CIO Today

CIO Today Network Sites:   Top Tech News  |   CIO Today   |   Mobile Tech Today   |   Data Storage Today
Daily Briefing for Technology's Top Decision-Makers
Tuesday, February 9th 
Home
Enterprise Software
Enterprise Hardware
Network Security
Compliance
CRM Systems
Data Storage
Chips & Processors
Operating Systems
Communications
World Wide Web
Wireless Tech
Small Business
CIO Issues
Business Briefing
After Hours
Press Releases
 

Advertisement
Data Security

Top Open-Source Security Applications

Top Open-Source Security Applications
June 14, 2005 4:40PM

Bookmark and Share
According to most security professionals, a top-tier, open-source security tool must have sufficient history to allow a practitioner to use it with confidence. And it must have a sufficiently large developer base to ensure that fixes will be available in light of discovered vulnerabilities.


Those responsible for enterprise Relevant Products/Services security are increasingly turning to open-source applications in lieu of security products based on proprietary code -- and for many good reasons.

"Where open-source tools have an advantage in an enterprise is in their timeliness," said cryptography guru Ed Moyle of Security Curve. "Since no budget has to be allocated to deploy an open-source tool, it can often hit the ground faster than a commercial counterpart."

On the other hand, there is the question of accountability, Moyle noted. "Since there is no commercial entity overseeing a tool, on whom can the enterprise place pressure for added features or support?"

According to most security professionals, a top-tier, open-source security tool must have sufficient history to allow a practitioner to use it with confidence. And it must have a sufficiently large developer base to ensure that fixes will be available in light of discovered vulnerabilities.

Also, it must have a reasonably large user base so that support questions will already have been answered in a public forum. But there are many tools that meet these requirements and are in fact deployed at many large companies.

Tackling Basic Security Issues

Anthony Nadalin, Chief Security Architect for IBM's software group, recommends Bouncy Castle crypto interfaces and OpenSSL -- an open-source implementation of the secure Relevant Products/Services sockets layer (SSL) and transport layer security (TLS) protocols.

"What most customers are looking for are secure, reliable transactions," Nadalin said. Bouncy Castle and OpenSSL form the basis for crypto and transport-level security, Nadalin said, which is one of the base requirements every customer Relevant Products/Services has.

Indeed, OpenSSL is at the top of nearly everyone's list. "I don't think the impact of OpenSSL can be overstated," said Yankee Group senior analyst Andrew Jaquith. "It single-handedly democratized encryption by making a very high-quality implementation available for everyone to use -- and all for free."

OpenSSL is commercial-grade and interoperates with digital certificates issued by public certificate authorities like VeriSign, Thawte and GoDaddy. "Equally important, it includes the ability to generate your own private certificates for testing purposes," he said.

OpenSSL also includes a library of basic crypto functions essential for validating the integrity of downloads from third-party sites via checksum algorithms.

Remote Connectivity

OpenSSH is another software package that comes highly recommended. This open-source implementation of the Secure SHell (SSH) session technology is designed to let administrators and users open a command shell on a remote host. (continued...)

1  |  2  |  3  |  4  |  5  |  Next Page >

Advertisement



 Data Security
1. China Busted Hacker-Training Site
2. FBI Tackles Haiti-Relief Scams
3. Patch Tuesday Will Tie MS Record
4. Google Apps Controls Mobile Devices
5. Torrent Traps Used To Harvest Logins


advertisement


 Most Popular Articles
1. Facebook Users Can Get McAfee Virus Protection
2. Reporters Invited To an Apple Event Set Next Week
3. New York Times May Charge for Its Online Content
4. Adobe, Oracle Make Up for Light MS Patch Tuesday
5. Zuckerberg's Comments Unleash Firestorm of Dissent


advertisement

Have an informed opinion on this story?
Send a Letter to the Editor.
We want to know what you think.
Send us your Feedback.

 Related Topics  Latest News & Special Reports

  MS: Russian Pirates Scamming Us
  Google May Make Gmail More Social
  Analysts Expect iPad Price To Drop
  China Busted Hacker-Training Site
  Nook E-Reader Heads to Retail Stores

 Technology Marketplace
Compliance
Stand out from other IS Professionals and increase your earning potential.®).
 
Enterprise Hardware
Now is the best time to buy a new APC Smart-UPS!
HP ProLiant G6 Servers: Perform like a superstar, Save like an accountant www.hp.com
 
Enterprise I.T.
Learn how Microsoft server upgrades can create efficiencies
Stand out from other IS Professionals and increase your earning potential.®).
 
Hardware
Find out why now is the best time to buy a new APC Smart-UPS!
 
Microsoft/Windows
Read about how to add efficiencies with Microsoft Virtualization.
 
Network Security
AT&T Synaptic Compute as a Service. Boost your power on demand.
 
Mobile Enterprise Spotlight

Analysts See iPad Price Drop, with Some Cannibalization
Just weeks before Apple officially rolls out the iPad, financial analysts are making pricing predictions. But could the analysis itself hinder the initial demand for the pricey tablet computer?

Bar Codes Go Mobile, Get Hip Again
For decades, retailers have used patterns of black dots and lines to encode data onto products. Now, bar codes are gaining favor as an easy way for cell-phone users to view ads and other data instantly.

'Dead Simple, Dirt Cheap' JooJoo Tablet Shipping Soon
The JooJoo, a web-browsing tablet device that is the subject of a high-profile legal dispute, appears on track to reach buyers at the end of February, but the tablet scene has dramatically changed.

Advertisement
Enterprise Software Spotlight

Google May Add Facebook, Twitter Links to Gmail
Google will reportedly roll more social-networking features into Gmail, the fastest-growing e-mail service. The new features could save users the trouble of switching to Facebook or Twitter.

SAP CEO Abruptly Resigns; Co-CEOs Will Take Over
Business-software maker SAP announced an abrupt strategic shift in the corporate suite with Léo Apotheker resigning as CEO, to be replaced by co-CEOs Bill McDermott (left) and Jim Hagemann Snabe (right).

Cybersecurity Vendors Look Hot in 2010
Tech-security companies are poised to become Wall Street darlings this year, thanks in part to Google's tiff with China, which reinforced an already positive outlook for major security vendors.

Advertisement
Navigation
CIO Today
Home/Top News | Enterprise Software | Enterprise Hardware | Network Security | Compliance | CRM Systems | Data Storage
Chips & Processors | Operating Systems | Communications | World Wide Web | Wireless Tech | Small Business | CIO Issues
Business Briefing | After Hours | Press Releases
Also visit these Enterprise Technology Sites
Top Tech News | CIO Today | Mobile Tech Today | Data Storage Today

Services:
FreeNewsFeed | Free Newsletters | Free Whitepapers | XML/RSS Feed

About CIO Today Network | How To Contact Us | Article Reprints | Services for PR Pros (In partnership with NewsFactor) | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2010 CIO Today. All rights reserved. Article rating technology by Blogowogo.