19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Safeguard Catalogue - Organisation Remarks<br />

____________________________________________________________________ .........................................<br />

- Application management<br />

It should be possible to manage software at the application level, for<br />

example to manage HTTP access rights to the data on a WWW server (the<br />

realm). This form of management is generally hardly supported at all,<br />

because the co-operation of the application itself is required for this.<br />

Ideally, a system of this type would allow the delegation of administrative<br />

tasks, such that for example a system administrator could grant a workgroup<br />

system administrator the right to install software on the workgroup’s<br />

computers. This mechanism is necessary in medium- to large-sized networks,<br />

in particular.<br />

Network and system administration is normally performed by the same<br />

administrative units within a company or agency. As the division of duties<br />

between network administration and system administration is not clear in<br />

some areas, it is advisable to have regard for the extent to which an existing<br />

network management system can be integrated into the system management<br />

system that is being procured.<br />

In addition to these mainly functional requirements, there are also technical<br />

requirements among the criteria that are relevant to the selection of system<br />

management software (see S 2.171). Of these, the following are particularly<br />

worth pointing out here:<br />

- <strong>The</strong> management system must be capable of supporting the operating<br />

systems of all of the computers used for management and all of the<br />

computers being managed (operating-system-specific components of the<br />

management system, graphical user interface).<br />

- If a local database system is already in place, the management system<br />

should have the possibility of storing its management information in the<br />

existing database system.<br />

- <strong>The</strong> management system should be expandable. This relates on the one<br />

hand to the components of the management system (e.g. a modular concept<br />

with the possibility of purchasing and integrating additional modules at any<br />

time), but also to the function of the management system (e.g.<br />

programming API, to be able to connect in-house components).<br />

Generally speaking the criteria for the categorisation of requirements<br />

described in S 2.171 can be used within the framework of this safeguard. For<br />

selected categories the requirements are obtained by specifying a stipulation<br />

within the scope of the particular "range of values".<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!