Wednesday, January 21, 2009

Project Part 3

Tasks:
• The operations of a proxy server would be used to perform
which tasks:
􀂃 Preventing the spread of malicious code
􀂃 Preventing intrusion attacks
Deliverables and format:
Submit your answer in a Microsoft Word document
Font: Arial; 10
Line Spacing: Double
Assigned and Due Date:
Assigned: Week 5
Due: Week 6

Tuesday, January 20, 2009

IS316 Class Agenda for 01/21/09

UNIT 5 – DESCRIBE PROXY SERVERS
AND APPLICATION-LEVEL FIREWALLS
READING
• Chapter 5, pp. 135–170

OBJECTIVES
After completing this unit, the student will have the opportunity to:
5. Describe proxy servers and application-level firewalls.
5.1. Define proxy servers.
5.2. Define application-level firewalls.
5.3 Explain the difference between proxy servers and packet filtering.
5.4 Identify the benefits of the most proxy based firewall products.
8. List the main component of National Institute of Standards and Technology (NIST)
publication 800-41 as it applies to firewall.

UNIT 6 – EXPLAIN HOW ENCRYPTION
COMPLEMENTS FIREWALL
ACTIVITIES
READING
• Chapter 7, pp. 203–242
OBJECTIVES
After completing this unit, the student will have the opportunity to:
6. Explain how encryption complements firewall activities.
6.1. Identify the role encryption plays in firewall architecture.
6.2. Identify the need for digital certificates.
6.3. Identify workings of SSL and other encryption schemes.
6.4. Explain IPSec.
8. List the main component of National Institute of Standards and Technology (NIST)
publication 800-41 as it applies to firewall.

SUGGESTED ACTIVITIES, ASSIGNMENTS & DELIVERABLES

* READING
Chapter 8, pp. 243–276
* Case Assignment 1:
From textbook complete Case Project 5-1, pg 169: Use Private IP Addresses and Share a Connection
* LAB 2: Complete Project 5-1 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs
* Case Assignment: From textbook, complete Case Project 7-2 on page 241: Encryption
* Project Part 3: Submission
* Project Part 4: Initiation
Refer to syllabus under course project for deliverables.
Verify their understanding of the project as well as thedeliverables required.
* LAB 1:
Complete Project 7-1 on page 234 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs
NOTE:PGP is no longer provided by MIT
Get OpenPGP http://ppgp.sourceforge.net
* LAB 2:
Complete Project 7-2 on page 235 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs
* LAB 3:
Complete Project 7-3 on page 237 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs
*LAB 4:
Complete Project 7-4 on page 237 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs

IS316 Class Agenda for 01/14/09

UNIT 4 – EXPLAIN PACKET FILTERING
READING
• Chapter 4, pp. 101–134
OBJECTIVES
After completing this unit, the student will have the opportunity to:
4. Explain packet filtering.
4.1 Define packets.
4.2 Define packet filtering.
4.3 Identify various approaches to packet filtering.
4.4 Explain rules of specific packet filtering.
8. List the main component of National Institute of Standards and Technology (NIST)
publication 800-41 as it applies to firewall.


SUGGESTED ACTIVITIES, ASSIGNMENTS & DELIVERABLES

* READING Chapter 5, pp. 135–170
* READING Chapter 7, pp. 203–242
* Case Assignment 1:
Complete Case Project 4-1 on page 132: Design a Packet
Filtering Solution.

* Project Part 3: Initiation
Refer to syllabus under course project for deliverables.
Verify their understanding of the project as well as the
deliverables required.
* REVIEW QUESTIONS
Chapter 4
1. Review Questions 1–21, pp. 125–127
* LAB 2:
Complete Project 4-1 on page 128 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs
NOTE: Tiny Personal Firewall is not longer available, instead use the following:
http://download.zonealarm.com/bin/free/1025_update/zaSetup_en.exe
* LAB 3:
Complete Project 4-2 on page 129 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs
* LAB 4:
Complete Project 4-5 on page 131 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs
*LAB 5:
Complete Project 4-6 on page 132 from the textbook, Holden, Greg, Guide to Firewalls and Network Security Intrusion Detection and VPNs

Wednesday, January 7, 2009

IS316 Class Agenda for 01/07/09

Explain Firewall Configuration Strategies
Set up firewal rules
Implementation of different firewall configuration strategies

Activities and Assignments
Case Assignment 1
Complete Case Project 3-3 on page 99: Desing a Public Access and Private Security Plan
Deliverable: Submit Documented and written plan
Due: by week 5

Review Questions
Chapter 3 1-21, pp. 92-94

Lab 1: Hardware Firewalls
Lab Procedures:
- Establish network
- IP addresses established by students
Labs to execute
From the LabSim Security + CD, complete 5.2 Firewalls
Questions to answer

What is the difference when enableing the reserved or well-known ports on the firewall versus enabling the port in NAT?

Lab2:
Complete project 3-1
Lab3:
Complete project 3-2
Lab4:
Complete project 3-3

Wednesday, December 17, 2008

Chapter 2 HW

Chapter 2 HW

•Review Questions 1–14, pp. 53, 54
• Case Assignment 1
• Case Assignment 2
• Class Activity 1 (Group Activity)
Explain how a good security policy makes yourjob easier.
When should it be changed and why?
•Class Activity Case 2-3 (Group Activity)
• Lab 1
• Lab 2
• Lab 3
• Lab 4
• Project Part 1: Initiation
• Project Part 2: Initiation

Project Part 2

Project
Part 2
Tasks:
• How would the operations of a firewall be used for:
􀂃 Preventing the spread of malicious code?
􀂃 Preventing intrusion attacks?

Deliverables and format:
Submit your answer in a Microsoft Word document
Font: Arial; 10
Line Spacing: Double
Assigned and Due Date:
Assigned: Week 3
Due: Week 4

Project Part 1

Project
Part 1
Tasks:
What are the security risks involved in the following areas and
the ways that we can mitigate these risks:
􀂃 Data security
􀂃 Privacy
􀂃 Authentication
􀂃 Security policy
Security for network, workstations, servers, and other devices
Deliverables and format:
Submit your answer in a Microsoft Word document
Font: Arial; 10
Line Spacing: Double

Assigned and Due Date:
Assigned: Week 3
Due: Week 4 (Jan 07, 2008)