Crack your assignment with step-by-step assignment guide
  • Step-by-step guide
  • List of credible sources
  • An outline of arguments

Access control

Categories: Control

The purpose of this policy is to define standards for connecting to Richman Investments network from any host. These standards are designed to minimize the potential exposure to Richman Investments from damages which may result from unauthorized use of Richman Investments resources. Damages include the loss of sensitive or company confidential data, intellectual property, damage to public image, damage to critical Richman Investments internal systems, etc.

Scope

This policy applies to all Richman Investments employees, contractors, vendors and agents with a Richman Investments owned or personally-owned computer or workstation used to connect to the Richman Investments network.

This policy applies to remote access connections used to do work on behalf of Richman Investments including reading or sending email and viewing intranet web resources and wireless devices. Remote access implementations that are covered by this policy include, but are not limited to, dial-in Modems, frame relay, ISDN, DSL, VPN, SSH, and cable modems, etc. VPN access control model for a large scale company.

This policy will support remote access control for systems, applications, and data access. Remote access Defined Remote access for employees is deployed by using remote access VPN connections across the Internet based on the settings configured for the VPN Server, and the following additional settings. The following diagram shows the VPN server that provides remote access VPN connections.

Domain/Network Config

For each employee that is allowed VPN access:

  • The network access permission on the dial-in properties of the user account is set to Control access through NPS Network Policy.

    Top Writers
    RhizMan
    Verified expert
    4.9 (247)
    Marvellous
    Verified expert
    4.7 (239)
    Marrie pro writer
    Verified expert
    5 (204)
    hire verified writer

The user account is added to the VPN_Users group in Active Directory. To define the authentication and encryption settings for remote access VPN clients, the following remote access network policy is created in Network Policy Server (NPS):

  • Policy name: Remote Access VPN Clients
  • Conditions:
  • NAS Port Type is set to Virtual (VPN)
  • Windows Groups is set to VPN_Users
  • Calling Station ID is set to 207. 209. 68. 1
  • Permission is set to Grant access. NPS policy settings:
  • On the Constraints tab, under Authentication Methods, for EAP Types select Microsoft: Smart Card or other certificate. Also enable Microsoft Encrypted Authentication version 2 (MS-CHAP v2).
  • Or SSTP, L2tp/IPsec, PPTP, IKEv2

Access control model/ policy

This model would support Role based access controls and allow mandatory access control to be governed by remote access. The IS Dept. is responsible for maintaining the access and access rights and provides and restricted as needed by user roles in the organization. All data is encrypted and transmitted via remote and encrypted and used by the VPN tunnel. VPN access will be terminated on a 3 month basis and must be renewed by revisiting based on your access role and permissions

Cite this page

Access control. (2018, Nov 13). Retrieved from http://studymoose.com/access-control-2-essay

Are You on a Short Deadline? Let a Professional Expert Help You
HELP ME WITH WRITING
Let’s chat?  We're online 24/7