Ukutshintsha kwenethiwekhi linyathelo elibalulekileyo ekukhuseleni zonke iziseko zophuhliso. Njengoko eyona ndawo iphambili yosulelo lwedatha, ukutshintshwa kwenethiwekhi kunokuba ziithagethi zohlaselo lwe-cyber ukuba kukho ubungozi. Ngokulandela ukulandela ukhuseleko lweyona ndlela ilungileyo, ungayikhusela ulwazi lwenkampani yakho ebaluleke kakhulu ekufikeleleni okungagunyaziswanga kunye nemisebenzi embi.
1. Guqula iziqinisekiso ezingagqibekanga
Uninzi lwezinto eziguqukayo ziza namagama abasebenzisi kunye neephasiwedi ezinokuxhatshazwa ngokulula ngabahlaseli. Ukutshintsha kwezi ziqinisekiso ukuba ezomeleleyo kwaye ezohlukileyo linyathelo lokuqala lokukhusela ukutshintshela kwakho. Sebenzisa indibaniselwano yoonobumba, amanani, kunye nabalinganiswa abakhethekileyo kumandla ongezelelweyo.
2. Khubaza amazibuko angasetyenziswanga
Izibuko elingasetyenziswanga kwi-switch yakho linokungena kwiindawo ezingagunyaziswanga. Ukukhubaza ezi zibuko Thumela nabani na ukuba anganxibelelanisi kwaye ufikelele kwinethiwekhi yakho ngaphandle kwemvume.
3. Sebenzisa i-vlan yecandelo lenethiwekhi
Inethiwekhi yeNdawo yaseKhaya (i-vhls) ikuvumela ukuba ufumane inethiwekhi yakho ibe ngamacandelo ahlukeneyo. Ngokuzikhela iinkqubo ezibuthathaka okanye izixhobo, unokunciphisa umda ukusasazeka kwamanzi kwaye wenze kube nzima ngakumbi kubahlaseli ukufikelela kwizixhobo ezibaluleke kakhulu.
4. Yenza ukhuseleko lwePort
Inqaku lezokhuseleko lwezibuko linokumamela izixhobo ezinokuqhagamshela kwizibuko ngalinye kwiswitshi. Umzekelo, unokuqwalasela izibuko ukuze uvumele iidilesi ezithile ze-MAC ukuthintela izixhobo ezingagunyaziswanga ekufumaneni ukufikelela.
5. Gcina iHlayethi yeFirmware iHlanjisiweyo
Tshintshela abavelisi bamaxesha athile ukukhulula uhlaziyo lwe-filtiware kwi-patch yokhuseleko lwe-patch. Qiniseka ukuba utshintsho lwakho luqhuba i-firmware yakutshanje ekukhuseleni ubungozi obuzimeleyo.
6. Sebenzisa iiprothokholi zolawulo lokhuseleko
Kulumkele ukusebenzisa iiprotocol zolawulo ezingabhalwanga ezifana ne-telnet. Endaweni yoko, sebenzisa iiprothokholi ezikhuselekileyo ezinje nge-ssh (iqokobhe ekhuselekileyo) okanye i-HTTPS ukulawula utshintsho ukukhusela idatha ebuthathaka ukuba ithathelwe ingqalelo.
7. Ukumiliselwa kwezintlu zolawulo lokufikelela (ii-ACLs)
Uluhlu lokulawula ukufikelela lunokuthintela ukugcwala ngaphakathi nangaphandle kokutshintsha ngokusekwe kwiikhrayitheriya ezithile, njengedilesi ye-IP okanye iprotocol. Oku kuqinisekisa ukuba ngabasebenzisi abagunyazisiweyo kuphela kunye nezixhobo zinokunxibelelana nenethiwekhi yakho.
8. Ukubek 'itrafikhi kunye neelogo
Ukubeka iliso kwi-traffikhi yenethiwekhi kunye nokucima izinto rhoqo kwimisebenzi engaqhelekanga. Iipateni ezikrokrelayo ezinje ngee-logo eziphindiweyo zinokubonisa ukophula ukhuseleko.
9. Qinisekisa ukhuseleko lomzimba wokutshintsha
Ngabasebenzi abagunyazisiweyo kuphela kufuneka babe nokufikelela ngokwasemzimbeni kutshintsho. Faka i-switch kwigumbi leseva elivaliweyo okanye iKhabhinethi ukuthintela ukuncipha.
10. Yenza isiqinisekiso sama-802.1x
I-802.1x yinkqubo yolawulo lokufikelela kwinethiwekhi efuna izixhobo zokungqinelana ngaphambi kokufaka inethiwekhi. Oku kongeza umaleko ongezelelweyo wokukhuselwa kwizixhobo ezingagunyaziswanga.
Iingcinga zokugqibela
Ukutshintsha kwenethiwekhi yinkqubo eqhubekayo efuna ukuqhubela phambili kunye nohlaziyo rhoqo. Ngokudibanisa isimo sobuchwephesha sendlela ebalaseleyo, unokunciphisa kakhulu umngcipheko wokophula umthetho. Khumbula, inethiwekhi ekhuselekileyo iqala ngotshintsho olukhuselekileyo.
Ukuba ufuna isisombululo esikhuselekileyo nesinokuthenjwa, ukutshintsha kwethu kuxhotyiswe ngeempawu zokhuseleko eziphambili ukugcina inethiwekhi yakho ikhuselekile.
Ixesha leposi: NgoDE-28 ukuya ku-2424