ProHoster > Блог > Kev tswj hwm > Yuav ua li cas tswj koj lub network infrastructure. Tshooj peb. Kev ruaj ntseg network. Ntu peb
Yuav ua li cas tswj koj lub network infrastructure. Tshooj peb. Kev ruaj ntseg network. Ntu peb
Kab lus no yog qhov thib tsib hauv koob "Yuav Ua Li Cas Tswj Koj Cov Khoom Siv Hauv Network." Cov ntsiab lus ntawm tag nrho cov ntawv hauv koob thiab cov txuas tuaj yeem pom no.
Qhov no yuav tau mob siab rau rau Tsev Kawm Ntawv Qib Siab (Office) & Cov chaw taws teeb nkag VPN ntu.
Chaw ua haujlwm network tsim yuav zoo li yooj yim.
Tseeb, peb muab L2 / L3 keyboards thiab txuas rau ib leeg. Tom ntej no, peb ua tiav cov kev teeb tsa yooj yim ntawm vilans thiab lub rooj vag qub, teeb tsa yooj yim routing, txuas WiFi controllers, cov ntsiab lus nkag, nruab thiab teeb tsa ASA rau cov chaw taws teeb nkag, peb zoo siab tias txhua yam ua haujlwm. Yeej, raws li kuv twb tau sau nyob rau hauv ib qho ntawm yav dhau los cov ntawv ntawm lub voj voog no, yuav luag txhua tus tub ntxhais kawm uas tau mus kawm (thiab kawm) ob semesters ntawm chav kawm xov tooj tuaj yeem tsim thiab teeb tsa lub chaw ua haujlwm network kom nws "ua haujlwm li cas."
Tab sis qhov ntau koj kawm, qhov yooj yim dua txoj hauj lwm no pib zoo li. Rau kuv tus kheej, lub ntsiab lus no, lub ntsiab lus ntawm lub chaw ua haujlwm network tsim, tsis zoo li yooj yim, thiab hauv kab lus no kuv yuav sim piav qhia vim li cas.
Tag nrho cov no siv rau cov neeg ua haujlwm thiab cov qhua (lossis cov neeg koom tes), thiab nws yog txoj haujlwm ntawm lub tuam txhab engineers kom sib txawv nkag mus rau cov neeg siv sib txawv raws li kev tso cai.
Cia peb saib ntawm txhua qhov ntawm no hauv ib qho me ntsis ntxiv.
Mobility
Peb tab tom tham txog lub sijhawm ua haujlwm thiab siv tag nrho cov tuam txhab tsim nyog los ntawm txhua qhov chaw hauv ntiaj teb (qhov tseeb, qhov twg hauv Is Taws Nem muaj).
Qhov no siv tag nrho rau lub chaw ua haujlwm. Qhov no yog qhov yooj yim thaum koj muaj sijhawm los ua haujlwm txuas ntxiv los ntawm txhua qhov chaw hauv chaw ua haujlwm, piv txwv li, tau txais ntawv xa tuaj, sib txuas lus hauv tus neeg xa xov liaison, muaj rau kev hu xov tooj, ... Yog li, qhov no tso cai rau koj, ntawm ib sab, los daws qee qhov teeb meem "nyob" kev sib txuas lus (piv txwv li, koom nrog kev sib tw), thiab ntawm qhov tod tes, nyob hauv online ib txwm, khaws koj tus ntiv tes rau ntawm lub plawv thiab daws sai sai rau qee qhov haujlwm tseem ceeb tshaj plaws. Qhov no yooj yim heev thiab tiag tiag txhim kho kev sib txuas lus zoo.
Qhov no yog ua tiav los ntawm kev tsim WiFi network tsim nyog.
Muaj cov pab pawg neeg siv tseem ceeb uas yuav tsum muaj kev sib cais. Cov no yog, ntawm chav kawm, cov thawj coj. Raws li txoj cai, kev sib txuas WiFi tsis tshua muaj kev ntseeg siab (raws li kev khiav tsheb poob) thiab qeeb dua li qhov chaw nres nkoj Ethernet. Qhov no tuaj yeem yog qhov tseem ceeb rau cov thawj coj. Tsis tas li ntawd, cov thawj coj hauv lub network, piv txwv li, tuaj yeem, hauv paus ntsiab lus, muaj lawv tus kheej Ethernet network rau kev sib txuas sab nraud.
