PasserellesNumeriquesCambodia (PNC)



Similar documents
Internetworking Microsoft TCP/IP on Microsoft Windows NT 4.0

1 Data information is sent onto the network cable using which of the following? A Communication protocol B Data packet

1:1 NAT in ZeroShell. Requirements. Overview. Network Setup

1. How to install PureFTP on SLES 11

DHCP Server. Heng Sovannarith

How to set FTP Server (IIS)

Procedure: You can find the problem sheet on Drive D: of the lab PCs. 1. IP address for this host computer 2. Subnet mask 3. Default gateway address

NETWORK SET UP GUIDE FOR

Chapter 2 Preparing Your Network

Symphony Network Troubleshooting

Steltronic Focus. Main Desk Internet connection

BASIC ANALYSIS OF TCP/IP NETWORKS

Setting Up Scan to SMB on TaskALFA series MFP s.

Ethernet Port Quick Start Manual

7 6.2 Windows Vista / Windows IP Address Syntax Mobile Port Windows Vista / Windows Apply Rules To Your Device

SSVP SIP School VoIP Professional Certification

Configuring the WT-4 for ftp (Ad-hoc Mode)

Firewall VPN Router. Quick Installation Guide M73-APO09-380

Lab PC Network TCP/IP Configuration

50.XXX is based on your station number

Lesson Plans Managing a Windows 2003 Network Infrastructure

Lab - Observing DNS Resolution

Network Interface Table of Contents

Multi-Homing Dual WAN Firewall Router

Prestige 314 Read Me First

ITIS 2110 Lab 11: Domain Name Server. Tyler Everhart 11/12/2010

What communication protocols are used to discover Tesira servers on a network?

ASUS WL-5XX Series Wireless Router Internet Configuration. User s Guide

Understanding Windows Server 2003 Networking p. 1 The OSI Model p. 2 Protocol Stacks p. 4 Communication between Stacks p. 13 Microsoft's Network

Chapter 4 Managing Your Network

Intel Entry Storage System SS4200-E Active Directory Implementation and Troubleshooting

c. Securely insert the Ethernet cable from your cable or DSL modem into the Internet port (B) on the WGT634U. Broadband modem

Connecting EWS using DDNS

Device Log Export ENGLISH

F-SECURE MESSAGING SECURITY GATEWAY

Computer Networks I Laboratory Exercise 1

How to Remotely View Security Cameras Using the Internet

How to Configure an Initial Installation of the VMware ESXi Hypervisor

Device Interface IP Address Subnet Mask Default Gateway

DSL-G604T Install Guides

Guideline for setting up a functional VPN

Configuring a BEC 7800TN Wireless ADSL Modem

Internet Access to a DVR365

Basic Network Configuration

HREP Series DVR DDNS Configuration Application Note

Technical Support Information

Prestige 650R-31/33 Read Me First

Immotec Systems, Inc. SQL Server 2005 Installation Document

Quick Installation Guide Network Management Card

JOB READY ASSESSMENT BLUEPRINT COMPUTER NETWORKING FUNDAMENTALS - PILOT. Test Code: 4514 Version: 01

Configuring Routers and Their Settings

NETWORK SETUP GLOSSARY

HomeWorks P5 Processor Ethernet TCP / IP Networking Specification

Chapter 6 Configuring the SSL VPN Tunnel Client and Port Forwarding

CONNECTING WINDOWS XP PROFESSIONAL TO A NETWORK

How To Remotely View Your Security Cameras Through An Ezwatch Pro Dvr/Camera Server On A Pc Or Ipod (For A Small Charge) On A Network (For An Extra $20) On Your Computer Or Ipo (For Free

Basics of Port Forwarding on a Router for Security DVR s

Technical Support Information Belkin internal use only

Lab Objectives & Turn In

ReadyNAS Remote Troubleshooting Guide NETGEAR

THE HONG KONG POLYTECHNIC UNIVERSITY Department of Electronic and Information Engineering

Use 802.1x EAP-TLS or PEAP-MS-CHAP v2 with Microsoft Windows Server 2003 to Make a Secure Network

D-LINK DPH-140S SIP PHONE INSTALLATION GUIDE

How to install PowerChute Network Shutdown on VMware ESXi 3.5, 4.0 and 4.1

Pre-lab and In-class Laboratory Exercise 10 (L10)

Corso di Configurazione e Gestione di Reti Locali

Before deploying SiteAudit it is recommended to review the information below. This will ensure efficient installation and operation of SiteAudit.

