FFIV-networks: The white knight against virus attack in cyber war


Thema bewerten
Beiträge: 14
Zugriffe: 2.300 / Heute: 1
Cisco Systems In. 58,00 € -0,22% Perf. seit Threadbeginn:   -13,75%
 
kaeseotto:

FFIV-networks: The white knight against virus attack in cyber war

 
14.02.00 17:00
Unsere Stunde als F5 Aktionaere kommt, und da ist die Marktkapitalisierung nicht mehr 2 Mrd $ sondern wie bei Akamai 20 Mrd $! (Kein Scherz!)

Artikel kann auch auf www.f5.com nachgelesen werden, dann sieht man auch die schoenen Bilder, die leider beim Kopieren des Textes verloren gingen.


A Counter Defense To Denial of
                  Service Attacks and Other Cyber
                  Threats

                  Introduction

                  The number of organizations integrating web-based applications within their
                  business systems continues to increase -- as is the reliance of consumers
                  who want a safe, secure, and reliable environment to do e-Business. The
                  recent Denial of Service attacks that have drawn national headlines symbolize
                  the need for networks to shore up their sites in order to handle the onslaught
                  of legitimate new users - but also to protect their sites from cyber-terrorists
                  whose only goal is to wreck havoc.

                  Clearly, businesses must reevaluate their network security strategy in order to
                  adapt to 1) an open computing environment and 2) protect against the
                  unsavory part of the population which this open environment has attracted. As
                  such, many F5 customers are realizing the added security benefits of using
                  the BIG/ip Controller, a unique high availability, intelligent load balancing
                  product which also includes a number of built-in features designed to heighten
                  network security and provide protection of servers and devices against
                  attacks.

                  BIG/ip Controller: Value-Added Security

                  BIG/ip comes standard with numerous security features to protect your site,
                  including:

                  Firewall capable. The BIG/ip Controller uses packet filtering to limit or deny
                  access to and from servers. You can specify rules, which allow or deny
                  access based on the source IP address of the packet, the destination IP
                  address, the source port number, the destination port number (for protocols
                  that support ports), or even the packet type (UDP, TCP, ICMP, etc). This
                  feature significantly heightens network security and gives you the flexibility to
                  restrict access on a very granular basis.

                  Stringent access control. The BIG/ip Controller is configured to allow only
                  specific types of traffic to pass through to the servers by granting or denying
                  ports on BIG/ip and Virtual Servers. A Virtual Server is a specific combination
                  of virtual addresses and virtual ports. Types of traffic that have not been
                  defined as allowed to pass through BIG/ip will be denied. This yields
                  extremely tight security, since only the traffic that you specify is allowed to
                  pass through BIG/ip.

                  Secure Administration. The BIG/ip Controller's default configuration only
                  allows encrypted administration traffic into the device.

                       Its web-based configuration tool uses SSL and Access Control Lists to
                       provide secure real-time configuration
                       BIG/ip command line interface via F-Secure SSH client supports
                       remote encrypted login and file transfer from most commercial UNIX
                       platforms, Windows 95, NT, and Mac operating systems
                       BIG/ip command line interface includes a VGA or serial console with
                       command history

                  Resists Common Attacks

                  BIG/ip is a default deny device that resists common attacks in the following
                  ways:

                       Thwarts Denial of Service attacks (reaps idle connections)
                       Thwarts IP spoofing (performs source route tracing)
                       Resists unacknowledged SYN without ACK buffers (thwarts SYN
                       floods)
                       Thwarts teardrop and land attacks
                       Protects itself and servers from ICMP attacks
                       Does not run SMTPd, FTPd, Telnetd, or any other attackable daemons
                       Uses packet filtering to limit or deny access to and from Internet sites
                       based on monitoring the traffic source, destination and port
                       Uses Secure Remote administration based on secure shell (SSH) for
                       command line or SSL for browser-based management

                  In addition, BIG/ip is inherently secure and averts common threats without the
                  need to purchase additional security devices.

                  Security Tool

                  BIG/ip's security report identifies any services and ports that receive illegal
                  access attempts by monitoring the:

                       IP address - source IP address of attacker
                       Frequency - amount of attempts
                       Port - which port(s) was hit

                  This information can help you identify security holes in your network and
                  identify the source of potential attackers. Additionally, access to BIG/ip can
                  be controlled on any interface. By default, BIG/ip denies access unless types
                  of specific traffic are enabled. This allows BIG/ip to be dynamic addition to a
                  site's overall security.