Tej zaum yuav muaj lwm pab pawg/chaw haujlwm hauv koj lub tuam txhab uas cov xwm txheej no tseem ceeb heev.
Muaj lwm qhov tseem ceeb - xov tooj. Tej zaum yog vim li cas koj tsis xav siv Wireless VoIP thiab xav siv IP xov tooj nrog kev sib txuas Ethernet tsis tu ncua.
Feem ntau, cov tuam txhab uas kuv ua haujlwm feem ntau muaj ob qho tib si WiFi txuas thiab Ethernet chaw nres nkoj.
Kuv xav kom kev txav mus los tsis txwv rau lub chaw ua haujlwm nkaus xwb.
Txhawm rau kom muaj peev xwm ua haujlwm hauv tsev (lossis lwm qhov chaw uas siv Internet), siv VPN txuas. Nyob rau tib lub sijhawm, nws yog qhov xav tau tias cov neeg ua haujlwm tsis xav tias qhov sib txawv ntawm kev ua haujlwm hauv tsev thiab chaw ua haujlwm nyob deb, uas xav tias tib yam kev nkag mus. Peb yuav tham txog yuav ua li cas npaj qhov no me ntsis tom qab hauv tshooj "Unified centralized authentication thiab tso cai system."
Lus Cim
Feem ntau, koj yuav tsis muaj peev xwm muab cov kev pabcuam zoo ib yam rau kev ua haujlwm nyob deb uas koj muaj hauv chaw ua haujlwm. Cia peb xav tias koj tab tom siv Cisco ASA 5520 ua koj lub rooj vag VPN. cov ntawv xov xwm cov cuab yeej no muaj peev xwm ntawm "kev zom" tsuas yog 225 Mbit ntawm VPN tsheb. Qhov ntawd yog, ntawm chav kawm, hais txog bandwidth, kev sib txuas ntawm VPN yog qhov txawv ntawm kev ua haujlwm ntawm chaw ua haujlwm. Tsis tas li, yog tias, vim li cas, latency, poob, jitter (piv txwv li, koj xav siv chaw ua haujlwm IP xov tooj) rau koj cov kev pabcuam hauv network tseem ceeb, koj kuj yuav tsis tau txais qhov zoo ib yam li koj nyob hauv chaw ua haujlwm. Yog li ntawd, thaum tham txog kev txav mus los, peb yuav tsum paub txog tej yam kev txwv.
Cia peb saib seb peb yuav tsum muaj kev tiv thaiv li cas.
Rau qhov chaw ua haujlwm, kuv xav qhia cov hauv qab no:
zero trust mus kom ze rau tsim
qib siab ntawm kev tiv thaiv
network visibility
unified centralized authentication thiab tso cai system
tus tswv tsev kuaj xyuas
Tom ntej no, peb yuav nyob rau hauv me ntsis ntxiv nthuav dav ntawm txhua yam ntawm no.
Xoom Ntseeg
Lub ntiaj teb IT hloov pauv sai heev. Tsuas yog 10 xyoo dhau los, qhov tshwm sim ntawm cov thev naus laus zis tshiab thiab cov khoom lag luam tau ua rau muaj kev hloov kho loj ntawm cov tswv yim kev ruaj ntseg. Kaum xyoo dhau los, los ntawm kev saib xyuas kev nyab xeeb, peb tau faib lub network rau hauv kev ntseeg siab, dmz thiab thaj chaw tsis ntseeg, thiab siv lub npe hu ua "kev tiv thaiv ib puag ncig", uas muaj 2 kab kev tiv thaiv: tsis ntseeg -> dmz thiab dmz -> ntseeg. Tsis tas li, kev tiv thaiv feem ntau txwv rau kev nkag mus rau cov npe raws li L3 / L4 (OSI) headers (IP, TCP / UDP ports, TCP chij). Txhua yam cuam tshuam rau qib siab dua, suav nrog L7, tau tso rau OS thiab cov khoom lag luam ruaj ntseg tau teeb tsa rau ntawm tus tswv kawg.
Tam sim no qhov xwm txheej tau hloov pauv ntau. Lub tswv yim niaj hnub tsis ntseeg los ntawm qhov tseeb tias nws tsis tuaj yeem xav txog cov tshuab sab hauv, uas yog, cov neeg nyob hauv ib puag ncig, raws li kev ntseeg siab, thiab lub tswv yim ntawm ib puag ncig nws tus kheej tau dhau los ua qhov muag tsis pom.
