SlideShare a Scribd company logo
SECURING THE LOCAL AREA
NETWORK
Which should be protected?
 Securing the edge device because of itsWAN
connection?
 Securing the internal LAN?
 Securing the internal LAN is just as important
as securing the perimeter of a network
Securing Endpoint Devices
 A LAN connects many network endpoint
devices that act as a network clients.
 Endpoint devices include:
 Laptops
 Desktops
 IP phones
Securing Non-Endpoint Devices
 A LAN also requires many intermediary
devices to interconnect endpoint devices.
 Non-endpoint LAN devices:
 Switches
 Wireless devices
 IP telephony devices
Network Admission Control
NAC
 NAC helps maintain network stability by
providing two important features:
 Authentication and authorization
 Posture assessment
 Quarantining of noncompliant systems
 Remediation of noncompliant systems
 NAC can be implemented in two ways:
 NAC Framework
 Cisco NAC Appliance
San Networks
STORAGE AREA NETWORKS
(SANS)
Network and server downtime costs companies large sums of money in business
and productivity losses.
At the same time, the amount of information to be
managed and stored is increasing dramatically every year.
A SAN is a specialized network that enables fast, reliable access among servers
and external storage resources.
A storage device is not the exclusive property of any one
server.
They are shared among all networked servers as peer
resources.
A SAN does not need to be a physically separate network.
It can be a dedicated subnet that carries only business-
critical I/O traffic such as reading / writing a file from / to a
disk, between servers and storage devices.
Storage Area Networks (SANs)
 Cisco SAN solutions provide a preferred
means of accessing, managing, and
protecting information resources across a
variety of SAN transport technologies.
 For example:
 Fiber Channel
 Fiber Channel over IP (FCIP)
 Internet Small Computer Systems Interface (iSCSI)
 Gigabit Ethernet
 Optical network
SAN Transport Technologies
 Fiber Channel:
 The primary SAN transport for host-to-SAN connectivity.
 Fiber Channel networks provide a serial transport for the SCSI protocol.
 Uses a world wide name (WWN) to uniquely identify each element.
 iSCSI:
 Maps SCSI overTCP/IP and is typically used in the LAN.
 Leverages existing IP networks to build and extend SANs by usingTCP/IP to
transport SCSI commands, data, and status between hosts or initiators and
storage devices or targets, such as storage subsystems and tape devices.
 Uses a logical unit number (LUN) which is a 64-bit address as a way to
differentiate individual disk drives within a common SCSI target device such as
a disk array.
 FCIP:
 Popular SAN-to-SAN connectivity model that is used over the WAN or MAN.
 SAN designers can use the open-standard FCIP protocol to break the distance
barrier of current Fiber Channel solutions and enable interconnection of SAN
islands over extended distances.


More Related Content

PPT
PPTX
Storage area network (san)
PPTX
Typical elements in a LAN Palacios
PPT
Storage Area Network (San)
PPTX
Network Attached Storage (NAS)
PDF
SDN 101
PPTX
Vision
DOCX
Nash-Bio
Storage area network (san)
Typical elements in a LAN Palacios
Storage Area Network (San)
Network Attached Storage (NAS)
SDN 101
Vision
Nash-Bio

Viewers also liked (11)

PPTX
Security policy
PPTX
Secure your LAN
PDF
3852 wlan revised
PPT
Security threats in the LAN
PPT
LAN Security
PPT
Lecture 11 wifi security
PPTX
Wlan security
PPTX
Securing the LAN Best practices to secure the wired access network
PPT
Open Source vs. Enterprise Solutions
PPT
Wireless security presentation
PPT
Wireless LAN security
Security policy
Secure your LAN
3852 wlan revised
Security threats in the LAN
LAN Security
Lecture 11 wifi security
Wlan security
Securing the LAN Best practices to secure the wired access network
Open Source vs. Enterprise Solutions
Wireless security presentation
Wireless LAN security
Ad

Similar to Securing the local area network (20)

PPT
PDF
Storage Area Network PPT.pdf
PPTX
Network types & its topology
PPTX
Storage Area Network PPT.pptx
PDF
Chapter 6-Securing the Local Area Network.pdf
PPT
PPTX
Storage Area Networks, Networks, Networking, Computer Networks
PPT
Chapter 6 overview
PPTX
PACE-IT: Storage Area Networks - N10 006
PPT
Storage area network
PDF
Instant Access to Fibre Channel for SANs 1st Edition Alan Frederic Benner ebo...
PPTX
Networking
PPTX
Networking.pptx
PPTX
Networking.pptx
PPTX
Introduction to Network best concept about Net
PPT
CN L1 — копия.ppt
PPTX
Networking ke notes ke types all netwoking types
PPT
Storage Primer
PPTX
Information storage management_Module 3_FC SAN AND FCoE .pptx
Storage Area Network PPT.pdf
Network types & its topology
Storage Area Network PPT.pptx
Chapter 6-Securing the Local Area Network.pdf
Storage Area Networks, Networks, Networking, Computer Networks
Chapter 6 overview
PACE-IT: Storage Area Networks - N10 006
Storage area network
Instant Access to Fibre Channel for SANs 1st Edition Alan Frederic Benner ebo...
Networking
Networking.pptx
Networking.pptx
Introduction to Network best concept about Net
CN L1 — копия.ppt
Networking ke notes ke types all netwoking types
Storage Primer
Information storage management_Module 3_FC SAN AND FCoE .pptx
Ad

Recently uploaded (20)

