Security Solutions

3-110
Designing Access Controls
Finalize Security Policies
Often resources are an entire subnet of servers. For example, you can
place all financial databases in VLAN 5 and then create a “Financial
Databases” resource that allows all traffic to the subnet associated with
that VLAN.
You can list the server (resource) VLANs in your network in Table 3-82. If
you need to create a more granular resource, such as a specific email
server, fill in the information in Table 3-83.
Table 3-82. Resources by Entire VLAN
Table 3-83. Resources
Resource VLAN ID Subnet Address
Resource IP Address Protocol Port or Ports