Network Segmentation
Network Segmentation is the architectural approach to organize the entire network into several smaller segments, each of them acts as an independent entity. It's the same concept you adopt when organize your employees into operational teams working on different topics and you want to enable communication rules between them based on your needs. Similarly, with Network Segmentation it's possible to control traffic flows between the smaller segments improving security and performance.

How it Works!

  1. Improve Network monitoring
  2. Increase Network Security
  3. Protect from harmful traffic spreading
  4. Increase performance
Any organization, beyond the infrastructure complexity, needs to implement network segmentation. However, it's common to organize networks following a flat approach to reduces the time needed to set up the infrastructure. And what about network security? Flat network enables threats to spread across the entire network.

With ZADIG Smart Network Segmentation is natively implemented. The gateway comes with six network port, each of the is dedicated to a different network segment:

  • WAN network
  • LAN network
  • Wi-Fi network
  • IoT network
  • In-house servers network
  • DMZ network

From the Remote plan up, smart working VPN feature is included in ZADIG Smart service. In this scenario road warrior clients network must be considered as an additional network segment.

Only two actions are required to use Network Segmentation functionality: connect the specific subnet to the port of the gateway designed to that logic function and adapt the segment’s addressing scheme if necessary.

Traffic flow rules between segments are also natively implemented on the gateway.

LAN network is able to communicate with:

  • LAN network
  • IoT network
  • In-house servers network
  • Wi-Fi network
  • DMZ network
  • Internet
  • road warrior clients network

..and is not able to communicate with:

  • nothing

Wi-Fi network is able to communicate with:

  • LAN network
  • Wi-Fi network
  • In-house servers network
  • Internet
  • IoT network
  • DMZ network
  • road warrior clients network

..and is not able to communicate with:

  • Nothing

IoT network is able to communicate with:

  • Internet
  • IoT network
  • DMZ network

..and is not able to communicate with:

  • LAN network
  • Wi-Fi network
  • In-house servers network
  • road warrior clients network

In-house servers network is able to communicate with:

  • LAN network
  • Wi-Fi network
  • In-house servers network
  • Internet
  • IoT network
  • DMZ network
  • road warrior clients network

..and is not able to communicate with:

  • nothing

DMZ network is able to communicate with:

  • Internet
  • DMZ network

..and is not able to communicate with:

  • LAN network
  • Wi-Fi network
  • In-house servers network
  • IoT network
  • road warrior clients network

Road Warrior clients network is able to communicate with:

  • LAN network
  • Wi-Fi network
  • In-house servers network
  • Internet
  • IoT network
  • DMZ network
  • road warrior clients network

..and is not able to communicate with:

  • Nothing

What are the risks?

Configuring the infrastructure without Network Segmentation exposes you to a wide variety of risks.
A flat network allows threats to move literally across the entire network. Suppose that a self replicant malware infects an IoT device, without segmentation that malware could spread across the network, infecting all the other devices including the devices of employees.
A flat network makes it easier to execute an attack. Suppose that a company has several exposed public services and no DMZ implemented, any attack on this exposed servers would give to the attacker the complete access to the network to make other attempts.
Without Network Segmentation each device on the network can access any other device. In this way there is the possibility of accessing unauthorised resources with a consequent lack of privacy.
Why ZADIG Smart
WE OFFER A NATIVELY IMPLEMENTED SOLUTION OF NETWORK SEGMENTATION SUITABLE FOR THE MAIN NEEDS OF THE ORGANIZATIONS
including a preconfigured infrastructure that is completely and easily integrable with your current configuration.
ZADIG Smart by
bitCorp
Legal Head Office:
Via Monte Bianco 2/A, 20149, Milano
Representative Office:
Galleria del Corso 4, 20121, Milano
Operational Headquarter:
Via Carlo Freguglia 10, 20122, Milano
en_US