PDF
Unit I ESSENTIAL OF DIGITAL MARKETING.pdf
PDF
Mohammad Mahdi Farshadian CV - Prospective PhD Student 2026
PPTX
Safety Seminar civil to be ensured for safe working.
PDF
TFEC-4-2020-Design-Guide-for-Timber-Roof-Trusses.pdf
PPTX
OOP with Java - Java Introduction (Basics)
PPTX
Internet of Things (IOT) - A guide to understanding
PPTX
bas. eng. economics group 4 presentation 1.pptx
PPTX
Construction Project Organization Group 2.pptx
DOCX
ASol_English-Language-Literature-Set-1-27-02-2023-converted.docx
PDF
Embodied AI: Ushering in the Next Era of Intelligent Systems
PDF
Automation-in-Manufacturing-Chapter-Introduction.pdf
PPTX
MET 305 2019 SCHEME MODULE 2 COMPLETE.pptx
PDF
BIO-INSPIRED HORMONAL MODULATION AND ADAPTIVE ORCHESTRATION IN S-AI-GPT
PPTX
Sustainable Sites - Green Building Construction
PDF
Model Code of Practice - Construction Work - 21102022 .pdf
PPTX
FINAL REVIEW FOR COPD DIANOSIS FOR PULMONARY DISEASE.pptx
PDF
737-MAX_SRG.pdf student reference guides
PDF
keyrequirementskkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk
PPTX
UNIT-1 - COAL BASED THERMAL POWER PLANTS
PPTX
Engineering Ethics, Safety and Environment [Autosaved] (1).pptx
Unit I ESSENTIAL OF DIGITAL MARKETING.pdf
Mohammad Mahdi Farshadian CV - Prospective PhD Student 2026
Safety Seminar civil to be ensured for safe working.
TFEC-4-2020-Design-Guide-for-Timber-Roof-Trusses.pdf
OOP with Java - Java Introduction (Basics)
Internet of Things (IOT) - A guide to understanding
bas. eng. economics group 4 presentation 1.pptx
Construction Project Organization Group 2.pptx
ASol_English-Language-Literature-Set-1-27-02-2023-converted.docx
Embodied AI: Ushering in the Next Era of Intelligent Systems
Automation-in-Manufacturing-Chapter-Introduction.pdf
MET 305 2019 SCHEME MODULE 2 COMPLETE.pptx
BIO-INSPIRED HORMONAL MODULATION AND ADAPTIVE ORCHESTRATION IN S-AI-GPT
Sustainable Sites - Green Building Construction
Model Code of Practice - Construction Work - 21102022 .pdf
FINAL REVIEW FOR COPD DIANOSIS FOR PULMONARY DISEASE.pptx
737-MAX_SRG.pdf student reference guides
keyrequirementskkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk
UNIT-1 - COAL BASED THERMAL POWER PLANTS
Engineering Ethics, Safety and Environment [Autosaved] (1).pptx

Securing the local area network

  • 1. SECURING THE LOCAL AREA NETWORK
  • 2. Which should be protected?  Securing the edge device because of itsWAN connection?  Securing the internal LAN?  Securing the internal LAN is just as important as securing the perimeter of a network
  • 3. Securing Endpoint Devices  A LAN connects many network endpoint devices that act as a network clients.  Endpoint devices include:  Laptops  Desktops  IP phones
  • 4. Securing Non-Endpoint Devices  A LAN also requires many intermediary devices to interconnect endpoint devices.  Non-endpoint LAN devices:  Switches  Wireless devices  IP telephony devices
  • 6. NAC  NAC helps maintain network stability by providing two important features:  Authentication and authorization  Posture assessment  Quarantining of noncompliant systems  Remediation of noncompliant systems  NAC can be implemented in two ways:  NAC Framework  Cisco NAC Appliance
  • 8. STORAGE AREA NETWORKS (SANS) Network and server downtime costs companies large sums of money in business and productivity losses. At the same time, the amount of information to be managed and stored is increasing dramatically every year. A SAN is a specialized network that enables fast, reliable access among servers and external storage resources. A storage device is not the exclusive property of any one server. They are shared among all networked servers as peer resources. A SAN does not need to be a physically separate network. It can be a dedicated subnet that carries only business- critical I/O traffic such as reading / writing a file from / to a disk, between servers and storage devices.
  • 9. Storage Area Networks (SANs)  Cisco SAN solutions provide a preferred means of accessing, managing, and protecting information resources across a variety of SAN transport technologies.  For example:  Fiber Channel  Fiber Channel over IP (FCIP)  Internet Small Computer Systems Interface (iSCSI)  Gigabit Ethernet  Optical network
  • 10. SAN Transport Technologies  Fiber Channel:  The primary SAN transport for host-to-SAN connectivity.  Fiber Channel networks provide a serial transport for the SCSI protocol.  Uses a world wide name (WWN) to uniquely identify each element.  iSCSI:  Maps SCSI overTCP/IP and is typically used in the LAN.  Leverages existing IP networks to build and extend SANs by usingTCP/IP to transport SCSI commands, data, and status between hosts or initiators and storage devices or targets, such as storage subsystems and tape devices.  Uses a logical unit number (LUN) which is a 64-bit address as a way to differentiate individual disk drives within a common SCSI target device such as a disk array.  FCIP:  Popular SAN-to-SAN connectivity model that is used over the WAN or MAN.  SAN designers can use the open-standard FCIP protocol to break the distance barrier of current Fiber Channel solutions and enable interconnection of SAN islands over extended distances. 