                  Port Mapping and Network Address Translation (NAT)

                  BIG/ip can be configured to map a single port into multiple ports. Well known
                  ports such as 80, 443, 20, 21 can be mapped to any port on the actual
                  servers. In addition, BIG/ip can translate addresses of the servers behind it to
                  addresses that are advertised to the outside world. These security features
                  provide several benefits, including:

                       Greater security by making it difficult for intruders to identify what
                       services are running on which port.
                       Uses non-publicly routed addresses - Using BIG/ip, Internet routable IP
                       addresses can be saved, thereby reducing consumption of IP
                       addresses.
                       Addresses of the servers behind BIG/ip are never exposed to the
                       outside world, reducing the chance of hackers gaining access to your
                       servers.

                  Secure Network Address Translation

                  BIG/ip also features Secure Network Address Translation (SNAT). This
                  provides servers with a secure outbound connection to the Internet, or to an
                  internal server array through a load balanced virtual server.

                  Firewall Load Balancing

                  Transparent proxy firewalls are a relatively recent generation of firewalls that
                  give Intranets the protection of a firewall, while providing internal users
                  transparent access to the Internet. Due to the growing use of these
                  transparently configured firewalls, and the inherent need to provide high
                  availability and scalability to these devices, BIG/ip again is increasingly being
                  deployed as a solution.

                  BIG/ip uses a feature called Transparent Node Mode. When enabled, it allows
                  BIG/ip to work with various devices, such as transparent firewalls. This feature
                  makes these firewalls more reliable and more scalable. The load balancing
                  functions of Transparent Node Mode simultaneously functions with BIG/ip's
                  normal load balancing intelligence. Additionally, BIG/ip can be configured in
                  front of an array of transparently configured firewalls and an array of Intranet
                  servers - all at the same time.

                  BIG/ip tests specific IP address and port combinations to determine if a
                  firewall is functioning properly. BIG/ip will make a non-transparent request to
                  the network device. The Extended Content Verification (ECV) feature of BIG/ip
                  can be used to increase the accuracy of these tests. If a firewall does not
                  respond to a predetermined amount of time, BIG/ip directs requests to other
                  devices instead. This delivers high availability to users, who will seamlessly
                  be redirected to a properly functioning firewall.

                  Transparent Node Load Balancing/High Availability on the BIG/ip Controller
                  offers many benefits for businesses. It provides full scaling of firewall solutions
                  that is not limited by the exchange of agent traffic between multiple firewalls.
                  It provides high availability and intelligent load balancing for any Intranet web
                  servers or other backbone or DMZ servers, while allowing them to stay
                  securely inside your network.

                  Additionally, the BIG/ip Controller supports a multitude of different firewall
                  vendor devices, which assists a business in migrating to new firewall
                  technology in the future. It also allows for implementation of diverse parallel
                  security, as opposed to serially linked firewall devices.

                  The Transparent Node Load Balancing/High Availability also adds to the
                  increased security that BIG/ip already brings to the network, further
                  supercharging its network-security functionality.



                  Figure 1: Firewall load balancing/high availability with redundant
                  BIG/ip Controllers.

                  Transparent Device Persistence - Firewall Sandwich

                  In situations where BIG/ip is accepting connections for virtual servers from
                  more than one device, such as firewalls, routers, or caches, it may be
                  desirable to send the return data back through the same device from which
                  the connection originated. This can be used to spread the load among
                  outbound devices, or to assure that connections go through the same device,
                  such as a proxy, cache, firewall, or VPN router. You can do this by defining a
                  pool that contains the list of devices from which the connections are received,
                  and then associating the pool with a virtual device using the lasthop keyword.



                  Figure 2: Transparent Device Persistence (Firewall Sandwich)

                  Summary

                  The BIG/ip Controller, an extremely robust and flexible product, enriches your
                  network security by cooperatively working with firewall products, router ACLs,
                  mail filters, and content filters. While F5 does not actively market the BIG/ip
                  Controller as a firewall or security device, many customers are using its
                  numerous security features to provide a highly scalable, available and secure
                  Internet site - more important than ever given recent events.


