Layered Security

 

Layered Security Approach

No single product can solve all security needs. Layered approach of best of breed products is the only effective and efficient way of securing your Enterprise Network. There are essentially four layers that require security protection:

  1. LAN perimeter protection: securing the network from the outside threats
  2. Trusted LAN protection: securing the LAN from inside threats
  3. Application protection
  4. Storage protection

LAN perimeter protection

At the perimeter there are 3 areas where INSA can help:

  1. Server load balancing with appliances allowing redirection of traffic in the event of disaster
  2. Link load balancing in case of multiple ISP termination to improve business continuation and as a side benefit allow rerouting of traffic based upon ISP¹s charge rates.
  3. The first line of defense is typically a firewall. Unfortunately, firewalls cannot analyze the content therefore exposure to malicious email, virus and worms, intrusions and banned content. INSA delivers appliances placed in passive (or bridge) mode behind existing firewalls to effectively provide real time anti-virus protection, intrusion protection and prevention (isolation of malicious code and hackers), anti-spam and QoS, such removing the threat and perceived latency, thus substantially enhancing the security.

Trusted LAN protection

All communication going out of the enterprise network should fall under the same scrutiny as the incoming traffic. INSA provided appliances are designed for the Triple A layer protection - Authenticate, Authorize and Audit. Such appliance monitor and control all outgoing traffic by authenticating and authorizing all users based on a set of credentials in addition to providing an ongoing audit.

Application protection

  1. Load balancing based on application logic such as content, connection speed and a variety of other variables
  2. Web applications protection from the know as well as the unknown (so called 0 day attack as defined by the OWASP consortium) E-commerce attacks
  3. Events such as Cross site scripting, Sequel injection, cookie poisoning are all stopped at the application level
  4. Legacy environment protection through appliances that deliver secure SSH to mainframes

Storage protection

Storage protection—the last and often forgotten layer from the security standpoint. An example of security protection is encryption delivering Hippa and Sarbain Oxley compliances.