Administering Cloud EPM: The Platform Beneath the Business Processes · Module 9 · Securing the Perimeter
Migrating from per-environment IP allowlists
Lesson 101 of 201 · 11 min
The older per-environment mechanism and its deprecation. Inventory existing per-environment allowlists across the estate, consolidate them into a domain-level perimeter, test EVERY environment, then remove the old configuration. INVENTORY BEFORE CONSOLIDATING. Different environments may have accumulated different allowlists, and merging them naively either locks somebody out or opens something up. Both directions are failures and only one of them is noticed. Test every environment after consolidating, not just one. This is a migration with a deadline attached. Do not discover it late.
The full lesson is part of the course
The video, the complete written lesson and the module quiz are included in Administering Cloud EPM: The Platform Beneath the Business Processes, with a certificate on completion and a fourteen-day refund window.
In this module: Module 9 · Securing the Perimeter
- 1Defence in depth for an EPM estate
- 2Network perimeter
- 3Migrating from per-environment IP allowlists
- 4Sign-on policies
- 5Break Glass: managed provider access
- 6Approving access requests
- 7Customer-managed keys: the concepts
- 8Configuring customer-managed keys
- 9Compliance reports and the security capability set
- 10Answering a security questionnaireFree preview
- 11What breaks
- 12Lab: proportionate security, and ten questionnaire answers
