Design your network to be segmented with higher value equipment protected from high-risk equipment. Consider physical segments using separate media versus VLAN’s.

Network

Design a secure network. You will do this by drawing a logical network diagram using the tool of your choice (it cannot be hand drawn).

Show 2 separate gigabit WAN interfaces for redundancy and bandwidth aggregation purposes.

Show a dual wan router/firewall (no WiFi built in), 3 separate WAP’s, 8 IP cameras (default port 8000), 1 network video recorder (default port 80), 10 client PC’s, 10 IP phones, and 3 Windows servers (mail, NAS, web).

Lookup the default ports for each device with ports not already specified and assume common ports.

Configure the router’s port forwarding. Also use port translation to allow outside ports to be non-common non-default ports for security reasons (ports inside the network should be default).

Design your network to be segmented with higher value equipment protected from high-risk equipment. Consider physical segments using separate media versus VLAN’s.

While you do not need to specify manufacturer and model for the network devices, do specify what the logical attributes are for speed and ports.

An example of network diagram: https://www.conceptdraw.com/How-To-Guide/picture/cisco-lan/Cisco-network-diagrams-diagraming-tools-mac.png

Design your network to be segmented with higher value equipment protected from high-risk equipment. Consider physical segments using separate media versus VLAN’s.
Scroll to top