Telecomm. Network Security project
2 NETWORK DESIGN Network Design
There are various network designs used by different businesses to do their operations.
Designing a network is never an easy to do task because it involves research to
determine which type of network design bests suits the operation of a particular
business. When the technical developing team chose a wrong network design, they
may end up generating issues which can affect the operations of the business
negatively. The business may end up losing their esteemed customers since they will
not be meeting the customers’ requirements. Network design requires appropriate
research on the needs of the business to appropriately work.
In order for Corporation Techs to make their pathways operational at all times, they
require the best network design that suits their needs without leaving any element at
chance. The best network design will ensure they know the needs of their customers
and employees to respond to them appropriately. That will increase the efficiency of the
organization which means it will realize more profits in the short time more than they
could achieve using a poor network design. The best network design will also retain the
availability of the website public when it is accessed internally.
There are various elements which need to be determined to establish a secure network
in the organization primarily with the increased requirements of the organization. The
demand of the individual network varies between networks which require one to think
critically before establishing a network that is secure and reliable. Security of any
network is now the important consideration on every organization. Local Area Network
and internet security are crucial to the success of the organizational operations. Thus,
3 NETWORK DESIGN the organization needs a network that is compatible and a solution to its issues. The
purpose of security is to protect the assets of the organization. The advancement of
computers makes it possible for an organization to protect its assets. There are great
risks on the internet that the network design should address for it to provide solution to
the organization. Firewall devices have both hardware and software component that
ensure the access policy between two or more networks. An intelligent subnet that
isolates an inner Local region organization (LAN) from different organizations that are
untrusted is called neutral territory (DMZ). There are various ways to deal with plan an
association with a DMZ. “The two fundamental systems are to use several firewalls,
anyway most modern DMZs are arranged with firewalls. This fundamental approach is
created to build more stunning constructions ("What is a DMZ and How Does it Work?",
2021).”
“A singular firewall with that has three association interfaces is used to develop an
association configuration which has a DMZ. The external association is molded by
partner the public web - through Internet Service Provider (ISP) affiliation - to another
firewall on the association interface. The inside association is molded from the DMZ
network and association itself is related with the third association interface ("What is a
DMZ and How Does it Work?" 2021).”
4 NETWORK DESIGN
“Various arrangements of firewall rules for observing traffic between the web and the
DMZ, the LAN and the DMZ, and the LAN and the web firmly control which ports and
sorts of traffic are permitted into the DMZ from, as far as possible availability to explicit
hosts in the inside organize and forestall unrequested associations either to the web or
the inward LAN from the DMZ.
The safer way to deal with making a DMZ network is a double firewall design, in which
two firewalls are conveyed with the DMZ network situated between them. The main
firewall - additionally called the edge firewall - is designed to permit outer traffic bound
to the DMZ as it were. The second, or inside, firewall just permits traffic from the DMZ to
the inward organization. This is viewed as safer in light of the fact that two gadgets
should be undermined before an assailant can get to the inward LAN.
Security controls can be tuned explicitly for each organization section. For instance, an
organization interruption discovery and avoidance framework situated in a DMZ could
be arranged to hinder all traffic aside from HTTPS solicitations to TCP port 443.
IPv6 is the most recent form of the Internet Protocol, which recognizes gadgets across
the web so they can be found. Each gadget that uses the web is distinguished through
5 NETWORK DESIGN its own IP address all together for web correspondence to work. Around there, it's
actually similar to the road locations and postal divisions you need to know to mail a
letter. IPv6 is better than the previous version which uses 32- bit addressing. IPv6 uses
128-bit tending to help around 340 trillion. Rather than the IPv4 address technique for
four arrangements of one-to three-digit numbers, IPv6 utilizes eight gatherings of four
hexadecimal digits, isolated by colons.”
6 NETWORK DESIGN References
(PDF) Design and Implementation of a Network Security Model for Cooperative
Network. (2021). Retrieved 16 May 2021, from
https://www.researchgate.net/publication/50367393_Design_and_Implementatio
n_of_a_Network_Security_Model_for_Cooperative_Network
What is a DMZ and How Does it Work?. (2021). Retrieved 16 May 2021, from
https://searchsecurity.techtarget.com/definition/DMZ
Park, P., Ergen, S. C., Fischione, C., Lu, C., & Johansson, K. H. (2017). Wireless
network design for control systems: A survey. IEEE Communications Surveys &
Tutorials, 20(2), 978-1013.