Planning Security for an Administrative Domain
Managing Security for Backup Networks 6-5
Figure 6–2 Administrative Domain with Multiple Hosts
The number of hosts, devices, and users in the administrative domain is much larger
than in the single system network type, but it is still a small subset of the network at
large. The data in this network type is probably on the high end of the sensitivity
range. An example could be a network of hosts used to store confidential employee
data. Network backups are conducted on a separate, secure, dedicated network.
The assets are physically secure computers in a dedicated network. The administrative
domain could potentially include a dozen media server hosts that service the backups
of a few hundred databases and file systems.
Principals include the following users:
■ The backup administrator accesses the domain as an Oracle Secure Backup
administrative user.
■ The system administrator administers the computers, devices, and network.
■ Database administrators can access their own databases and possibly have
physical access to their database computers.
■ Host administrators can access their file systems and possibly have physical access
to their computers.
Tape
Library
Tape
. . . . . .
. . . . . .
. . . . . .
. . . . . .
. . . . . .
Offsite
Storage
RestoreBackup
Oracle
Secure Backup
Media Server
Oracle
Secure
Backup
Administrative
Server
Oracle
Database
Oracle
Database
Oracle Secure
Backup Clients
Data Flow
Control Flow
Oracle
Secure
Backup
Catalog
NDMP
OB
OB
NAS
Appliance
UNIX Linux
Linux
Windows
Recovery
Manager
Recovery
Manager