Describe the logical deployment of our nodes and components

Assignment Help Computer Networking
Reference no: EM131309334

Assignment

In this project we will design a network solution that is suitable for a small business. Our business is located in an office park in one floor of a new office building. Our office has all of the modern features of a contemporary workplace, including adequate, clean power, air conditioning and good lighting. We are fortunate in that our office was built with a secure computer room that already has a direct connection to a local Internet Service Provider's regional network, and we will use this connection for our access to the Internet.

Our office will include cube space and office space for 18 workstations. Four of the workstations will be located in private offices for the company executives, and the remaining 14 workstations will be deployed into cubicles for the employees. The cubicles are located in a spacious, open cubicle area. Our computer room is directly adjacent to our cubicle area, and it has power and cooling that is adequate for server needs. Our computer room has been built with appropriate physical security, so we have controlled access to our servers. All workstations and servers in all offices, cubicles and other areas are all easily within 30 meters of each other, so no cable run will exceed 30 meters.

For basic security reasons, we have been tasked with producing a network design that separates any servers that must be accessible from the Internet in an area that is logically separate from a private internal area where our internal servers and workstations will reside. Regardless of where they may reside, our servers and workstations must be protected from attack! We are required to describe how we will logically separate our network into the area that is accessible from the Internet from the internal area, how we will secure our network, and how we will secure the servers and workstations in our network. We are admonished to pay particular attention to the security of the servers that must be accessible from the Internet. So, our design will include at a minimum two logically different areas in our network; one area will be accessible from the Internet, and a second internal area for our workstations and internal servers which will not be directly accessible from the Internet.

In our internal area we have several requirements. In our internal area we are expected to provide wireless service to our employees. We have been cautioned to make sure that our wireless access point is secure and to prevent any unauthorized personnel from connecting to our internal network through our wireless access point. Additionally, our Management is particularly concerned that employees not abuse their access to websites while they are at work. So, we are going to control employee access to websites. All attempts that originate from within our internal area to visit any website will be required to use to a proxy server.

We will have a few servers in our internal area. All workstations in our internal area shall be DHCP clients, so we must have a DHCP server to manage their IP address requests. Other servers in our internal area will include a Database server and a Proxy server. We will also have two network printers in our internal area. In our internal area the IP addresses of the wireless access point, the IP addresses of all servers, and the IP addresses both network printers shall be static addresses. Only the workstations in our internal area shall have DHCP delivered IP addresses.

In our Internet accessible area we shall deploy a Web server and a Mail server. These servers must be publicly accessible as they will host our company website and our company email. We will also have a Bastion host in our Internet accessible area. The Bastion host will exist to provide inbound Secure Shell access to our network so that our Administrators can maintain our network and nodes from other locations when they are not physically present in the office. As such, the Bastion host shall provide a Secure Shell server that is accessible from the Internet.

And, all servers in all areas must be hardened.

Internal Area

• Wireless Access Point - Not directly connected to the Internet
• DHCP Server
• Database Server
• Proxy Server
• 2 Network Printers
• 18 Workstations

Internet Accessible Area

• Web Server
• Mail Server
• Secure Shell Server - Bastion Host

Network Components

• Router(s) - As needed for our design
• Switch(s) - As needed for our design
• Firewall(s) - As needed for our design
• Network Intrusion Detection System / Network Intrusion Protection System - As needed for our design

Our solution must be delivered in a document that will include:

• Management Summary - Our document will begin with a summary description of our design. The summary shall be suitable for consumption by Management.

• Inventory - Our document shall include an inventory of all nodes, including servers, workstations, printers, router(s), switch(s) and other components. Our inventory shall describe the logical deployment of all nodes and components, their purpose and function in our network, and any special features or requirements that each node or component may have.

• Network Diagram - The network diagram must use industry standard symbols that describe the logical deployment of our nodes and components. The network diagram shall complement our inventory.

