<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Pie &#187; cisco</title>
	<atom:link href="http://securitypie.com/tag/cisco/feed/" rel="self" type="application/rss+xml" />
	<link>http://securitypie.com</link>
	<description>The ramblings of three security curmudgeons</description>
	<lastBuildDate>Thu, 30 Dec 2010 23:25:54 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Slicing The Security Pie</title>
		<link>http://securitypie.com/slicing-the-security-pie/</link>
		<comments>http://securitypie.com/slicing-the-security-pie/#comments</comments>
		<pubDate>Wed, 19 Nov 2008 20:04:22 +0000</pubDate>
		<dc:creator>sharon</dc:creator>
				<category><![CDATA[Security Business]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[ipso]]></category>
		<category><![CDATA[nokia]]></category>

		<guid isPermaLink="false">http://securitypie.com/?p=294</guid>
		<description><![CDATA[    Network World published an interesting story about Cisco’s attempts to keep the number 1 spot in sales of network security gear. (note that I emphasise the words sales). The article includes several security pies, the kind I like. it also include an analysis of best of breed versus good enough sales. In my opinion the article [...]]]></description>
			<content:encoded><![CDATA[<p> </p>
<p class="MsoNormal"> </p>
<div id="attachment_296" class="wp-caption alignleft" style="width: 221px"><a href="http://securitypie.com/wp-content/uploads/2008/11/network-security-leaders.png"><img class="size-medium wp-image-296" title="network-security-leaders" src="http://securitypie.com/wp-content/uploads/2008/11/network-security-leaders-211x300.png" alt="Cisco is #1 in appliance sales" width="211" height="300" /></a><p class="wp-caption-text">Cisco is #1 in appliance sales</p></div>
<p>Network World<span> </span>published an <a href="http://www.networkworld.com/news/2008/111708-cisco-sec.html?nlhtsec=ts_111808&amp;nladname=111808securityal" target="_blank">interesting story</a> about Cisco’s attempts to keep the number 1 spot in sales of network security gear. (note that I emphasise the words sales).</p>
<p>The article includes several security pies, the kind I like. it also include an analysis of best of breed versus good enough sales.</p>
<p>In my opinion the article is missing one important factors: The departure of Nokia from the network security appliance market.</p>
<p>Cisco is indeed the undisputed leader in sales for the security appliances market. It’s retired PIX firewall was all times best seller. People simply liked the way it worked. The more recent acquisition of IronPort gave it a powerful weapon in the e-mail security market and it also allows Cisco to claim some DLP capabilities. Cisco is also #1 in sales of IPS gear. Take a look at the left pie. While there&#8217;s a huge market share belongs to the &#8220;other&#8221; vendors, Cisco&#8217;s slice is bigger than the combined slices of Juniper, Check Point, Nokia and Microsoft!</p>
<p> </p>
<p>The other pies show how Cisco rules the network security market (again, in sales).  While the article does not mention emerging market it focus on the main.</p>
<p> </p>
<p class="MsoNormal"> </p>
<div id="attachment_295" class="wp-caption aligncenter" style="width: 310px"><a href="http://securitypie.com/wp-content/uploads/2008/11/the-security-pie.png"><img class="size-medium wp-image-295" title="the-security-pie" src="http://securitypie.com/wp-content/uploads/2008/11/the-security-pie-300x101.png" alt="The Security Pie" width="300" height="101" /></a><p class="wp-caption-text">The Security Pie</p></div>
<p> </p>
<p> </p>
<p class="MsoNormal"><span id="more-294"></span></p>
<p class="MsoNormal">The pies that were provided by Network world also include large slices for Nokia and it also list Check Point. In my opinion, part of the reason Check Point has maintained its marketplace position was Nokia, more specifically , the Nokia appliances. While Check Point partners with other appliance makers, such as Crossbeam Systems, Nokia systems (which used to come from the successful Ipsilon Networks acquisition) was always favored (it probably <span style="text-decoration: line-through;">requires </span>deserves a separate post on how to build appliances).</p>
