| Preface |
|
xiii | |
|
|
|
1 | (25) |
|
|
|
4 | (2) |
|
The OSI Security Architecture |
|
|
6 | (1) |
|
|
|
7 | (4) |
|
|
|
11 | (3) |
|
|
|
14 | (3) |
|
A Model for Internetwork Security |
|
|
17 | (2) |
|
Internet Standards the Internet Society |
|
|
19 | (3) |
|
|
|
22 | (1) |
|
|
|
23 | (1) |
|
Internet and Web Resources |
|
|
23 | (2) |
|
Key Terms, Review Questions, and Problems |
|
|
25 | (1) |
|
|
|
26 | (66) |
|
Symmetric Encryption and Message Confidentiality |
|
|
28 | (31) |
|
Symmetric Encryption Principles |
|
|
29 | (6) |
|
Symmetric Block Encryption Algorithms |
|
|
35 | (8) |
|
|
|
43 | (3) |
|
Cipher Block Modes of Operation |
|
|
46 | (5) |
|
Location of Encryption Devices |
|
|
51 | (1) |
|
|
|
52 | (3) |
|
Recommended Reading and Web Sites |
|
|
55 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
56 | (3) |
|
Public-Key Cryptography and Message Authentication |
|
|
59 | (33) |
|
Approaches to Message Authentication |
|
|
60 | (4) |
|
Secure Hash Functions and HMAC |
|
|
64 | (10) |
|
Public Key Cryptography Principles |
|
|
74 | (4) |
|
Public-Key Cryptography Algorithms |
|
|
78 | (7) |
|
|
|
85 | (1) |
|
|
|
85 | (2) |
|
Recommended Reading and Web Sites |
|
|
87 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
88 | (4) |
|
PART TWO NETWORK SECURITY APPLICATIONS |
|
|
92 | (205) |
|
Authentication Applications |
|
|
94 | (36) |
|
|
|
95 | (18) |
|
X.509 Directory Authentication Service |
|
|
113 | (9) |
|
Public Key Infrastructure |
|
|
122 | (2) |
|
Recommended Reading and Web Sites |
|
|
124 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
125 | (5) |
|
Appendix 4A: Kerberos Encryption Techniques |
|
|
127 | (3) |
|
|
|
130 | (47) |
|
Pretty Good Privacy (PGP) |
|
|
132 | (19) |
|
|
|
151 | (17) |
|
|
|
168 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
168 | (9) |
|
Appendix 5A: Data Compression Using ZIP |
|
|
169 | (3) |
|
Appendix 5B: Radix-64 Conversion |
|
|
172 | (1) |
|
Appendix 5C: PGP Random Number Generation |
|
|
173 | (4) |
|
|
|
177 | (44) |
|
|
|
179 | (2) |
|
|
|
181 | (6) |
|
|
|
187 | (5) |
|
Encapsulating Security Payload |
|
|
192 | (5) |
|
Combining Security Associations |
|
|
197 | (3) |
|
|
|
200 | (10) |
|
Recommended Reading and Web Sites |
|
|
210 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
211 | (10) |
|
Appendix 6A: Internetworking and Internet Protocols |
|
|
212 | (9) |
|
|
|
221 | (36) |
|
Web Security Requirements |
|
|
222 | (3) |
|
Secure Sockets Layer (SSL) and Transport Layer Security (TLS) |
|
|
225 | (18) |
|
Secure Electronic Transaction (SET) |
|
|
243 | (11) |
|
Recommended Reading and Web Sites |
|
|
254 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
255 | (2) |
|
Network Management Security |
|
|
257 | (40) |
|
|
|
258 | (8) |
|
SNMPv1 Community Facility |
|
|
266 | (3) |
|
|
|
269 | (23) |
|
Recommended Reading and Web Sites |
|
|
292 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
293 | (4) |
|
PART THREE SYSTEM SECURITY |
|
|
297 | (84) |
|
|
|
299 | (33) |
|
|
|
301 | (3) |
|
|
|
304 | (12) |
|
|
|
316 | (9) |
|
Recommended Reading and Web Sites |
|
|
325 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
326 | (6) |
|
Appendix 9A: The Base-Rate Fallacy |
|
|
328 | (4) |
|
|
|
332 | (23) |
|
Viruses and Related Threats |
|
|
333 | (11) |
|
|
|
344 | (4) |
|
Distributed Denial of Service Attacks |
|
|
348 | (5) |
|
Recommended Reading and Web Sites |
|
|
353 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
354 | (1) |
|
|
|
355 | (26) |
|
Firewall Design Principles |
|
|
356 | (12) |
|
|
|
368 | (6) |
|
Common Criteria for Information Technology Security Evaluation |
|
|
374 | (4) |
|
Recommended Reading and Web Sites |
|
|
378 | (1) |
|
Key Terms, Review Questions, and Problems |
|
|
379 | (2) |
|
|
|
381 | (9) |
|
Appendix A Some Aspects of Number Theory |
|
|
381 | (5) |
|
Prime and Relatively Prime Numbers |
|
|
382 | (2) |
|
|
|
384 | (2) |
|
Appendix B Projects for Teaching Network Security |
|
|
386 | (4) |
|
|
|
387 | (1) |
|
|
|
388 | (1) |
|
|
|
388 | (1) |
|
|
|
388 | (1) |
|
Reading/Report Assignments |
|
|
389 | (1) |
| Glossary |
|
390 | (6) |
| References |
|
396 | (6) |
| Index |
|
402 | |