1 / 43100%
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 1/43
CIS534
Preview: CIS534 : Advanced Network Security Design
Course Guide
Prerequisites
Course Description
Instructional Materials
CIS502
This course examines strategies to design, administer and maintain a comprehensive enterprise
security infrastructure. Topics related to protection of information technology assets and infrastructure
from external and internal threats are included.
Required Resources
Michael J. Stewart. 2020. Network Security, Firewalls, and VPNs. CIS534 Jones & Bartlett Learning
3rd edition textbook available at https://www.strayerbookstore.com
Jones & Bartlett Learning. No date. CIS534 JBL Emailed Access Code. CIS534 Jones & Bartlett
Learning virtual lab available at https://www.strayerbookstore.com
Note: For instructions on accessing the lab, refer to the Jones & Bartlett Learning link in the
left-hand navigation pane of the courseroom. Guides for each lab are available within the
online lab environment.
Microsoft Visio.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
NOTE: The links in this document do not function. Please refer to your course to view/download
linked content.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 2/43
Course Learning Outcomes
Weekly Course Schedule
Week 1 - To Do List
Learn: Read Chapters 1 and 2 in Network
Security,
Firewalls,
and
VPNs and review the
associated PowerPoint presentations.
Note: This course requires a Microsoft product that is available at no cost to Strayer University
students. For more information, refer to the Microsoft Azure for Education link in the left-
hand navigation pane of the courseroom. This information is also available via iCampus on the
Microsoft Azure for Education page.
Supplemental Resources
SANS. No date. CIS Critical Security Controls. https://www.sans.org/critical-security-controls/?
msc=main-nav
SANS. No date. Security Policy Templates. https://www.sans.org/information-security-policy/
Recommend solutions, products, and technologies to meet business
objectives.
1
Recommend best security practices to achieve business objectives based on
risk assumptions.
2
Conduct activities to protect IT assets and infrastructure from threats and
improve incident response strategies.
3
Recommend best practices for monitoring, updating, and patching systems.
4
Plan a deployment of software and/or hardware, including implementation and
testing considerations.
5
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 3/43
Week 1 - To Do List
Discuss: Introduce yourself and complete the discussion, Threat Detection and Prevention.
Assignment: Complete the pre-lab assignment.
Assignment: Complete Lab Assignment 1: Assessing the Network With Common Security Tools.
Assignment: Complete Lab Assignment 2: Defending the Network From a Simulated Attack.
Prepare: Review the preparation instructions for the assignment due next week.
Week 2 - To Do List
Learn: Read Chapter 3 in Network
Security,
Firewalls,
and
VPNs and review the associated
PowerPoint presentation.
Discuss: Complete the discussion, Network Redundancy and Data Storage.
Assignment: Complete the assignment, The Ethical Hacker.
Week 3 - To Do List
Learn: Read Chapter 4 in Network
Security,
Firewalls,
and
VPNs and review the associated
PowerPoint presentation.
Discuss: Complete the discussion, Network Security Systems and Firewalls.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 4/43
Week 3 - To Do List
Assignment: Complete Lab Assignment 3: Designing a Secure Network Topology.
Assignment: Complete Lab Assignment 4: Configuring the Windows Defender Firewall.
Prepare: Review the preparation instructions for the assignment due next week.
Week 4 - To Do List
Learn: Read Chapter 5 in Network
Security,
Firewalls,
and
VPNs and review the associated
PowerPoint presentation.
Discuss: Complete the discussion, Hardware and Software Firewalls.
Assignment: Complete the assignment, Defense in Depth.
Week 5 - To Do List
Learn: Read Chapters 6 and 7 in Network
Security,
Firewalls,
and
VPNs and review the
associated PowerPoint presentations.
Discuss: Complete the discussion, Operating System Host Firewalls.
Assignment: Complete Lab Assignment 5: Configuring Firewall Interfaces With pfSense.
Assignment: Complete Lab Assignment 6: Monitoring and Logging Network Traffic.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 5/43
Week 5 - To Do List
Prepare: Review the preparation instructions for the assignment due next week.
Week 6 - To Do List
Learn: Read Chapter 8 in Network
Security,
Firewalls,
and
VPNs and review the associated
PowerPoint presentation.
Discuss: Complete the discussion, Firewall Basics and Security Strategies.
Assignment: Complete the assignment, Network Engineer.
Week 7 - To Do List
Learn: Read Chapters 9 and 10 in Network
Security,
Firewalls,
and
VPNs and review the
associated PowerPoint presentation s.
Discuss: Complete the discussion, Virtual Private Networks.
Assignment: Complete Lab Assignment 7: Configuring Custom Firewall Rules With pfSense.
Assignment: Complete Lab Assignment 8: Configuring a VPN Server With pfSense.
Prepare: Review the preparation instructions for the assignment due next week.
Week 8 - To Do List
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 6/43
Week 8 - To Do List
Learn: Read Chapters 11 and 14 in Network
Security,
Firewalls,
and
VPNs and review the
associated PowerPoint presentation s.
Discuss: Complete the discussion, VPN Management Techniques.
Assignment: Complete the assignment, System Security Monitoring, Patch Management, and
Update Policies.
Week 9 - To Do List
Learn: Read Chapter 12 in Network
Security,
Firewalls,
and
VPNs and review the associated
PowerPoint presentation .
Discuss: Complete the discussion, VPN Technologies and Protocols.
Assignment: Complete Lab Assignment 9: Configuring a VPN Client for Secure File Transfers.
Assignment: Complete Lab Assignment 10: Penetration Testing a pfSense Firewall.
Prepare: Review the preparation instructions for the assignment due next week.
