|
+COS-02.01B |
1. ÜbersichtCOS-02.01BSpecific security requirements are designed, documented and provided for establishing connections within the cloud service provider's network. The security requirements define for the cloud service provider's area of responsibility:1. In which cases the security zones are to be separated and in which cases cloud service customers are to be logically or physically separated; 2. Which communication relationships and which network and application protocols are permitted in each case; 3. How the data traffic for administration and monitoring is separated from each on network level; 4. How office networks are secured with firewalls and secure WIFI configurations as well as VPN for remote access; 5. Which internal, cross-partition communication is permitted; and 6. Which cross-network communication is allowed. Cross-partition communication can be realised for e.g. individual regions or locations via e.g. WAN, LAN, VPN, RAS.
1.1 Referenzen1.2 Identifizierte Anforderungen1.2 Related Regulation2. Identifizierte Anforderungen
3. Related Regulations
|