Text zur Anzeige gekürzt. Gesamten Beitrag anzeigen »


Werbung

Entdecke die beliebtesten ETFs von SPDR

SPDR MSCI Europe Financials UCITS ETF
Perf. 12M: +34,95%
SPDR MSCI Europe Utilities UCITS ETF
Perf. 12M: +21,96%
SPDR MSCI Europe Industrials UCITS ETF
Perf. 12M: +20,84%
SPDR MSCI World Financials UCITS ETF
Perf. 12M: +20,16%
SPDR MSCI Europe Communication Services UCITS ETF
Perf. 12M: +19,50%

kaeseotto:

wenn sich ffiv im Kurs verfuenfzigfacht hat, hoere ich auf zu arbeiten.

 
14.02.00 17:22
Bewerten
furby:

Hi kaeseotto: verdoppeln wär auch schon nicht schlecht

 
14.02.00 18:29
Bin nun Dank Deines Tips auch in f5 (zu 101E) drin. Du traust dem Ding ja ganz schön was zu, wenn das nicht ein irrationaler Gefühlsausbruch bei Deinem letzten Posting war. Die Produkte von f5 werden ja in Tat sehr positiv beschrieben, was mich stört ist, daß Cisco als Wettbewerber dargestellt wird. Entweder hält Cisco nichts von f5 und vertraut auf die eigene Verkaufsautorität oder Cisco kauft f5 und dann bekommen wir Cisco Aktien, die zwar auch nicht schlecht sind, aber schon weit mehr gelaufen sind als f5, und vor allem als Du f5 zutraust.

Gruß furby
Bewerten
kaeseotto:

F5 ist die internet highway patrol

 
15.02.00 04:12
Sicherlich wuerde cisco daran interessiert sein, f5 zu uebernehmen. Das Motto des f5-Managements ist es aber, die Marktfuehrerschaft zu uebernehmen und cisco von der leading position zu verdraengen.

cisco ist unbestritten ein hervorragendes Unternehmen.
Aber, und das sehe ich sehr unemotional, f5 wird momentan mit einem zu deutlichen Abschlag gegenueber seinen Konkurrenten gehandelt.

f5 wird bis Ende 2000, und dies habe ich bereits schon mehrfach gepostet, einen Kurs von 750 $ - 1000 $ haben. Und in 2-3 Jahren wird die Marktkapitalisierung bei 100 Mrd $ gegenueber 2 Mrd $ liegen.
Bewerten
tgk1:

Hallo kaeseotto

 
15.02.00 06:58
nachdem Du vor einiger Zeit gepostete hast keinen Kommentar mehr zu FFIV abzugeben und Dich jetzt mal wieder meldest, sehe ich, dass auch bei Dir die Enttäuschung nach dem Kurseinbruch doch tief sitzt. Geht mir nicht anders.
Die Börse ist manchmal paradox, was bei F5 abging, die ein wirklich phenomenales Ergebnis hingelegt haben, ist mir absolut unverständlich!
War ein Split erwartet worden? Ziehen sie nach, Cisco splittet auch?

Gruß TGK
Bewerten
kaeseotto:

TGK, FFIV zieht jetzt wieder an!

 
15.02.00 11:11
Bei mir herrscht keine Enttaeuschung, da ich f5 als Langfristanlage sehe. Ich habe sogar vor kurzem gepostet, dass ich, waehrend die Diskussion mit deepgreen war, f5 aktien aufgestockt habe.

Soweit ich mich noch daran erinnere, hat der CEO in einem Interview gesagt, dass er dem Board einen Aktiensplitt vorschlagen wird.
Das momentan kein Splitt bekannt gegeben worden ist, hat fuer mich keinen allzugrossen Einfluss auf den Aktienkurs.
Woanders zieht man shorties als Begruendung fuer den Kursverfall bzw. Insiderverkaeufe heran. (alles sehr schleierhaft)

Fazit: Abwarten und Tee trinken.

Schau dir Sycomore, Juniper Networks, Akamai und Cisco an.
Mach eine Aufstellung von Umsatz, Umsatzwachstum, Boersenkapitalisierung, Gewinn, KGV.
Dann kommst du zu dem einen Ergebnis: F5 strong buy.


Bewerten
tgk1:

Hallo käseotto, hab die Aufstellung schon gemacht

 
15.02.00 23:15
F5 hat ist leider noch nicht in aller Munde - kommte aber bestimmt noch.
Nach den Zahlen werden auch Institutionelle von dem Wert Notiz genommen haben, deren Rating wird genauso ausfallen wie das deinige.

