{"id":94576,"date":"2018-11-19T01:36:31","date_gmt":"2018-11-19T09:36:31","guid":{"rendered":"https:\/\/www.paloaltonetworks.com\/blog\/?p=94576"},"modified":"2018-11-19T01:36:31","modified_gmt":"2018-11-19T09:36:31","slug":"saldiri-yuzeyinizi-buyuk-olcude-azaltmak-icin-bir-koruma-yuzeyi-tanimlayin","status":"publish","type":"post","link":"https:\/\/www2.paloaltonetworks.com\/blog\/2018\/11\/saldiri-yuzeyinizi-buyuk-olcude-azaltmak-icin-bir-koruma-yuzeyi-tanimlayin\/?lang=tr","title":{"rendered":"SALDIRI Y\u00dcZEYINIZI B\u00dcY\u00dcK \u00d6L\u00c7\u00dcDE AZALTMAK \u0130\u00c7IN BIR KORUMA Y\u00dcZEYI TANIMLAYIN"},"content":{"rendered":"<p>Siber g\u00fcvenlikte insanlar\u0131n en az odakland\u0131klar\u0131 hususlardan biri, korumaya \u00e7al\u0131\u015ft\u0131klar\u0131 \u015feyi tan\u0131mlamakt\u0131r. Herkes sald\u0131r\u0131lara kar\u015f\u0131 korunmak istedi\u011fi konusunda hemfikir, ancak bu sald\u0131r\u0131lar belirli bir \u015feye y\u00f6nelik olarak ger\u00e7ekle\u015ftiriliyor. Peki o \u015fey nedir?<\/p>\n<p>Sald\u0131r\u0131 y\u00fczeyini azaltmak i\u00e7in y\u0131llard\u0131r \u00f6zenli bir \u015fekilde \u00e7al\u0131\u015f\u0131yoruz ancak ne yaz\u0131k ki bu durum evrenin geni\u015flemeye devam etmesine benziyor. Her yeni teknolojiyle birlikte yeni sorunlar ve g\u00fcvenlik a\u00e7\u0131klar\u0131 ortaya \u00e7\u0131k\u0131yor. En dikkat \u00e7ekeni de sald\u0131r\u0131 y\u00fczeyinde devasa bir art\u0131\u015fa yol a\u00e7an nesnelerin internetidir. Yonga setlerine yap\u0131lan sald\u0131r\u0131lar\u0131n \u2013\u00a0<u><a href=\"https:\/\/www.paloaltonetworks.com\/blog\/2018\/01\/threat-brief-meltdown-spectre-vulnerabilities\">Spectre and Meltdown<\/a><\/u>\u00a0\u2013 temelindekiler gibi, yeni ortaya \u00e7\u0131kan g\u00fcvenlik a\u00e7\u0131klar\u0131 neredeyse her modern bilgi i\u015flem sistemini genel sald\u0131r\u0131 y\u00fczeyine de eklemi\u015ftir.<\/p>\n<p><div style=\"max-width:100%\" data-width=\"922\"><span class=\"ar-custom\" style=\"padding-bottom:44.25%;\"><img loading=\"lazy\" decoding=\"async\"  class=\"alignnone size-full wp-image-92493 lozad\"  data-src=\"https:\/\/www.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage.png\" alt=\"\" width=\"922\" height=\"408\" srcset=\"https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage.png 922w, https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage-230x102.png 230w, https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage-768x340.png 768w, https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage-500x221.png 500w, https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage-510x226.png 510w, https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage-90x40.png 90w, https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/10\/ZeroTrustImage-650x288.png 650w\" sizes=\"auto, (max-width: 922px) 100vw, 922px\" \/><\/span><\/div><\/p>\n<p>Zero Trust\u2019ta, sald\u0131r\u0131 y\u00fczeyinin makro d\u00fczeyine odaklanmak yerine neyi korumam\u0131z gerekti\u011fini belirliyoruz: Sald\u0131r\u0131 y\u00fczeyinin veya koruma y\u00fczeyinin olas\u0131 en k\u00fc\u00e7\u00fck boyuta d\u00fc\u015f\u00fcr\u00fclmesi. Bir Zero Trust a\u011f\u0131 genellikle \u015fu d\u00f6rt \u015feyden en az birine dayal\u0131 bir koruma y\u00fczeyi tan\u0131mlar (VUVH k\u0131saltmas\u0131yla hat\u0131rlan\u0131r):<\/p>\n<p><strong>V<\/strong>eri:\u00a0<em>Hangi verilerin korunmas\u0131 gerekiyor?<\/em><\/p>\n<p><strong>U<\/strong>ygulamalar:\u00a0<em>Hangi uygulamalar hassas bilgileri kullan\u0131yor?<\/em><\/p>\n<p><strong>V<\/strong>arl\u0131klar:\u00a0<em>En hassas varl\u0131klar hangileridir?<\/em><\/p>\n<p><strong>H<\/strong>izmetler:\u00a0<em>DNS, DHCP ve Active Directory gibi hizmetlerden hangileri normal BT operasyonlar\u0131n\u0131 kesintiye u\u011fratmak i\u00e7in istismar edilebilir?