 |
 |
 |
 |
 |
 |
 |
Security Statement
Security at Reavia is built on a foundation that is strong, flexible, multi-faceted and redundant. If, or when, we are targeted by a security threat, multiple safeguards are already in place, and additional safeguards are triggered to protect the system.
Reavia utilises a “Defence-in-Depth” approach to network security. Between the Internet and customer data there are four layers of network security protection:
- One of the first lines of defence is the router that sits in front of the firewall. The rules in place on the router block the most prevalent worm attacks on the web by analysing the header information. Each packet is inspected and either granted access or tagged for denial before ever reaching the firewall. Thus the router effectively eliminates unauthorised and unnecessary traffic and blocks it from gaining access.
- Information passing through the router next must pass through the firewall. The firewall places strict limits on ports and protocols.
- An additional intrusion detection system behind the firewall provides supplementary protection above that provided by the Seasam hosting facility.
- The data centre firewall also deploys NAT (Network Address Translation) technology to provide an extra layer of security. NAT is an IETF (Internet Engineering Task Force) standard that enables a local-area network (LAN) to use one set of IP addresses for internal traffic and a second set of addresses for external traffic.
- The IETF is a large, open community of network designers, operators, vendors, and researchers whose purpose is to coordinate the operation, management and evolution of the Internet, and to resolve short-range and mid-range protocol and architectural issues.
- The load-balancing layer, while not strictly a security layer, also provides additional port screening and protocol protection. It has the ability to identify common DOS attacks and screen them from reaching the server.
- The Web/Application server layer runs on Linux.
- Our Web/Application server is configured in the minimal configuration required to run the application layer.
- Application servers are configured to process only HTTP and HTTPS requests.
- Other Internet protocols are disabled.
- All servers have been hardened at the operating system and directory levels.
- Non-essential ports and services have been disabled.
To ask any
questions about this Security Statement, the
practices of this website, our services, or make
any suggestions or tell us about any other ideas
concerning our website or our services, please
contact:
Reavia c/o OpenEra Systems Limited
306 Block C
16 Hertsmere Road
London
E14 4AX
email: info@reavia.com
|
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
 |
|