Emulate three machines on the external machine

Assignment Help Computer Networking
Reference no: EM131728611

Laboratory: Configuring a Firewall

In this exercise you will be working with firewalld, a front-end to controlling Iptables. Iptables is a flexible firewall utility built for Linux operating systems. It is too low level, however, and, as such, hard to use and configure the rules for filtering traffic. firewalld provides higher-level command line and graphical interfaces over Iptables to ease the pain of configuring the firewall features provided by Linux. For this lab exercise, we will only be using only the high-level command line interface. firewalld provides a dynamically managed firewall with support for network/firewall "zones" to assign a level of trust to a network and its associated connections, interfaces or sources. It has support for IPv4 and IPv6. There is a separation of the runtime and permanent configuration options.

For this lab exercise, we will be using two machines, one machine will behave like an Enterprise and the other machine will behave like machines outside an enterprise. We will these machines as External, external to the enterprise. The firewall, as part of the enterprise will control traffic both coming into the enterprise and going out of the enterprise (to External).

NIXENT01 (Enterprise) is a CentOS 7 machine. CentOS is a Linux distribution that attempts to provide a free, enterprise-class, community-supported computing platform. Firewalld will be running on this host.

NIXEXT01 (External) is Kali Linux. Kali Linux is a Debian-based Linux distribution aimed at advanced Penetration Testing and Security Auditing. Kali contains several hundred tools which are geared towards various information security tasks, such as Penetration Testing, Security research, Computer Forensics and Reverse Engineering. You have already used this machine for Lab2 and Lab 3 in analyzing packets using Wireshark. (Wireshark is available as part of Kali distribution.)

Although there are only two machines, we are going to pretend that the Enterprise has three machines (three IP addresses) and each machine has certain services running on those machines, as follows:

Service

Associated IP Address

domain, telnet

192.168.10.10

http, https

192.168.10.20

ftp, imap2, imaps, pop3, pop3s, urd

192.168.10.30

Similarly, we are going to emulate three machines on the External machine with three IP addresses, each running only certain services as follows:

Service

Associated IP Address

domain, telnet

192.168.10.210

http, https

192.168.10.220

ftp, imap, imaps, pop3, pop3s, urd

192.168.10.230

Network Traffic Simulation Script
The Network traffic Simulation script allows users to test pathways to lab resource machines by using the terminal to initiate test packets. The script takes 2 input variables (IP address and service) and uses this information to initiate a test. The script is implemented using bash shell. The script accepts a target IP (-t) and any service name (-s) available in /etc/services

To run the script:
1. Open Terminal window.
2. Enter command "sudo /usr/local/sbin/traffic_test -t (target IP) -s (service)"
a. Target IP and Service are taken from the Enterprise and External Tables above
b. Http example: "sudo /usr/local/sbin/traffic_test -t 192.168.10.20 -s http"
3. Input the Password for the StudentFirst User: Cyb3rl@b
4. The script will then run a 5 packet test and display the results.

The firewall is initially is set up to Deny by Default. So, no traffic will be admitted in either direction until we explicitly change the firewall rules.

Attachment:- FirewallLab.rar

Reference no: EM131728611

Questions Cloud

How to sustain employee motivation in firm facing cost cuts : For example you could address following issue: How to sustain employee motivation in a firm facing cost cuts? Analysis of case in the light of the literature.
Calculate an overhead absorption rate for each process : Calculate an overhead absorption rate for each process, Use process accounts to calculate the cost of the order processed during March.
Ci for population percentage in favor of coed dorms : A randomly selected sample of 400 students is surveyed about whether additional coed dorms should be created at their school. Of those surveyed, 57%.
Documented private company : A paper on a publicly traded company (or well documented private company) that has experienced a major public crisis on social media.
Emulate three machines on the external machine : INFA 620 - provide a free, enterprise-class, community-supported computing platform. Firewalld will be running on this host - Kali Linux is a Debian-based Linux
Develop the training objective for this program : Identify two to three (2-3) training needs though a Training Needs Analysis (TNA) and justify an approach for this training.
What is the cost of goods manufactured for june : What is the Cost of Goods Manufactured for June, The production superintendent's job cost sheets indicated that materials
Define statistic of interest to be the proportion correct : Now define the statistic of interest to be the proportion correct, X/10. What is the mean of the sampling distribution of this statistic?
Strategic mangement competitiveness : The Never-Ending Hunt for FinancingRead the Entrepreneurial Profile of John and Colleen Pfeifer in Chapter 13.

Reviews

Write a Review

Computer Networking Questions & Answers

  What is the difference between a virus and a worm

What is the difference between a virus and a worm? What is social engineering? What is the best defense against social engineering

  Explain how routed backbones work

What is an enterprise network?- What are the three technology layers important in backbone design?- Explain how routed backbones work.

  Udp programming project journaling application

UDP Programming Project Journaling Application- We have been looking at using Java UDP Sockets to build networked applications. The example provided with this week's lecture demonstrates some of the basic ideas for setting up a networked applicatio..

  Ways to stop interference from arc welders

Provided that both the design shop and front office utilizes areas? What medium guarantees immunity from the interference?

  Provide a brief comparison of vpn protocols

Provide a brief comparison of VPN Protocols, outlining the advantages and disadvantages of each. Provide a scenario where it might be useful to use VPN for an organization

  What kind of security issues require to be considered when

q1. what are some of the reasons an organization might consider using a wireless lan?q2. what type of security issues

  The 2 main types of communications media used for network

the 2 main types of communications media used for network connections are wired connections and wireless connections.

  Create a powerpoint presentation to provide a succinct

the assessment is based on two blog entries blog 1 and blog 4 which will be posted on the resouce section under

  Create report to evaluate possible client/server solutions

You have asked to create a report which evaluates possible client/server solutions to handle the new customer application system for all branch offices.

  Analyze and identify the fundamentals of pki

Analyze and identify the fundamentals of PKI in writing and depict graphically using MS Visio or its open source alternative software. Note: The graphically depicted solution is not included in the required page length

  Explain how you would go about using a viral campaign

Explain how you would go about using a viral campaign for your business and write a few sentencescomparing the results of the two search engines and explain the two results - why do you think they were similar/different?

  Explain how each of the following commands

Explain how each of the following commands below will impact the switched network? Which command is the default command used when setting up port-security on a Cisco switch?

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd