关闭

在K12学校中的网络安全使网络安全的4种方式

经过Elaine ShuckSenior Marketing Manager, Aruba
分享帖子

Educational data is a valuable black-market commodity. And cybercriminals know it.

学区已成为勒索软件攻击,网络钓鱼诈骗以及自己员工和学生的人类遗体的受害者。身份盗贼想窃取学生的个人信息在黑暗的网络上出售。犯罪分子知道,学区处理大量资金,他们正试图欺骗商业经理进入重定向合法的供应商付款。云应用程序可以创造新的安全风险,即IT人员习惯于传统的内地系统,没有准备好防范。当然,有些学生们试图惹恼他们的成绩。

成功的网络角质的崛起在学校CIO上不会丢失。网络安全是K12领导人的首要任务,根据COSN。

实际上,数据泄露是去年K12中最常见的网络事件,according to the K12 Cybersecurity Resource Center, run by the consulting firm EdTech Strategies. Student data was included in more than 60 percent of those breaches.

现代化网络安全的四个关键步骤
Many school districts have not modernized their cybersecurity for this new reality. Their IT staffs are generalists, working to maintain the applications, systems and instructional technology that are used across many school sites. Cybersecurity specialists are in short supply everywhere, and schools can’t compete with the triple-digit salaries that companies can offer. IT budgets are stretched, and only basic network security is covered under E-rate.

通过安全的网络基础,您可以保护您的学区,而不会增加妨碍妨碍教学方式的安全障碍。

1. Know what’s on your network.从Chromebooks和iPad上的教学技术到专门的实验室设备,让学生探索物理到虚拟现实,让孩子们通过历史记录,学校具有令人难以置信的器件。许多学校鼓励学生将自己的平板电脑和笔记本电脑带入教室。大多数学生至少有一个口袋或背包的移动设备。监控摄像机和智能建筑控制系统是学校安全和效率措施的重要组成部分。

Yet, many of the devices that connect every day, especially IoT devices, cannot run traditional security software. IoT devices are notoriously unproven when it comes to cybersecurity.

您无法管理您无法看到的内容,并且了解网络连接的内容是创建有效安全策略和减少安全性和合规性风险的基础。阿鲁巴清除通道Device Insight使IT管理人员可以清除所有连接设备的可见性。ClearPass可以准确地识别所有有线和无线设备,无论是笔记本电脑和平板电脑等传统设备,还是以前难以检测的IOT设备,如交互式白板,3D打印机,温度和环境传感器,学生身份证和安全摄像机。

2.控制网络上的内容。战略控制方法的有限公司nnecting to the network. With centralized policy control, IT can ensure that students, faculty, administrators and visitors have ready access to the application and resources they need—but nothing else. All users devices must be properly authenticated to verify that they really are who they say they are. And if the data is sensitive, make sure communications are encrypted.

阿鲁巴清除通道can discover, profile, authenticate and authorize users, their devices and IoT devices before allowing them on your network or giving them access to digital resources. IT can control access by user device, role, location and even time of day, including for applications.

阿鲁巴支持WPA3,WPA2身份验证的继承者提高了安全性并简化了设备上的设备。从用户的角度来看,没有任何更改,但它们得到了真正的安全连接。所有无线流量都是加密的。和WPA3使IoT设备更容易。

3.让网络帮助。IT has long used network segmentation to enhance security, such as keeping visitor traffic separate from instructional applications or administrative applications. But setting up virtual LANs (VLANs) or access control lists is a painstaking manual process, and when a policy is changed, it can mean many hours of reconfiguring switches.

阿鲁巴动态分割is an easier way to establish and enforce that separation. IT can ensure that network access policies are enforced consistently for each user, device and application—at every school site, administrative building or bus depot. It’s more than just keeping visitor, instructional and administrative applications separate. You can also ensure that IoT device traffic is isolated, mitigating the risk that a hacked IP camera or printer could ruin your week.

Aruba Clearpass用于集中管理策略,该策略通过内置在整个网络中动态强制执行Aruba Policy Enforcement Firewall.No more driving to school sites to update switches to ensure a great user experience and policy compliance.

4. Stop attacks that have slipped past your firewall.A quick glance at the news media shows that cybercriminals can slip past perimeter defenses and freely move about until they find a lucrative target inside the network. To combat these attacks, organizations are continuously monitoring inside their networks for suspicious activity. Attackers may hide in legitimate network traffic, but they do leave digital footprints.

Aruba IntroSpect将用户和实体行为分析与网络流量分析组合。这是一个很长的方式,说中,内存使用机器学习和分析来连续监控IP地址的任何内容,并检测传统的周边安全错过的隐藏攻击。Introspect在最优先级风险的情况下,Intrace将其员工提供给最高优先级风险,而不是通过安全警报。它可以与其他安全解决方案集成以采取执法行动。

What About E-rate?
电子速率长期以来一直帮助学区基金网络,互联网服务和防火墙。但电子速率越来越令人兴奋地应对更复杂,越来越普遍的普通网络安全挑战。在对FCC对公众评论的要求的回答中,many stakeholders, including CoSN那have敦促FCC帮助学区保护他们管理的网络。

下一步
网络安全事件变得更加普遍 - 且更加损害。现在是时候采取行动来增强安全性而无需添加到IT工作量。Learn how Aruba can help.

Baidu