19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Safeguard Catalogue - Hardware & Software Remarks<br />

____________________________________________________________________ .........................................<br />

S 4.83 Updating / upgrading of software and<br />

hardware in network components<br />

Initiation responsibility: Head of <strong>IT</strong> Section, <strong>IT</strong> Security Management<br />

Implementation responsibility: Administrators<br />

Updating software can eliminate vulnerabilities and extend functions. This<br />

applies, for example, to the operating software of active network components<br />

such as switches and routers, as well as network management software. An<br />

update is especially necessary on the detection of vulnerabilities which might<br />

affect the secure or reliable operation of the network, if a fault occurs<br />

repeatedly, or if a function needs to be extended for security-related or<br />

technical reasons.<br />

Upgrading of hardware can also be advisable in certain cases, for example, if a<br />

new version of a switch provides a higher transfer and filter rate. Such<br />

measures can, under certain circumstances, increase the availability, integrity<br />

and confidentiality of data.<br />

Before an update or upgrade is performed, however, the functionality,<br />

interoperability and reliability of the new components must be examined<br />

thoroughly. This is done best in a physically isolated test network, before the<br />

updated or upgraded product is actually put into regular operation. (refer to S<br />

4.78 Careful modifications of configurations).<br />

Additional controls:<br />

- Are updates and upgrades checked for proper interoperability with existing<br />

components before being put into productive operation?<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!