Skip to main content

Network Security Zones


Unit: 11 Lesson: 1

separate but NOT equal mwahahahaha

Effective placement of security appliances depends on segmenting the network into clearly defined areas. This is done using VLANs and subnets, where each segment is it's own broadcast domain.

The main unit of a logically segmented network is called a zone, where the security configuration for all devices in said zone is the same. Each host in a zone has the same level of trust in the network, and traffic between zones should be restricted using policies and rules.

Common Security Zones

  • Private server administrative networks
  • Private client network
  • Guests
  • Public server network
  • Public

#Netplus