AV network security

Started by Imnot A Robot, December 09, 2022, 11:17:58 PM

Previous topic - Next topic
I administer an AV broadcast system which has dozens of hardware components on a RFC 1918 network running through various Dlink switches.

The PC that I use to administer the network has a 4-port NIC card. One port is WAN for general internet and the other's are my AV subnets. I disable the WAN interface when not working on the system because it seems prudent.

Almost all hardware components are logged into through a web GUI but all are HTTP. They just have general logins with no security features built in. What are the ways to better secure these components so I'm logging into them with HTTPS?

Any advice on how the topology should look like, as if in a professional environment?


Thanks

The devices would have to support https. It's not something you can just apply to them.
Do they support it?

Nope. What's usually done in these types of situations besides isolating the network?

That's pretty much it.

What exactly are you afraid of? Your on this forum so I'm assuming you use this firewall.
Are you allowing anything through the firewall?

Indeed I use it, just not for this setup. I looked at all the bookmarks of my gear's GUIs and noticing that the lock icons were alway slashed-out when logging in, I got weary. I simply wondered if there's another level of security that I could setup other than rules. So I was just trying to explore options. Is their no security intermediary that can be setup for situations like these?

Thanks