[Agenda]
[Examples]
[Network Partitioning]
[Concepts]
[Policy]
[Process]
[Organization]
[HW-SW]
[Cases studies]
[Conclusion]
[Resources]
Determine domains to partition
Apply business needs
Corporate security policy
Specific security policies of jobs, departments, etc
Exchanges type
Adapt the network
Homogenize protocols towards IP and avoid protocols encapsulation
Rationalize in a limited number of interconnections some parts
Find what is your external perimeter
list all interconnections
Other architecture issues
A security domain should
bind an
existing entity
within the organization
project, department, etc
head by a
responsible person
Interconnection between domains becomes the security policy enforcement points (SPEP)
® ©
Hervé Schauer Consultants
December 1999 - 142, rue de Rivoli - F-75001 Paris - France
Phone: +33 141 409 700 - Fax: +33 141 409 709 - Email: <secretariat@hsc.fr>
- Page 64 -