36 Miss. Code. R. 1-8.1
ITS will maintain a perimeter firewall between the State Network and the Internet. This firewall will provide address-translation to public space for state agencies.
A.
Inbound connections from the Internet will be restricted to only ports TCP 80
and TCP 443, for only HTTP and HTTPS protocols. No other inbound-initiated
ports will be allowed to servers residing on the State Network unless entering
the state network over a VPN.
B.
ITS will maintain a DMZ for applications that meet the following criteria:
1. Require inbound connections that are not
HTTP or HTTPS
2. Declared
business-critical by both the agency and ITS
3. Deemed as unsuitable for a VPN by
ITS
C. All applications
utilizing the ITS DMZ must reside in the State Data Center.
D. Outbound connections from the State
Network will be largely unrestricted. Exceptions to this include LAN protocols,
ICMP, and ports known for propagating malicious code.
Notes
State regulations are updated quarterly; we currently have two versions available. Below is a comparison between our most recent version and the prior quarterly release. More comparison features will be added as we have more versions to compare.
No prior version found.