80 likes | 91 Views
This draft document explores three models of network management access security: In-band Management, Out-of-band Management, and Virtual Out-of-band Management. It compares and contrasts these models, highlighting their strengths and weaknesses. It serves as a proposal for enhancing network security capabilities through access management.
E N D
Network Management Access Security Capabilities draft-bonica-opsec-nmasc-00 Ron Bonica Syed Ahmed
Three Models • In-band Management • Out-of-band Management • Virtual Out-of-band Management
In-band Management User 1 NMS 1 User 1 User 1 NMS 2
Out-of-band Management User 1 Management Network NMS 1 NMS 2 User 1 User 1
Virtual Out-of-band Management User 1 NMS 1 User 1 User 1 NMS 2
Compare and Contrast • Out-of-band • Isolates user from management infrastructure • Management network does not share fate with in band network • In-band • Exposes management infrastructure to users • Management and in-band network share fate
Compare and Contrast • Virtual Out-of-band • Isolates user from management infrastructure • Management and in-band network share fate
Proposal • Work in progress • Starting point for WG draft