Domain 3 - Perimeter Defences | Site Selection | Environmental Controls Flashcards
Fences - Control Type
deterrent, preventive.
Master key
doi
Core key
Key that can remove the lock cores from all doors in a building. Meant to be able to rekey locks quickly.
Combination locks
easily guessable from wear. Bad since everyone shares the same code.
Smart card - Control type
physical - control has integrated circuit
Tailgating
Unauth person follows an authorized person into what should be a secure area.
mantrap
Physical control. Two doors, requiring two separate forms of identification. One at the first door, one at the second. First door must close and lock before 2nd can open.
turnstile
Physical Control. Designed to prevent piggybacking by enforcing one person per authentication rule.
Contraband checks
Detective, and preventive Control:
detect stolen and/or contraband items.
Ultrasonic/microwave motion detectors
work like radar. they know how long a wave ‘echo’ should take to return. When a person or something passes in front of them - then the echo takes less time and motino is detected.
Photoelectric motion sensor
senses changes in visible light levels for the monitored area. Photoelectric motion detectors are usually deployed in internal rooms that have no windows and that are kept dark.
Perimeter alarms
magnet door and window alarms. matched pairs of sensors on wall.
NFPA 75
national fire protection ageny:
standard for protection of IT equipment. Computer room should be separate by fire resistent walls. Rated to 1 hour
Pseudo guard
unarmed guard
site selection - topography
topo can be used to steer ingress and egress
Utility reliability
One of the most important considerations in site selection. No Power = no business operations.
site selection crime
local crime should be factored in
system defenses
last line of defense when an attacker already has physical access
asset tracking
you can’t protect what you don’t know you have
port controls
lock usb ports, disable them. make them read only
Electrical faults
Blackout brownout fault surge spike sag
blackout
prolonged loss of power
brownout
prolonged low voltage
fault
short loss of power
surge
prolonged high voltage
spike
temporary high voltage
sag
temp low voltage
EMI
electromagnetic interference.
crosstalk
EMI affecting cables’ communication
Positive pressure and drains
All HVAC should be positive pressure.