presentation title placeholder...f5 dod virtual user group (dodvug) schedule date title f5 dodvug...

33

Upload: others

Post on 12-Jul-2020

2 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 2: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

••

Page 3: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Mainframes Self Hosted,

Discrete Servers

Datacenter Consolidation &

virtualization

IaaS

Cloud, Containerization

& Automation

PaaS

SaaS

Page 4: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Page 5: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 6: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 7: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 8: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Code Load

balancer

DNSDDoSApp / web

server

CustomerIdentityWAFEncrypt Decrypt FirewallInspection

Page 9: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

LTM/APM/AFM/GTM

LTM/APM/AFM/GTM

LTM/AWAF LTM/AWAF

https://github.com/f5devcentral/f5-azure-saca

• 3 Tier Design

• Includes WAF

• Includes B&I with

Inspection Zone

• Fully Automated

Deployment

• Supports multiple

Mission Owners

Page 10: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

••

Page 11: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 12: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

••

Page 13: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

••

••

Page 14: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Page 15: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 16: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

L3/4 FW

L 3/4 DDOS

SSL/TLS Termination

RWP

IPS

PCAP / Visibility

WAF

L 7 DDOS

Re-Encryption

Page 17: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

••

• https://owasp.org/www-community/attacks/

••

•••

Page 18: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 19: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 20: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 21: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Page 22: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Page 23: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 24: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

••

Page 25: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Using a centralized trusted source of user identity – such as IDaaS, leveraging single sign-on

(SSO), and federating identity across ALL apps – even those not supporting modern

authentication (SAML, OAuth, OIDC) – simplifies user access to ANY app

Page 26: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

https://www.f5.com/pdf/deployment-guides/saml-idp-saas-dg.pdf

Page 27: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

https://www.cisco.com/c/en/us/td/docs/voice_ip_comm/cu

cm/SAML_SSO_deployment_guide/12_5_1/cucm_b_sam

l-sso-deployment-guide-12_5/cucm_b_saml-sso-

deployment-guide-12_5_chapter_01.html

BIG-IP as the IDP for Cisco

Unified Communications

Applications

Can be IDP and ADP Proxy

Enabled CAC and SSO for MGMT

and Application Access

Page 28: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

https://duo.com/docs/f5bigip

Solutions for non-CAC holders

Easy to setup

Enabled CAC and SSO for

MGMT and Application Access

Free Options Available

https://duo.com/pricing/duo-free

Page 29: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

•• https://github.com/f5devcentral/f5-bigip-agc-config-guides/tree/master/saml-

saas-applications/docs

• https://www.youtube.com/watch?v=0SRv3ROIYB8

Page 30: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

Enterprise VDSS

Navy User

Remote User

Mobile User

Navy Datacenter

Navy SaaS Apps

Navy Cloud Apps

GSLB

Enterprise App Services

IDaaS

IPI, DDOS, TLS Term,

L3/4 FW, AWAF, Threat

Campaigns, IPS, Visibility

SSO Portal, C3D, SAML IDP

On Prem App Services

SSO Portal, C3D, SAML IDP

+ Security

Page 31: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 32: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager
Page 33: Presentation Title Placeholder...F5 DoD Virtual User Group (DoDVUG) Schedule Date Title F5 DoDVUG Topic Apr 9th Thursday@ 1500 F5 DoD Virtual User Group #1 F5 Access Policy Manager

F5 DoD Virtual User Group (DoDVUG) ScheduleDate Title F5 DoDVUG Topic

Apr 9th Thursday@ 1500

F5 DoD Virtual User Group #1

F5 Access Policy Manager with remote access, network tunneling, and CAC/PIV Authentication.

April 23rd Thursday@ 1500

F5 DoD Virtual User Group #2

Get Your SaaS in Gear Enterprise Application Strategy

May 7th Thursday@ 1500

F5 DoD Virtual User Group #3 Ghastly Wealth Compliance using F5 ASM

May 21st Thursday@ 1500

F5 DoD Virtual User Group #4 Automation/Orchestration - F5 A/O Toolchain

June 4th Thursday@ 1500

F5 DoD Virtual User Group #5 SCCA / SACA

June 18th Thursday@ 1500

F5 DoD Virtual User Group #6 SSLO Orchestrator