Courseproject5_02324
docx
keyboard_arrow_up
School
Rasmussen College *
*We aren’t endorsed by this school
Course
CNT3126
Subject
Information Systems
Date
Feb 20, 2024
Type
docx
Pages
2
Uploaded by ConstableStingray2882
Module 05 Course Project Template Process
Working off the latest version of your Network Diagram from your previous project submission, familiarize yourself with the security device that is at the head end of the backbone. This devise is the focus for this module. In this module, you will configure Authentication, Authorization, and Accounting/Auditing using several different methods. Create a user name with your first initial and last name, with a password of “password” set to be encrypted.
Using the following Cisco CLI Book 1: Cisco ASA Series General Operations CLI Configuration Guide
as a reference. Look for the Heading “Local Database for AAA”:
Translate this command into notepad. Launch the ISOT sandbox and the PT-2 Packet Tracer Utility. Add an “ASA 5505 Security devices” to the display and paste the command into the CLI window. Then, execute the command “
show running-config”. Copy the response from the sandbox and paste into notepad and save this CLI as CLI Command – Local Databases.
Next, using the same Cisco CLI Book 1: Cisco ASA Series General Operations CLI Configuration Guide
as a reference, look for the Heading “Taccas+ Servers for AAA”. Build an example command set that meets the following specifications:
5 Servers, located at ip address 172.19.19.15-19 in /16 network
Timeout – 20 seconds
Port number – 49
Authentication Key - mysharedauthkey
Again, translate this command into a notepad. Save this CLI as CLI Command – TASCAS.
Next, using the same Cisco CLI Book 1: Cisco ASA Series General Operations CLI Configuration Guide
as a reference, look for the Heading “Identity Firewall”. Now, build an example command set that meets the following specifications:
ASA Address: 172.19.1.1/16
Server: 172.19.19.19/16
Agent Identity: Agent99
Agent Key: agent99Agent99
Default Domain: Kaos
Translate this command into notepad. Save this CLI as CLI Command – Cisco Identity.
Finally, add to the SAME note pad access control lists that meet the following specifications:
Permit all domain users access to http
Permit all domain users access to https
Deny all domain users access to telnet
Body Provide all notepad translations for each of the following:
1. CLI Command – Local Databases with responses.
2. CLI Command – TASCAS+ with responses.
3. CLI Command – Cisco Identity.
Executive Summary
In this Executive Summary, discuss how the design work you implemented this week is aligned with the company’s overall strategic goals from the Course Project Introduction.
To line up with PCI compliance recommendations and ensure that our client’s financial information is safeguarded we will be integrating the following strategies to further increase our security. The following items will be implemented to meet these demands:
Using Firewall authorization with Microsoft Active Directory, we will enable single sign-on and role-based access control. With single sign-on, this allows users to streamline their login process and warrants that only authorized personnel can access sensitive information while the use of the role-based access control can assist by creating roles within active directory to limit unauthorized access even further. Next, we will implement more strict port security by configuring our Microsoft Network Policy
server in a more robust fashion so it can further assist the aforementioned changes being put in place with Active Directory. Another way that we will increase port security is by creating a segmented guest network to prevent users from accepting unauthorized information. The final changes that will be made will be enforcing multi-factor authentication to further ensure that only users authorized are able to access sensitive information. We will of course continue to monitor heavily and perform regular audits to ensure these changes are operating as intended.
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
- Access to all documents
- Unlimited textbook solutions
- 24/7 expert homework help