06-22-2023 11:53 AM
As a production company we have may external suppliers who deliver machines or software to support our product processes.
Many of these suppliers will always try to bring their own router to be able to support the machine or software.
Often these machines or software also need to exchange data with internal machines or software.
I need your opnion here. How do you handle situations like this? What kind of policy you have here. And what is the best solution in these situations? Place them behind a separate mx for each supplier?
Solved! Go to Solution.
06-22-2023 12:44 PM
Place them behind a single MX with each on their own VLAN would be my suggestion although how many suppliers at any one time would you have onsite?
06-22-2023 12:43 PM
I wouldn't allow third-party network equipment to be connected to your internal network.
I often put them on their own VLAN, for a VLAN separate from the internal network, and provide them with VPN access to their devices.
06-22-2023 12:44 PM
Place them behind a single MX with each on their own VLAN would be my suggestion although how many suppliers at any one time would you have onsite?
06-23-2023 12:07 AM
It can vary, from one to ten or fifteen per location.
Depends on the level of automation within a location.
06-22-2023 01:08 PM
06-23-2023 12:05 AM
Then you have the same thought as me. But it is something that has been accepted for years, but in my opnion cant be any more.
06-23-2023 04:00 PM
I agree. The threat landscape has evolved, and security systems and practices must evolve as a result.
06-22-2023 01:39 PM
agree with everyone, set up a separate VLAN just for them and if not required, just hand out a static IP.
06-23-2023 12:06 AM
Thank you all for your answers. This helps me.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide