Case Study

Submitted by: Submitted by

Views: 758

Words: 1132

Pages: 5

Category: Science and Technology

Date Submitted: 03/06/2013 08:44 AM

Report This Essay

Case Study 4: Remote Access Attacks

BLDG 3

TAPE LIBRARY

Remote Tape Library

4-Windows PC

Ethernet

28-Windows PC

ROOM 10

Ethernet

BLDG 4

30-Windows PC

Router

Firewall

Ethernet

BLDG 2

10-Terminals RADIUS SERVER

3-CISCO IDS Sensors

VPN Server

Firewall

WEB Server IDS Monitor

Main Bldg

Ethernet

10-Terminals

40 Windows PCs

System 1000

8-DISK DRIVES

4-Tape drive

2-File Servers

UNIX SYSTEM V

Quick Finance Company Network Diagram

Above is the Quick Finance Company network diagram. The company is a small business and does not invest much in security protection. System 1000 hosts a customer database as well as employee payroll systems. The company Web server has been defaced twice this month and the VPN server has suffered from session hijacking and Denial-of-Service (DOS) attacks twice last year. The company does not enforce a password policy and does not have a dedicated security professional.

Write a five to eight (5-8) page paper in which you:

1. Analyze the Quick Finance Company Network Diagram and describe the assumptions you will need to make in order to identify vulnerabilities and recommend mitigation techniques as there is no further information from this company. The company does not wish to release any security related information per company policy.

2. Analyze the above case and network diagram, and describe how each access point is protected or unprotected.

3. Evaluate and describe the vulnerabilities of the Quick Finance Company’s network based on the

network design.

4. Rank the top three (3) most likely network-based attacks in the order they are likely to occur and suggest countermeasures for each.

5. Recommend mitigation procedures to reduce or eliminate business interruptions.

6. Use at least three (3) quality resources in this assignment. Note: Wikipedia and similar Websites do not qualify as quality resources.

Your assignment must follow...