*Download size depends on selected download components.
Overview
Detailed discussion on how Microsoft IT introduced Domain Isolation to the Microsoft global enterprise network. Part of Microsoft’s Embody Trustworthy Computing efforts, the purpose of Domain Isolation is to prevent unauthorized access, both external and internal, to trusted assets. The technology chosen for isolation is Internet Protocol Security (IPsec), a standards-based approach to authenticating network traffic, which can be deployed and managed centrally through the use of Group Policy. The result of these efforts is a secure, segmented network of trusted computers, which Microsoft calls "SecureNet."