📜 ⬆️ ⬇️

Information Security of USB over IP Hardware Solutions

Recently I shared my experience in finding a solution for organizing centralized access to electronic protection keys in our organization. The comments raised a serious issue of information security of hardware solutions over USB over IP, which is very disturbing to us.

So, first, we still define the initial conditions.


image

To ensure the security of access to USB devices, organizational and technical measures have been taken:
')
1. Organizational security measures.

A managed USB over IP hub is installed in a high-quality key-lockable server cabinet. Physical access to it is ordered (ACS in the room itself, video surveillance, keys and access rights for a strictly limited circle of persons).

All USB devices used in the organization are divided into 3 groups:


2. Technical security measures.

Network access to a managed USB over IP hub is provided only inside an isolated subnet. Access to an isolated subnet is provided:


On the most managed USB over IP hub DistKontrolUSB using its standard tools, the following functions are configured:


We assume that such organization of access to USB devices ensures their safe use:


In the comments I would like to hear specific practical measures that increase the information security of providing global access to USB devices.

Source: https://habr.com/ru/post/448110/


All Articles