Week 10 - To Do List
Learn: Read Chapters 13 and 15 in Network
Security,
Firewalls,
and
VPNs and review the
associated PowerPoint presentation s.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 7/43
Week 10 - To Do List
Discuss: Complete the discussion, Emerging Network Technologies.
Assignment: Complete the assignment, Designing a Secure Network.
Week 11 - To Do List
Discuss: Complete the discussion, Course Wrap-Up and Course Takeaways.
Grading Scale
Participation Total
Points
% of
Grade
Discussion Participation 210 21%
Assignment Total
Points
% of
Grade
Week 1 Assignment 2 - Lab Assignment 1: Assessing the Network With
Common Security Tools
35 3.5%
Week 1 Assignment 3 - Lab Assignment 2: Defending the Network From a
Simulated Attack
35 3.5%
Week 2 Assignment - The Ethical Hacker 70 7%
Week 3 Assignment 1 - Lab Assignment 3: Designing a Secure Network
Topology
35 3.5%
Week 3 Assignment 2 - Lab Assignment 4: Configuring the Windows
Defender Firewall
35 3.5%
Week 4 Assignment - Defense in Depth 70 7%
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 8/43
Participation Total
Points
% of
Grade
Week 5 Assignment 1 - Lab Assignment 5: Configuring Firewall Interfaces
With pfSense
35 3.5%
Week 5 Assignment 2 - Lab Assignment 6: Monitoring and Logging
Network Traffic
35 3.5%
Week 6 Assignment - Network Engineer 70 7%
Week 7 Assignment 1 - Lab Assignment 7: Configuring Custom Firewall
Rules With pfSense
35 3.5%
Week 7 Assignment 2 - Lab Assignment 8: Configuring a VPN Server With
pfSense
35 3.5%
Week 8 Assignment - System Security Monitoring, Patch Management,
and Update Policies
70 7%
Week 9 Assignment 1 - Lab Assignment 9: Configuring a VPN Client for
Secure File Transfers
35 3.5%
Week 9 Assignment 2 - Lab Assignment 10: Penetration Testing a pfSense
Firewall
35 3.5%
Week 10 Assignment - Designing a Secure Network 160 16%
Totals 1000 100%
Final Course Grade
Points Percentage Grade
900 - 1000 90% - 100% A
800 - 899 80% - 89% B
700 - 799 70% - 79% C
0 - 699 69% and below F
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 9/43
Unique Course Features
Grading Scale Notation
Please consult the University Catalog and your academic advisor to determine the final grade needed
in this class to satisfy your specific degree conferral requirements.
Assignments
Lab Participation and Attendance Policy
The Jones & Bartlett Learning labs are used to support your learning in this course. However,
activities completed during these labs do not count for attendance. You are only given credit for
attendance when you complete one of the following tasks in Blackboard before 11:59 p.m.
EST on Sunday: submit a discussion post, complete a quiz or exam, or submit an
assignment. Be sure to complete one of these activities each week in Blackboard to be counted
present.
Reminders for Discussions 1–11
Post your initial thoughts by Wednesday this week to give your classmates some time to read
your post and to post their own thoughts. This isnt an essay assignment; it’s a discussion, just
as youd have in a traditional classroom. However, you should provide references and
citations, where appropriate, to support your position. If you cite a web source, dont forget to
include the link. Consult the Strayer Writing Standards for proper formatting.
On Thursday or Friday, come back and read a few of your classmates’ posts. Try to find one
that is interesting to you. Based on your classmates’ posts, what did you learn that you didnt
previously know? Let your classmates know how their posts helped you!
Remember, youre not expected to be an expert. It is assumed that you will work hard to
become an expert, so do your research.
During the week, return to the discussion thread often and reply to any classmates who have
left you posts. Remember, discussions are supposed to be a conversation. Just like people
use social media, so too can you use these discussions to facilitate a dialogue. Getting the
conversation going early typically ensures better quality interactions with your classmates.
Enjoy the conversations!
Week 1 Assignment 2 - Lab Assignment 1: Assessing the Network With Common Security
Tools
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 10/43
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 1 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 1 Assignment 3 - Lab Assignment 2: Defending the Network From a Simulated Attack
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 2 and submit the
lab report. 100 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 11/43
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 2 Assignment - The Ethical Hacker
Summary
Click the linked activity title to access this assignment.
Text
Introduction
In this assignment, you will assume the role of an ethical hacker tasked by law enforcement to
infiltrate the network of a business known to engage in illegal activities.
The specific course learning outcome associated with this assignment is:
Conduct activities to protect IT assets and infrastructure from threats and improve incident
response strategies.
Scenario
Imagine for a moment that you are a hacker, an ethical one. You are called upon by law enforcement
to hack into the network of a business known to be engaged in criminal activity for financial gain as
its primary activity. Assume you are not to be concerned with any political aspects of the job and that
your actions are legal and ethically justified.
This nefarious business takes its own security seriously and, therefore, has implemented several
forms of network security, including firewalls, web proxies for its web gateways, and VPNs for
remote users. You also know that this business, much like any normal corporation, rents several
floors of office space to accommodate between 100 and 200 employees. Also, imagine that the
business's entire network topology is located on-site. Your goal is to infiltrate their security to find
evidence of illegal activities in the local MSQL database. You must remain anonymous and operate
within the parameters of the law.
Instructions
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 12/43
Write a 6– 10 page paper in which you:
Explain your method of attack and operation within the reasonable parameters of the law,
citing specific, credible sources that support the method of attack and operation.
Describe a specific malware, social engineering, or other type of attack you would deploy to
achieve your desired goals, citing specific, credible sources that support deployment of the
attack.
Identify effective techniques for concealing executables and specific tools used for each
stage of the attack.
