Manageable Network Plan

The Manageable Network Plan is a series of milestones to take an unmanageable and insecure network and make it manageable, more defensible, and more secure. The Plan is intended to be a long term solution; implementing the milestones may take a significant amount of resources and time (possibly months or even years).

Milestoning

Number 1: Documentation will be a necessary part of every milestone.

Set up a way to begin documenting information about your network. (This does not mean do all the
documentation here²just set up a way to do it.)

The purposes of documentation are 1) to share information; and 2) to retain information.

Number 2:Map your Network

In order to have any sort of control over your network, you first need to know where everything is. This
milestone and the next focus primarily on gathering information about your network

Create an accurate map of your current network (network topology). Be sure this network map is stored in a way that is secure, but yet still allows easy updates as network changes occur.

Create a list of ALL protocols that are running your network

Number 3: Protect Your Network (Network Architecture)

Identify current high-value network assets

This doesn't mean expensive, merely that the data is important and critical to the company

Number 4: Reach the Network (Device Accessibility)

Either remotely or physically

Document how to access ALL devices on the network, if it be physical or remotely

Keeping records of who can access the computer systems

Number 5: Control your network

Create non-privileged user accounts for everyone on the network

Admins only use the admin accounts when preforming admin responsibilities, other than that they use regular accounts to limit accidental changes to the network infrastructure.

Number 6: Manage the Network (Patch Management)

Create a management patch plan for all devices on the network no matter how small.

Number 7: Manage the Network (Baseline Management)

Create a list of all protocols allowed on the network and applications

Make sure all systems meet and exceed basic networking and application guidelines

Number 8: Document your network

Document all permits, protocols, and applications listed and working within the infrastructure of the network.