80 likes | 91 Vues
Network Management Access Security Capabilities. draft-bonica-opsec-nmasc-00 Ron Bonica Syed Ahmed. Three Models. In-band Management Out-of-band Management Virtual Out-of-band Management. In-band Management. User 1. NMS 1. User 1. User 1. NMS 2. Out-of-band Management. User 1.
E N D
Network Management Access Security Capabilities draft-bonica-opsec-nmasc-00 Ron Bonica Syed Ahmed
Three Models • In-band Management • Out-of-band Management • Virtual Out-of-band Management
In-band Management User 1 NMS 1 User 1 User 1 NMS 2
Out-of-band Management User 1 Management Network NMS 1 NMS 2 User 1 User 1
Virtual Out-of-band Management User 1 NMS 1 User 1 User 1 NMS 2
Compare and Contrast • Out-of-band • Isolates user from management infrastructure • Management network does not share fate with in band network • In-band • Exposes management infrastructure to users • Management and in-band network share fate
Compare and Contrast • Virtual Out-of-band • Isolates user from management infrastructure • Management and in-band network share fate
Proposal • Work in progress • Starting point for WG draft