3.3 Implement secure network design Flashcards
Its purpose is to obtain more optimal infrastructure utilization, minimize response time, maximize throughput, reduce overloading, and eliminate bottlenecks. It is used to spread or distribute network traffic load across several network links or network devices.
Load Balancers
A form of load balancing that uses all available pathways or systems during normal operations.
Active/active (Load balancing)
A form of load balancing that keeps some pathways or system in an unused dormant state during normal operations.
Active/passive (Load balancing)
Involves controlling traffic among networked devices. This can be imposed with switches using VLANs, using RFC 1918 private IP addresses, TTL/hop limit manipulation, or through other traffic-control means, including MAC addresses, IP addresses, physical port, TCP or UDP ports, protocols, or application filtering, routing, and access control management.
Network segmentation
A switch-imposed network segmentation.
Virtual Local Network (VLAN)
A special-purpose subnet that is designed specifically for low-trust users to access specific systems, such as the public accessing a web server.
Screened subnet (Net Seg)
A privately controlled network segment or subnet that functions as a screened subnet for business-to-business transactions.
Extranet (Net Seg)
A private network or a private LAN
Intranet (Net Seg)
A communication channel between two entities across an intermediary network. They provide several critical security functions, namely, access control, authentication, confidentiality, and integrity.
Virtual Private Network (VPN)