The Amount Module

The Amount Module

As is acceptable in amount networks, actual little aegis basement is included so as to not impede accelerated carriage beyond the campus. While the Amount Module does not alarm for aegis features, there are an accretion cardinal of aegis devices, such as IDS and firewalls, that can potentially abide aural the Amount based on their accelerated performance.

The Distribution Module

The Distribution Module

Within the SAFE blueprint, there are two types of Distribution Modules, a Building Distribution Module and an Edge Distribution Module. As they both contain similar security infrastructure and largely provide the same type of network services, we'll discuss both of them in this section.

From the Building Module, the user traffic is directed through the Building Distribution Module. This module acts as a transport area to quickly provide access to the core networks. Within the Building Distribution Module, security features include RFC 2827 filtering to prevent DoS attacks and address spoofing and continued VLAN separation. Layer 3 separation may also exist if routing occurs in the Building Distribution Module.

The Edge Distribution Module serves as the security handoff to the Network Edge Area, which we'll discuss in a moment. Like the Building Distribution Module, the Edge Distribution Module also includes RFC 2827 filtering and, potentially, Layer 3 access control.

The Building Module

The Building Module

The Building Module ability best be anticipation of as the Access Layer in the acceptable tiered arrangement architectonics model. It is area the users are affiliated to the arrangement and includes virus scanning software, claimed firewalls, and VLAN-separated user space

The Enterprise Campus

The Enterprise Campus

The Enterprise Campus Area within the SAFE blueprint is targeted at large organizations that may span several geographical locations and provide a multitude of user-focused internal services. The Enterprise Campus is large enough to warrant the creation of several modules, each addressing specific security requirements within the Campus. Let's look at these modules, starting from the user edge and working towards the services.

The Medium Campus Module

The Medium Campus Module

The Medium Campus Module is agnate to the Small Campus Module, yet includes added aegis basement to accommodate aegis for an added cardinal of bodies and services. For instance, in accession to the aegis implemented in the Small Campus Module, the Medium Campus Module includes switches able of amid users via VLANs and clarification based on Layer 3 and 4 attributes. Critical casework such as Call Administration or Accounting Servers are afar by stateful assay firewalls. Intrusion apprehension systems are added able in the Medium Campus Module and can accommodate focused assay in Layers 4 through 7. As in the Small Campus Module, the Medium Campus Module includes arrangement administration systems, virus scanning gateways, and proxy devices