Amazon.com: Designing and Building Enterprise DMZs (9781597491006): Hal Flynn: Books


or
Sign in to turn on 1-Click ordering.
or
Amazon Prime Free Trial required. Sign up when you check out. Learn More
Sell Back Your Copy
For a $1.71 Gift Card
Trade in
More Buying Choices
Have one to sell? Sell yours here
Designing and Building Enterprise DMZs
 
 
Tell the Publisher!
I'd like to read this book on Kindle

Don't have a Kindle? Get your Kindle here, or download a FREE Kindle Reading App.

Designing and Building Enterprise DMZs [Illustrated] [Paperback]

Hal Flynn (Author)
2.0 out of 5 stars  See all reviews (1 customer review)

Price: $59.95 & this item ships for FREE with Super Saver Shipping. Details
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
In Stock.
Ships from and sold by Amazon.com. Gift-wrap available.
Want it delivered Tuesday, February 28? Choose One-Day Shipping at checkout. Details
Textbook Student FREE Two-Day Shipping for students on millions of items. Learn more

Formats

Amazon Price New from Used from
Paperback, Illustrated $59.95  

Book Description

December 6, 2006 1597491004 978-1597491006 1
This is the only book available on building network DMZs, which are the cornerstone of any good enterprise security configuration. It covers market-leading products from Microsoft, Cisco, and Check Point.

One of the most complicated areas of network technology is designing, planning, implementing, and constantly maintaining a demilitarized zone (DMZ) segment. This book is divided into four logical parts. First the reader will learn the concepts and major design principles of all DMZs. Next the reader will learn how to configure the actual hardware that makes up DMZs for both newly constructed and existing networks. Next, the reader will learn how to securely populate the DMZs with systems and services. The last part of the book deals with troubleshooting, maintaining, testing, and implementing security on the DMZ.

· The only book published on Network DMZs on the components of securing enterprise networks

· This is the only book available on building network DMZs, which are the cornerstone of any good enterprise security configuration. It covers market-leading products from Microsoft, Cisco, and Check Point

· Provides detailed examples for building Enterprise DMZs from the ground up and retro-fitting existing infrastructures

Customers Who Viewed This Item Also Viewed


Product Details

  • Paperback: 656 pages
  • Publisher: Syngress; 1 edition (December 6, 2006)
  • Language: English
  • ISBN-10: 1597491004
  • ISBN-13: 978-1597491006
  • Product Dimensions: 8.9 x 7 x 2.1 inches
  • Shipping Weight: 2.3 pounds (View shipping rates and policies)
  • Average Customer Review: 2.0 out of 5 stars  See all reviews (1 customer review)
  • Amazon Best Sellers Rank: #1,198,201 in Books (See Top 100 in Books)

 

Customer Reviews

1 Review
5 star:    (0)
4 star:    (0)
3 star:    (0)
2 star:
 (1)
1 star:    (0)
 
 
 
 
 
Average Customer Review
2.0 out of 5 stars (1 customer review)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

7 of 7 people found the following review helpful:
2.0 out of 5 stars large, but not well executed, October 31, 2006
This review is from: Designing and Building Enterprise DMZs (Paperback)
i used to install firewalls as a consultant, and i spent a lot of time looking at varius configurations. in the intervening years, i've had the chance to keep current and examine a number of firewall devices for new features, configurations, and also look at some of the changes new technologies (ie WiFi) have brought. all in all, i think i was was pretty well prepared to look at "Designing and Building Enterprise Dmzs" from the angle of someone who's a moderate level firewall user.

i think it's fair to say that i'm disappointed in this new volume from Syngress, for numerous reasons. but before i get to the nits and complaints, i'll start with what i did like.

the book is large, nearly 700 pages of text covering a number of major commercial firewall products, such as checkpoint, nokia, microsoft, cisco, juniper netscreen, and sun. i like th fact that the authors were ambitious (more on that later), you do wind up with a lot of information in a single volume. if you've read firewalls books before, like the canon from oreilly, then you know a lot about firewalls, but you've probably understood that things are changing. new technologies require new solutions, and new offerings have hit the market. firewalls are now more abundant, more feature filled, and this book does a good job of tackling these products with, often, a good attempt at key coverage.

