CCNA Discovery: Introducing Routing and Switching in the

advertisement
CCNA Discovery: Introducing Routing and Switching in the Enterprise Chapter 8 Case Study
ACL Configuration Introduction: The topology below represents a medium sized network that utilizes a number of previously introduced LAN and WAN technologies. Overview: The network uses OSPF as an internal routing protocol. WAN links consist of a mixture of PPP and Frame Relay encapsulation methods. The Office network uses VLANs and not all hosts have access to the public ‘Internet’ represented by the Remote Server. Ensure that any access lists you apply allow proper OSPF routing and PPP password information to be successfully transmitted and received. As with many such studies, there may be more than one equally good solution. You may assume that the network administration team has access to all equipment configurations except on the ISP and ISP servers. Most equipment is not password protected, but when used, the standard passwords are cisco and class. © 2009 Cisco Learning Institute
CCNA Discovery: Introducing Routing and Switching in the Enterprise Chapter 8 Case Study
Tasks: You are required to write Access Lists and apply them to the necessary routers in the network to achieve the security limitations shown below. •
•
•
•
•
•
Hosts on either Lancelin subnet can access the Navy Web Server, but NOT the ISP Remote Server or the Public Web Server. Verify by using the web browser on each host Hosts on either Bindoon subnet can access the Public Web server and the ISP Remote Server, but NOT the Navy Web server Host on Bindoon1 subnet is allowed to telnet to the Office Switch for configuration purposes. Hosts on Bindoon2 are denied access. All Office hosts can access the Public Web server and the Internal Web server. Only hosts on VLAN 10 may configure the Office switch via telnet access Leeuwin acts as a rudimentary firewall to the Office subnet, only allowing packets from internal addresses, unless the communication is 'established'. © 2009 Cisco Learning Institute
Download