19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Safeguard Catalogue - Organisation Remarks<br />

____________________________________________________________________ .........................................<br />

S 2.139 Survey of the existing network environment<br />

Initiation responsibility: Head of <strong>IT</strong> Section, <strong>IT</strong> Security Management<br />

Implementation responsibility: Administrators<br />

A survey of the existing network environment is required for a systematic<br />

security analysis of the network. Such a survey is also needed if an existing<br />

network needs to be extended. <strong>The</strong> items described below must be taken into<br />

consideration during the planning of a network.<br />

A survey of the existing environment must be accompanied by a detailed<br />

documentation of the following aspects, which partly depend on each other:<br />

- Network topography<br />

- Network topology<br />

- Network protocols in use<br />

- LAN / WAN connections<br />

- Network performance and traffic flow<br />

<strong>The</strong> essential details to be recorded during each individual step are specified in<br />

the following:<br />

Survey of the existing network topography<br />

A survey of the existing network topography involves a recording of the<br />

network's physical structure. Here, it is advisable to use the spatial structure of<br />

the network as orientation. A plan containing the following features should be<br />

prepared and maintained:<br />

- Current cable routing<br />

- Locations of all network subscribers, in particular, the active network<br />

components in use<br />

- Cable types in use<br />

- Specified requirements concerning the protection of cables (S 1.22<br />

Physical protection of lines and distributors)<br />

. To support the maintenance of this plan, it is advisable to use an appropriate<br />

tool (e.g. CAD programs, special tools for network plans, cable management<br />

tools in conjunction with system management tools, etc.). Regular updating of<br />

these plans following rebuilding or extension must be ensured, in addition to<br />

clear and precise documentation (also refer to S 1.11 Plans detailing the<br />

location of supply lines and S 5.4 Documentation on and marking of cables).<br />

Survey of the existing network topology<br />

A survey of the existing network topology involves a consideration of the<br />

logical structure of the network. For this purpose, it is necessary to make a<br />

record of the segmentation of the individual OSI layers and, if applicable, the<br />

VLAN structure.<br />

<strong>The</strong> representation of the network topology should make it possible to<br />

determine the active network components via which a link can be established<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!