BV.Traffic Filtering.Internet Perimeter

From OIAr Archive 2013
Jump to navigation Jump to search
Informational
Page maturity
This page has maturity level 1 (stub)

This is a Building Block document

Document icon BV Traffic Filtering Internet Perimeter Version: 0.1 OIAr logo
Document type: Building Block Variant Owner:

S.A.D. Jumelet


Variant Coordinates

Function icon Generic_Function.png

 This Building Block Variant...

... belongs to Working Area:   Unspecified
... is an implementation of Building Block Type:  
... is intended for use in Environment:   Webhosting

Description

Traffic Filtering facility to control traversal of data traffic that originates from the Internet as an outer perimeter defence.

Business purpose

Prohibit unwanted data traffic from the Internet towards the ArchiSurance enterprise network back and forth. Filtering is done by means of checking network packet header characteristics against a list of allowed traffic patterns.

Characteristics & indications of usage

Configuration of this traffic filter should stay relatively simple, as it is the first line of defence.


Elements

When designing a facility to implement this function, inclusion of all the following elements is prescribed; either mandatory, optional or explicitly forbidden:

Element Type Prescribed Rationale
SNMP version 2 prohibited SNMP version 2 has known security issues.

Quality Requirements

When a facility is designed according to this architectural recipe, it must/will satisfy the following Quality Requirements. This is the responsibility of the infrastructure designer. Note that because of the specified Elements (either the mandatory Elements and any applied optional Elements), some of these Requirements might automatically be satisfied.


QA Group Quality Attribute Value
Flexibility Adaptability HSC
Scalability out
Maintainability Manageability Medium
Accountability SP
Reliability Availability High
Integrity High


Used by pattern(s)

Below is shown which Pattern Variant(s) (if any) currently use this Building Block Variant:

Semantic query

No Pattern Variant based on this Building Block Variant (yet)

Facility Implementation Blueprint(s)

Below is shown which Building Block Blueprint(s) (if any) have been created for this Building Block Variant:

No Solution Blueprint based on this Variant (yet)

Traffic Filtering Internet Perimeter +
Traffic Filtering facility to control traversal of data traffic that originates from the Internet as an outer perimeter defence. +
S.A.D. Jumelet +
unspecified +