Nicht aus der Schweiz? Besuchen Sie lehmanns.de
Securing VoIP Networks - Peter Thermos, Ari Takanen

Securing VoIP Networks

Threats, Vulnerabilities, and Countermeasures
Buch | Softcover
384 Seiten
2007
Addison-Wesley Educational Publishers Inc (Verlag)
978-0-321-43734-1 (ISBN)
CHF 71,75 inkl. MwSt
  • Titel ist leider vergriffen;
    keine Neuauflage
  • Artikel merken
InSecuring VoIP Networks, two leading experts systematically review the security risks and vulnerabilities associated with VoIP networks and offer proven, detailed recommendations for securing them. Drawing on case studies from their own fieldwork, the authors address VoIP security from the perspective of real-world network implementers, managers, and security specialists. The authors identify key threats to VoIP networks, including eavesdropping, unauthorized access, denial of service, masquerading, and fraud; and review vulnerabilities in protocol design, network architecture, software, and system configuration that place networks at risk. They discuss the advantages and tradeoffs associated with protection mechanisms built into SIP, SRTP, and other VoIP protocols; and review key management solutions such as MIKEY and ZRTP. Next, they present a complete security framework for enterprise VoIP networks, and provide detailed architectural guidance for both service providers and enterprise users.

 

1       Introduction

2       VoIP Architectures and Protocols

3       Threats and Attacks

4       VoIP Vulnerabilites

5       Signaling Protection Mechanisms

6       Media Protection Mechanisms

7       Key Management Mechanisms

8       VoIP and Network Security Controls

9       A Security Framework for Enterprise VoIP Networks

10     Provider Architectures and Security

11     Enterprise Architectures and Security

Peter Thermos is CTO of Palindrome Technologies, which provides information security consulting services to government and commercial organizations. Peter started his career at Bellcore (now Telcordia) as a member of the technical staff and later as a principal technical expert on key information security and assurance tasks. He is a frequent speaker at conferences and industry forums including the IEEE, MIS, IEC, ISACA, VON, and others. Peter is also known for his contributions to the security community for discovering software vulnerabilities, the release of SiVuS (The First VoIP Vulnerability Scanner) and the vopsecurity.org Forum. Peter holds a Masters Degree in Computer Science from Columbia University where he is currently furthering his graduate studies.   Ari Takanen is founder and CTO of Codenomicon. Since 1998, Ari has focused on information security issues in next-generation networks and security critical environments. He began at Oulu University Secure Programming Group (OUSPG) as a contributing member to PROTOS research that studied information security and reliability errors in WAP, SNMP, LDAP, and VoIP implementations. Ari and his company, Codenomicon Ltd. provide and commercialize automated tools using a systematic approach to test a multitude of interfaces on mission-critical software, VoIP platforms, Internet-routing infrastructure, and 3G devices. Codenomicon and the University of Oulu aim to ensure new technologies are accepted by the general public, by providing means of measuring and ensuring quality in networked software. Ari has been speaking at numerous security and testing conferences on four continents and has been invited to speak at leading universities and international corporations.

Chapter 1: Introduction . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .1

Chapter 2: VoIP Architectures and Protocols . . . . . . . . . . . . . . . . . .29

Chapter 3: Threats and Attacks . . . . . . . . . . . . . . . . . . . . . . . . . . . .53

Chapter 4: VoIP Vulnerabilities . . . . . . . . . . . . . . . . . . . . . . . . . . .127

Chapter 5: Signaling Protection Mechanisms . . . . . . . . . . . . . . . . .165

Chapter 6: Media Protection Mechanisms . . . . . . . . . . . . . . . . . . .217

Chapter 7: Key Management Mechanisms . . . . . . . . . . . . . . . . . . .231

Chapter 8: VoIP and Network Security Controls . . . . . . . . . . . . . .263

Chapter 9: A Security Framework for Enterprise VoIP Networks . .297

Chapter 10: Provider Architectures and Security . . . . . . . . . . . . . . .315

Chapter 11: Enterprise Architectures and Security . . . . . . . . . . . . . .334

Index . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .345

Erscheint lt. Verlag 16.8.2007
Verlagsort New Jersey
Sprache englisch
Maße 178 x 234 mm
Gewicht 540 g
Themenwelt Informatik Netzwerke Sicherheit / Firewall
Mathematik / Informatik Informatik Web / Internet
Technik Nachrichtentechnik
ISBN-10 0-321-43734-9 / 0321437349
ISBN-13 978-0-321-43734-1 / 9780321437341
Zustand Neuware
Haben Sie eine Frage zum Produkt?
Mehr entdecken
aus dem Bereich
Das Lehrbuch für Konzepte, Prinzipien, Mechanismen, Architekturen und …

von Norbert Pohlmann

Buch | Softcover (2022)
Springer Vieweg (Verlag)
CHF 48,95