_Lab03_MakrisJohn
docx
keyboard_arrow_up
School
University of Cincinnati, Main Campus *
*We aren’t endorsed by this school
Course
3075C
Subject
Information Systems
Date
Feb 20, 2024
Type
docx
Pages
4
Uploaded by DoctorFlagCamel35
IT3075C-002: Network Monitoring & IPS
Student Name
Assignment 03:
The Sensor Platform
Port404, Ltd. (Port404) is a cybersecurity company. They conduct penetration tests for clients, prepare network assessments, and help manufacturing companies become compliant with frameworks for governmental regulations. They sell products online to help raise awareness and market the company's services.
In the previous lab (Lab 02 – Planning Data Collection), you
1.
Defined threats, 2.
Quantified risks, 3.
Identified data feeds, and 4.
Narrowed the focus of your monitoring efforts.
In this lab, continue your efforts:
1.
Place sensors to monitor your highest risks;
2.
Define the type of sensor you are deploying in each case;
3.
Complete a hard disk storage assessment and determine the
a.
Operational minimum requirements, and
b.
Operational ideal requirements.
Collection Only
Half-Cycle
Full Cycle Detection
IT3075C-002: Network Monitoring & IPS
Student Name
Assignment 03:
The Sensor Platform
In the diagram above, place your sensors in the appropriate places to monitor for risks you calculated in the previous lab. To do this, select the image in the legend, copy and paste. The keyboard commands are ctrl+c (
⌘
+c) and then ctrl+v (
⌘
+v)
. Then drag the sensor to the location on the network topology. Below is an example.
Collection Only
Half-Cycle
Full Cycle Detection
Explain why you chose the types of sensor you have and explain the locations you chose.
Since there is less risk associated with collection only censorship, it is the strategy I went
with. In addition, I put censors between the router and the firewall and between the workstations and the firewall itself. I have these filters in order to better understand the kind of
data that are passing over the firewall and onto employee PCs and the internet. In order to help
inform the network if something is acting up, I have Half-cycle sensors of medium risks installed
with the Client Penn tests, Account Information, and Client Information. Finally, since the client billing has the largest danger, I install a Full Cycle Detection sensor directly on it.
IT3075C-002: Network Monitoring & IPS
Student Name
Assignment 03:
The Sensor Platform
Traffic Collection
Zone
Daily (Peak)
Daily (Off Peak)
Daily Average
Hourly Average
Demilitarized Zone
300
25 GB
221.42 GB
9.23 Gb
300 GB
200 GB
5 GB
144.29 BG 601 GB
25 GB
10 Gb
1 GB
7.43 GB
309.52 MB
221.43 GB
5 GB
1 GB
3.86 GB
160.71 MB
Demilitarized Zone
Data Type
Daily
Average
Operational
Minimum
Minimum
Requiremen
t
Operational
Ideal
Ideal
Requirement
PCAP
221.41 GB
1 Day
221.43 GB
3 Days
664.32 GB
Flow
2.00 GB
1 Year
8.09 GB
1 Day
1 Day
1 Day
797.50 GB
1 Day
3.34 TB
Total
1.021 TB
3.92 TB
Workstations
Data Type
Daily
Average
Operational
Minimum
Minimum
Requiremen
t
Operational
Ideal
Ideal
Requirement
PCAP
144.29 GB
1 Day
144.30 GB
3 Days
432.88 Gb
Flow
14.43 MG
90 Days
1.30 GB
1 year
5.27 GB
PSTR
5.78 GB
90 Days
520.20 GB
1 year
2.11 TB
Totals
922 GB 3.53 TB
Zone 1
Data Type
Daily
Average
Operational
Minimum
Minimum
Requiremen
t
Operational
Ideal
Ideal
Requirement
PCAP
10 GB
1 Day
10 GB
3 Days
30 GB
Flow
1 MB 90 Days
90 MB
1 Year
365 MB
PSTR
400 MB
90 Days
36 GB
1 Year
146 GB
Totals
46.10 GB
176.37 GB
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
- Access to all documents
- Unlimited textbook solutions
- 24/7 expert homework help
IT3075C-002: Network Monitoring & IPS
Student Name
Assignment 03:
The Sensor Platform
Zone 2
Data Type
Daily
Average
Operational
Minimum
Minimum
Requiremen
t
Operational
Ideal
Ideal
Requirement
PCAP
5 GB
1 Day
5 GB
3 Days
15 GB
Flow
.5 MB
90 Days
45 MB
1 Year
182.5 MB
PSTR
200 MB
90 Days
18 GB
1 Year
73 GB
Totals
23.05 GB
88.19
Completed Hard Disk Assessment
Data Type
Daily
Average
Operational
Minimum
Minimum
Requirement
Ideal
Requirement
PCAP
377.01 GB
1 Day
377.01 GB
1.53 TB
Flow
38 MB
90 Days
3.42 GB
13.87 GB
PSTR
15.09 GB
90 Days
1.36 TB
5.52 TB
Subtotal
392.14 GB
181 Days
1.74 TB
7.06 TB
+10% Half-Cycle Sensor
39.22 GB
19 Days
174 GB
705.67 GB
+15 Anticipated Growth
58.82 GB
28 Days
261 GB
1.06 TB
Total
490.18 GB
288 Days
2.18 TB
8.83 TB2