In diesem Sinne
TGK
Bewerten
kaeseotto:

Am 28.02.2000 findet eine Internet-Analysten-Konferenz statt o.T.

 
16.02.00 11:23
Bewerten
Anzeige: +185 % seit Jahresanfang

...und das nächste Bohrziel könnte alles bisherige in den Schatten stellen
kaeseotto:

Ausserdem, kann der Kurs jetzt nur noch steigen, weil

 
16.02.00 11:28
ein Halbindianer, ich glaube Appache, jetzt einen Regentanz zur Kurssteigerung auffuehren wird (siehe ragging-bull board).
Auch die Kraefte der schwarzen Magie sind auf unserer Seite.

Vielleicht sollten wir in Deutschland auch wieder ein paar alte Riten
aufleben lassen, und Verkaeuferinnen von Cisco Produkten als Hexen
verbrennen.

Dann sieht die Welt in Kuerze schon ganz anders aus.
Bewerten
kaeseotto:

Von der HV in Seattle

 
17.02.00 21:33



 From the meeting
 When asked about a potential stock split Hussey commented that
 the goal for the stock is to become less volatile but that a split at
 the current $100 level is not likely. Hussey commented on the
 future potential growth potential based upon the expected growth
 in the industry(currently a $200 million dollar market / analysts
 estimate that market will expand to well over 1 billion in less than
 two years / he also commented that these level are very
 conservative and many analysts are projecting the market for F5's
 products and their competitors to be in the 3 to 4 billion dollar
 range within three years)! This company's potential has been
 grossly underestimated. Their products are going head to head
 with Cisco's, Radware's, and Alteon's and winning(producing
 sales) 9 out of every 10 times. F5's products are far superior to
 any in the industry and other companies are taking notice. Hussey
 commeted that Cisco has approached F5 in an attempt to
 develop an industry standard for content management and traffic
 solutions. Others are taking notice of F5's superior products and
 services and now have over 1300 customers compared to 1100
 less than a month ago!

 

Text zur Anzeige gekürzt. Gesamten Beitrag anzeigen »

Bewerten
BPaul:

Geht's um 922977? o.T.

 
18.02.00 10:00
922977? o.T.">
Bewerten
Al Bundy:

bpaul: WKN ist korrekt o.T.

 
18.02.00 10:15
Bewerten
Roundmaker:

Wenn nur die Hälfte der prognostizierten Zahlen zur Realität wer.

 
18.02.00 10:21
dann ist das eines der heißesten Eisen - phantastisch -  ich deck´ mich vorsichthalber mal ein. F5 dürfte kaum mehr billiger werden.
So long, kaeseotto, ich glaube da hast Du was ganz Großes entdeckt !
 
Bewerten
tgk1:

Neu BIG-IP-Version rausgekommen, einfach GENIAL

 
26.02.00 11:33
BusinessWire, 02/22/2000 08:39

                                 F5 Networks' Industry Leading BIG-IP Dramatically Raises the Bar for Network
                                 Security, High Availability and Load Balancing for Internet Traffic and Content
                                 Control

                                 SEATTLE--(BUSINESS WIRE)--Feb. 22, 2000--

                                 BIG-IP continues to sweep the market as the

                                 superior product that helps keep business-critical

                                 e-Business sites always available, fast and secure

                                 F5 Networks, Inc., (NASDAQ:FFIV), the leading provider of Internet traffic and content management (iTCM) products,
                                 today announced the release of version 3.0 of the Company's flagship product, the BIG-IP(R) Controller.

Text zur Anzeige gekürzt. Gesamten Beitrag anzeigen »

Bewerten
Es gibt keine neuen Beiträge.
 Ich: 


Börsen-Forum - Gesamtforum - Antwort einfügen - zum ersten Beitrag springen

Neueste Beiträge aus dem Cisco Systems Forum

Wertung Antworten Thema Verfasser letzter Verfasser letzter Beitrag
5 710 Cisco MistahS Tamakoschy 15.05.25 09:44
  9 Langfristig investieren heisst die Devise Teazy 123p 06.02.23 15:52
  6 Open RAN wird Cisco nach oben tragen Libuda Libuda 15.10.21 08:44
  29 Cisco-Zahlen und die irre Reaktion der Börse furby Kicky 25.04.21 11:22
  22 UMFRAGE: Ja/Nein? Erwartet ihr schon jetzt den Beginn der Korrektur? cosinus MARIA 25.04.21 11:05