Ntxiv nrog rau kev sib txuas hauv internet peb kuj muaj
tej thaj chaw deb nkag VPN cov neeg siv
Ntau yam khoom siv ntawm tus kheej, nqa laptops, txuas nrog chaw ua haujlwm WiFi
lwm lub chaw haujlwm (chaw haujlwm).
kev koom ua ke nrog huab infrastructure
Zero Trust txoj hauv kev zoo li cas hauv kev xyaum?
Qhov zoo tshaj plaws, tsuas yog cov tsheb uas yuav tsum tau tso cai yuav tsum tau tso cai thiab, yog tias peb tab tom tham txog qhov zoo tshaj plaws, kev tswj hwm yuav tsum tsis yog nyob rau theem L3 / L4 nkaus xwb, tab sis nyob rau theem kev thov.
Yog tias, piv txwv li, koj muaj peev xwm dhau tag nrho cov tsheb khiav los ntawm firewall, ces koj tuaj yeem sim kom ze rau qhov zoo tagnrho. Tab sis txoj hauv kev no tuaj yeem txo qis tag nrho bandwidth ntawm koj lub network, thiab dhau li ntawd, lim los ntawm daim ntawv thov tsis tas yuav ua haujlwm zoo.
Thaum tswj kev khiav tsheb ntawm lub router lossis L3 hloov (siv tus qauv ACLs), koj ntsib lwm yam teeb meem:
Qhov no tsuas yog L3/L4 filtering xwb. Tsis muaj dab tsi txwv tus neeg tawm tsam los ntawm kev siv cov chaw nres nkoj tso cai (xws li TCP 80) rau lawv daim ntawv thov (tsis yog http)
complex ACL tswj (ib qho nyuaj rau parse ACLs)
Qhov no tsis yog lub xeev firewall, txhais tau tias koj yuav tsum tau tso cai rau kev rov qab los
nrog cov keyboards koj feem ntau zoo nkauj nruj txwv los ntawm qhov loj ntawm TCAM, uas tuaj yeem ua teeb meem sai sai yog tias koj coj qhov "tsuas yog tso cai rau qhov koj xav tau" mus kom ze
Lus Cim
Hais txog kev rov qab tsheb, peb yuav tsum nco ntsoov tias peb muaj lub sijhawm hauv qab no (Cisco)
tso cai tcp txhua yam tsim
Tab sis koj yuav tsum nkag siab tias kab no sib npaug rau ob kab:
tso cai tcp tej ack
tso cai tcp txhua yam rst
Qhov no txhais tau hais tias txawm tias tsis muaj TCP thawj ntu nrog SYN chij (uas yog, TCP kev sib tham tsis tau pib tsim), ACL no yuav tso cai rau pob ntawv nrog tus chij ACK, uas tus neeg tawm tsam tuaj yeem siv los hloov cov ntaub ntawv.
Ntawd yog, kab no tsis muaj txoj hauv kev hloov koj lub router lossis L3 hloov mus rau hauv lub xeev firewall.
Kev tiv thaiv qib siab
В Tshooj Hauv seem ntawm cov chaw khaws ntaub ntawv, peb xav txog cov kev tiv thaiv hauv qab no.
Los ntawm kev siv firewall tiv thaiv ua ke nrog kev tiv thaiv kawg ntawm tus tswv tsev, peb ua rau kom muaj feem cuam tshuam txog kev ua phem. Piv txwv li, siv kev tiv thaiv kev hem thawj ntawm cov tswv hauv zos thiab ntawm lub firewall ua rau muaj kev cuam tshuam ntawm kev tshawb pom (muab, tau kawg, tias cov kev daws teeb meem no yog raws li cov khoom siv sib txawv)
Lus Cim
Yog hais tias, piv txwv li, koj siv Kaspersky raws li ib tug antivirus ob qho tib si ntawm lub firewall thiab nyob rau hauv lub kawg hosts, ces qhov no, ntawm chav kawm, yuav tsis zoo heev ua rau kom koj muaj feem yuav tiv thaiv tau tus kab mob nyob rau hauv koj lub network.
Network pom kev
Lub tswv yim tseem ceeb yog qhov yooj yim - "saib" dab tsi tshwm sim ntawm koj lub network, ob qho tib si hauv lub sijhawm thiab cov ntaub ntawv keeb kwm.
