logo logo logo logo selekane

AXIS Lipotso le Likarabo tsa Cybersecurity

AXIS Lipotso le Likarabo tsa Cybersecurity

Lipotso tse akaretsang

Cybersecurity ke eng?
Cybersecurity ke ts'ireletso ea lits'ebetso tsa likhomphutha le lits'ebeletso ho tsoa litsing tsa cyberthreats. Mekhoa ea ts'ireletso ea Cybersecurity e kenyelletsa mekhoa ea ho thibela tšenyo le ho tsosolosa lik'homphieutha, mekhoa le litšebeletso tsa puisano tsa elektronike, likhokahano tsa terata le tsa elektronike, le boitsebiso bo bolokiloeng ho netefatsa hore li teng, botšepehi, polokeho, bonnete, lekunutu le ho se latoe. Cybersecurity e mabapi le ho laola likotsi ka nako e telele. Likotsi ha ho mohla li ka felisoang, li fokotsoa feela.

Ke eng e amehang ka kakaretso ho tsamaise cybersecurity?
Cybersecurity e mabapi le lihlahisoa, batho, theknoloji le lits'ebetso tse tsoelang pele. Ka hona, e tla kenyelletsa ho tseba le ho lekola likarolo tse fapaneng tsa mokhatlo oa hau, ho kenyelletsa le ho etsa lethathamo la lisebelisoa, litsamaiso, software le firmware; ho theha maikemisetso a bohlokwa-hlokwa; ho ngola mekhoa le maano a tšireletso; ho sebelisa leano la taolo ea likotsi le ho tsoela pele ho etsa liteko tsa likotsi tse amanang le thepa ea hau. E tla kenyelletsa ho kenya ts'ebetsong litsamaiso tsa ts'ireletso le mehato ea ho sireletsa lintlha, lisebelisoa, lisebelisoa le lisebelisoa tseo u li khethileng e le tsa bohlokoa khahlanong le litlhaselo tsa cyber. E tla kenyelletsa ho nts'etsapele le ho kenya ts'ebetsong mesebetsi e u thusang ho lemoha litlhaselo tsa cyber e le hore u ka nka mehato e nakong. Mohlala, sena se ka kenyelletsa sistimi ea Ts'ireletso ea Ts'ireletso le Ketsahalo ea Ts'ebetso (SIEM) kapa Sistimi ea Ts'ireletso ea Ts'ireletso, Automation le Response (SOAR) e laolang data ho tsoa ho lisebelisoa tsa marang-rang le software ea tsamaiso, e kopanyang lintlha tse mabapi le boitšoaro bo sa tloaelehang kapa litlhaselo tse ka bang teng tsa cyber, le e sekaseka data eo ho fana ka tlhokomeliso ea nako ea nnete. Lisebelisoa tsa Axis li tšehetsa SYS Logs le Remote SYS Logs tseo e leng mohloli oa mantlha oa data bakeng sa sistimi ea hau ea SIEM kapa SOAR.
Tsamaiso ea Cybersecurity e boetse e kenyelletsa ho theha le ho kenya ts'ebetsong mekhoa ea ho arabela ketsahalong ea cybersecurity hang ha e fumanoa. U lokela ho ela hloko melaoana ea lehae le maano a kahare, hammoho le litlhoko tsa ho senola liketsahalo tsa cybersecurity. Axis e fana ka AXIS OS Forensic Guide e tla u thusa ho utloisisa hore na sesebelisoa sa Axis se senyehile nakong ea tlhaselo ea cybersecurity. Ho nts'etsapele le ho kenya ts'ebetsong mesebetsi ea ho boloka meralo ea ho ikamahanya le maemo le ho khutlisa kapa ho khutlisa bokhoni bofe kapa bofe kapa litšebeletso tse senyehileng ka lebaka la ketsahalo ea cybersecurity le hona ho tla ba bohlokoa. Motsamaisi oa Sesebelisoa sa AXIS, mohlala, o etsa hore ho be bonolo ho khutlisetsa lisebelisoa tsa Axis ka ho tšehetsa lintlha tsa ho tsosolosa, tse bolokiloeng "li-snapshots" tsa tlhophiso ea tsamaiso ka nako e itseng. Ha ho se na sebaka se nepahetseng sa ho khutlisa, sesebelisoa se ka thusa ho khutlisetsa lisebelisoa tsohle maemong a tsona a kamehla le ho sutumelletsa litempele tsa tlhophiso tse bolokiloeng ka marang-rang.

