5 - 1: Data Center Protection Flashcards
Data centers
Contain computing, storage, and servers
Media storage facilities
Contain backups and other data in a separate location. Must have equivalent if not better protection
Evidence storage
Preserve a chain of custody, secure storage
Wiring closet
Where wires and connectivity tools are kept, could provide network access
Environmental characteristics
Air temperature, moisture, HVAC
Expanded envelope (temp)
Between 64.4 - 80.6 degrees F
Data center humidity
Dew point between 41.9 - 50.0 degrees F
Server tower placement
Alternate sides facing an aisle to balance air flow
Key elements of a fire
Oxygen, heat, and fuel
Fire extinguisher class A
Common combustibles (wood, cloth, trash)
Fire extinguisher class B
Flammable liquids (gasoline, oil)
Fire extinguisher class C
Electrical fires (data centers)
Fire extinguisher class D
Heavy metal fires (industrial applications)
Fire extinguisher class K
Kitchen fires (fats and oils)
Wet pipe fire extinguisher
Pipes contain water at all times
Dry pipe fire extinguisher
Fire alarm opens a water valve once activated
Chemical systems
Designed to deprive a server room of oxygen
Fire detection mechanisms
Temperature sensors, smoke detectors, incipient detectors
Moisture sensors
Unexpected presence of water
EMI
Electromagnetic interference, created by all electronic equipment
Faraday cages
Protect facilities from EMI, complex and expensive
Physical access control
Restrict entry
Preset locks
Require a physical key to open
Cipher locks
Require a keypad combination to open
Biometric locks
Require a physical characteristic to open
Card locks
Require a keycard to open
Tailgating
An unauthorized individual follows behind an authorized individual to use their access
Mantraps
A section with a public-facing unlocked door and a private-facing locked door with tools to verify only one person is present when accessing
Facility Monitoring
Motion detection, noise detection, video surveillance, infrared to detect heat
Cages
Separate equipment within data centers
Bollards
Prevent vehicles from leaving a road
Signage
Warn of possible litigation
Industrial camouflage
Hide a data center as a boring building. Most also look boring from above
Visitor management
Have policies for allowable behavior, purposes, and locations, require sign in, display badges, indicate if escort required, disclose cameras are in use
Visitor approval
Who can allow visitors and remain with them
Security guards
They notice things, allow entry, represent the organization
Two person integrity
Requiring two people are present when accessing a sensitive area to deter theft or illicit activity
Two person control
Restricts access to sensitive functions