Network Fundamentals - PowerPoint PPT Presentation

1 / 17
About This Presentation
Title:

Network Fundamentals

Description:

RDB, DB2, RBASE, 4D, Fox-Pro. No remote user access to data. Access restricted to business hours ... Riley T. Bell. Manager. Intranet Operations Group ... – PowerPoint PPT presentation

Number of Views:42
Avg rating:3.0/5.0
Slides: 18
Provided by: hei140
Category:

less

Transcript and Presenter's Notes

Title: Network Fundamentals


1
  • Network Fundamentals
  • Dallas Texas
  • June 26th 2000
  • riss.net

2
The Regional Information Sharing System (RISS)
  • Six Law Enforcement Assistance Organizations
  • Collectively funded by BJA
  • single line item (RISS)
  • Each region governed by a Board
  • Members elected or appointed from membership
  • Each Board employs a Center Director
  • Regions must provide Core services
  • Each region provides additional services
  • Directors Association
  • Works with boards to set policy concerning, and
    fund issues / initiatives common to all regions

3
The Situation in 1995
  • Six Organizations - Six Different Systems
  • The Intelligence Database
  • Core Requirement
  • Submission and Inquiry by membership
  • 28 CFR compliant (business rules same)
  • No common database or platform
  • VAX, Wang, IBM, Intel, Macintosh
  • RDB, DB2, RBASE, 4D, Fox-Pro
  • No remote user access to data
  • Access restricted to business hours

4
The Situation in 1995
  • Six Organizations - Six Different Systems
  • Submissions mailed or faxed to center
  • entered by center personnel
  • Inquiry via telephone or fax
  • center personnel run subject locally
  • No remote access to other site databases
  • center personnel telephoned other five centers if
    subject was to be run nationally
  • Time consuming labor intensive process
  • Center personnel determined possible Hits
  • Information returned to officer via telephone

5
Automation in 1996
  • Six Organizations - Six Common Systems
  • All deployed VAX hardware
  • Dual Servers at five locations (mainframe CA DOJ)
  • All deployed a custom application in RDB
  • each center converted its data
  • 56KB lease lines formed a RISS WAN
  • center personnel could remotely run subject
  • Biometrics initially used for authentication
  • Fingerprint readers (discontinued after short
    time)
  • Remote officer access
  • required a VAX terminal and a 56KB lease line
    connection

6
The RISSNET II Network
Circa 1996
7
RISSGang Initiative in 1996
  • RISSGang Database Requirements
  • Secure access
  • provide law enforcement officers 24 X 7 access
  • strong mutual authentication (client to server
    server to client)
  • Affordable access (no lease lines)
  • leverage the Internet
  • Secure data while in transit (encryption)
  • VPN from client desk top to secure server
    location
  • Easy to Manage
  • limited resources

8
1997 Deployed Hybrid Network
  • RISS Intranet / RISSNET II Legacy WAN
  • Securely connects the six centers
  • Leverages web technology
  • Strongly authenticates ALL users
  • Provides remote officers 24 X 7 access
  • Intranet access via the Internet
  • browser interface to the databases (RDB / SQL)
  • Provides client to resource location VPN
  • resource access audit trail
  • Deployed with limited personnel
  • limited funds

9
RISS Intranet RISSNET II Circa 1997
10
The RISS Intranet(riss.net)
  • We Chose
  • Frame Relay Circuits (burst traffic)
  • V-One Smartwall (BSDI, Gauntlet, Smartgate)
  • Smart Card Token Storage (external users)
  • Dual Tiered Firewall Design
  • RADIUS (External to Internet Firewall)
  • Worldcom Frame Circuits
  • UUNET / Verio Internet Service Providers

11
The RISS Intranet 1997(riss.net)
  • The network provides
  • Secure RISS LAN to LAN Connectivity
  • User Authentication (internal external)
  • Secure User to Firewall Encryption (2nd tier)
  • Fine Grained Access Control
  • Network Audit Trail (who,where,when)
  • Scalability

12
riss.net access pathways
Verio ISP
Public switch
877-RISSCop
Toll free 1 PRI 23 channels
T-1
switch
CSU/DSU
Local access pending
VERIO ROUTER
Remote Dial In Devices
Radius Server
DNS SERVER
Second tier firewall
RISSTech site
"WALL"
switch
UUNET ROUTER
Router
CSU/DSU
T-1
CSU/DSU
T-1
UUNET ISP
riss.net
13
The RISS Intranet(riss.net)
  • Why We Chose V-One in 1996
  • VPN Technology Leader
  • Gauntlet Proven Track Record
  • Hardened BSDI Unix Operating System
  • Intel Hardware (cost efficient)
  • Smart Card Technology Leader
  • Scalable System
  • Automated Registration / Key Distribution
  • Access Control Provided by Smartwall
  • Will Work With Other Authentication Devices
  • Single Vendor Solution

14
RISS Intranet 2000(riss.net)
  • Present network configuration
  • RISS nodes
  • HIDTA nodes
  • State nodes
  • Gateway nodes
  • Future expansion
  • 6,180 users as of 6-20-2000

15
LAN Users
Dial Up Users
Modem
HIDTA Nodes
RISS Nodes
HIDTA Nodes
WSIN RISS Node
RISSIntel Gateways
16
The RISS Intranet(riss.net)
  • Secure Network Utilizing WEB technology
  • Dual Tiered Firewall Design
  • Secure Internet Access
  • User Authentication / Authorization
  • Client to Second Tier Firewall VPN
  • Fine Grained Access Control
  • LAN to LAN or Server to Server VPN
  • Detailed Logging
  • Dial In User Capability

17
Thank You
  • Riley T. Bell
  • Manager
  • Intranet Operations Group
  • Regional Information Sharing SystemsOffice of
    Information Technology
  • 1610 East Sunshine
  • Springfield, MO. 65804
  • Telephone (417) 883-4383 ext.. 6001
  • Fax (417) 877-8435
  • rbell_at_risstech.riss.net
Write a Comment
User Comments (0)
About PowerShow.com