Develop a plan to overcome expected hurdles your attack must overcome to be successful,
citing specific, credible sources that support the plan.
Develop an anonymizing strategy, supported by specific, credible sources, that creates a false
trail and minimizes the risk of detection.
Support your main points, assertions, arguments, or conclusions with at least four specific and
credible academic sources synthesized into a coherent analysis of the evidence.
Cite each source listed on your source page at least one time within your assignment.
For help with research, writing, and citation, access the library or review library guides.
This course requires the use of Strayer Writing Standards. For assistance and
information, please refer to the Strayer Writing Standards link in the left-hand menu of
your course. Check with your professor for any additional instructions.
Write clearly and concisely in a manner that is well-organized, grammatically correct, and free
of spelling, typographical, formatting, and/or punctuation errors.
Note: Page length excludes images, tables, drawings, the cover page, and source page.
Scoring Guide
Explain a method of attack and operation
within the reasonable parameters of the law,
citing specific, credible sources that support
the method of attack and operation. 23 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 13/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Explained a method
of attack and
operation that
misinterpreted the
objective of the
attack, has serious
flaws, or violates the
law.
Competent
Explained a method
of attack and
operation within the
reasonable
parameters of the law.
Exemplary
Explained a method
of attack and
operation within the
reasonable
parameters of the law,
citing specific,
credible sources that
support the method of
attack and operation.
Describe a specific malware, social
engineering, or other type of attack one
would deploy to achieve desired goals, citing
specific, credible sources that support
deployment of the attack. 22 %
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Described a specific
malware, social
engineering, or other
type of attack one
would deploy, but the
attack overlooks key
considerations or is
unlikely to achieve
desired goals.
Competent
Described a specific
malware, social
engineering, or other
type of attack one
would deploy to
achieve desired
goals.
Exemplary
Described a specific
malware, social
engineering, or other
type of attack one
would deploy to
achieve desired
goals, citing specific,
credible sources that
support deployment of
the attack.
Develop a plan to overcome expected
hurdles to a successful attack, citing specific,
credible sources that support the plan. 23 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 14/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Developed a plan to
overcome expected
hurdles to a
successful attack, but
the plan disregards or
overlooks likely
hurdles that a
competent hacker
would reasonably
expect to encounter.
Competent
Developed a plan to
overcome expected
hurdles to a
successful attack.
Exemplary
Developed a plan to
overcome expected
hurdles to a
successful attack,
citing specific,
credible sources that
support the plan.
Develop an anonymizing strategy, supported
by specific, credible sources, that creates a
false trail and minimizes the risk of detection.
22 %
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Developed a strategy
to remain anonymous
and avoid detection,
but the strategy omits
specific software
tools and their use or
it risks detection or
identification of the
hacker.
Competent
Developed a strategy
to remain anonymous
and avoid detection.
Exemplary
Developed an
anonymizing strategy,
supported by specific,
credible sources, that
creates a false trail
and minimizes the
risk of detection.
Support the main points, assertions,
arguments, or conclusions with at least four
specific and credible academic sources
synthesized into a coherent analysis of the
evidence. 5 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 15/43
Unacceptable
Did not submit the
assignment or
provide any sources.
Needs Improvement
Did not cite the
required number of
sources, and/or one
or more sources did
not support the main
points, assertions,
arguments, or
conclusions.
Competent
Cited the required
number of sources,
but one or more
sources did not
support the main
points, assertions,
arguments, or
conclusions.
Exemplary
Supported the main
points, assertions,
arguments, or
conclusions with at
least four specific and
credible academic
sources synthesized
into a coherent
analysis of the
evidence.
Write clearly and concisely in a manner that is
well-organized, grammatically correct, and
free of spelling, typographical, formatting,
and/or punctuation errors. 5 %
Unacceptable
Did not submit the
assignment; or the
writing lacked clarity
and organization, was
grammatically
incorrect, and
contained numerous
spelling,
typographical, and/or
punctuation errors.
Needs Improvement
Writing lacked clarity
or organization and
contained
grammatical, spelling,
typographical,
formatting, and/or
punctuation errors that
inhibited readability
and detracted from
the overall message.
Competent
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and nearly free of
spelling,
typographical,
formatting, and/or
punctuation errors.
Exemplary
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and free of spelling,
typographical,
formatting, and/or
punctuation errors.
Week 3 Assignment 1 - Lab Assignment 3: Designing a Secure Network Topology
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 16/43
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 3 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 3 Assignment 2 - Lab Assignment 4: Configuring the Windows Defender Firewall
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 4 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 4 Assignment - Defense in Depth
Summary
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 17/43
Click the linked activity title to access this assignment.
Text
Introduction
The process of implementing security frequently opens one's eyes to other forms of security not
previously considered. In this two-part assignment, you should experience just that. This assignment
focuses on a model of implementing security in layers, which, in many cases, requires a network that
is designed accordingly.
The specific course learning outcome associated with this assignment is:
Recommend best security practices to achieve business objectives based on risk
assumptions.
Instructions
Design a network that incorporates the following:
One corporate site (Chicago).
All servers exist here (web server, file server, print server, mail server, FTP server).
Connection to the Internet (50 MBps).
300 employees who only need access to local corporate resources and the Internet.
One remote site (8 miles away).
20 employees who need access to all resources at corporate, plus the Internet.
Connection to the Internet (3 MBps).
Part 1
Use Microsoft Visio or an open-source alternative, such as Dia Diagram Editor, to:
Create a network diagram with defense in depth in mind, citing specific, credible sources that
support the design and depicting at least four-fifths of the following:
All necessary network devices (routers, switches and/or hubs, firewalls, VPNs, proxies,
and others).
The interconnections between network devices.
Connections to end-user (client) devices (desktops, laptops).
