Security+ All-In-One Edition Chapter 16 – Disaster Recovery and Business Continuity Brian E. Brzezicki.

Slides:



Advertisements
Similar presentations
Redundant Array of Independent Disks (RAID) Striping of data across multiple media for expansion, performance and reliability.
Advertisements

RAID A RRAYS Redundant Array of Inexpensive Discs.
RAID Oh yes Whats RAID? Redundant Array (of) Independent Disks. A scheme involving multiple disks which replicates data across multiple drives. Methods.
How to Ensure Your Business Survives, Even if Your Server Crashes Backup Fast, Recover Faster Fast and Reliable Disaster Recovery, Data Protection, System.
Backup Strategy. An Exam question will ask you to describe a backup strategy. Be able to explain: Safe, secure place in different location. Why? – For.
RAID Redundant Arrays of Inexpensive Disks –Using lots of disk drives improves: Performance Reliability –Alternative: Specialized, high-performance hardware.
Fault tolerance and disaster recovery
REDUNDANT ARRAY OF INEXPENSIVE DISCS RAID. What is RAID ? RAID is an acronym for Redundant Array of Independent Drives (or Disks), also known as Redundant.
Business Continuity Planning (BCP) & Disaster Recovery Planning (DRP)
Backups Rob Limbaugh March 2, Agenda  Explain of a Backup and purpose  Habits  Discuss Types  Risk/Scope  Disasters and Recovery.
Slides copyright 2010 by Paladin Group, LLC used with permission by UMBC Training Centers, LLC.
Brian E. Brzezicki. An organization is dependant on resources, personnel and tasks performed on a daily bases to be healthy and profitable. Loss or disruption.
Disaster Protection and Recovery By: Michael Morrell Ross Ashenfelter Teresa Furnish Karla Maddox.
Stephen S. Yau CSE , Fall Contingency and Disaster Recovery Planning.
Disaster Prevention and Recovery Presented By: Sean Snodgrass and Theodore Smith.
Processing Integrity and Availability Controls
Advanced Databases DBA: Backups 1. Advanced Databases Agenda Define backup Discuss Backup Terminology Explain various backup and restore options in Oracle.
Implementing Disaster Protection
Servers Redundant Array of Inexpensive Disks (RAID) –A group of hard disks is called a disk array FIGURE Server with redundant NICs.
1. Preventing Disasters Chapter 11 covers the processes to take to prevent a disaster. The most prudent actions include Implement redundant hardware Implement.
John Graham – STRATEGIC Information Group Steve Lamb - QAD Disaster Recovery Planning MMUG Spring 2013 March 19, 2013 Cleveland, OH 03/19/2013MMUG Cleveland.
Copyright © 2015 Pearson Education, Inc. Processing Integrity and Availability Controls Chapter
Processing Integrity and Availability Controls
Chapter 10 Information Systems Controls for System Reliability—Part 3: Processing Integrity and Availability Copyright © 2012 Pearson Education, Inc.
November 2009 Network Disaster Recovery October 2014.
ICOM 6005 – Database Management Systems Design Dr. Manuel Rodríguez-Martínez Electrical and Computer Engineering Department Lecture 6 – RAID ©Manuel Rodriguez.
This courseware is copyrighted © 2011 gtslearning. No part of this courseware or any training material supplied by gtslearning International Limited to.
LAN / WAN Business Proposal. What is a LAN or WAN? A LAN is a Local Area Network it usually connects all computers in one building or several building.
Chapter 10 : Designing a SQL Server 2005 Solution for High Availability MCITP Administrator: Microsoft SQL Server 2005 Database Server Infrastructure Design.
Introduction to Computer Networks Introduction to Computer Networks.
Day 10 Hardware Fault Tolerance RAID. High availability All servers should be on UPSs –2 Types Smart UPS –Serial cable connects from UPS to computer.
Principles of Computer Security: CompTIA Security + ® and Beyond, Second Edition © 2010 Disaster Recovery, Business Continuity, and Organizational Policies.
Lesson 20. Fault Tolerance and Disaster Recovery.
Business Continuity and Disaster Recovery Chapter 8 Part 2 Pages 914 to 945.
IS 380.  Provides detailed procedures to keep the business running and minimize loss of life and money  Identifies emergency response procedures  Identifies.
Chapter 11: Designing a Data Recovery Solution for a Database MCITP Administrator: Microsoft SQL Server 2005 Database Server Infrastructure Design Study.
N-Tier Client/Server Architectures Chapter 4 Server - RAID Copyright 2002, Dr. Ken Hoganson All rights reserved. OS Kernel Concept RAID – Redundant Array.
BACKUP & RESTORE The purpose of backup is to protect data from loss. The purpose of restore is to recover data that is temporarily unavailable due to some.
Chapter 18: Windows Server 2008 R2 and Active Directory Backup and Maintenance BAI617.
Chapter 8 Implementing Disaster Recovery and High Availability Hands-On Virtual Computing.
Module 7. Data Backups  Definitions: Protection vs. Backups vs. Archiving  Why plan for and execute data backups?  Considerations  Issues/Concerns.
Chapter 2: Non functional Attributes.  It infrastructure provides services to applications  Many of these services can be defined as functions such.
David N. Wozei Systems Administrator, IT Auditor.
Business Continuity & Disaster recovery
1 Availability Policy (slides from Clement Chen and Craig Lewis)
Co-location Sites for Business Continuity and Disaster Recovery Peter Lesser (212) Peter Lesser (212) Kraft.
© 2001 by Prentice Hall11-1 Local Area Networks, 3rd Edition David A. Stamper Part 4: Installation and Management Chapter 11 LAN Administration: Backup.
IOS110 Introduction to Operating Systems using Windows Session 10 1.
Mark A. Magumba Storage Management. What is storage An electronic place where computer may store data and instructions for retrieval The objective of.
11 DISASTER RECOVERY Chapter 13. Chapter 13: DISASTER RECOVERY2 OVERVIEW  Back up server data using the Backup utility and the Ntbackup command  Restore.
Disaster Recovery and Business Continuity Planning.
"1"1 Introduction to Managing Data " Describe problems associated with managing large numbers of disks " List requirements for easily managing large amounts.
McLean HIGHER COMPUTER NETWORKING Lesson 15 (a) Disaster Avoidance Description of disaster avoidance: use of anti-virus software use of fault tolerance.
CIT 470: Advanced Network and System AdministrationSlide #1 CIT 470: Advanced Network and System Administration Disaster Recovery.
National Archives and Records Administration, Preparing for the Unexpected ESSENTIAL ELEMENTS: ANALYSIS.
Fault Tolerance and Disaster Recovery. Topics Using Antivirus software Fault tolerance –Power –Redundancy –Storage –Services Disaster Recovery –Backup/Restore.
Principles of Computer Security: CompTIA Security + ® and Beyond, Third Edition © 2012 Principles of Computer Security: CompTIA Security+ ® and Beyond,
Install, configure and test ICT Networks
Principles of Computer Security, Fourth Edition Copyright © 2016 by McGraw-Hill Education. All rights reserved. Disaster Recovery and Business Continuity,
1 CEG 2400 Fall 2012 Network Servers. 2 Network Servers Critical Network servers – Contain redundant components Power supplies Fans Memory CPU Hard Drives.
RAID Tony Rogerson SQL Server MVP Torver Computer Consultants
Information Security Crisis Management Daryl Goodwin.
RAID TECHNOLOGY RASHMI ACHARYA CSE(A) RG NO
CompTIA Security+ Study Guide (SY0-401)
MANAGEMENT of INFORMATION SECURITY, Fifth Edition
Processing Integrity and Availability Controls
CompTIA Security+ Study Guide (SY0-501)
RAID RAID Mukesh N Tekwani
Using the Cloud for Backup, Archiving & Disaster Recovery
RAID RAID Mukesh N Tekwani April 23, 2019
Presentation transcript:

