Network Hardening: Using Warfare Strategy by Shawn W. Toderick on 19/08/05

There are a lot of Information Security and Network Security text and papers that quote some of the work of Sun Tzu’s The Art Of War, mostly “Know your enemy and know yourself”. Information security, while a part of business, is looked at not from a business context, but a warfare context. Information security is seen as a constant battle between the orga nization’s administrators and hackers.

This paper attempts to apply some of the strategies Sun Tzu discusses to hardening an organization’s network and information security. These strategies include knowing your network, knowing your enemy, misinformation and misdirection, perimeter security, and using the attacker’s strengths against him.

