Enforcement
Policy
Enforcement policies are technical standards and guidelines
for the configuration of security enforcement devices. These
include:
Firewall Policies - Documents
the role of an organization's firewall in the security program.
This includes how the firewall is configured and used to enforce
the company's security policy. Host and appliance initial
setup, patches, fixes and updates, properties, network address
translation (NAT), change control, and policy review.
Intrusion Detection - How
intrusion detection fits into the company's overall security
program, the goals of intrusion detection, specific configuration
options, initial setup, patches, fixes and updates.
Content Filtering Systems
- How these systems and subsystems are configured to support
the organization's security program. Email and Web filter
configurations that goals and specific settings, initial setup,
patches, fixes and updates.
Other enforcement policies may
include:
Access Control Lists
Authentication Server
© 2003 Hudson Business Networks
|