Eicon Networks S92 Manual de usuario Pagina 95

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 209
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 94
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 95
ConfiguringtheN orton3_IDSFirewall:
Refertot he“ProductsPreparation”section forinformationonNortonPersonalFirewall2002.
Refertot he“ProductsPreparation”section forinformationonWindows2000hardening.
Norton3_IDSsitsbetweentheinternal coreswitch andtheInternal_Devsegment.
SecurityPolicy:
Thepoliciestobeenforcedhereare:
1. NoconnectiontowardsInternal_Devcaneverbeinitiatedfromanyother
segment.
2. OutboundaccessrequestsmadebyInternal_Devarenotrestrictedbythis
firewall,butby otherfirewallsonthenetwork.
3. Whenthedevelopersaccesstheinternet,JavaandActiveXcodesareblocked.
4. Dropandlogeverythingelse.
DefiningtheZones:
n Inournetwork,Internal_Dev (192.168.20.0)itselfmustbetrustedsothatitcan
makeoutgoingrequests. Itsrequeststowardstheinternetshouldberestrictedat
ISA_Cache.ItsrequeststowardsPublic_Servicesshouldbefilteredat
FW2_B2C.
n Fornetworkmaintenanceandotheradministrativepurposes,Internal_Admin
(192.168.19.0)mustbeallowedtoaccessInternal_Dev. Therefore,192.168.19.0
shouldbeintheTrustedlist.
n NorequeststowardsInternal_DevcaneverbemadefromInternal_Clients
(192.168.17.0),Critical_Resources(192.168.21.0), Public_Services
(192.168.8.0),RAS_Net(192.168.22.0)nor Core_Net(192.168.16.0).These
subnetsshouldallbeRestricted.
n WhetherornottrafficcanbeinitiatedfromInternal_Serversdependsonthe
serverapplicationsinuse.SinceInternal_Serversisprettysecureunderthe
protectionoftheVisNeticfirewall,andjustincasethatcertainmaintenance
traffichastooriginatefromtheserverstotheclients,wewillhave
Vista de pagina 94
1 2 ... 90 91 92 93 94 95 96 97 98 99 100 ... 208 209

Comentarios a estos manuales

Sin comentarios