Quantcast
Channel: Symantec Connect - ブログエントリ
Viewing all 5094 articles
Browse latest View live

Chafer:最近多次攻击显露出强大的野心

$
0
0
这家总部位于伊朗的网络犯罪团伙非常活跃,为了对目标进行大规模监视,将魔爪向上伸至通信和运输供应链。

続きを読む

一般数据保护条例中需要了解的六大事项

$
0
0
距离“一般数据保护条例”(GDPR)正式实施只有不到90天的时间,您的公司需要对这次大规模法规更改做以准备,从而更好地处理和保护个人资料。请先从以下这个实用的小清单开始着手吧。

続きを読む

成为网络威胁情报分析师的六大技能

$
0
0
如果您考虑从事网络威胁情报职业,幸运之神定会眷顾与您。对威胁情报分析师的需求达到了历史最高水平。但是如何分辨分析师的水平高低呢?

続きを読む

優秀な脅威情報アナリストに必要な 6 つのスキル

$
0
0
サイバー脅威インテリジェンスでキャリアを積もうとお考えなら、時は熟しました。脅威インテリジェンスの需要はこれまでにないほど高くなっていますが、優秀なアナリストとして突出するには、何が必要なのでしょうか。

続きを読む

观点:端点防护平台的Gartner魔力象限

$
0
0
网络攻击的数量和复杂性不断提高。网络攻击和规定多变性带来全面影响。

続きを読む

一般データ保護規則(GDPR)について知っておきたい 6 つのこと

$
0
0
移行期間が終わって GDPR が施行されるまで 90 日を切りました。個人データの処理と保護に関する規制の大変化に対して、備えはできていますか。この記事でチェックしてみましょう。

続きを読む

2018 年 2 月の最新インテリジェンス

$
0
0
攻撃グループ「Chafer」が盛んな活動を続け、全世界のスパム率は下がった一方、メールマルウェアはわずかながら上昇に転じました。

続きを読む

2018年2月最新情报

$
0
0
Chafer网络攻击团伙仍非常活跃,垃圾邮件比例有所下降,恶意软件电邮比例再次上升。

続きを読む

微软“周二补丁日” — 2018年3月

業界展望: Gartner、エンドポイント保護プラットフォーム部門のマジッククアドラントを発表

$
0
0
サイバー攻撃は増加と多機能化の傾向を強めており、攻撃と法令の変動の大きさは、あらゆる地域と業種に影響しています。

続きを読む

Inception Framework:仍然活跃在代理服务器背后

$
0
0
在过去的三年里,这个网络间谍团伙仍保持活跃,使用云和物联网藏形匿迹。

続きを読む

マイクロソフト月例パッチ(Microsoft Patch Tuesday)- 2018 年 3 月

$
0
0
今月は、74 個のパッチがリリースされており、そのうち 15 件が「緊急」レベルです。

続きを読む

Fakebank新变体拦截银行用户电话并转拨给诈骗者

$
0
0
Fakebank恶意软件的一个新变体可以拦截安卓用户与银行间的往来电话。

続きを読む

Inception Framework: プロキシの背後に隠れ、今もなお盛んに活動中

$
0
0
3 年以上前から生き残っているスパイ集団が、クラウドや IoT を駆使して公然と身を隠し続けています。

続きを読む

銀行との通話を傍受して詐欺師と対話させる、Fakebank の新しい亜種が登場

$
0
0
Fakebank マルウェアの新しい亜種は、Android ユーザーの銀行関連の着信と発信を傍受する機能を備えています。

続きを読む

ISTR 23:深入了解网络安全威胁大环境

ISTR 23:深入瞭解網路安全威脅局勢

基于浏览器的数字货币挖掘可以不用浏览器?

$
0
0
恶意软件启用基于网页的加密货币挖矿器,且没有使用浏览器的任何迹象。

続きを読む

ブラウザベースでありながらブラウザを使わない暗号通貨マイニングが登場

$
0
0
表示上ではブラウザが使われているとわからないまま、ブラウザベースの暗号通貨マイナーを起動するマルウェアが登場しました。

続きを読む

12 Things to Look for in a Managed PKI Solution, Part 1

$
0
0
Publish to Facebook: 
No

This is the first part of a four-part series covering twelve fundamentals for choosing a managed PKI solution, and questions to ask in the buying process.

The purpose of this blog is to make you aware that not all Managed PKI providers are the same. In fact, there are some pretty significant differences between DigiCert’s offerings relative to the competition that you wouldn’t see by comparing data sheets. DigiCert’s key advantage is that the Symantec Managed PKI was designed as a service from the ground up as opposed to the competition, that have built their service from legacy on premise software. While the data sheets might look similar, over the next few weeks, we will highlight some of the fundamental advantages of Symantec Managed PKI.

When it comes to Public Key Infrastructure (PKI), organizations have two deployment options: 1) they can opt for an in-house on-premise solution, or 2) a cloud-based service like Symantec Managed PKI*. There are many benefits to a Managed PKI Service, including faster time to deployment, lower total cost of ownership, and leveraging operational excellence.

On Premise vs Managed PKI

1. Shared vs. Dedicated customer PKI roots

DigiCert performs an independent 3rd party audited Root Key Generation Ceremony (RKGC) for every customer we bring on to the service. In fact, DigiCert performs over 1000 key signing ceremonies every year; more than any other Managed PKI provider in the world. Some providers will “partition” their PKI, and host multiple customers under the same Root. The Root CA is your trust anchor; and it shouldn’t be shared.

2.Timeliness

One of the key benefits of a Managed Service is that your Certificate Authority (CA) can be operational much faster than trying to set one up on premise. DigiCert can bring a new customer on to our Managed Service in as few as 10 days from the processing of your Purchase Order. Under special circumstances, we can have it operational even sooner. Competing service providers are typically operational in 8-12 weeks, and don’t always meet that deadline.

3. Access to Public trust

In addition to your own private root of trust, DigiCert’s standard offering also provides you with access to a public root, and an Adobe Approved Trust List (AATL) , all accessible and managed from the same web based Administrative portal.  Access to these additional roots enables organizations to meet a variety of additional Enterprise use cases that require external trust. For example, trusted e-mail digital signatures, Adobe document signing, etc. Competing solutions typically only offer private roots of trust, or require you to issue publicly trusted user certificates from a separate portal.

4. Broad revocation support

DigiCert supports both Online Certificate Status Protocol (OCSP) and traditional Certificate Revocation Lists (CRL) as part of our standard service. Some of the competing solutions will only offer CRL based checking, and charge extra for OCSP.

Questions to Ask

Here are some questions to ask your potential Managed PKI service provider:

•Do you offer you a shared “partitioned” PKI root, or do you only offer dedicated PKI roots?

•Do you perform a root key generation ceremony for every customer you bring on to your service?

•How quickly is the service operational from the time you process my purchase order?

•Do you have a proven track record of meeting your stated timelines?

•Can you offer me different roots of trust for all of my Enterprise use cases from a single Administrative portal?

•Do you include both OCSP and CRL based revocation checking capabilities as part of your service, or is it an additional charge?

Part 2 in this series will cover some of the DigiCert advantages around Administration and Deployment. Would you need to open a support ticket every time you make an Administrative change to the CA?  I'll cover this and two other fundamentals for choosing a PKI provider in the next post.

*On October 31, 2017, DigiCert, Inc. acquired from Symantec Corporation the business of providing and supporting Symantec’s Website Security and PKI products and services.

Viewing all 5094 articles
Browse latest View live




Latest Images