Connections from the Internet cloud to the network input.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 18/43
Part 2
Write a 6–10 page paper in which you:
Describe the flow of data through the network, citing specific, credible sources.
Assume data begins at the remote site.
Data flow may be monitored by an IDS.
Explain all three elements of the CIA triad and how isolating by network functions helps deliver
a layered approach, citing specific, credible sources that support your assertions and
conclusions.
Support your main points, assertions, arguments, or conclusions with at least four specific and
credible academic sources synthesized into a coherent analysis of the evidence.
Cite each source listed on your source page at least one time within your assignment.
For help with research, writing, and citation, access the library or review library guides.
This course requires the use of Strayer Writing Standards. For assistance and
information, please refer to the Strayer Writing Standards link in the left-hand menu of
your course. Check with your professor for any additional instructions.
Write clearly and concisely in a manner that is well-organized, grammatically correct, and free
of spelling, typographical, formatting, and/or punctuation errors.
Submission Requirements
Import completed diagrams or charts into your paper before submitting your work.
Scoring Guide
Create a network diagram with defense in
depth in mind, citing specific, credible
sources that support the design and
depicting at least four-fifths of the necessary
network devices, the interconnections
between network devices, connections to
end-user devices, and the network's interface
to the Internet. 40 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 19/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Created a network
diagram with defense
in depth in mind,
citing specific,
credible sources that
support the design
and depicting less
than half of the
necessary network
devices, the
interconnections
between network
devices, connections
to end-user devices,
and the network's
interface to the
Internet.
Competent
Created a network
diagram with defense
in depth in mind,
citing specific,
credible sources that
support the design
and depicting
between one-half and
four-fifths of the
necessary network
devices, the
interconnections
between network
devices, connections
to end-user devices,
and the network's
interface to the
Internet.
Exemplary
Create a network
diagram with defense
in depth in mind,
citing specific,
credible sources that
support the design
and depicting at least
four-fifths of the
necessary network
devices, the
interconnections
between network
devices, connections
to end-user devices,
and the network's
interface to the
Internet.
Describe the flow of data through the
network, citing specific, credible sources. 25
%
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Described the flow of
data through the
network, but data flow
between network
security components
was incorrect in one
or more instances.
Competent
Described the flow of
data through the
network.
Exemplary
Described the flow of
data through the
network, citing
specific, credible
sources.
Explain all three elements of the CIA triad and
how isolating by network functions helps
deliver a layered approach, citing specific,
credible sources that support one's
assertions and conclusions. 25 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 20/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Provided an unclear,
incorrect, or
incomplete
explanation of all
three elements of the
CIA triad and how
isolating by network
functions helps deliver
a layered approach.
Competent
Explained all three
elements of the CIA
triad and how
isolating by network
functions helps deliver
a layered approach.
Exemplary
Explained all three
elements of the CIA
triad and how
isolating by network
functions helps deliver
a layered approach,
citing specific,
credible sources that
support one's
assertions and
conclusions.
Support the main points, assertions,
arguments, or conclusions with at least four
specific and credible academic sources
synthesized into a coherent analysis of the
evidence. 5 %
Unacceptable
Did not submit the
assignment or
provide any sources.
Needs Improvement
Did not cite the
required number of
sources, and/or one
or more sources did
not support the main
points, assertions,
arguments, or
conclusions.
Competent
Cited the required
number of sources,
but one or more
sources did not
support the main
points, assertions,
arguments, or
conclusions.
Exemplary
Supported the main
points, assertions,
arguments, or
conclusions with at
least four specific and
credible academic
sources synthesized
into a coherent
analysis of the
evidence.
Write clearly and concisely in a manner that is
well-organized, grammatically correct, and
free of spelling, typographical, formatting,
and/or punctuation errors. 5 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 21/43
Unacceptable
Did not submit the
assignment; or the
writing lacked clarity
and organization, was
grammatically
incorrect, and
contained numerous
spelling,
typographical, and/or
punctuation errors.
Needs Improvement
Writing lacked clarity
or organization and
contained
grammatical, spelling,
typographical,
formatting, and/or
punctuation errors that
inhibited readability
and detracted from
the overall message.
Competent
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and nearly free of
spelling,
typographical,
formatting, and/or
punctuation errors.
Exemplary
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and free of spelling,
typographical,
formatting, and/or
punctuation errors.
Week 5 Assignment 1 - Lab Assignment 5: Configuring Firewall Interfaces With pfSense
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 5 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 5 Assignment 2 - Lab Assignment 6: Monitoring and Logging Network Traffic
Summary
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 22/43
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 6 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 6 Assignment - Network Engineer
Summary
Click the linked activity title to access this assignment.
Text
Introduction
In this three-part assignment, you will design a secure network infrastructure.
The specific course learning outcome associated with this assignment is:
Plan a deployment of software and/or hardware, including implementation and testing
considerations.
Instructions
Part 1
Use Microsoft Visio or an open-source alternative to:
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 23/43
Create a network infrastructure diagram, incorporating the following devices needed for a
secure corporate network, placed where they will work, and citing specific, credible sources
that support the design. Note: A web search will provide multiple examples of network
infrastructure diagrams.
Web server.
FTP server.
VPN server.
Authentication server.
Anti-virus server (client-based and server-based).
Edge firewall.
Firewall.
Vulnerability scanner.
Intrusion detection system (IDS).
Web proxy.
Edge router.
Core router.
Switch.
Distribution router.
Note: All client- and server-based devices work where a client is installed on a workstation, which
has bi-directional communication with a corresponding server.
Part 2
Write a 6–10 page paper in which you:
Determine the specific devices you will use in the network, including the following information
for each device:
Make or vendor's name (for example, Microsoft, Redhat, Cisco, Juniper, Netgear,
3Com).