<\/em><\/p>\n<p>Koruma y\u00fczeyinin en muhte\u015fem yan\u0131, yaln\u0131zca b\u00fcy\u00fckl\u00fc\u011f\u00fcn\u00fcn genel sald\u0131r\u0131 y\u00fczeyinden k\u00fc\u00e7\u00fck olmas\u0131 de\u011fil, her zaman bilinebilir olmas\u0131d\u0131r. Bug\u00fcn ne olmas\u0131 gerekti\u011fini bilemeyebilirsiniz ancak her zaman \u00f6\u011frenebilirsiniz. \u00c7o\u011fu kurulu\u015f sald\u0131r\u0131 y\u00fczeyini ger\u00e7ek anlamda tan\u0131mlayamad\u0131\u011f\u0131ndan s\u0131zma testi yapanlar her zaman i\u00e7eri girebilir. Bir kurulu\u015fun makro \u00e7evresine izinsiz girmenin \u00e7ok say\u0131da yolu vard\u0131r. Geni\u015f \u00e7evre tabanl\u0131 g\u00fcvenlik yakla\u015f\u0131m\u0131n\u0131n ba\u015far\u0131s\u0131z olmas\u0131n\u0131n nedeni budur. Eski modelde g\u00fcvenlik duvarlar\u0131 ve izinsiz giri\u015f \u00f6nleme teknolojileri gibi denetimler \u00e7evrenin, ula\u015fabilece\u011finiz koruma y\u00fczeyine \u00e7ok uzak olan kenarlar\u0131na itilmi\u015ftir.<\/p>\n<p>Zero Trust\u2019ta, bir koruma y\u00fczeyi tan\u0131mlayarak denetimleri m\u00fcmk\u00fcn oldu\u011fu kadar o koruma y\u00fczeyinin yak\u0131na g\u00f6t\u00fcr\u00fcr ve bir mikro \u00e7evre tan\u0131mlar\u0131z. B\u00f6l\u00fcmleme a\u011f ge\u00e7idi i\u015flevi g\u00f6ren yeni nesil teknolojimizle, Katman 7\u2019deki a\u011flar\u0131 b\u00f6l\u00fcmlere ay\u0131rabiliyor ve trafi\u011fin mikro \u00e7evrenin i\u00e7ine ve d\u0131\u015f\u0131na ta\u015f\u0131d\u0131klar\u0131n\u0131 ayr\u0131nt\u0131l\u0131 bi\u00e7imde denetleyebiliyoruz. Bir ortamdaki hassas verilere veya varl\u0131klara ger\u00e7ekten eri\u015fmesi gereken kullan\u0131c\u0131lar\u0131n ya da kaynaklar\u0131n say\u0131s\u0131 s\u0131n\u0131rl\u0131d\u0131r. S\u0131n\u0131rl\u0131, kesin ve anla\u015f\u0131l\u0131r ilke a\u00e7\u0131klamalar\u0131 olu\u015fturarak rakiplerimizin ba\u015far\u0131l\u0131 bir siber sald\u0131r\u0131 y\u00fcr\u00fctme becerilerini k\u0131s\u0131tlayabiliriz.<em>\u00a0<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Siber g\u00fcvenlikte insanlar\u0131n en az odakland\u0131klar\u0131 hususlardan biri, korumaya \u00e7al\u0131\u015ft\u0131klar\u0131 \u015feyi tan\u0131mlamakt\u0131r. Herkes sald\u0131r\u0131lara kar\u015f\u0131 korunmak istedi\u011fi konusunda hemfikir, ancak bu sald\u0131r\u0131lar belirli bir \u015feye y\u00f6nelik olarak ger\u00e7ekle\u015ftiriliyor. Peki o \u015fey nedir? &hellip;<\/p>\n","protected":false},"author":391,"featured_media":86690,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[4827],"tags":[],"coauthors":[4243],"class_list":["post-94576","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized-tr"],"jetpack_featured_media_url":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2018\/08\/thought-bubble-blog-feature-img-650x300.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/94576","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/users\/391"}],"replies":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/comments?post=94576"}],"version-history":[{"count":1,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/94576\/revisions"}],"predecessor-version":[{"id":94577,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/94576\/revisions\/94577"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/media\/86690"}],"wp:attachment":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/media?parent=94576"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/categories?post=94576"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/tags?post=94576"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/coauthors?post=94576"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}