Term Paper Project: Designing a Secure Network
Due Week 10 and worth 190 points
This term paper involves putting together the various concepts learned throughout this course. You are tasked with designing the most secure network possible, keeping in mind your goal of supporting three (3) IT services: email, file transfer (centralized), and VPN. Your first step is to design a single network capable of supporting there three (3) different services. Once you have fully designed your network, you will need to provide three (3) workflow diagrams explaining how your designed network handles the three (3) different transactions. The first is an internal user sending an email using his / her corporate email address to a user on the Yahoo domain with an arbitrary address of [email protected] The second workflow diagram should show a user initiating an FTP session from inside your network to the arbitrary site of ftp.netneering.com. The third workflow is an externally located employee initiating a VPN session to corporate in order to access files on the Windows desktop computer, DT-Corp534-HellenS, at work.
Write a ten to fifteen (10-15) page paper in which you complete the following three (3) Parts. Note: Please use the following page breakdown to complete your assignment:
- Overall network diagram: One (1) page
- Datapath diagrams: Three (3) pages (one for each diagram)
- Write-up: six to ten (6-10) pages
- Using Microsoft Visio or its open source alternative, create a diagram showing the overall network you’ve designed from the user or endpoint device to the Internet cloud, and everything in between, in which you:
- Follow the access, core, distribution layer model.
- Include at a minimum:
- Authentication server (i.e. Microsoft Active Directory)
- Switches (and / or hubs)
- Local users
- Remote users
- Files share (i.e. CIFS)
- Mail server
- Web servers (both internal and external)
- Internet cloud
- Web proxy
- Email proxy
- FTP server (for internal-to-external transport)
- Explain each network device’s function and your specific configuration of each networking device.
- Design and label the bandwidth availability or capacity for each wired connection.