rj-45As a person that makes a living being a network techy there’s something I often wonder.

How many folks actually undertake any form of network maintenance? And by network I am meaning the bits of kit that allow your computer to talk to another for whatever reason. A quick google search would seem to imply that most folks think network maintenance to be checking on your PC’s, printers and servers.

I don’t, and here’s a list of some of the things I think you should do or have in place.

  • Do you change default passwords on network kit?
  • Do you change passwords when people leave?
  • Do you actively seek out bug fixes and apply them?
  • Do you store copies of your network configs?
  • Do you have network drawings?
  • Are they checked for accuracy periodically?
  • Do you even monitor your network for problems?
  • Do you have a baseline performance level that you periodically check against?
  • Do you look for rogue Access Points or modems?
  • What process do you have in place in case of hardware faults?
  • Do you have a documented change process?

These are just some of the things one should do (and I’m certain you have more) – but I’m constantly amazed at how lax people are.

We know, from constant polls, blogs, etc that most attacks on a network occur from internal users. I forget the exact figure now (I’m sure Google can help) but the point is whilst we know this and try to mitigate against it, we tend to forget that internal people sometimes become ex-internal people. Yet they still have that knowledge.

Just the other day I was doing an audit of files on my PC at home and discovered a list of passwords I’d created for my benefit at a prior employer. I know I shouldn’t have, but …. anyway, being one of their network guys I know the way in and amazingly I can almost guarantee they haven’t changed any of the passwords.

Why? Well because in the time I was there we never bothered when others left … and I doubt very much that attitude has changed.

Don’t get me wrong – I’m not about to use any of this info, I just find it interesting.

So what am I missing from my list?

Do you do any of these?

Post to Twitter Post to Digg Post to Facebook Post to Reddit Post to StumbleUpon