Abstract
The growing complexity of data center networks in the context of virtualization and cloud computing has led to the demand of more secure network design apart from conventional challenges of business-continuity, data-integrity and scalability. A need for better network security design becomes more pronounced in case of large-scale energy-sector data centers, foreseeing the transpiring global cyber-threat spectrum. In this paper, we explain a novel design approach suitable for large-scale data centers, aiming to revamp the network security architecture by implementing a concrete and fully-secured network enclave. This enclave model uses conventional security techniques including security zoning, access control policies, and intrusion detection and prevention (IDP).