Model (for example, Windows 7, ASA 5500, Cisco 3500, Squid).
IP address assigned to all devices.
Determine the basic configuration of each network device, citing specific, credible sources
that support the configuration.
Research each of the devices you chose and provide a basic configuration you would
use in your network.
Use IP addresses to describe your configuration.
Identify the operating system.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 24/43
Highlight at least five security features and the administrative controls incorporated into
each device, including devices in the network diagram.
Explain the impact that each of your configurations has on the security of the entire
network.
Explain the elements that must be addressed for planning and testing a network, citing
specific, credible sources that support your assertions and conclusions.
Organizational requirements and expectations.
Budget.
Modularity for security and testing.
Naming conventions that facilitate layering and growth.
Determination of required network speed and data capacity.
Vendor support.
Determination of risk and redundancy.
Uptime requirements.
Continuous data monitoring for fault, failure, or security-induced changes.
Load balancing.
Testing for latency.
Bandwidth.
Throughput.
Specific software and tools.
Support your main points, assertions, arguments, or conclusions with at least four specific and
credible academic sources synthesized into a coherent analysis of the evidence.
Cite each source listed on your source page at least one time within your assignment.
For help with research, writing, and citation, access the library or review library guides.
This course requires the use of Strayer Writing Standards. For assistance and
information, please refer to the Strayer Writing Standards link in the left-hand menu of
your course. Check with your professor for any additional instructions.
Write clearly and concisely in a manner that is well-organized, grammatically correct, and free
of spelling, typographical, formatting, and/or punctuation errors.
Part 3
Use Microsoft Visio or an open-source alternative to:
Update your initial diagram to create a final network diagram, incorporating at least four-fifths
of the devices needed for a secure corporate network and citing specific, credible sources
that support the design. Be sure to include vendor information, model information, and IP
addresses. In addition, ensure that:
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 25/43
VPN sessions (from a laptop) are only allowed to access the desktops in the IT
department by IT department employees.
All VPN connections from the Internet cloud into the corporate network terminate at the
VPN server.
Users from Engineering and Finance and Accounting cannot communicate.
Vulnerability scans occur daily, with all desktops scanned at least once per day.
Submission Requirements
All diagrams and charts you create for the assignment should be included in the paper.
Scoring Guide
Create a network infrastructure diagram,
incorporating at least four-fifths of the types
of devices needed for a secure corporate
network, placed where they will work, citing
specific, credible sources that support the
design. 25 %
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Created a network
infrastructure
diagram,
incorporating less
than half of the types
of devices needed for
a secure corporate
network, placed
where they will work.
Competent
Created a network
infrastructure
diagram,
incorporating
between one-half and
four-fifths of the types
of devices needed for
a secure corporate
network, placed
where they will work.
Exemplary
Created a network
infrastructure
diagram,
incorporating at least
four-fifths of the types
of devices needed for
a secure corporate
network, placed
where they will work,
citing specific,
credible sources that
support the design.
Determine the specific devices that will be
used in the network, including the vendor,
make, model, and IP address of each device.
15 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 26/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Determined the
specific devices that
will be used in the
network, but omitted
the vendor, make,
model, and IP
address of most or all
devices.
Competent
Determined the
specific devices that
will be used in the
network and identified
the vendors.
Exemplary
Determined the
specific devices that
will be used in the
network, including the
vendor, make, model,
and IP address of
each device.
Determine the basic configuration of each
network device, citing specific, credible
sources that support the configuration. 15 %
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Determined the basic
configuration of most,
but not all, network
devices.
Competent
Determined the basic
configuration of each
network device.
Exemplary
Determined the basic
configuration of each
network device, citing
specific, credible
sources that support
the configuration.
Explain the elements that must be addressed
for planning and testing a network, citing
specific, credible sources that support one's
assertions and conclusions. 10 %
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Provided a vague or
incomplete
explanation of the
elements that must be
addressed for
planning and testing a
network.
Competent
Explained the
elements that must be
addressed for
planning and testing a
network.
Exemplary
Explained the
elements that must be
addressed for
planning and testing a
network, citing
specific, credible
sources that support
one's assertions and
conclusions.
Support the main points, assertions,
arguments, or conclusions with at least four
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 27/43
specific and credible academic sources
synthesized into a coherent analysis of the
evidence. 5 %
Unacceptable
Did not submit the
assignment or
provide any sources.
Needs Improvement
Did not cite the
required number of
sources, and/or one
or more sources did
not support the main
points, assertions,
arguments, or
conclusions.
Competent
Cited the required
number of sources,
but one or more
sources did not
support the main
points, assertions,
arguments, or
conclusions.
Exemplary
Supported the main
points, assertions,
arguments, or
conclusions with at
least four specific and
credible academic
sources synthesized
into a coherent
analysis of the
evidence.
Write clearly and concisely in a manner that is
well-organized, grammatically correct, and
free of spelling, typographical, formatting,
and/or punctuation errors. 5 %
Unacceptable
Did not submit the
assignment; or the
writing lacked clarity
and organization, was
grammatically
incorrect, and
contained numerous
spelling,
typographical, and/or
punctuation errors.
Needs Improvement
Writing lacked clarity
or organization and
contained
grammatical, spelling,
typographical,
formatting, and/or
punctuation errors that
inhibited readability
and detracted from
the overall message.
Competent
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and nearly free of
spelling,
typographical,
formatting, and/or
punctuation errors.
Exemplary
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and free of spelling,
typographical,
formatting, and/or
punctuation errors.
