Two subjects

profiledemokk8
Week6CyberDefenceandCountermeasures.zip

Week 6 Cyber Defence and Countermeasures/cf_anchor_hosp_scenario.docx

CU_Horiz_RGB

CU_Horiz_RGB IT4070

Anchor Hospital Scenario

You are a network specialist hired by Anchor Hospital to address network infrastructure vulnerabilities. Your initial work is broad and expected to encompass the following:

Understanding the network.

Firewalls.

Physical security.

Cloud solutions.

Intrusion detection.

VPN solutions.

Incident response and countermeasures.

Policy and regulatory issues.

Network exposure assessment and control.

Company Information

Anchor Hospital is a small independent care facility in a stand-alone building that houses its IT staff and assets in the basement. The IT infrastructure and staff of six serve 1,200 employees and other users.

Physical Security

The hospital is on a 10-acre campus in an urban neighborhood. Its IT-related physical security consists of:

A contracted security firm, which supplies two 24/7 guards: one of whom conducts hourly foot patrols, and the second who monitors cameras and performs additional security-related functions.

High-definition cameras that record continuously, located at all points of building entry and sensitive access points including the server room.

Three locked data-center doors requiring key card access that records all traffic. All staff have access cards for their respective departments; only IT staff, janitors, and upper management have access to the IT facility.

IT Overview

Network

Hospital connected to the Internet.

Network segmented into virtual LANs for medical data, IT, and finance user groups.

Hardware

Windows 2008 domain servers: email, file/print, data servers.

Routers connect switches to VLANs.

Switches connect desktops and servers to network.

Web server located in the DMZ.

100 antimalware-protected Windows XP workstations with Internet access.

Wireless access point.

Software

Windows firewall on a workstation at the edge of the network.

SNORT intrusion detection system (IDS), located in front of the Windows firewall.

MS Office installed on workstations.

Enterprise-level proprietary medical software.

Oracle Enterprise Resource Planning (ERP) software.

2017 version of free AVG Antivirus.

1

2

Week 6 Cyber Defence and Countermeasures/cf_asst_template.docx

CU_Horiz_RGB

CU_Horiz_RGB Remove or Replace: Header Is Not Doc Title

Assignment Template

Learner Name:

Lab Screenshots and Narrative

Insert and title all lab screenshots in the order they were taken. Briefly describe what you learned or observed in the lab below each screenshot. Be specific.

[Screenshot section, Step #]

[Screenshot section, Step #]

[Screenshot section, Step #]

[Screenshot section, Step #]

[Add as necessary]

Assignment

[Add your assignment responses here.]

1

2

Week 6 Cyber Defence and Countermeasures/Cyber Defence- Week 6.docx

Discussion – 1 page

VPN Security

Imagine you are examining firewall logs and look up to see the chief information officer (CIO) walking past your office. Then you notice that the CIO's VPN account is logged in to the network and the associated user is engaged in highly questionable behavior. You suspect that the CIO's teenage son, Terrible Timmy, has compromised your CIO's laptop.

Discuss what action you will take to address the compromise and ensure that the hole has been closed.

Assignment –

VPN Security Solution

Overview

VPN solutions are based on protocols such as Layer 2 tunneling (L2TP), secure socket layer (SSL) tunneling, and OpenVPN. In this assignment you compare the protocols and choose one for Anchor Hospital.

Scenario

Anchor Hospital wants to add a VPN to serve the remote connections for off-site employees. It is your job to evaluate the strengths and weaknesses of VPN protocols and determine which is most appropriate for Anchor Hospital. Your options are:

· Layer 2 tunneling (L2TP).

· Secure socket layer-based tunneling (SSL).

· OpenVPN.

Instructions 

If you have not done so, complete the unit lab and populate the Assignment Template containing your screenshots. Briefly describe what you learned from or observed in the lab and include it in the section with your screenshots in the Assignment Template. Be specific.

Complete the following:

· Compare the three VPN protocols to highlight their appropriate application, features, pros and cons, and other distinctions.

· Identify appropriate criteria for VPN selection for Anchor Hospital.

· Choose the most appropriate solution and provide a rationale for your decision.