Security+ All-In-One Edition Chapter 16 – Disaster Recovery and Business Continuity Brian E. Brzezicki

Business continuity One major security concern is availability. Often overlooked is the damage that can be caused by disaster which would stop you from performing some business function

Some Types of Disasters (475) Natural Fire Hurricane Earthquake Tornado Man Made Hacking Political riot Gas leak Key staff resigning

Disaster Recovery Plan (476) Disaster Recovery Planning deals with trying to prepare for a disaster in order to minimize the effects and as such the loss. Spells out the required actions and resources necessary to restore mission critical processes. Ideally make the recovery process as transparent to users as possible One of the most important steps in DRP Planning is the BIA (in a few slides)

BIA* (477) A BIA helps identify mission critical functions (examples?) and the effect a disaster would have on those functions. –Determine for each function the MTD/category of each Critical – 1-4 hours Urgent – 24 hours Important – 72 hours Normal – 7 days Non-essential – 30 days Once BIA has been done, contingency planning can be done

Contingency plan Who is responsible for each business function What individuals are needed What is the priority Responsibility checklist Emergency contacts Warning system Procedures (more)

Contingency Plan (n/b) Documentation –System configuration –Diagrams –Vendor and supplier lists – why? –Backup plan Alternative sites (next slide)

Alternate sites (484) Types of sites are provided by a “service bureau” Hot site – –fully configured ready for operation in a few hours –Expensive –Can be used for DRP testing Warm site –Only partially configured –Cannot really be used for DRP testing –Less Cold site –Just basic environment (space, AC, power etc) –No equipment –Cheap –Cannot be used for DRP testing

Alternate sites (n/b) Rather than having a “subscription service” the company may own it’s own redundant sites Mirror sites Multiple data processing sites

Backups

Backups (481) Backups are a critical component in not only DRP but also “normal operation”.

