Raising the bar Implement very restrictive egress filtering. Use proxies. Watch your proxy, IDS, and network daemon logs. Monitor typical network usage, watch for anomalies. Have a good security policy in place. Fire a few employees for breaking the rules.
Copyright 2003, Bri Hatch of Onsight, Inc.
Presented at SecureWorld Expo, 2003.
Presentation created using vim and MagicPoint.