Kuv yuav faib qhov "lub zeem muag" no ua ob pawg:
Group ib: yam koj saib xyuas qhov system feem ntau muab rau koj.
Unified centralized authentication thiab tso cai system
Thaum tsim tau zoo, kev txav mus los uas peb tau tham hauv tsab xov xwm no xav tias koj muaj kev nkag tau zoo ib yam txawm tias koj ua haujlwm hauv chaw ua haujlwm lossis los ntawm tsev, los ntawm tshav dav hlau, los ntawm lub khw kas fes lossis lwm qhov chaw (nrog rau cov kev txwv peb tau tham saum toj no). Nws yuav zoo li, qhov teeb meem yog dab tsi?
Yuav kom nkag siab zoo dua qhov nyuaj ntawm txoj haujlwm no, cia peb saib tus qauv tsim.
Piv Txwv:
Koj tau faib tag nrho cov neeg ua haujlwm ua pab pawg. Koj tau txiav txim siab muab kev nkag los ntawm pab pawg
Hauv qhov chaw ua haujlwm, koj tswj kev nkag mus rau ntawm qhov chaw ua haujlwm firewall
Koj siv Cisco ASA ua lub rooj vag VPN thiab tswj kev nkag mus rau hauv koj lub network los ntawm cov neeg siv khoom nyob deb, koj siv hauv zos (ntawm ASA) ACLs
Tam sim no, cia peb hais tias koj tau hais kom ntxiv kev nkag mus rau qee tus neeg ua haujlwm. Hauv qhov no, koj raug hais kom ntxiv kev nkag rau nws nkaus xwb thiab tsis muaj lwm tus los ntawm nws pawg.
Rau qhov no peb yuav tsum tsim ib pab pawg sib cais rau cov neeg ua haujlwm no, uas yog
tsim ib lub pas dej IP cais ntawm ASA rau cov neeg ua haujlwm no
ntxiv ACL tshiab ntawm ASA thiab khi rau tus neeg siv khoom nyob deb
tsim cov cai tshiab kev ruaj ntseg ntawm chaw ua hauj lwm thiab cov ntaub ntawv chaw firewalls
Nws yog qhov zoo yog tias qhov xwm txheej no tsis tshua muaj. Tab sis hauv kuv qhov kev coj ua muaj qhov xwm txheej thaum cov neeg ua haujlwm tau koom nrog ntau txoj haujlwm, thiab cov txheej txheem no rau qee qhov hloov pauv ntau zaus, thiab tsis yog 1-2 tus neeg, tab sis ntau ntau. Tau kawg, ib yam dab tsi yuav tsum tau hloov ntawm no.
Thiab yog tias ib tus neeg ua haujlwm tau koom nrog hauv qhov project 1 thiab project 2, thiab nws xav tau kev nkag mus rau kev tsim nyog los ua haujlwm hauv cov haujlwm no, tus neeg ua haujlwm no tau raug xa mus rau pawg hauv qab no:
qhua
kev nkag mus
qhov project 1
qhov project 2
Tam sim no peb tuaj yeem hloov cov ntaub ntawv no mus rau hauv cov khoom siv network li cas?
Luv luv txog peb qhov kev siv, thaum lub sij hawm kev txheeb xyuas / kev tso cai, ASA tau txais los ntawm LDAP ib pawg ntawm cov neeg siv thiab "sau" los ntawm ntau lub zos ACLs (txhua qhov sib raug rau ib pab pawg) ACL dynamic nrog txhua qhov tsim nyog nkag. , uas yog tag nrho raws li peb lub siab xav.
Tab sis qhov no tsuas yog rau kev sib txuas VPN. Txhawm rau ua kom qhov xwm txheej zoo ib yam rau ob tus neeg ua haujlwm txuas nrog ntawm VPN thiab cov neeg hauv chaw ua haujlwm, cov kauj ruam hauv qab no tau ua.
Thaum txuas los ntawm chaw ua haujlwm, cov neeg siv siv 802.1x raws tu qauv tau xaus rau hauv ib tus qhua LAN (rau cov qhua) lossis ib qho LAN sib koom (rau cov neeg ua haujlwm hauv tuam txhab). Tsis tas li ntawd, kom tau txais kev nkag tau tshwj xeeb (piv txwv li, rau cov haujlwm hauv cov chaw khaws ntaub ntawv), cov neeg ua haujlwm yuav tsum txuas ntawm VPN.