Create a final network diagram, incorporating
at least four-fifths of the devices needed for a
secure corporate network, citing specific,
credible sources that support the design and
clearly depicting client connections, isolation
of departments, and VPN access. 25 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 28/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Created a final
network diagram
incorporating less
than half of all network
devices and/or not
depicting client
connections, isolation
of departments, and
VPN access.
Competent
Created a final
network diagram
incorporating
between one-half and
four-fifths of all
network devices and
depicting client
connections, isolation
of departments, and
VPN access.
Exemplary
Created a final
network diagram,
incorporating at least
four-fifths of the
devices needed for a
secure corporate
network, citing
specific, credible
sources that support
the design and clearly
depicting client
connections, isolation
of departments, and
VPN access.
Week 7 Assignment 1 - Lab Assignment 7: Configuring Custom Firewall Rules With
pfSense
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 7 and submit the
lab report. 100 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 29/43
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 7 Assignment 2 - Lab Assignment 8: Configuring a VPN Server With pfSense
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 8 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 8 Assignment - System Security Monitoring, Patch Management, and Update Policies
Summary
Click the linked activity title to access this assignment.
Text
Introduction
In this assignment, you will develop corporate policies for system security monitoring, patch
management, and updates that cover both wired and wireless components. A web search will
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 30/43
provide multiple examples of policy documents. The following resources may also be helpful as you
draft your policy documents:
SANS. No date. CIS Critical Security Controls. https://www.sans.org/critical-security-controls/?
msc=main-nav
This resource provides a list of case studies highlighting how security professionals have
made improvements in their security controls.
SANS. No date. Security Policy Templates. https://www.sans.org/information-security-policy/
This resource provides a number of security policy templates that might be helpful in
drafting your policy documents.
The specific course learning outcome associated with this assignment is:
Recommend best practices for monitoring, updating, and patching systems.
Instructions
Write a 6–10 page paper in which you:
Establish a system security monitoring policy addressing the need for monitoring, policy
scope, and exceptions and supported by specific, credible sources.
Justify the need for monitoring.
Define the scope of the policy (the personnel, equipment, and processes to which the
policy applies).
Provide guidelines for policy exceptions, if approved by the IT and Security departments.
Establish a system security patch management and updates policy addressing the need for
patch management and updates, policy scope, and exceptions and supported by specific,
credible sources.
Justify the need for patch management and updates, aligned with ISO/IEC 27002.
Define the scope of the policy (the personnel, equipment, and processes to which the
policy applies).
Provide guidelines for policy exceptions, if approved by the IT and Security departments.
Support your main points, assertions, arguments, or conclusions with at least four specific and
credible academic sources synthesized into a coherent analysis of the evidence.
Cite each source listed on your source page at least one time within your assignment.
For help with research, writing, and citation, access the library or review library guides.
This course requires the use of Strayer Writing Standards. For assistance and
information, please refer to the Strayer Writing Standards link in the left-hand menu of
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 31/43
your course. Check with your professor for any additional instructions.
Write clearly and concisely in a manner that is well-organized, grammatically correct, and free
of spelling, typographical, formatting, and/or punctuation errors.
Scoring Guide
Establish a system security monitoring policy
addressing the need for monitoring, policy
scope, and exceptions and supported by
specific, credible sources. 45 %
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Established a system
security monitoring
policy that lacked
clear justification, was
of insufficient scope,
and/or lacked an
exceptions process.
Competent
Established a system
security monitoring
policy addressing the
need for monitoring,
policy scope, and
exceptions.
Exemplary
Established a system
security monitoring
policy addressing the
need for monitoring,
policy scope, and
exceptions and
supported by specific,
credible sources.
Establish a system security patch
management and updates policy addressing
the need for patch management and updates,
policy scope, and exceptions and supported
by specific credible sources. 45 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 32/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Established a system
security patch
management and
updates policy that
lacked clear
justification, was of
insufficient scope,
and/or lacked an
exceptions process.
Competent
Established a system
security patch
management and
updates policy
addressing the need
for patch
management and
updates, policy
scope, and
exceptions.
Exemplary
Established a system
security patch
management and
updates policy
addressing the need
for patch
management and
updates, policy
scope, and
exceptions and
supported by specific
credible sources.
Support the main points, assertions,
arguments, or conclusions with at least four
specific and credible academic sources
synthesized into a coherent analysis of the
evidence. 5 %
Unacceptable
Did not submit the
assignment or
provide any sources.
Needs Improvement
Did not cite the
required number of
sources, and/or one
or more sources did
not support the main
points, assertions,
arguments, or
conclusions.
Competent
Cited the required
number of sources,
but one or more
sources did not
support the main
points, assertions,
arguments, or
conclusions.
Exemplary
Supported the main
points, assertions,
arguments, or
conclusions with at
least four specific and
credible academic
sources synthesized
into a coherent
analysis of the
evidence.
Write clearly and concisely in a manner that is
well-organized, grammatically correct, and
free of spelling, typographical, formatting,
and/or punctuation errors. 5 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 33/43
Unacceptable
Did not submit the
assignment; or the
writing lacked clarity
and organization, was
grammatically
incorrect, and
contained numerous
spelling,
typographical, and/or
punctuation errors.
Needs Improvement
Writing lacked clarity
or organization and
contained
grammatical, spelling,
typographical,
formatting, and/or
punctuation errors that
inhibited readability
and detracted from
the overall message.
Competent
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and nearly free of
spelling,
typographical,
formatting, and/or
punctuation errors.
Exemplary
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and free of spelling,
typographical,
formatting, and/or
punctuation errors.
