Commit 5e2d6e0e authored by Marvin Petzolt's avatar Marvin Petzolt Committed by Aki Braun
Browse files

Added generic description for section

parent 54384bab
Loading
Loading
Loading
Loading
+2 −2
Original line number Diff line number Diff line
@@ -384,7 +384,7 @@ The management server typically maintains configuration of the whole network and

### 4.3.1 General description

[//]: # (TODO general environment description)
In many cases products get deployed in environments which allow risk transfer as security functions are handled by the operational environment. Such examples might include updates managed through a package manager or application store, or where the denial-of-service protections and package filtering through an external firefall.

### 4.3.2 Hardware environment

@@ -438,7 +438,7 @@ VPN products often include or are used in concert with:

### 4.3.4 Connectivity aspects

[//]: # (TODO operational environment connectivity/RDPS)
The main purpose of a VPN is to connect different endpoints together through a secure tunnel. To do so many different connections have to be established, such as connectivity with the manufacturer's RDPS to retrieve credentials, connectivity to the VPN server to establish a secure tunnel, but also routing packages from the endpoint or through the endpoint in case the VPN client is deployed to route network traffics from a whole private network. All these connectivity aspects come with dedicated risks which have to be mitigated.  

## 4.4 Distribution of Security Functions