Backup types (481)) First thing we need to talk about is the “archive bit” – what is it? Type of backups (next slides) Full Incremental Differential

Full (481) All data everyday! Clear archive bit after backups

Incremental (481) Only files that changed since last full or last incr Reset the archive bit

Differential (481) Only files changed since last full or diff DO NOT reset the archive bit

Backup Types Order the backup types by time needed to backup. Explain the Restore process for each type Order the backup types by ease needed to restore.

Backup storage Should be at Secure off-site location –Bank vault –Other organization location –Secure storage company Additional set On site for quick access –Why?

Backups concerns Ensure all necessary data is backed up Ensure documentation exists on backup and restore process Verify backups Do test restores Ensure all necessary team members are trained and up to date on this. (rotate responsibilities to keep everyone fresh) Backups are the IT persons biggest “risk” It used to keep me up at night.

Questions (n/b) If I do a full backup every day, and I lose my data on Wednesday morning. What tapes would I need to restore, what is the restoration order? If I do a full backup on Sunday and incremental mon-sat, and my system is lost on Wednesday morning, what tapes do I need to restore, what is the restoration order? (problems with this?) If I do a full backup on Sunday and diffs on mon- sat, system lost on Wednesday morning, what tapes do I need to restore, what is the restoration order. Can I mix incremental and differential backups? Why or why not?

One other type of backup (481) There is a new type of backup, called a “delta” or “continuous backup or transactional backup” This is a very exciting idea. How it works. For each file make sure you get a full copy when the file is created Anytime a file changes, copy ONLY the changes that occurred. Do this in real time if possible

Continuous Backups (481) Advantages: Much less backup time/cost Point in time recovery!!! Real Time! No scheduled backups Disadvantages Usually require online server to handle changes

Redundancy and Fault Tolerance, Single Points of Failure

Single Points of Failure (n/b) When planning for a disaster its IMPERATIVE you determine what places are single points of failure for your business process.. Implement the solutions to make these high availability, using redundancy and fault tolerant technology.

Redundancy and Fault Tolerance Both of these terms are essential to DRP Redundancy (Webster's) - serving as a duplicate for preventing failure of an entire system (as a spacecraft) upon failure of a single component Fault Tolerant (Webster's) - relating to or being a computer or program with a self-contained backup system that allows continued operation when major components fail

RAID

Kills Bugs… dead!

RAID Raid 0 – striping (see visual) Fast access No redundancy Actually increases probability of failure

RAID Raid 1 – mirroring (see visual) –Identical copies of data –Expensive –Faster than a single disk for reading –Can lose a disk –What is disk duplexing

Normal RAID

RAID 1 - Disk Duplexing (n/b)

Parity What is parity?

Parity If I have an even number of 1s set the 4 th bit to 1, if odd, set to 0 Disk1Disk2Disk3Disk4 (P) If I lose a disk… I can determine the lost information!

Parity If I have an even number of 1s set the 4 th bit to 1, if odd, set to 0 Disk1XXXXDisk3Disk4 (P) 0 ? 11 What does disk 2’s data HAVE to be, in order for the parity bit to be 1?

RAID 485 RAID 5 – Striped sets with parity (see visual) –What is parity? –At least 3 disks –Capacity of one disk “lost” / more disks less waste –Fast reads –Writes can be slower, especially small writes –Can lose single disk –If disk lost you are in “critical mode” Another disk, total failure Slow operation while in critical mode

RAID 3 (similar to 5, easier to explain)

RAID 5 (485)

Clustering!

Clustering

Clustering (n/b) What is clustering? If you like Clustering.. You’ll love virtualization! Unforutnately we don’t have time to go over it but Virtualization is the future and is incredibly powerful and useful. (and makes administrators life… MUCH easier) On your own, check out VMware vSphere or Xen. It’s well worth the time.

Spare Parts (486) When preparing your DRP, you should always consider the possibility that some equipment will be destroyed (maybe even RAID etc). You should understand the MTTR and how long replacement equipment or fixes will take, and if necessary stockpile spare parts! Especially if you have legacy equipment.

Legacy Equipment

1982

Chapter 16 - Review Q. What is a Hot Site Q. What is a warm site. Q. What is a cold Site. Q. What is the difference between a Hot Site and a Mirror Site

Chapter 16 - Review Q. What is a Full Backup Q. What is an incremental Backup Q. What is a differential Backup? Q. What is a continuous Backup?

Chapter 16 - Review Q. What is RAID0 Q. What is RAID1 Q. What is RAID5 Q. If I have 4 disks each 30G in a RAID 5, how much usable storage do I have?