Week 9 Assignment 1 - Lab Assignment 9: Configuring a VPN Client for Secure File
Transfers
Summary
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 9 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 9 Assignment 2 - Lab Assignment 10: Penetration Testing a pfSense Firewall
Summary
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 34/43
Text
Instructions
1. Log in to your Jones & Bartlett Learning account and access the lab.
2. Preview the Lab Guide.
3. Start and complete the lab.
4. Download the lab report PDF and submit the report as your deliverable for the assignment.
Scoring Guide
Complete Lab Assignment 10 and submit the
lab report. 100 %
Unacceptable
Completed less than
70% of the lab.
Needs Improvement
Completed 70–79%
of the lab.
Competent
Completed 80–89%
of the lab.
Exemplary
Completed 90–100%
of the lab.
Week 10 Assignment - Designing a Secure Network
Summary
Click the linked activity title to access this assignment.
Text
Introduction
In this three-part assignment, you will apply the various concepts you have learned throughout this
course to the design of the single most secure network possible, capable of supporting three IT
services: e-mail, file transfer (centralized), and VPN.
After you have fully designed your network, you will need to provide three data flow diagrams
explaining how your designed network handles three different transactions:
The first datapath diagram should show an internal user sending an e-mail with their corporate
e-mail address to a user on the Yahoo domain with an arbitrary address of
user534@yahoo.com.
The second datapath diagram should show a user initiating an FTP session from inside your
network to the arbitrary site of ftp.netneering.com.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 35/43
The third datapath diagram should show an externally located employee initiating a VPN
session to corporate, in order to access files on the Windows desktop computer DT-Corp534-
HellenS at work.
The specific course learning outcome associated with this assignment is:
Recommend solutions, products, and technologies to meet business objectives.
Instructions
Part 1
Use Microsoft Visio or an open-source alternative to:
Create a diagram showing the overall network you have designed, from the user or endpoint
device to the Internet cloud; following the access, core, and distribution layer model; depicting
at least four-fifths of the necessary network components; and citing specific, credible sources
that support the design. Include the following, at a minimum:
Authentication server (Microsoft Active Directory).
Routers.
Switches and/or hubs.
Local users.
Remote users.
Workstations.
File share (CIFS).
Mail server.
Web servers (both internal and external).
Firewalls.
Internet cloud.
Web proxy.
E-mail proxy.
FTP server (for internal-to-external transport).
Part 2
Use Microsoft Visio or an open-source alternative to:
Create a datapath diagram for the following e-mail transaction:
A local (corporate) user, with the e-mail address jonny.hill@Corp534.com, sends an e-
mail to a Yahoo recipient at user534@yahoo.com.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 36/43
Document and label the diagram showing the protocols and path of the data flow
as data traverses through your network from source to destination.
Show user authentication when necessary.
Cite specific, credible sources that support the diagram.
Create a datapath diagram for the following file transfer transaction:
A local user, Jonny Hill, transfers a file, using FTP, through the Internet to another
company's site (ftp.netneering.com). He has to access the secure shell, using his active
directory credentials, to authenticate the FTP server (Linux running Redhat) on the DMZ.
He needs to transfer files from his desktop across the Internet to ftp.netneering.com.
Document and label the diagram showing the protocols and path of the data flow
as data traverses through your network from source to destination.
Show user authentication when necessary.
Cite specific, credible sources that support the diagram.
Create a datapath diagram for the following VPN transaction:
A remote user, Hellen Stover, connects, via VPN, from home through the Internet to her
corporate desktop, DT-Corp534-HellenS. Hellen uses a browser to initiate her VPN
connection. By going to https://VPNaccess.corp534.com, she arrives at a login page
where she needs to authenticate using her Active Directory credentials before the VPN
tunnel is built.
Document and label the diagram showing the protocols and path of the data flow
as data traverses through your network from source to destination.
Show user authentication when necessary.
Cite specific, credible sources that support the diagram.
Part 3
Write a 6–10 page paper in which you:
Explain the function and configuration of at least four-fifths of all required network devices,
citing specific, credible sources.
Authentication server (Microsoft Active Directory).
Routers, switches, and/or hubs.
Local and remote users.
Workstations.
File share (CIFS).
Mail server.
Web servers (both internal and external).
Firewalls.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 37/43
Internet cloud.
Web proxy.
E-mail proxy.
FTP server (for internal-to-external transport).
Explain how the overall network design protects the organization from both inside and outside
attacks, addressing all required network design features and considerations and citing
specific, credible sources that support your assertions and conclusions. Address:
Physical and virtual access.
Logging requirements.
Security policy.
Firewalls.
Proxy servers.
The VPN tunnel.
DMZ isolation.
User authentication.
Distribution of layer routers and switches.
Explain how your layered design compensates for possible device failures or breaches in
network security, addressing all key design features and considerations and citing specific,
credible sources that support your assertions and conclusions. Include:
Load balancing.
Swappable devices.
Standby backup devices.
QoS prioritization.
Vendor support for core and services.
Explain how to make the file transfer process more secure, fully addressing FTP security risks
and how specific FTP replacement devices add protection, clearly delineating the features of
each device, and citing specific, credible sources that support one’s assertions and
conclusions.
Support your main points, assertions, arguments, or conclusions with at least four specific and
credible academic sources synthesized into a coherent analysis of the evidence.
Cite each source listed on your source page at least one time within your assignment.
For help with research, writing, and citation, access the library or review library guides.
This course requires the use of Strayer Writing Standards. For assistance and
information, please refer to the Strayer Writing Standards link in the left-hand menu of
your course. Check with your professor for any additional instructions.
Write clearly and concisely in a manner that is well-organized, grammatically correct, and free
of spelling, typographical, formatting, and/or punctuation errors.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 38/43
Submission Requirements
All diagrams and charts you create for the assignment should be included in the paper.
