42 GSN Configuration
42.1 Overview of GSN Security
Solution
The GSN security solution consists of the following four elements:
42.2 Security policy Management Platform
42.3 Security Agent
42.4 Restore System
42.5 Security Switch
42.6 Security Policy Management Platform (SMP)
Through policy configuration, the SMP checks whether to allow or forbid transmission of data
packets through security devices. Installing policies is the process to configure policies on
the devices. Removing policies is the process to remove policies from the devices.
42.6.1 Security Agent
The Security Agent is the software running on a network-accessed host in the enterprise
network. It is responsible for collecting the client information, recognizing the network
behavior of users, monitoring the network communication and security status of the client,
and sending the collected information to the security policy management platform so that the
administrator can make appropriate security policies. At the same time, the security agent
automatically downloads the new security policies from the security policy management
platform and executes the specified security policies locally.
42.6.2 Restore System
The restore system performs the following for abnormal behaviors:
For the users not complying with the enterprise security policies, the administrator can
preset an appropriate policy on the security management platform to shield most network
access rights of these ―invalid users‖, leaving only a green security channel. This security
channel only leads to the enterprise security policy upgrade servers, including the Windows
patch upgrade server, anti-virus software library server, or other upgrade servers of the
enterprise.