Likotsi tsa cybersecurity ke life?
Likotsi tsa Cybersecurity (joalokaha li hlalositsoe ke RFC 4949 Internet Security Glossary) ke tebello ea tahlehelo e hlahisoang e le monyetla oa hore tšokelo e itseng e sebelise kotsi e itseng ka sephetho se itseng se kotsi. Ke habohlokoa ho hlalosa maano le mekhoa e hlakileng ea tsamaiso e le ho finyella ho fokotsa kotsi e lekaneng ka nako e telele. Mokhoa o khothaletsoang ke oa ho sebetsa ho latela moralo o hlalositsoeng hantle oa ts'ireletso ea IT, joalo ka ISO 27001, NIST kapa tse ling tse joalo. Le hoja mosebetsi ona o ka ba boima bakeng sa mekhatlo e menyenyane, ho ba le leano le fokolang le litokomane tsa ts'ebetso ho molemo haholo ho feta ho se be le letho ho hang. Ho fumana leseli mabapi le mokhoa oa ho lekola likotsi le ho li etelletsa pele, bona tataiso ea litšupiso tsa Cybersecurity.

Litšokelo ke life?
Tšoso e ka hlalosoa e le ntho leha e le efe e ka sekisetsang kapa ea baka kotsi ho thepa kapa lisebelisoa tsa hau. Ka kakaretso, batho ba tloaetse ho amahanya litšokelo tsa cyber le linokoane tse lonya le malware. Ha e le hantle, tšusumetso e mpe hangata e hlaha ka lebaka la likotsi, tšebeliso e mpe e sa reroang kapa ho hlōleha ha hardware. Litlhaselo li ka aroloa e le tse nkang monyetla kapa tse reretsoeng. Boholo ba litlhaselo kajeno ke tse nkang monyetla: litlhaselo tse etsahalang hobane feela ho na le monyetla. Litlhaselo tse joalo li tla sebelisa li-vector tsa tlhaselo tse theko e tlase joalo ka phishing le probing. Ho sebelisa boemo bo tloaelehileng ba tšireletso ho tla fokotsa likotsi tse ngata tse amanang le litlhaselo tse nkang monyetla. Ho thata ho sireletsa khahlanong le bahlaseli ba lebisang tsamaiso e itseng ka sepheo se itseng. Litlhaselo tse lebisitsoeng ho tsona li sebelisa li-vector tsa tlhaselo tse theko e tlase joalo ka bahlaseli ba nkang monyetla. Leha ho le joalo, haeba litlhaselo tsa pele li hlōleha, li ikemiselitse haholoanyane ’me li ikemiselitse ho sebelisa nako le matlotlo ho sebelisa mekhoa e rarahaneng haholoanyane ho finyella lipakane tsa tsona. Ho bona, haholo-holo ke hore na boleng bo kotsing hakae.

