Telecommunications and Networking Services
Integrated Backbone Trust Model
- Organizations receiving IP packets from the Integrated Backbone can trust the source subnet/area address, if that packet originated from within PSU.
- IP packets originating outside of PSU cannot be made to appear as though they originated within PSU.
- IP packets traversing the Integrated Backbone cannot be viewed or modified. (TNS may monitor traffic as part of maintenance activities.)
- All local and improperly addressed non-local traffic cannot pass a local network's Integrated Backbone demarcation point.
- Properly addressed packets entering the Integrated Backbone will be delivered to the proper destination subnet/area if within Penn State and to the proper external network if the destination is outside of Penn State.
Achieved By
- Physical and logical demarcation point between TNS Integrated Backbone components and customers components.
- IP source filtering at Integrated Backbone demarcation point.
- All shared transport (used by more than one administrative authority) that is not part of a local network is under the control of TNS.
- All Integrated Backbone hub locations are in TNS secured locations.
- IP routing information is only accepted from networks for those same networks and this information is only exchanged at the demarcation point.
- Broadcast packets cannot traverse the Integrated Backbone in broadcast form.