www.appgate.com



























Copyright © 2005-2007 AppGate Network Security AB.
+46 (0)31 - 774 43 50
All rights reserved.
Legal Notice
Comments to webmaster



On this site we are bringing together articles, presentations, white papers and discussion documents, from AppGate and other sources, to create a knowledge base where you will find the current thinking about Deperimeterisation.



E-commerce, security issues challenge network firewall role

Posted by Ellen Messmer, Network World
Jericho Forum ponders future role of traditional firewall
13 September 2007


NEW YORK -- Life behind the network firewall sometimes feels like life behind bars when it comes to todays collaborative e-commerce, which requires the opening of corporate networks to business partners.

Read more here



Jericho In Pictures

Posted by Alex, RiskAnalys.is
http://www.riskanalys.is - A Weblog for Risk Geeks
19 September 2007


"I think that Jericho is interesting, and from a Risk Managment standpoint, not at all something to casually dismiss. But the forum meeting is the reason for all the recent press and discussion..."

Read more here



Jericho Forum Commandments v1.2

De-perimeterisation has happened, is happening and is inevitable; central protection is decreasing in effectiveness
May 2007

The Jericho forum commandments define both the areas and the principles that must be observed when planning for a de-perimeterised future

Download Commandments here



life without firewalls

Abe Singer, Computer Security Manager at San Diego Supercomputer Center
The Usenix Magazine, December 2003

The Myth of Firewalls

"There is a pervasive myth that firewalls are necessary for effective security. Firewalls have become a panacea, and are assumed to magically protect everything. The net result is often that a network is less secure."

Download pdf from The Usenix magazine here



One Size Does Not Fit All: Tailoring Protection with Data Proximate Security

Mary Walker, CSC Federal Sector
2006

Protecting business-critical applications and data in the 21st Century

As reliance on information to drive economic growth increases, the potential impact of threats to the business environment has increased as well. The firewall technology developed to secure network perimeters in the 1990s is now widely regarded as inadequate to unilaterally protect sensitive data and systems in an era which demands constant connectivity between multiple entities.
This paper discusses an approach to providing tailored security to business-critical systems data through the integration of secure network architecture, application and operating system hardening, and administrative controls.
Further, the paper discusses how the costs and benefits of these controls may be evaluated to provide a solution meeting the risk tolerance of a business environment.

Download pdf here



Viktigt skydda sig inifrån

Karin Lindström, Computer Sweden, IDG
October 27, 2006

Ju mer IT integreras i vår vardag, desto fler brott begås också med hjälp av IT. Men det handlar inte enbart om hoten utifrån - en insider med behörigheter till systemen kan göra betydligt större skada för ett företag än hackare och virus.

Read more here (only in Swedish)



BP employees get DIY IT

Andy McCue, silicon.com
October 12, 2006

Oil giant BP is pioneering a "digital consumer" initiative that will give some employees an allowance to buy their own IT equipment and take care of their own support needs.

The initiative is being led by Jim Ginsburgh, vice president of enterprise architecture at BP, who told ZDNet UK's sister site, silicon.com, in an exclusive interview: "You have to be patched to current; your firewall up; be on a current version of antivirus; and not go to inappropriate Web sites. There are consequences...
Read more here



Breaking the barriers to business

Andrew Yeomans, VP Global Information Security Dresdner Kleinwort & Chairman of the Jericho Solutions Working Group
July 4, 2006

Mr. Yeomans gives his view and what the work Jericho Forum is discussing in shaping security for tomorrow’s world

Download (pdf)



What CIOs Can Learn From Mediaeval Castles

Jamie Bodley-Scott, AppGate Network Security
6 June, 2006

Infosecurity experts can learn a lot from mediaeval castle architects, especially how their concentric, multi-layered approach can help CIOs protect key applications and business critical systems. If we compare at the evolution.

Read more here



Lock it or you’ll lose it

Alan Cane, Journalist at FT
30 May, 2006

It is an ugly word, but “de-perimeterisation” should be jangling the nerves of the business world in ways that have nothing to do with its discordant phonetics.
Read more here



BP declares war on the LAN

Graeme Wearden, ZDNet UK
20 February, 2006

By putting deperimeterisation into practice, BP's technology director is hoping to make his company's computers more secure
Read more here



Deperimeterization of networks

Data Sheet from AppGate Network Security
2006

There is a new way to build secure networks which is easier, cheaper and much more manageable.
Download (pdf)



The Jericho Project: De-perimeterisation of network resources

Tomas Olovsson, CTO of AppGate and Jamie Bodley-Scott, Regional Manager UK
2005

The Jericho forum is a consortium of large corporations that have proposed a new architecture for network protection, a "de-perimeterised" architecture where organisations no longer have to hide behind a firewall. In this paper, we describe the design of a distributed network architecture where the need for conventional firewalls diminishes and where services can be offered to users regardless of their physical location. In this architecture, all systems should be able to protect themselves against network threats while security functions such as authentication and authorisation are handled at a global level.

Download (pdf)



This Decades Security Challenge

Paul Simmonds, Global Information Security Director, ICI
2004

What is De-perimeterisation about, and what is it not about. Download Paul Simmonds presentation on the subject.
Download (pdf)