Speak to an expert : Live Chat exa online chat

Knowledge HubTMeducation

Ensuring Robust Security Through Regular Firewall Updates

In the rapidly evolving cyber landscape, the importance of robust network security systems cannot be overstated. Exa, is deeply committed to maintaining the highest security standards by ensuring our Fortigate Firewall platform remains fully patched and up-to-date.

The Necessity of Vigilance

Our commitment was put to the test back in February, following a critical advisory from Fortinet (detailed on their PSIRT page). This alert highlighted vulnerabilities that could potentially be exploited by malicious entities. The urgency of this advisory was underscored by a reported breach that month, where hackers offered admin access to compromised systems.  A scenario vividly reported on Cybersecurity News

Our Response

We responded swiftly to the Fortinet advisory. Recognising the severity of the situation, our team deployed several strategic measures to ensure our networks and those of our clients remained secure and impervious to the exploit:

  1. Immediate Patch Implementation: Upon receiving the advisory, our team worked diligently to implement the necessary patches to the affected systems. By prioritising this update we were able to secure our networks quickly, before any malicious activities could impact our systems. All of our managed Fortigate systems were fully patched within 24 hours of the advisory being received from Fortinet.

  2. Comprehensive System Audits: Concurrent with the patch implementation, our Networking team conducted thorough audits of our network infrastructure to identify any anomalies or signs of a breach. This proactive measure helped us confirm the integrity of our data and systems post-update.

  3. Enhanced Monitoring Protocols: Understanding that new vulnerabilities can emerge at any time, we enhanced our monitoring protocols. This included increasing the frequency and depth of our surveillance to detect and respond to threats more effectively.

  4. Customer Communication: We believe in transparency and the importance of keeping our customers informed. Preceding the update, we communicated this via our status page, explaining the situation, our response, and advising them on steps we are taking to ensure our security measures are effective.

Lessons Learned and Looking Forward

The February incident was a stark reminder of the persistent threat landscape we navigate. It reinforced the importance of maintaining a vigilant, responsive, and proactive cybersecurity posture. Here are some key takeaways and steps we continue to uphold:

  • Regular Updates and Patching: We maintain a strict schedule for regular updates and patching of our systems, especially critical security infrastructures like the Fortigate Firewall.

  • Continuous Learning and Adaptation: Each security threat offers valuable lessons that we incorporate into our strategic planning. We continually adapt our security measures based on new information and emerging threats.

  • Partnerships and Collaboration: Working closely with technology partners like Fortinet allows us to stay ahead of potential security issues through real-time intelligence sharing and collaborative problem-solving.

  • Educating Our Customers and Community: We recommend any customers who wish to update their passwords use our recent guide on best practice and we continue to share our knowledge and learning to our customers through regular updates, empowering them to strengthen their defence against cyber threats.

Conclusion

At Exa, we are committed to providing our clients with the safest and most reliable network environments. The incident in February was a reminder of the challenges we face but also a testament to the effectiveness of our rapid response and the robustness of our security practices. As we move forward, we remain dedicated to enhancing our systems and educating our community, ensuring that security is not just a response but a continuous commitment.

Suggested Next Read

Related Knowledge Hub™ Articles

ISPA Testing

The Exa Foundation

Contact us

Other

Contact us

Is DarkLight connectivity best suited to you?

Dark fibre is perfect if you are looking for a potentially limitless, ultrafast connection with complete flexibility and control.

If you fully rely on the internet, a dark fibre connection could be the best option for you.

Is Leased Line connectivity best suited to you?

Leased Lines are best suited to you if you have high bandwidth requirements and need a reliable, uncontended service.

It is ideal for you if you regularly carry out large uploads and downloads, use cloud based services and a VoIP telephone system as well as video conferencing, for everyday communication.

Is GPON connectivity best suited to you?

GPON is a great choice for you if you need gigabit speeds but don’t need them to be symmetrical. It is becoming more widely available across the UK but may not be immediately available to you yet.

Is Rural Fibre connectivity best suited to you?

If you want to make the move to full fibre, but are based in a rural area, this option is for you.

Is FTTP connectivity best suited to you?

If you have a number of users who use cloud-based applications to upload and download data on a daily basis, but don’t transfer large amounts of data, FTTP might be your best option.

Is Gfast connectivity best suited to you?

If your line cannot support a minimum of 100Mbps, this connection is not for you. Gfast must meet the speed as a minimum. 

If your line meets this need, and you’re looking for an ultrafast, consistent and reliable connection without the hassle and upheaval of construction work – this could be a good fit.

It’s worth noting that Gfast is a stop gap to FTTP, and is not a technology that is likely to be around for a long time.

Is FTTC connectivity best suited to you?

If you need more bandwidth but don’t really need a guaranteed speed, FTTC could be for you. It is widely available throughout the UK, making it suitable as a main connection. As this connection provides higher speeds than ADSL, it is also a good option for a back up to a leased line.

As with ADSL, once the PSTN is turned off in 2025/26, FTTC will become virtually obsolete and at the very least you will require FTTP to remain connected.

Sales

Sales

Office hours

Monday: 8:30am – 5pm
Tuesday: 8:30am – 5pm
Wednesday: 8:30am – 5pm
Thursday: 8:30am – 5pm
Friday: 8:30am – 5pm
Saturday: Closed
Sunday: Closed

Finance

Contact us

Office hours

Monday: 8am – 4pm
Tuesday: 8am – 4pm
Wednesday: 8am – 4pm
Thursday: 8am – 4pm
Friday: 8am – 4pm
Saturday: Closed
Sunday: Closed

Provisioning

Contact us

Office hours

Monday: 8am – 5pm
Tuesday: 8am – 5pm
Wednesday: 8am – 5pm
Thursday: 8am – 5pm
Friday: 8am – 5pm
Saturday: Closed
Sunday: Closed

Is DSL connectivity best suited to you?

DSL connections offer very limited bandwidth so it might be right for you if you typically use the internet for less data-intensive tasks. If you’re sending emails, browsing the web, downloading very small files and working with small amounts of data – you should be fine with DSL.

It is worth noting connections based on copper wire, like DSL, will be switched off in the UK by Openreach, with a phased approach due to begin at the end of 2025. If you don’t have a fibre connection at the moment, you’ll need to upgrade this as well as move to a VoIP telephone system.

Technical Support

Contact us

Office hours

Monday: 8am – 6pm
Tuesday: 8am – 6pm
Wednesday: 8am – 6pm
Thursday: 8am – 6pm
Friday: 8am – 6pm
Saturday: 10am – 4pm
Sunday: 10am – 4pm