PC/POLL SYSTEMS Version 7 Polling SPS2000 Cash Register TCP/IP Communications

Configuring the WT-4 for ftp (Infrastructure Mode)

The PostBase Connectivity Wizard

Savvius Insight Initial Configuration

Information Security Practice II. Installation and set-up of Web Server and FTP accounts

LESSON Networking Fundamentals. Understand TCP/IP

How to Remotely Access Hikvision Devices User Manual

CS 326e F2002 Lab 1. Basic Network Setup & Ethereal Time: 2 hrs

Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure

REMOTE ACCESS DDNS CONFIGURATION MANUAL

Multifunctional Broadband Router User Guide. Copyright Statement

Comodo MyDLP Software Version 2.0. Installation Guide Guide Version Comodo Security Solutions 1255 Broad Street Clifton, NJ 07013

If you never used nor intend to use the wired-connection, then please disregard the following info.

(1) Network Camera

Note: This case study utilizes Packet Tracer. Please see the Chapter 5 Packet Tracer file located in Supplemental Materials.

Setting Up Your FTP Server

DSL- G604T Frequently asked Questions.

enervista UR Setup Software Quick Connect Instructions:

Specialized Programme on Internetworking Design and LAN WAN Administration

Network Setup Guide. 1 Glossary. 2 Operation. 1.1 Static IP. 1.2 Point-to-Point Protocol over Ethernet (PPPoE)

WS_FTP Server. User s Guide. Software Version 3.1. Ipswitch, Inc.

Digicom Remote Control for the SRT

D-Link DAP-1360 Repeater Mode Configuration

Locate the My Computer icon, found either on the Start menu or the desktop

Step-by-Step Configuration

Lab Organizing CCENT Objectives by OSI Layer

AutoDownload: SQL Server and Network Trouble Shooting

ACP ThinManager Tech Notes Troubleshooting Guide

LAN TCP/IP and DHCP Setup

StarMOBILE Network Configuration Guide. A guide to configuring your StarMOBILE system for networking

Chapter 6 Using Network Monitoring Tools

1. Hardware Installation

3.5 EXTERNAL NETWORK HDD. User s Manual

Transcription:

PasserellesNumeriquesCambodia (PNC)

Table of Contents I. Configure DHCP Relay... 3 1. Use client to testing with connection... 4 II. IPTABLES On SUSE... 5 1. Variable and allow client ping... 5 2. Allow Loopback and Client ping to DCHP Server... 6 3. Established and DHCP (Request IP address) with DNS... 6 1. Testing Client get IP across IPTABLES... 7 4. Allow Staff and Student Access FTP server... 8 1. Testing with Staff and students access FTP server... 8 5. Allow Client Remote Server... 10 1. Testing both client Remote Desktop... 10 6. Allow Client Join Domain with AD... 12 1. Testing Client Join Domain... 13

I. Configure DHCP Relay - Now we use Linux SUSE refer to Route to do Relay agent and IPTABLES - First we use SUSE to Relay agent and IPTABLES - Type: yast i dhcp-relay - We type this it will install dhcp-relay automatic. - Type yast lan: to assign IP address all Network Interface Card (NIC) - Assign IP all NIC and select one IP address to connect direct with server For server have to assign Default geteway (192.168.2.254) to connect between DHCP Relay and DHCP server. Ping connection between DHCP server and DHCP Relay

- Type : rcnetwork restart: for restart network service and view Ethernet (eth) Go to edit file (dhcprelay.conf): vim /etc/sysconfig/dhcrelay to add interface card (NIC) - Insert all Ethernet (eth) into this file (dhcrelay file) with IP address DHCP server - Then restart DHCP-Relay Service by: rcdhcrelay restart 1. Use client to testing with connection - Now we use windows XP and assign is Obtain IP or (Dynamic) - This client connect through eth2 (VMnet 3) to broadcast by use both command: Ipconfig /release Ipconfig /renew

- Client Get IP address through DHCP-relay. II. IPTABLES On SUSE 1. Variable and allow client ping - Variable is a syntax that we do it for refer name or Ethernet (eth) in linux - Type: rcnetwork restart: to view of Ethernet (eth) in IPtables - Create one to configure IPTABLES and extension.sh by: touch filename.sh: Ex. touch iptables.sh - We can create any path that we want to create this file - Go on this file to Configure IPtables and with configuration that we want to configure.

