Skip to main content

Private VRF segmentation

Topology

Zones-Private.png

Notes
  • Internal network is represented by 5 isolated segments (the recommended minimum) Traffic in each segment is getting inspected, identified, filtered along with user based access control
  • Private EDGE has the following additional functions: (G)SLB и TLS termination; WAF
  • Private DMZ:  WAF and hosts front end services like Proxy, DNS, SIEM, Web, RADIUS/ISE
  • Back End:  (G)SLB and hosts databases like LDAP, SQL etc.
  • Util: hosts support services like NetFlow, Monitoring probes, Syslog etc.
  • RDS: hosts management services like RDS