Scoring Guide
Create a diagram showing an overall network
design from the user or endpoint device to
the Internet cloud; following the access, core,
and distribution layer model; depicting at
least four-fifths of the necessary network
components; and citing specific, credible
sources that support the design. 25 %
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Created a diagram
showing an overall
network design from
the user or endpoint
device to the Internet
cloud; following the
access, core, and
distribution layer
model; and depicting
less than half of the
necessary network
components
Competent
Created a diagram
showing an overall
network design from
the user or endpoint
device to the Internet
cloud; following the
access, core, and
distribution layer
model; and depicting
between one-half and
four-fifths of the
necessary network
components.
Exemplary
Created a diagram
showing an overall
network design from
the user or endpoint
device to the Internet
cloud; following the
access, core, and
distribution layer
model; depicting at
least four-fifths of the
necessary network
components; and
citing specific,
credible sources that
support the design.
Create datapath diagrams showing the
protocols and path of the data flow through
the network for e-mail, file transfer, and VPN
connection transactions and citing specific,
credible sources that support each diagram.
15 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 39/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Created datapath
diagrams showing
improper protocols or
incorrect data flow
through the network
for e-mail, file transfer,
and VPN connection
transactions.
Competent
Created datapath
diagrams showing the
protocols and path of
the data flow through
the network for e-mail,
file transfer, and VPN
connection
transactions.
Exemplary
Created datapath
diagrams showing the
protocols and path of
the data flow through
the network for e-mail,
file transfer, and VPN
connection
transactions and
citing specific,
credible sources that
support each
diagram.
Explain the function and configuration of at
least four-fifths of all required network
devices, citing specific, credible sources. 10
%
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Explained the function
and configuration of
less than half of all
required network
devices.
Competent
Explained the function
and configuration of
between one-half and
four-fifths of all
required network
devices.
Exemplary
Explained the function
and configuration of at
least four-fifths of all
required network
devices, citing
specific, credible
sources.
Explain how the overall network design
protects the organization from both inside
and outside attacks, addressing all required
network design features and considerations
and citing specific, credible sources that
support one's assertions and conclusions. 15
%
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 40/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Provided a vague or
incomplete
explanation of how the
overall network
design protects the
organization from
both inside and
outside attacks.
Competent
Explained how the
overall network
design protects the
organization from
both inside and
outside attacks, but
overlooked or
disregarded one or
more network design
features or
considerations that
raises questions
about network
security.
Exemplary
Explained how the
overall network
design protects the
organization from
both inside and
outside attacks,
addressing all
required network
design features and
considerations and
citing specific,
credible sources that
support one's
assertions and
conclusions.
Explain how a layered design compensates
for possible device failures or breaches in
network security, addressing all key design
features and considerations and citing
specific, credible sources that support one's
assertions and conclusions. 15 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 41/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Provided a vague or
incomplete
explanation of how a
layered design
compensates for
possible device
failures or breaches in
network security.
Competent
Explained how a
layered design
compensates for
possible device
failures or breaches in
network security,
addressing all key
design features and
considerations.
Exemplary
Explained how a
layered design
compensates for
possible device
failures or breaches in
network security,
addressing all key
design features and
considerations and
citing specific,
credible sources that
support one's
assertions and
conclusions.
Explain how to make the file transfer process
more secure, fully addressing FTP security
risks and how specific FTP replacement
devices add protection, clearly delineating
the features of each device, and citing
specific, credible sources that support one's
assertions and conclusions. 10 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 42/43
Unacceptable
Did not submit or
complete the
assignment.
Needs Improvement
Provided a vague or
incomplete
explanation of how to
make the file transfer
process more secure.
Competent
Explained how to
make the file transfer
process more secure,
but overlooked or
disregarded key FTP
security
considerations or
FTP replacement
devices that add
protection.
Exemplary
Explained how to
make the file transfer
process more secure,
fully addressing FTP
security risks and how
specific FTP
replacement devices
add protection, clearly
delineating the
features of each
device, and citing
specific, credible
sources that support
one’s assertions and
conclusions.
Support the main points, assertions,
arguments, or conclusions with at least four
specific and credible academic sources
synthesized into a coherent analysis of the
evidence. 5 %
Unacceptable
Did not submit the
assignment or
provide any sources.
Needs Improvement
Did not cite the
required number of
sources, and/or one
or more sources did
not support the main
points, assertions,
arguments, or
conclusions.
Competent
Cited the required
number of sources,
but one or more
sources did not
support the main
points, assertions,
arguments, or
conclusions.
Exemplary
Supported the main
points, assertions,
arguments, or
conclusions with at
least four specific and
credible academic
sources synthesized
into a coherent
analysis of the
evidence.
Write clearly and concisely in a manner that is
well-organized, grammatically correct, and
free of spelling, typographical, formatting,
and/or punctuation errors. 5 %
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
https://atlas.strategiced.com/app#offering/9801881/course/8586040/preview/courseguide 43/43
© 2021 Strategic Education, Inc.
Unacceptable
Did not submit the
assignment; or the
writing lacked clarity
and organization, was
grammatically
incorrect, and
contained numerous
spelling,
typographical, and/or
punctuation errors.
Needs Improvement
Writing lacked clarity
or organization and
contained
grammatical, spelling,
typographical,
formatting, and/or
punctuation errors that
inhibited readability
and detracted from
the overall message.
Competent
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and nearly free of
spelling,
typographical,
formatting, and/or
punctuation errors.
Exemplary
Wrote clearly and
concisely in a manner
that was well-
organized,
grammatically correct,
and free of spelling,
typographical,
formatting, and/or
punctuation errors.
2020 Strayer University. All Rights Reserved. This document contains Strayer University Confidential and Proprietary
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, without the expressed
written permission of Strayer University.
Students also viewed