MSAMM
Back to course

Administering Cloud EPM: The Platform Beneath the Business Processes · Module 9 · Securing the Perimeter

Migrating from per-environment IP allowlists

Lesson 101 of 201 · 11 min

The older per-environment mechanism and its deprecation. Inventory existing per-environment allowlists across the estate, consolidate them into a domain-level perimeter, test EVERY environment, then remove the old configuration. INVENTORY BEFORE CONSOLIDATING. Different environments may have accumulated different allowlists, and merging them naively either locks somebody out or opens something up. Both directions are failures and only one of them is noticed. Test every environment after consolidating, not just one. This is a migration with a deadline attached. Do not discover it late.

The full lesson is part of the course

The video, the complete written lesson and the module quiz are included in Administering Cloud EPM: The Platform Beneath the Business Processes, with a certificate on completion and a fourteen-day refund window.

Get the free lessons by email

We will email you a link to every free lesson in this course. No account needed, and one message only.

In this module: Module 9 · Securing the Perimeter

  1. 1Defence in depth for an EPM estate
  2. 2Network perimeter
  3. 3Migrating from per-environment IP allowlists
  4. 4Sign-on policies
  5. 5Break Glass: managed provider access
  6. 6Approving access requests
  7. 7Customer-managed keys: the concepts
  8. 8Configuring customer-managed keys
  9. 9Compliance reports and the security capability set
  10. 10Answering a security questionnaireFree preview
  11. 11What breaks
  12. 12Lab: proportionate security, and ten questionnaire answers