what i also like about this book is that it's not only about technologies, it's about management and about network layouts. this book doesn't pretend that there's one network, but instead shows how various approaches for various needs can be applied. the authors try to show you how each product's features can support those requirements, and what technologies can be used to guard access or secure hosts in a DMZ. this isn't just a book about firewalls and products.

ok, on to the complaints. you know a book is bad when you spot errors such as a bad CIDR specification for RFC 1918 address space (table 1.4), lots of port lists, and a brief primer on "servers" an services buried deep in a chapter on security cisco routers (chapter 11, page 540). i suspect the last point is due to the numerous authors in the book and a failure to find a cohesive structure, but that's a major failing of the book. it doesn't find a consistent voice and doesn't provide consistent coverage of the topics.

some chapters spend more time reviewing marketing materials for products (ie the chapter on juniper netscreen devices, chapter 9) than on getting down to a real feature comparison. this is a real failure of this book. the authors have a chance to cover all major commercial firewalls out there in a clear and unified way, taking an approach that can unify solutions across all, and haven't done so. you wind up with inconsistent coverage and have difficulty in finding the same information in any of the chapters. it's very tough to have multiple authors writing a book, but the editors should have budgeted time to provide a cohesive voice or enforced coverage standards. the reader would have benefitted dramatically for that.

as is often the case with syngress books, the screenshots are too often poorly done. again, this seems to be a function of the chapter and, i'm presuming, the author (based on their stated strengths in the intro to the book). the chapters using web-based and UNIX tools are often filled with poor quality, full screen screenshots that are illegible due to the scaling. the chapters on windows-based tools often have only a small window as a screenshot, enabling better legibility. care needs to be taken for these sorts of things.

the quality of the writing is ok, but it could be better overall. again, a function of the authors, i think, and not a strong editing job. often the writing is not very clear or well organized, and overall the book suffers for it. there's some good info in here, but it's buried under unclear and poorly organized text.

you should look over this book carefully if you're thinking about buying it. this will probably target people in large, heterogeneous environments or people studying for exams. i doubt someone will have all of these technologies in their production environment. however, if you want to see a lot of different firewalls compared, this is worth looking at, but be cautious about buying it.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No

Share your thoughts with other customers: Create your own review
 
 
 
Only search this product's reviews



Inside This Book (learn more)
Key Phrases - Statistically Improbable Phrases (SIPs): (learn more)
access rule, terminal services, server publishing rule, firewall policy, web publishing rule, global catalog, internal properties, package manager, server certificate, application intelligence, transport level security, secure internal communication, server core, network services segment, default internal network, minute drop rate, update the firewall policy, rule name text box, firewall console, advanced content filtering, firewall design, using cpconfig, embryonic limit, stateful failover feature, failover group
Key Phrases - Capitalized Phrases (CAPs): (learn more)
Check Point, Click Next, Sun Solariz, Fast Ethernet, Implementing Wireless, Windows Bastion Hosts, Conceptual Design, Linux Bastion Hosts, Frequently Asked Questions, Gigabit Ethernet, Microsoft Windows, Active Directory, Click Finish, Click Close, Frame Relay, Administrative Tools, Click Add, Fedora Core, Sun Solaris, Solutions Fast Track, Ask the Author, Windows Server, Group Policy, Click Apply, Security Plus
Browse Sample Pages:
Front Cover | Table of Contents | First Pages | Index | Surprise Me!
Search Inside This Book:

What Other Items Do Customers Buy After Viewing This Item?


Tag this product

 (What's this?)
Think of a tag as a keyword or label you consider is strongly related to this product.
Tags will help all customers organize and find favorite items.
Your tags: Add your first tag
 

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 


Active discussions in related forums
Search Customer Discussions
Search all Amazon discussions
   
Related forums


Listmania!


Create a Listmania! list

So You'd Like to...


Create a guide


Look for Similar Items by Category


Look for Similar Items by Subject