Security in the Metropolitan Area Network (MAN)

My client would like me a propose a high level design to secure a new metropolitan area network connecting multiple services (police, municipal, CCTV etc.), data centres as well as 3rd party customers utilizing the bandwidth. 

Can anyone recommend good research material or references for this type project? What are the best practice guidelines etc. I'm used to working on much smaller scale projects. 

0 Kudos
1 Reply

The difference between a small-scale environment and a much larger one is the number of interconnected nodes.

The segmentation principles don't change substantially, though the enforcement mechanisms you employ will depending on what it is you are trying to protect from what.

Software Defined Protection is the high level approach we've documented for this.