Txhawm rau txuas los ntawm chaw ua haujlwm thiab hauv tsev, cov pab pawg sib txawv tau siv rau ntawm ASA. Qhov no yog qhov tsim nyog kom cov neeg sib txuas los ntawm chaw ua haujlwm, kev khiav mus rau kev sib koom ua haujlwm (siv los ntawm txhua tus neeg ua haujlwm, xws li xa ntawv, cov ntaub ntawv servers, daim pib, dns, ...) tsis mus dhau ASA, tab sis los ntawm lub network hauv zos. . Yog li, peb tsis thauj cov ASA nrog cov tsheb tsis tsim nyog, suav nrog kev siv tsheb loj.
Yog li, qhov teeb meem raug daws.
Peb tau txais
tib txheej kev nkag mus rau ob qho tib si kev sib txuas los ntawm chaw ua haujlwm thiab cov chaw taws teeb sib txuas
tsis muaj kev pabcuam degradation thaum ua haujlwm los ntawm chaw ua haujlwm cuam tshuam nrog kev sib kis ntawm kev siv tsheb ntau dhau los ntawm ASA
Yuav ua li cas lwm yam zoo ntawm txoj kev no?
Hauv kev tswj hwm kev nkag. Kev nkag tuaj yeem hloov tau yooj yim hauv ib qho chaw.
Piv txwv li, yog tias tus neeg ua haujlwm tawm hauv lub tuam txhab, ces koj tsuas yog tshem nws tawm ntawm LDAP, thiab nws cia li poob tag nrho.
Tus tswv tsev kuaj xyuas
Nrog rau qhov muaj peev xwm ntawm kev sib txuas ntawm cov chaw taws teeb, peb khiav txoj kev pheej hmoo ntawm kev tso cai tsis yog ib tus neeg ua haujlwm hauv lub tuam txhab nkaus xwb, tab sis kuj tseem muaj cov software phem uas yuav muaj nyob hauv nws lub computer (piv txwv li, hauv tsev), thiab ntxiv rau, los ntawm cov software no peb. tej zaum yuav muab kev nkag mus rau peb lub network rau tus neeg tawm tsam siv tus tswv tsev no ua tus tso npe.
Nws ua rau kev txiav txim siab rau tus tswv tsev nyob deb nroog los siv tib yam kev xav tau kev nyab xeeb raws li tus tswv tsev hauv chaw ua haujlwm.
Qhov no kuj xav tias "yog" version ntawm OS, anti-virus, anti-spyware, thiab firewall software thiab hloov tshiab. Feem ntau, lub peev xwm no muaj nyob rau ntawm lub rooj vag VPN (rau ASA pom, piv txwv li, no).
Nws tsim nyog xav tias koj lub chaw ua haujlwm network tsis txwv rau lub tsev ua haujlwm thiab cov tswv hauv nws.
Piv Txwv:
Cov txheej txheem zoo yog muab txhua tus neeg ua haujlwm uas xav tau kev nkag mus rau thaj chaw deb nrog lub laptop zoo, yooj yim thiab xav kom lawv ua haujlwm, ob qho tib si hauv chaw ua haujlwm thiab hauv tsev, tsuas yog los ntawm nws.
Nws tsis tsuas yog txhim kho kev ruaj ntseg ntawm koj lub network, tab sis nws kuj yog qhov yooj yim heev thiab feem ntau pom zoo los ntawm cov neeg ua haujlwm (yog tias nws yog lub laptop zoo tiag tiag, siv tau zoo).
Tsis tas li, tau kawg, ua haujlwm nrog cov cuab yeej siv no peb xav tau tsawg kawg ob peb tus kws tshaj lij kev ruaj ntseg uas tsim nyog.
Tom ntej no, koj txiav txim siab muab txhua tus neeg ua haujlwm rau lub laptop zoo.
Tag nrho, txog 10 lab daus las rau kev siv, ntau pua txhiab nyiaj (Kuv xav tias ze rau ib lab) rau kev txhawb nqa txhua xyoo thiab cov nyiaj hli rau cov kws ua haujlwm.
Chaw ua haujlwm, 200 tus neeg ...
Yooj yim? kuv xav tias yog lawm.
Koj tuaj nrog lub tswv yim no rau koj tus thawj coj ...