• Security - The security discussion will describe the security considerations that we will take to protect all nodes and components that are deployed on our network. Our security discussion must address all nodes and components individually. For example, the security requirements for a Mail server will be different from the security requirements of a Workstation.

The final document shall be delivered in standard .doc or .docx format. The network diagram shall be imbedded in the document. The network diagram can be produced using Microsoft Office tools, Microsoft Visio, or freely available tools like LibreOffice (https://www.libreoffice.org/).

Reference no: EM131309334

Questions Cloud

Great recession that followed : Many people (economists included) blamed Alan Greenspan for the financial crisis and the Great Recession that followed. Describe two mistakes that many people believe Greenspan made.
Describe at least five needed internal control improvements : Describe at least five needed internal control improvements. What makes point-of-sale systems different from revenue cycles of manufacturing firms? Give three examples of Access Control in a Point-of-Sale (POS) system.
What should the first player offer the second : In experimental settings, the average offer given to the second player is about 30% of the initial amount. Explain how such an offer might not be motivated by an innate sense of fairness.
Watch a movie that relates to an aspect of psychology : Watch a movie that relates to an aspect of psychology and review the movie from the standpoint of integrating information you learned in class and that you read in the text with what was portrayed in the movie.
Describe the logical deployment of our nodes and components : The network diagram must use industry standard symbols that describe the logical deployment of our nodes and components. The network diagram shall complement our inventory.
Responsibility of working with organization : You have been given the responsibility of working with your organization's CEO to do a competitive market analysis of the potential success of one of their existing products.
How is this related to achieving the good life : What implications does the statement "Know thyself" have, along with other ideas of Socrates and Plato, for the process of human change?How is this related to achieving the good life? How will this impact the evaluation of a person's degree of livi..
Whether the following sentences use parallel structure : Determine whether the following sentences use parallel structure. Revise sentences as needed to make the structure parallel.
How is this related to achieving the good life : What implications does the statement "Know thyself" have, along with other ideas of Socrates and Plato, for the process of human change?How is this related to achieving the good life? How will this impact the evaluation of a person's degree of livi..

Reviews

Write a Review

Computer Networking Questions & Answers

  Why do we need standards in telecommunications

Why do we need standards in telecommunications? What are the advantages and disadvantages? What is the difference between de facto and de jure? For United States standards, what are the top three organizations?

  One disadvantage of using layered protocol structures

In a layered protocol structure, both network services and network protocols are defined. Should the network services and the network protocols be coupled or decoupled? Explain your answer.

  Provide a physical design for hhs

Create a project scope document that details appropriate business requirements, IT goals, and project parameters for the given scenario - Integrate routing and remote services into a Windows network design.

  Implement client and server programs on bank atm application

Implement client and server programs on bank ATM application. Give error checking if amount is legal and userID/password (created in the 1st time).

  Explain why these vulnerabilities could be exploited

This section should include areas where network security could pose security problems. Explain why these vulnerabilities could be exploited and what the implications are if they are not addressed. In this section, you do not need to provide specif..

  Write a research paper on a wide area network

Assessing and securing systems on a wide area network (WAN). Research paper; Ten pages, however no more than fifteen pages, 12 point font, Times New Roman and double spaced.

  1a describe the high level steps involved for decryption

1.a describe the high level steps involved for decryption using a feistel cipher.b modify the pseudo code provided in

  What is the hosts os and its version

What is the "ip address" of the host? What is the mac address? Which browser and its version the host is using? What is the host's OS and its version

  What are possible issues based on the information provided

What are possible issues based on the information provided? What kind of information would a network administrator look for in the trace file that was captured from the IP Host to the local router

  Suppose a client computer with ip address 1271929230 in

suppose a client computer with ip address 127.192.92.30 in building zz requests a large web page from the server in

  Electromycycle a manufacturer of a new electric motorcycle

electromycycle a manufacturer of a new electric motorcycle has chosen you to design a new network that will let the

  Explain the terms latency response time and jitter and

write a 2- to 4-page paper that includes the following based on your organizationmiddot explain the importance

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd