[Agenda]
[Examples]
[Network Partitioning]
[Concepts]
[Policy]
[Process]
[Organization]
[HW-SW]
[Cases studies]
[Conclusion]
[Resources]
Industry meshed network
(1/3)
Industry company, worldwide
Security objectives
Brings central control over global worldwide connectivity around the network
control access to intranet web servers and Netbios shares
minimize risks with subcontractors
limit impact of social conflicts
People should have access to what they need and not the whole company
Security enforced with IP filtering distributed in SPEP routers
Cisco IOS routers
Cisco switches for VLANs
An HTTP proxy with authentication complete HTTP partitioning
Allow the management of exceptions
Three HTTP servers type :
public : access to all
restricted : access to subsidiary and exceptions
private : access to subsidiary
® ©
Hervé Schauer Consultants
December 1999 - 142, rue de Rivoli - F-75001 Paris - France
Phone: +33 141 409 700 - Fax: +33 141 409 709 - Email: <secretariat@hsc.fr>
- Page 89 -