Tej zaum muaj ntau lub tuam txhab nyob hauv lub ntiaj teb uas qhov no yog qhov kev lees paub thiab kev daws teeb meem. Yog tias koj yog ib tus neeg ua haujlwm ntawm lub tuam txhab no, kuv zoo siab, tab sis feem ntau ntawm cov xwm txheej, kuv paub tseeb tias koj txoj kev paub yuav tsis muaj txiaj ntsig los ntawm kev tswj hwm.
Qhov piv txwv no puas yog exaggerated? Tshooj tom ntej yuav teb lo lus nug no.
Yog tias hauv koj lub network koj tsis pom ib qho ntawm cov saum toj no, ces qhov no yog cov qauv.
Rau txhua qhov tshwj xeeb, koj yuav tsum nrhiav koj tus kheej tsim nyog kev sib haum xeeb ntawm kev yooj yim, nqi thiab kev nyab xeeb. Feem ntau koj tsis xav tau NGFW hauv koj qhov chaw ua haujlwm, thiab L7 kev tiv thaiv ntawm phab ntsa tsis tas yuav tsum muaj. Nws yog txaus los muab cov theem zoo ntawm kev pom thiab kev ceeb toom, thiab qhov no tuaj yeem ua tiav siv cov khoom siv qhib, piv txwv li. Yog lawm, koj qhov kev tawm tsam rau qhov kev tawm tsam yuav tsis yog tam sim ntawd, tab sis qhov tseem ceeb tshaj plaws yog tias koj yuav pom nws, thiab nrog cov txheej txheem tsim nyog nyob rau hauv qhov chaw hauv koj lub tuam tsev, koj yuav muaj peev xwm ua kom tsis muaj zog sai.
Thiab cia kuv ceeb toom rau koj tias, raws li lub tswv yim ntawm cov kab lus no, koj tsis tau tsim lub network, koj tsuas yog sim txhim kho qhov koj tau txais.
SAFE tsom xam ntawm chaw ua haujlwm architecture
Ua tib zoo saib rau qhov square liab uas kuv tau faib ib qho chaw ntawm daim duab los ntawm SAFE Secure Campus Architecture Guideuas kuv xav tham ntawm no.
Cia peb saib thawj ob qho kev xaiv ua ntej.
Nrog rau cov kev xaiv no, tag nrho cov tsheb khiav mus los ntawm firewall.
Tam sim no cia saib cov ntawv xov xwm, saib Cisco GPL thiab peb pom tias yog tias peb xav kom tag nrho cov bandwidth rau peb lub chaw ua haujlwm tsawg kawg yog nyob ib ncig ntawm 10 - 20 gigabits, ces peb yuav tsum yuav 4K version.
Lus Cim
Thaum kuv tham txog tag nrho cov bandwidth, kuv txhais tau tias kev khiav ntawm subnets (thiab tsis nyob hauv ib lub vilana).
Los ntawm GPL peb pom tias rau HA Bundle nrog Threat Defense, tus nqi nyob ntawm tus qauv (4110 - 4150) txawv ntawm ~ 0,5 - 2,5 lab las.
Ntawd yog, peb tus qauv tsim pib zoo li qhov piv txwv yav dhau los.
Puas yog qhov no txhais tau tias qhov kev tsim no tsis raug?
Tsis yog, tsis tau txhais hais tias nws. Cisco muab kev tiv thaiv zoo tshaj plaws rau koj raws li cov khoom lag luam nws muaj. Tab sis qhov ntawd tsis tau txhais hais tias nws yog ib qho yuav tsum ua rau koj.
Hauv txoj ntsiab cai, qhov no yog ib lo lus nug uas tshwm sim thaum tsim lub chaw ua haujlwm lossis chaw zov me nyuam, thiab nws tsuas yog txhais tau tias yuav tsum tau nrhiav kev sib haum xeeb.
Piv txwv li, tsis txhob cia tag nrho cov tsheb khiav mus los ntawm lub firewall, qhov twg qhov kev xaiv 3 zoo li zoo nkauj rau kuv, los yog (saib tshooj dhau los) tej zaum koj tsis xav tau Kev Tiv Thaiv Kev Nyab Xeeb lossis tsis xav tau lub firewall ntawm qhov ntawd. ntu network, thiab koj tsuas yog yuav tsum txwv koj tus kheej rau kev saib xyuas tsis tu ncua siv them nyiaj (tsis kim) lossis qhib qhov kev daws teeb meem, lossis koj xav tau lub firewall, tab sis los ntawm lwm tus neeg muag khoom.