19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Safeguard Catalogue - Communications Remarks<br />

____________________________________________________________________ .........................................<br />

If the installation of central network management is being considered, it<br />

should be located in a secure area. Access to this centre should be controlled<br />

using organisational measures. For the relevant provisions, c.f. Chapter 4.3.2<br />

Server Room. <strong>The</strong> management computers from which work can be carried<br />

out should be protected by suitable safeguards. See Chapter 5.1 DOS PC<br />

(single user) and 5.2 UNIX system.<br />

Logging of maintenance work<br />

It must be possible at all times to get a picture of the current plant<br />

configuration, i.e. allocated call numbers and rights, activated and de-activated<br />

user facilities, established follow-me groups, etc. For this purpose, the changes<br />

made must be logged. A neat solution is forced logging by means of a PC<br />

gateway.<br />

Additional controls:<br />

- Has external remote maintenance been disabled?<br />

- Is it ensured that the remote access is not switched on a direct-access line?<br />

- Who can, from where, call the remote access?<br />

- Who has access to the remote-maintenance centre?<br />

- Is the remote maintenance centre accommodated in a protected area?<br />

- Are all instances of remote-maintenance access and all related entries being<br />

logged?<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!