To reject packets between network segments, define the packets to be rejected in the ACL. If the rule permit command is used, all packets match this rule. Segmentation slow down an attacker if he cannot implement attacks such as: compromise of the target service through the compromise of the LDAP directory, DNS server, and other corporate services and sites. Network segmentation with switches involves dividing a network into smaller, isolated segments to enhance security, improve performance, and simplify management. You may. Software defined segmentation simplifies the provisioning and management of network access control through the use of groups to classify network traffic and enforce policies. Traffic classification is based on endpoint identity and context not IP address, enabling policy change without network. Network segmentation and segregation are highly effective strategies an organisation can implement to limit the impact of a network intrusion. If implemented correctly, these strategies can make it significantly more difficult for malicious actors to locate and gain access to an organisation's most. In this sample chapter from Practical Cisco Unified Communications Security, you will explore the dependencies that Unified Communications (UC) systems have on a network while also highlighting the security features that can be implemented to provide additional security to the UC environment.