Fibonacci
Setup secured remote access of the server hosted on AWS and ensure only authorized apps and files are allowed to be accessed by end users.
Fibonacci has lot of sensitive and confidential data of customers and wanted to ensure this data should be accessed by only legitimate users with predefined access permissions. They should not be able to transfer or port these data to other systems. To cater this requirement, EC2 server with multi RDP access has been provided and security policies are invoked to block data transfer.
Client:
Fibonacci
Category:
Marketing/Finance
![](https://tekrosta.com/wp-content/uploads/2020/09/project-details.jpg)
Fibonacci work with business leaders, money managers, and policy makers to solve their most critical problems and help them capitalize on the new economic opportunities which today’s world presents. They are strongly committed to delivering impact to our clients, stakeholders and the society. They are passionate problem solvers who work on issues ranging across strategy, operations, technology and people.
Their experience ranges across sectors, functional areas within an organisation, sizes of companies, and spans across the globe. They also have the right blend of experience from the contemporary digital world, and a traditional corporate setup with a keen eye on the constant innovation happening around the world. They excel at pattern recognition across time and across sectors and focus on practical solutions.
01. Problem Statement
Fibonacci was looking for solution to provide multi-user access of their system hosted on one of the AWS server and block all types of data transfer to other machines/users from this system.
02. Proposed Solution & Architecture
Following steps are performed to setup multi user access of the system and block data transfer –
- Setup Network components like VPC, Subnets, and Routing Tables etc.
- Setup EC2 Windows server, and apply 10 users CAL license for parallel RDP access by 10 users.
- Create firewall rules at serve level to block file download and upload to other systems
- Create security group rules to only allow RDP access to specific IP address of the users. Rest all ports will be blocked.
our industries
Service Used In Fibonacci
We help you see the world differently, discover opportunities you may never have imagined and achieve results that bridge what is with what can be.
EC2
S3
EBS
03. Results
- Successful parallel login of 10 users on EC2 windows server
- Blocked all data download and upload from this EC2 server to other systems and local machine
04. TCO Analysis Performed
1-year and 3-year TCO analysis has been done, as follows considering future scale of growth –
- 1-year TCO – $20K
- 3-year TCO – $70K