Manageable Network Plan
The Manageable Network Plan is a series of milestones to take an unmanageable and insecure network and make it manageable, more defensible, and more secure. The Plan is intended to be a long term solution; implementing the milestones may take a significant amount of resources and time (possibly months or even years).
Milestoning
Number 1: Documentation will be a necessary part of every milestone.
Set up a way to begin documenting information about your network. (This does not mean do all the
documentation here²just set up a way to do it.)
The purposes of documentation are 1) to share information; and 2) to retain information.
Number 2:Map your Network
In order to have any sort of control over your network, you first need to know where everything is. This
milestone and the next focus primarily on gathering information about your network
Create an accurate map of your current network (network topology). Be sure this network map is stored in a way that is secure, but yet still allows easy updates as network changes occur.
Create a list of ALL protocols that are running your network
Number 3: Protect Your Network (Network Architecture)
Identify current high-value network assets
This doesn't mean expensive, merely that the data is important and critical to the company
Number 4: Reach the Network (Device Accessibility)
Either remotely or physically
Document how to access ALL devices on the network, if it be physical or remotely
Keeping records of who can access the computer systems
Number 5: Control your network
Create non-privileged user accounts for everyone on the network
Admins only use the admin accounts when preforming admin responsibilities, other than that they use regular accounts to limit accidental changes to the network infrastructure.
Number 6: Manage the Network (Patch Management)
Create a management patch plan for all devices on the network no matter how small.
Number 7: Manage the Network (Baseline Management)
Create a list of all protocols allowed on the network and applications
Make sure all systems meet and exceed basic networking and application guidelines
Number 8: Document your network
Document all permits, protocols, and applications listed and working within the infrastructure of the network.