IBM Tivoli and Cisco Network Card User Manual


 
Chapter 4. Armando Banking Brothers Corporation 79
4.2 Current IT architecture
This section provides background information about the existing Armando
Banking Brothers Company IT architecture, including the network infrastructure,
security infrastructure, and the middleware/application infrastructure.
4.2.1 Network infrastructure
Next we describe the logical network components that make up the ABBC
network (Figure 4-1). ABBC has developed the network and application security
infrastructure in line with the IBM MASS security model. The network has the
following major security zones:
Uncontrolled zone/Internet, external networks
Controlled zone/demilitarized zone (DMZ)
Controlled/intranet
Restricted/production network
Restricted/management network
Figure 4-1 ABBC current network diagram
Production
Servers
Core
WAN
LAN
Branch
Office
DMZ –2
VPN & R-access
ACS
DMZ –3
Ext network
DMZ –1
Server
Compliance
& Remediation
Internet
Partner
WAN
Dialup
Client
VPN
Client
Branch
Office
SCMTCM
External Network
DMZ
Production
Network
Management
Network
NMS
Intranet
LAN
LAB
Router
Firewall
Intrusion detection
System
Virtual Private
network
Wireless
Access point