GÉANT: A Defense in Depth Approach TF-MSP Wayne Routly Trondheim.no Security Manager September 2013 DANTE connect • communicate • collaborate
Before ……. connect • communicate • collaborate
Agenda Defence in Depth - A Layered Approach Security Audits & Reviews Snowden Effect Measures in Place connect • communicate • collaborate 3
Defence in Depth - A Layered Approach Independent Layers – Greater Control Avoid Eggs in Basket Approach - Mix of Technologies connect • communicate • collaborate
Security Audits - Reviews Yearly Security Audits 2011 & 2012 Independent Mapped to ISO extended controls EC Commission NREN & ISP Security Working Group A high-level management review of the security measures in place Mix of Commercial, NREN, Government & Sister Networks Report listing Recommendations – Embassy Server – Attack Surface – Criticality Ranking for PoPs – Eastern Europe connect • communicate • collaborate
Snowden Effect connect • communicate • collaborate
Measures in Place Control the Physical Layer Detect Interception – Terminates in GEANT Equipment Device Access – RADIUS & OTP Encryption (as a standard) P2P Encryption Full Disk Encryption – Campus Best Practice TRUST Digitally Sign/Encryp Correspondence Documents / Deliverables connect • communicate • collaborate
Questions & Answers connect • communicate • collaborate
Questions? connect • communicate • collaborate
Recommend
More recommend