<p class="MsoNormal">In my opinion, the pie will be changed: On 29 September 2008, the mobile communications provider Nokia <a href="http://www.reuters.com/article/mergersNews/idUSLT54500020080929" target="_blank">announced</a> that it is negotiating to sell its network security appliance business unit to an unnamed financial investment firm. The plan is part of an overall Nokia move away from enterprise IT channels. (See also Gartner: Nokia&#8217;s Planned Security Sale Will Not Benefit Customers. PDF available <a href="http://gartner.com/resources/162000/162021/nokias_planned_security_sale_162021.pdf" target="_blank">here</a>).</p>
<p class="MsoNormal">My prediction: next year&#8217;s pie will look different but not very different. I expect that the vendors that can execute well (i.e. Cisco) will be able to increase their market share.</p>
]]></content:encoded>
			<wfw:commentRss>http://securitypie.com/slicing-the-security-pie/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco&#8217;s Greatest Hit</title>
		<link>http://securitypie.com/ciscos-greatest-hit/</link>
		<comments>http://securitypie.com/ciscos-greatest-hit/#comments</comments>
		<pubDate>Fri, 17 Oct 2008 17:40:24 +0000</pubDate>
		<dc:creator>sharon</dc:creator>
				<category><![CDATA[Risk Management]]></category>
		<category><![CDATA[Security Business]]></category>
		<category><![CDATA[Snafu]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[Diego Rivas]]></category>
		<category><![CDATA[music]]></category>
		<category><![CDATA[paranoia]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://securitypie.com/?p=215</guid>
		<description><![CDATA[  Dave, a developer from Melbourne, Australia brings an interesting story . He was installing a newly purchased VPN product. When he loaded the VPN client software, he discovered that in the place of the usual boring software was an audio disk with 12 tracks of Spanish music (see Cisco\&#8217;s Hit). A lively discussion on Dave&#8217;s blog tried [...]]]></description>
			<content:encoded><![CDATA[<div id="attachment_216" class="wp-caption alignleft" style="width: 310px"><a href="http://securitypie.com/wp-content/uploads/2008/10/diego-rivas.jpg"><img class="size-medium wp-image-216" title="diego-rivas" src="http://securitypie.com/wp-content/uploads/2008/10/diego-rivas-300x293.jpg" alt="Cisco is promoting Diego Rivas" width="300" height="293" /></a> </p>
<p> </p>
<p><p class="wp-caption-text">Cisco is promoting Diego Rivas</p></div>
<p> </p>
<p>Dave, a developer from Melbourne, Australia brings an interesting <a href="http://dave.fumberger.com/2008/10/08/cisco-networks-new-album/" target="_blank">story </a>. He was installing a newly purchased VPN product. When he loaded the VPN client software, he discovered that in the place of the usual boring software was an audio disk with 12 tracks of Spanish music (see <a href="http://sites.google.com/a/collect3.com.au/files/Home/cisco.mp3?attredirects=0">Cisco\&#8217;s Hit</a>). A lively discussion on Dave&#8217;s blog tried and successfully managed to identify the musician.  You can watch the video below.</p>
<p>Beyond the anecdotal story there are few things that we can learn from this incident. I&#8217;m not picking on Cisco specifically: In the past, one of the products that I was managing was built by very large OEM partner that was responsible for building the appliance, packaging, forwarding etc. Though it was very rare, we had few incidents when customer X received parts of a printer with his order (inside the appliance package), while another customer received  the wrong CDs etc. Errors do occur and I believe that Cisco will do everything it can to learn from this manufacturing snafu and improve its quality assurance process. However from a security risk management point of view , this incident is a reminder to trust no one:</p>
<p>Every CD should be considered suspicious, even if it arrived inside a box that has the Cisco logo. Due to the popularity of Cisco&#8217;s gear there&#8217;s a second hand market and also some <a href="http://www.networkworld.com/news/2006/102306counterfeit.html" target="_blank">fake </a>devices. <a href="http://news.softpedia.com/news/FBI-039-s-Own-Offices--Infected-with-Counterfeit-Cisco-Hardware-85312.shtml" target="_blank">Softpedia tells </a>that even the United States government is reportedly using some 3500 fake Cisco-branded network devices, including routers, network switches and hubs. &#8220;According to the investigation results, the fake devices are worth up to $3.5 million.&#8221; </p>
