Defending a system · Defendendo um sistema
Walls at the edge
- A firewall sits between your network and the internet, blocking traffic that breaks the rules.
- A proxy server stands in front of your servers, hiding them and filtering requests.
- Together they keep unwanted visitors out before they reach anything important.
Muros na borda
- Um firewall fica entre sua rede e a internet, bloqueando tráfego que viola as regras.
- Um servidor proxy fica na frente de seus servidores, ocultando-os e filtrando solicitações.
- Juntos, eles mantêm visitantes indesejados fora antes que alcancem algo importante.
Software defences
- Anti-malware (anti-virus / anti-spyware) scans for and removes known malware.
- Automatic updates patch weaknesses as soon as fixes are released — most attacks use old, known holes.
Defesas de software
- Anti-malware (anti-vírus / anti-spyware) escaneia e remove malware conhecido.
- Atualizações automáticas corrigem vulnerabilidades assim que as correções são lançadas — a maioria dos ataques usa buracos antigos e conhecidos.
Limiting the damage
- Access levels give each person only the rights they need — a student cannot change a teacher's grades.
- Privacy settings control who can see your data on a service.
- If one account is broken into, good access levels stop the attacker reaching everything.
Limitando os danos
- Níveis de acesso dão a cada pessoa apenas os direitos necessários — um aluno não pode alterar as notas de um professor.
- Configurações de privacidade controlam quem pode ver seus dados em um serviço.
- Se uma conta for invadida, bons níveis de acesso impedem que o atacante alcance tudo.
Smart habits
- Check the URL of a link before clicking, and the spelling and tone of messages.
- Look for HTTPS (the padlock) before entering a password — that is encryption at work, which we'll cover soon.
Covers: IGCSE 5.3 (solutions), A-Level 6.1 (security measures).
Hábitos inteligentes
- Verifique a URL de um link antes de clicar, e a ortografia e tom das mensagens.
- Procure por HTTPS (o cadeado) antes de entrar com uma senha — isso é criptografia em ação, que cobriremos em breve.
Cobre: IGCSE 5.3 (soluções), A-Level 6.1 (medidas de segurança).
Now you try
- First act as a firewall: let the allowed ports through and collect everything else in a blocked list.
- Then match each threat to the defence that stops it.
Agora você tenta
- Primeiro atue como um firewall: deixe passar as portas permitidas e recoja tudo o mais em uma lista bloqueada.
- Depois combine cada ameaça com a defesa que a impede.
Common mistakes
- Use layers: firewall, updates, anti-malware and backups.
- No single measure is enough — this is defence in depth.
Erros comuns
- Use camadas: firewall, atualizações, anti-malware e backups.
- Nenhuma medida isolada é suficiente — esta é a defesa em profundidade.
Act as a firewall. Only ports in allowed may pass. Build a list blocked of every requested port that is not · não allowed, and print it. · Atue como firewall. Apenas portas em allowed podem passar. Construa uma lista blocked de todas as portas solicitadas que não são permitidas, e imprima-a.
Click Run to see the output here. · Clique em Executar para ver a saída aqui.
Match each problem to the defence that stops it: anti-malware, updates or · ou access levels. · Corresponda cada problema à defesa que o impede: anti-malware, updates ou access levels.
Click Run to see the output here. · Clique em Executar para ver a saída aqui.