Category:I802 Firewalls and VPN IPSec: Difference between revisions
No edit summary |
|||
Line 66: | Line 66: | ||
* Monitoring software of your choice to make sure that services are up and running | * Monitoring software of your choice to make sure that services are up and running | ||
* E-mail for sending notifications from monitoring software at first | * E-mail for sending notifications from monitoring software at first | ||
==Pentest== | |||
Find security issues in the deployed services. | |||
Team members: Kustas, Ender, Indrek (?) |
Revision as of 10:03, 7 September 2016
Firewalls and VPN/IPSec
General information
ECTS: 4
Lecturer: Lauri Võsandi
Scenario
In this course we will attempt to set up a network similar to a corporate network with multiple offices, eg http://docplayer.it/docs-images/20/596222/images/25-0.png
We will use VPN software to connect subnets to each other and we will use VPN software to connect our personal computers to the intranet.
For this course we have 3 Sun servers, each with 16GB of RAM. In each server we should be able to create 3 or more virtual machines. As host operating system we will install Ubuntu 16.04 server. On disks set up ext4 on mdraid set up in RAID1 configuration.
For virtualization let's use libvirtd and virt-manager on your Ubuntu laptops. Adventurous might want to try to set up Kimchi web interface.
Offices
Headquarters
Public IP address: 193.40.194.160/24
Gateway: 193.40.194.220
DNS: 193.40.0.12, 193.40.56.245
Team members: Keijo, Anton, Mohanad,
Services:
- domain controller, at this point primarily for user accounts
- nginx web server, for company's homepage
Research & development
Public IP address: 193.40.194.161/24
Gateway: 193.40.194.220
DNS: 193.40.0.12, 193.40.56.245
Team members: Marvin, Madis, Taavi, Berit, Joosep
Services:
- Git hosting, for sharing scripts
- Wiki, for exchanging information
Devops
Public IP address: 193.40.194.162/24
Gateway: 193.40.194.220
DNS: 193.40.0.12, 193.40.56.245
Team members: Arti, Meelis Hass, Artur O, Sheela, Ilja (exchange)
Services:
- IRC, for chatting
- Certificate management for roadwarriors
- Monitoring software of your choice to make sure that services are up and running
- E-mail for sending notifications from monitoring software at first
Pentest
Find security issues in the deployed services.
Team members: Kustas, Ender, Indrek (?)
This category currently contains no pages or media.