<p> </p>
<p>Trust no one is the moral of this story.  On a side note, this story also explains why the DOD is investing so much money looking for the <a href="http://blog.imperva.com/2008/05/the-hunt-for-the-kill-switch.html" target="_blank">kill switch</a>. </p>
<p>Enjoy the music!</p>
<p>(Arik, What&#8217;s going on down there in Australia?, we&#8217;re getting a steady stream of weird reports recently <img src='http://securitypie.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />  </p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="425" height="344" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="src" value="http://www.youtube.com/v/JTXBCvAzM5o&amp;hl=en&amp;fs=1" /><embed type="application/x-shockwave-flash" width="425" height="344" src="http://www.youtube.com/v/JTXBCvAzM5o&amp;hl=en&amp;fs=1" allowfullscreen="true"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://securitypie.com/ciscos-greatest-hit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Bicycle-Like Instinct</title>
		<link>http://securitypie.com/the-bicycle-like-instinct/</link>
		<comments>http://securitypie.com/the-bicycle-like-instinct/#comments</comments>
		<pubDate>Wed, 10 Sep 2008 04:55:45 +0000</pubDate>
		<dc:creator>sharon</dc:creator>
				<category><![CDATA[Security Business]]></category>
		<category><![CDATA[usability]]></category>
		<category><![CDATA[bikes]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[CLI]]></category>
		<category><![CDATA[switch]]></category>

		<guid isPermaLink="false">http://securitypie.com/?p=47</guid>
		<description><![CDATA[There are things that we just can&#8217;t forget: like riding a bicycle or even driving a car. I was accompanying one of our sales engineers the other day at a customer sites and felt the urge to configure a layer 4-7 switch. If my memory serves me right, the last time that I was doing [...]]]></description>
			<content:encoded><![CDATA[<div id="attachment_67" class="wp-caption alignleft" style="width: 310px"><a href="http://securitypie.com/wp-content/uploads/2008/09/ellsworth-truth-bikes.png"><img class="size-medium wp-image-67" title="ellsworth-truth-bikes" src="http://securitypie.com/wp-content/uploads/2008/09/ellsworth-truth-bikes-300x183.png" alt="My bikes" width="300" height="183" /></a><p class="wp-caption-text">My bikes</p></div>
<p>There are things that we just can&#8217;t forget: like riding a bicycle or even driving a car. I was accompanying one of our sales engineers the other day at a customer sites and felt the urge to configure a layer 4-7 switch. If my memory serves me right, the last time that I was doing something <em>similar</em> was in 2000. Yet, one stare at the Access User Verification prompt and my memory was loaded.</p>
<p>I&#8217;m sure that somewhere, someone is studying why there are things that we can not forget. I am more interested in the opposite question. Why did I remember how to configure this switch? No, it was not a Cisco switch. However since Cisco&#8217;s <a href="http://en.wikipedia.org/wiki/Cisco_IOS" target="_blank">IOS, </a>style has been widely copied by other networking products (including the one I was configuring), it was very similar.  <em>? show run conf t</em> <em>ena </em>always work somehow in a networking environment. Like seeing a friendly face in a &#8220;<a href="http://career-advice.monster.com/career-networking/home.aspx" target="_blank">networking</a>&#8221; cocktail party before the conference is a bout to begin&#8230;</p>
<p><span id="more-47"></span></p>
<p>Thinking about my own experience, the networking instinct is smiler to the the bicycle instinct: Both were developed over time after many trails (including errors. Some were painful). The basic instinct to keep up balance is similar to the IT instinct to keep systems up and running. Bicycle manufacturers, like networking switch vendors are using a very similar &#8220;CLI&#8221; to operate the device. the only differentiators exist with the value added features (security, voip, routing, layer 4-7 filtering etc).</p>
<p>Is there a conclusion? Sure. If you want a networking device, make sure that it&#8217;ll use the common CLI verbage.</p>
]]></content:encoded>
			<wfw:commentRss>http://securitypie.com/the-bicycle-like-instinct/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