Litšokelo tse atileng haholo ke life, hona li ka rarolloa joang?
Tšebeliso e mpe ea sistimi ka boomo kapa ka phoso Batho ba nang le phihlello e nepahetseng ea sistimi ke e 'ngoe ea litšokelo tse atileng ho sistimi efe kapa efe. Ba ka fumana litšebeletso tseo ba sa lumelloang ho li etsa. Li ka utsoa kapa tsa baka kotsi ka boomo tsamaisong. Batho le bona ba ka etsa liphoso. Ha ba leka ho lokisa lintho, ba ka fokotsa ts'ebetso ea sistimi ka boomo. Batho ka bomong le bona ba kotsing ea boenjiniere ba sechaba; ke hore, maqheka a etsang hore basebelisi ba nepahetseng ba fane ka lintlha tse tebileng. Batho ba ka lahleheloa kapa ba lahla likarolo tsa bohlokoa (likarete tsa phihlello, mehala, lilaptop, litokomane, joalo-joalo). Lik'homphieutha tsa batho li ka 'na tsa senyeha' me tsa tšoaetsa tsamaiso ka malware ka boomo.
Litšireletso tse khothalelitsoeng li kenyelletsa ho ba le leano le ts'ebetso e hlalositsoeng ea ak'haonte, ho ba le sekema se lekaneng sa netefatso ea phihlello, ho ba le lisebelisoa tsa ho laola li-account tsa basebelisi le litokelo ka nako, ho fokotsa ho pepeseha, le koetliso ea tlhokomeliso ea cyber. Axis e thusa ho loantša tšokelo ena ka litataiso tse thata, le lisebelisoa tse kang AXIS Device Manager le AXIS Device Manager Eketsa.

'Mele tampering le sabotage
Thepa e pepeneneng e ka ba tampe utsoitsoe, e khaotsoe, e fetisetsoa kapa e sehiloe. Litšireletso tse khothalelitsoeng li kenyelletsa ho beha lisebelisoa tsa marang-rang (mohlalaample, li-server le li-switches) libakeng tse notletsoeng, ho kenya lik'hamera hore ho be thata ho fihla ho tsona, ho sebelisoa casing e sirelelitsoeng ha e pepesitsoe, le ho sireletsa likhoele tse maboteng kapa likotopong.
Axis e thusa ho loantša tšokelo ena ka matlo a tšireletso bakeng sa lisebelisoa, tamper-resistant screws, lik'hamera tse nang le bokhoni ba ho patala likarete tsa SD, ho lemoha khamera view tampering, le ho lemoha bakeng sa mokotla o butsoeng.

Tšebeliso ea bofokoli ba software
Lihlahisoa tsohle tse thehiloeng ho software li na le bofokoli (tse tsejoang kapa tse sa tsejoeng) tse ka sebelisoang hampe. Bofokoli bo bongata bo na le kotsi e tlase, ho bolelang hore ho thata haholo ho e sebelisa, kapa tšusumetso e mpe e na le moeli. Ka linako tse ling ho ka 'na ha fumanoa bofokoli bo ka sebelisoang bo nang le tšusumetso e mpe haholo. MITER e fana ka polokelo ea litaba e kholo ea CVE (Common Vulnerabilities & Exposures) ho thusa ba bang ho fokotsa likotsi. Litšireletso tse khothalelitsoeng li kenyelletsa ho ba le ts'ebetso e tsoelang pele ea ho lokisoa e thusang ho fokotsa palo ea likotsi tse tsebahalang tsamaisong, ho fokotsa ho pepeseha ha marang-rang e le ho etsa hore ho be thata ho etsa lipatlisiso le ho sebelisa hampe bofokoli bo tsebahalang, le ho sebetsa le barekisi ba tlase ba tšepahalang ba sebetsang ho latela maano le lits'ebetso. tse fokotsang mefokolo, le ba fanang ka likhechana, 'me ba pepeneneng mabapi le bofokoli ba bohlokoa bo sibolotsoeng. Axis e sebetsana le tšokelo ka Mohlala oa Ntlafatso ea Tšireletso ea Axis, e ikemiselitseng ho fokotsa likotsi tse ka sebelisoang ho software ea Axis; le Leano la Taolo ea Kotsi ea Axis, le supang, le lokisa le ho phatlalatsa bofokoli boo bareki ba lokelang ho bo elelloa hore ba nke mehato e nepahetseng. (Ho tloha ka Mmesa 2021, Axis ke Bolaoli bo Tloaelehileng ba Kotsing le Ho Hlahisoa Linomoro bakeng sa lihlahisoa tsa Axis, tse re lumellang ho feto-fetola lits'ebetso tsa rona ho latela mokhoa o tloaelehileng oa indasteri ea MITER Corporation.) Axis e boetse e fana ka litataiso tse thata tse nang le likhothaletso mabapi le mokhoa oa ho fokotsa ho pepeseha le ho eketsa taolo ho fokotsa. kotsi ya tshebediso. Axis e fa basebelisi lipina tse peli tse fapaneng tsa firmware ho boloka firmware ea sesebelisoa sa Axis e ntse e le teng:

  1. Pina e sebetsang e fana ka lintlafatso tsa firmware tse tšehetsang likarolo tse ncha le ts'ebetso, hammoho le litokiso tsa liphoso le li-patches tsa ts'ireletso.
  2. Pina ea tšehetso ea nako e telele (LTS) e fana ka lintlafatso tsa firmware tse ts'ehetsang ho lokisoa ha liphoso le lipeche tsa ts'ireletso ha li ntse li fokotsa likotsi tsa mathata a ho se lumellane le litsamaiso tsa batho ba bang.

Tlhaselo ea ketane ea phepelo

Tlhaselo ea phepelo ea thepa ke cyberattack e batlang ho senya mokhatlo ka ho shebisisa likarolo tse sa sireletsehang haholo ho phepelo ea thepa. Tlhaselo e finyelloa ka ho sekisetsa software/firmware/products le ho hohela mookameli hore a e kenye tsamaisong. Sehlahisoa se ka senyeha nakong ea thomello ho mong'a sistimi. Litšireletso tse khothalelitsoeng li kenyelletsa ho ba le leano la ho kenya feela software ho tsoa mehloling e tšepahalang le e netefalitsoeng, ho netefatsa botšepehi ba software ka ho bapisa software checksum (digest) le checksum ea morekisi pele e kenngoa, ho hlahloba thepa ea lihlahisoa bakeng sa matšoao a t.ampering. Axis e loantša tšokelo ena ka litsela tse ngata. Axis e phatlalatsa software e nang le checksum e le hore batsamaisi ba netefatse botšepehi pele ba e kenya. Ha firmware e ncha e tla kenngoa, lisebelisoa tsa marang-rang tsa Axis li amohela feela firmware e saennoeng ke Axis. Boot e sireletsehileng ho lisebelisoa tsa marang-rang tsa Axis e boetse e netefatsa hore ke firmware e saenneng ea Axis feela e tsamaisang lisebelisoa. 'Me sesebelisoa se seng le se seng se na le ID ea sesebelisoa sa Axis se ikhethileng, se fanang ka mokhoa oa hore sistimi e netefatse hore sesebelisoa ke sehlahisoa sa 'nete sa Axis. Lintlha tse mabapi le likarolo tse joalo tsa cybersecurity li fumaneha ho whitepaper Cybersecurity likarolo ho lihlahisoa tsa Axis (pdf). Bakeng sa lintlha tse ling mabapi le litšokelo, bona Cybersecurity Reference Guide of Terminology and Concepts.

Bofokoli ke eng?
Bofokoli bo fana ka menyetla ea hore bahanyetsi ba hlasele kapa ba fihlele sistimi. Li ka bakoa ke liphoso, likarolo kapa liphoso tsa batho. Bahlaseli ba lonya ba ka 'na ba batla ho sebelisa hampe bofokoli bofe kapa bofe bo tsejoang, hangata ba kopanya e le 'ngoe kapa ho feta. Bongata ba li-breeches tse atlehileng li bakoa ke liphoso tsa batho, litsamaiso tse sa lokisoang hantle, le litsamaiso tse hlokometsoeng hantle - hangata ka lebaka la khaello ea maano a lekaneng, boikarabello bo sa hlalosoang, le tlhokomeliso e tlase ea tlhophiso.

Bofokoli ba software ke bofe?
Sesebelisoa sa API (Application Programming Interface) le lits'ebeletso tsa software li kanna tsa ba le liphoso kapa likarolo tse ka sebelisoang tlhaselong. Ha ho morekisi ea ka tiisang hore lihlahisoa ha li na liphoso. Haeba liphoso li tsejoa, likotsi li ka fokotsoa ka mehato ea taolo ea ts'ireletso. Ka lehlakoreng le leng, haeba mohlaseli a fumana phoso e ncha e sa tsejoeng, kotsi e eketseha kaha mohlaseluoa ha a e-s'o be le nako ea ho sireletsa tsamaiso.

