to troubleshoot problems across the network.

2. How a Compromised Router Affects Security and Countermeasures


If someone manages to compromise a router, it hits the three main pillars of network
security: confidentiality, integrity, and availability.
– Confidentiality is breached when an attacker intercepts sensitive info—like login
credentials or private messages—as it flows through the router.
– Integrity takes a hit if the attacker starts tampering with routing tables or data pack-
ets, which can send traffic to the wrong place or change the actual content of the
data.
– Availability is threatened if they launch a denial-of-service (DoS) attack, essentially
knocking the network offline for everyone.
To keep routers safe, it’s important to use complex passwords, keep the firmware up to
date, and shut down any services that aren’t being used. Setting up solid Access Control
Lists (ACLs) and keeping an eye on the physical hardware are also key steps in building a
strong defense.

3. Using Infrastructure Security to Protect Enterprise Networks


Infrastructure security is really about building a layered defense to shield a network from
cyber threats. This usually involves a mix of tools like firewalls, intrusion detection/pre-
vention systems, and network segmentation.
– Firewalls act as the first line of defense, filtering through traffic to keep unauthorized
users out.
– Intrusion Detection Systems are there to spot any red flags or suspicious patterns
that suggest an attack is happening.
– Network Segmentation is another great tactic; by dividing the network into smaller
sections, you can contain a breach so it doesn’t spread to critical systems.
When you combine these with regular software patching and secure configurations, you
end up with a network environment that is much more stable and secure against modern

1
threats.

You might also like