- The first, we have to input those syntax in this file for: Variables and Drop all Policy because it is the easy way to allow next time (Drop all and allow which option that we want to allow Command iptables F or X: it syntax Clear cache and option in iptables. 2. Allow Loopback and Client ping to DCHP Server - Command: Allow Loopback it means allow DHCP server ping them self reply (connection) - In this case if we don t to allow client ping to DHCP server we do not type this command because we have dropped Rule above. - Protocol ICMP is a protocol for ping connection between one system or other system. - Allow client who a cross get IP address from DHCP server it will be allow in iptables to DHCP Server. 3. Established and DHCP (Request IP address) with DNS - Ask the step above all Rule have been Dropped, so now we have to allow client to request IP address from DHCP server with Established. Established and Related: is - For DNS Server we have to allow with syntax below: create two options for staff and student.

1. Testing Client get IP across IPTABLES - A client doesn t have IP address so it needs to broadcast and DHCP Relay will receive this broadcast and forward to DHCP server through IPTABLES. - For client: Students =VMnet3 and Staff= VMnet4. - Now we testing with Client (Students) - Testing with DNS server that IPTABLES have been allowed - So now Client (Students) can request DHCP and DNS from DHCP Server across IPTABLES. - Now we testing with Client (Staff) - Staff have to get IP address from DHCP server by IP range: 10.10.2.0 with subnet mask /8 -

- After we Client (Staff) broadcast IP address succeed then nslookup to view DNS server - Nslookup have been succeeding with DNS server that allows from IPTABLES. 4. Allow Staff and Student Access FTP server - We can only time with two interfaces but it not easy to control so we should create two options between Staff and Students. - So now syntax above are options with Staff and Students: if in the next time we want to Drop with students or staff it is easier than create one options. 1. Testing with Staff and students access FTP server - Ask in the step above both clients still use those IP address and access to FTP Students: 172.16.2.0 /16 Staff: 1010.2.254 /8

Now we testing with Staff - Go to Web browser type: ftp://ip server then press Enter - This step Staff and Student can access to FTP with authentication user. NOTE: If we nslookup successes so we can also access FTP by input IP address or domain name - Other w ay Staff also type: ftp://192.168.2.2: IP address of FTP - We have to change IP address to Name (CNAME) is easy to remember with students and staff. - So now client can also access FT P without authentication during logged.

Now we testing with Student - Now we testing with students to access FTP by domain name. - Both client (Student & Staff) accesses to FTP successes by allow from IPTABLES. 5. Allow Client Remote Server - Now we allow client remote to server. - We have to configure two rule one for Students and other one for Staff. - Now we use Remote Desktop with port 3389: port of Remote Desktop. - We can use on input to server and don t from server reply because we have allow Established and Related above. 1. Testing both client Remote Desktop - After we allow rule above, Now we need to testing with client to remote Desktop - The first make sure that Server have been allow to remote

Now we use Students to Remote Desktop - Client (Students) can also remote Desktop according to rule in IPTABLES allow - One more this client have been get IP address from server - Go on Start Manu (in client) select Remote Desktop in Accessories. - Then input IP address Server Press Enter to remote or Connect. - It will be need Password of Server

- Then it will show all information in server ask picture below. - So now we have successful with Remote Desktop across by IPTABLES. Now we use Staff to Remote Desktop - For Client (staff) and Students are the same because we have allowed rule in IPTABLES. - So now let to remote with the same step above. - Now staff and Students successes with Remote Desktop. 6. Allow Client Join Domain with AD - Client can join domain according to rule in IPTABLES allow or not - In IPTABLES we need may port to working with Domain (AD) to join such as:

TCP: 88,135,139,636,1025,1026 UDP: 88,135,445,389,636 - We use with Allow client Join domain. Now I configure two options it easy to change option later NOTE: some IPTABLES it use not the same those port some use less and other use more then it. 1. Testing Client Join Domain a. Now we testing with Student - Make sure that Client (students) successful with nslookup (DNS) and IP address of Range. - Student IP address rang: 172.16.2.20 up - Go to my computer Properties Computer Name Change. - When we join domain it need authentication (User name & Password) of Server. - It will success if correct with authentication user - When we success please restart this computer and then login user in Active Directory (AD). - Go to server to view user in Active Directory in server. - AD in server (Windows) created user (ad.staff and ad.student)

- Now client (ad.student) in Domain (pnc.com) log in with computer name students that have been joined domain.

- Now client (ad.student) has been successful with join domain. b. Testing with staff join domain - We do the same step ask step above, with IP address and DNS for nslookup. - Ask the same step above it need authentication user name and Password - Then restart this system to successful with join domain (AD) by across IPTABLES. - Ask picture below staff successes with join domain in (AD)