Sistimi e Tloaelehileng ea Kotsi ea Kopo (CVSS) ke eng?
The Common Vulnerability Scoring System (CVSS) ke mokhoa o mong oa ho khetholla ho teba ha ts'oaetso ea software. Ke mokhoa o shebang hore na ho bonolo hakae ho sebelisa hampe le hore na phello e mpe e ka ba efe. Lintlha ke boleng bo pakeng tsa 0-10, 'me 10 e emela matla a maholo ka ho fetisisa. Hangata u tla fumana nomoro ea CVSS litlalehong tse hatisitsoeng tse tloaelehileng tsa Vulnerability and Exposure (CVE). Axis e sebelisa CVSS e le e 'ngoe ea mehato ea ho tseba hore na ho ka ba kotsi hakae ho ba kotsing ea software/sehlahisoa.

Lipotso tse tobileng ho Axis

Ke lithupelo life le litataiso tse teng ho nthusa ho utloisisa haholoanyane ka cybersecurity le seo nka se etsang ho sireletsa lihlahisoa le lits'ebeletso ho tsoa liketsahalong tsa cyber?
Lisebelisoa web leqephe le u fa monyetla oa ho fumana litataiso tse thatafatsang (mohlala, AXIS OS Hardening Guide, AXIS Camera Station Hardening Guide le Axis Network Switches Hardening Guide), litokomane tsa maano le tse ling. Axis e boetse e fana ka thupelo ea e-learning mabapi le cybersecurity.

Nka ea hokae ho fumana firmware ea morao-rao ea sesebelisoa sa ka?
Eya ho Firmware 'me u batle sehlahisoa sa hau.

Nka ntlafatsa firmware habonolo sesebelisoa sa ka joang?
Ho ntlafatsa firmware ea sesebelisoa sa hau, u ka sebelisa software ea taolo ea video ea Axis joalo ka AXIS Companion kapa AXIS Camera Station, kapa lisebelisoa tse kang AXIS Device Manager le AXIS Device Manager Extend.

Haeba ho na le litšitiso litšebeletsong tsa Axis, nka tsebisoa joang?
Etela status.axis.com.

Nka tsebisoa joang ka ts'oaetso e fumanoeng?
U ka ingolisa ho Axis Security Notification Service.

Axis e laola bofokoli joang?
Sheba Leano la Taolo ea Kotsi ea Axis.

Axis e fokotsa bofokoli ba software joang?
Bala sengoloa Ho etsa hore cybersecurity e be karolo ea nts'etsopele ea software ea Axis.

Axis e ts'ehetsa cybersecurity joang nakong eohle ea bophelo ba sesebelisoa?
Bala sengoloa se Tšehetsa cybersecurity nakong eohle ea bophelo ba sesebelisoa.
Ke likarolo life tsa cybersecurity tse hahelletsoeng lihlahisoa tsa Axis?
Bala haholoanyane:

  • Likarolo tse hahelletsoeng ka har'a cybersecurity
  • Likarolo tsa Cybersecurity lihlahisoa tsa Axis (pdf)
  • E ts'ehetsa cybersecurity nakong eohle ea bophelo ba sesebelisoa

Na Axis ISO e netefalitsoe le hore na Axis e latela melao efe e meng?
Etela Tumellano web leqephe.

Cybersecurity Q&As
© Axis Communications AB, 2023

Litokomane / Lisebelisoa

AXIS Lipotso le Likarabo tsa Cybersecurity [pdf] Bukana ea Mosebelisi
Cybersecurity, Lipotso le Likarabo, Lipotso le Likarabo tsa Cybersecurity

Litšupiso

Tlohela maikutlo

Aterese ea hau ea lengolo-tsoibila e ke ke ea phatlalatsoa. Libaka tse hlokahalang li tšoailoe *