Newsletters Subscriptions Media Kit About Us Contact Search Home

TFH
Special Security Edition
Volume 12, Number 33 -- August 19, 2003
   In This Issue

Grab your beverage of choice, get comfortable, and read this newsletter.

Sponsored By
MKS

MKS Delivers Process-Centric Software Change Management for iSeries Development via IBM WDSc

Are you bringing your iSeries apps to the Web? Looking to incorporate Java development and new technologies? Can your existing change management solution scale to meet these new challenges?

Learn about MKS's new plug-ins for IBM WDSc, providing a workflow-enabled change management solution for Native and eBusiness development, from within a single graphical interface.

FREE white paper: www.mks.com

Sponsored By
SOFTLANDING & TANGO/04

Our Security Solution Will Knock
Your SOX Off

Sarbanes Oxley compliance as easy as Point and Click! Dynamic security control & auditing in real time for iSeries & Windows.

· Central multi system graphical console
· Real time detection of:
- Changes in user profiles
- Modified or deleted objects
- Persistent internal logons
· Extensive reporting capabilities
· Automated responses to critical problems

Contact Tango/04 or SoftLanding for more information TODAY!

Lock the Gate Before the Cow Gets Out
by Dan Burger

It's a tricky technological tango building and maintaining modern IT infrastructures. And it can't be done effectively without a watchful eye on security issues. Damages related to security breeches have grown significantly over the last few years, setting off a trend in IT budgeting that places bigger numbers on line items labeled security. This comes at a time when corporate spending receives close scrutiny, yet the amount spent on security continues to rise and the rate of spending in this area is predicted to climb. READ MORE >

VPNs Put Trust in Untrusted Networks
by Jim Fey

The virtual private network, or VPN, is a technology that many of us have heard of, or have used in business and perhaps even in our homes. VPNs are in our workplaces and homes to help safely move information from "untrusted" network segments (like the Internet) to "trusted" network segments (like company LANs). Telecommuters and business travelers who are outside of company facilities find VPNs, or secure tunnels, a helpful way to supply and obtain corporate resources and information. But VPN technology secures more than just remote clients accessing centralized company resources. READ MORE >

Sponsored By
POWERTECH GROUP

Definitive iSeries Security

As the number of security incidents reported has increased dramatically, new IT security-related regulatory bills are being passed with increased frequency.

We understand the difficulty involved in assuring compliance with these laws.

To learn more about these regulations and assure your AS/400 is compliant click here
www.powertech.com

Sponsored By
BYTWARE

I thought our system was secure.

Then I installed StandGuardAudit and StandGuard Anti-Virus. I found 53 users with delete authority, 3,000+ viruses on the IFS, and security policies being bypassed. I knew I had to correct things fast!

I read the FREE white paper "Top Security Issues for the IFS" and got the StandGuard Security Suite. Now all is well.

www.bytware.com

Vendor-Inflicted Security Exposures
by John Earl

Most iSeries shops run some kind of purchased software package from the wide array of independent software vendors with applications designed specifically for the OS/400 operating system. Virtually every iSeries machine runs purchased packaged software, whether it's an ERP or CRM system that is core to your business operations or a nuts-and-bolts accounting package or maybe just an operations utility that helps you manage your machine better. READ MORE >

Single Sign-On Myths
by Pat Botz

I have talked with many IBM iSeries users and independent software vendors about the eServer single sign-on strategy and the iSeries OS/400 implementation of that strategy. It has become apparent that there are several misconceptions. In many instances it is easier to understand something by learning what it is not, so that's the road this article is going down. READ MORE >

Sponsored By
PATRICK TOWNSEND & ASSOCIATES

SECURE INTERNET DATA EXCHANGE WITH ALL YOUR TRADING PARTNERS

Easy-to-use native AS/400 solutions that fit your budget!
· Secure FTP with SSL/TLS
· PGP/DES Encryption
· AS2 EDI-INT, HTTP/HTTPS Delivery
· Credit Card Authorization
· XML/EDI Translation

Our customers include:
Costco, IBM, Hyundai, Williams-Sonoma, Fiserv, Visa, PMI Group, and many more. . .

Visit us at www.patownsend.com

Sponsored By
VISION SOLUTIONS

CIBC's Amicus Bank Protects Business Critical Financial Data & Applications with Vision Solutions' Vision Suite®

Discover how Amicus Bank protects itself from the potential customer service disaster of planned and unplanned downtime with Vision Suite.

Learn how Vision Suite makes Fiserv's ICBS application highly available and protects customers valuable financial data.

To learn more visit:
www.visionsolutions.com

Securing the Integrated File System
by Michael Grant

You may have heard there's a security problem with the Integrated File System, or IFS. That's true. It's just not 100 percent accurate. To get to the core of this potentially damaging problem, you have to understand that this is essentially a self-inflicted wound. It stems from a common security misconfiguration that allows users to inadvertently share files with anyone else who has access to the IFS. The fix is relatively simple. READ MORE >

Hacking iSeries Network Servers: Exposures and Solutions
by Dan Riehl

Is your iSeries system secure? The answer is never a simple yes or no. We try to make our systems as secure as they need to be, keeping in mind that the return on investment, based on staff time and software purchases, is inherently fuzzy. Trying to get a grip on security is a difficult thing, as security requirements are evolving as new threats are uncovered. READ MORE >



Attend Security Focus at COMMON
in Orlando, September 7 - 11, 2003

Click here for details.



Reader Feedback and Insights

We value your feedback and insights. Feel free to send a letter to the editor. Letters may be printed, unless otherwise specified, and edited for clarity or length. READ MORE >


Editor: Timothy Prickett Morgan
Managing Editor: Shannon Pastore
Contributing Editors: Dan Burger, Joe Hertvik, Kevin Vandever,
Shannon O'Donnell, Victor Rozek, Hesh Wiener, Alex Woodie
Publisher and Advertising Director: Jenny Thomas
Advertising Sales Representative: Kim Reed
Contact the Editors: To contact anyone on the IT Jungle Team
Go to our contacts page and send us a message.

Subscription Information: To unsubscribe, change your email address, or sign up for any of Guild Companies' free e-newsletters, visit http://www.itjungle.com/sub/subscribe.html

THIS ISSUE
SPONSORED BY:

MKS
SoftLanding & Tango/04
PowerTech Group
Bytware
Patrick Townsend & Associates
Vision Solutions


BACK ISSUES

TABLE OF
CONTENTS
Lock the Gate Before the Cow Gets Out

VPNs Put Trust in Untrusted Networks

Vendor-Inflicted Security Exposures

Single Sign-On Myths

Securing the Integrated File System

Hacking iSeries Network Servers: Exposures and Solutions






Copyright © 1996-2008 Guild Companies, Inc. All Rights Reserved.