25
R|G and Enterprise Networks
•
•
•
•
•
•
•
•
•
•Red and green networks are defined as today:
–IPSEC
–Guest firewall
–Proxy settings
–…
•The VMM can act as a router
–E.g. red only talks to the proxy
Must keep:
Important data
Attackers
On different sides of a VM isolation boundary
Partition network as shown
Apply stricter security settings in Green
Software restriction policies
Restrict user admin privileges …
We think this works pretty well for RG in enterprises
But we don’t know how to do it for home users