000 03773nam a22005295i 4500
001 978-3-642-24474-2
003 DE-He213
005 20140220083815.0
007 cr nn 008mamaa
008 111026s2011 gw | s |||| 0|eng d
020 _a9783642244742
_9978-3-642-24474-2
024 7 _a10.1007/978-3-642-24474-2
_2doi
050 4 _aQA76.9.A25
072 7 _aUR
_2bicssc
072 7 _aUTN
_2bicssc
072 7 _aCOM053000
_2bisacsh
082 0 4 _a005.8
_223
100 1 _aBasin, David.
_eauthor.
245 1 0 _aApplied Information Security
_h[electronic resource] :
_bA Hands-on Approach /
_cby David Basin, Patrick Schaller, Michael Schläpfer.
264 1 _aBerlin, Heidelberg :
_bSpringer Berlin Heidelberg,
_c2011.
300 _aXIV, 202 p.
_bonline resource.
336 _atext
_btxt
_2rdacontent
337 _acomputer
_bc
_2rdamedia
338 _aonline resource
_bcr
_2rdacarrier
347 _atext file
_bPDF
_2rda
505 0 _aChap. 1, Security Principles -- Chap. 2, The Virtual Environment -- Chap. 3, Network Services -- Chap. 4, Authentication and Access Control -- Chap. 5, Logging and Log Analysis -- Chap. 6, Web Application Security -- Chap. 7, Certificates and Public-Key Cryptography -- Chap. 8, Risk Management -- App. A, Using This Book in a Lab Course -- App. B, Report Template -- App. C, Linux Basics and Tools -- App. D, Answers to Questions -- References -- Index.
520 _aThis book explores fundamental principles for securing IT systems and illustrates them with hands-on experiments that may be carried out by the reader using accompanying software. The experiments highlight key information security problems that arise in modern operating systems, networks, and web applications. The authors explain how to identify and exploit such problems and they show different countermeasures and their implementation. The reader thus gains a detailed understanding of how vulnerabilities arise and practical experience tackling them. After presenting the basics of security principles, virtual environments, and network services, the authors explain the core security principles of authentication and access control, logging and log analysis, web application security, certificates and public-key cryptography, and risk management. The book concludes with appendices on the design of related courses, report templates, and the basics of Linux as needed for the assignments. The authors have successfully taught IT security to students and professionals using the content of this book and the laboratory setting it describes. The book can be used in undergraduate or graduate laboratory courses, complementing more theoretically oriented courses, and it can also be used for self-study by IT professionals who want hands-on experience in applied information security. The authors' supporting software is freely available online and the text is supported throughout with exercises.
650 0 _aComputer science.
650 0 _aData protection.
650 0 _aData structures (Computer science).
650 0 _aInformation Systems.
650 0 _aManagement information systems.
650 1 4 _aComputer Science.
650 2 4 _aSystems and Data Security.
650 2 4 _aData Structures, Cryptology and Information Theory.
650 2 4 _aManagement of Computing and Information Systems.
650 2 4 _aInnovation/Technology Management.
650 2 4 _aBusiness Information Systems.
700 1 _aSchaller, Patrick.
_eauthor.
700 1 _aSchläpfer, Michael.
_eauthor.
710 2 _aSpringerLink (Online service)
773 0 _tSpringer eBooks
776 0 8 _iPrinted edition:
_z9783642244735
856 4 0 _uhttp://dx.doi.org/10.1007/978-3-642-24474-2
912 _aZDB-2-SCS
999 _c108502
_d108502