Lab 1.1 Routing and DMZ
Configuring rw01
rw01Configure Interface
Secure champuser default account by changing the password
passwd
current password: enter default password
new password: enter new password Add a new sudo user hanne
Set hostname rw01-hanne
Set your Static IP matches IP assignment (10.0.17.43)

Deliverable 1: Using rw01's web browser, go to champlain.edu. Take a screenshot that shows your vsphere console name and your browser window similar to the following screenshot.

Configuring basic routing on fw01

Set hostname with Configure, Commit, Save and Exit

fw01-hanne Interface Assignment

Set the interfaces and make sure to give them a description
Set the corresponding IP addresses for each interface

Gateway and DNS
Deliverable 2: Successfully ping google.com and provide a screenshot

Configuring web01



Configuring fw01 for NAT and DNS Forwarding on fw01

Deliverable 3/4: Provide a screenshot of a successful ping from web01 to 8.8.8.8 followed by a failed DNS lookup for google.com. (Deliverable 4 is a successful ping).


Configuring log01
Configure log01 with an IP address ending in .5 (make sure log01 is on the DMZ network)

Deliverable 5: A screenshot of your ifconfig followed by a successful ping to google.com from log01

Configuring httpd on web01
Configuring firewall on web01

Testing httpd on web01 from rw01

Deliverable 6: Submit a screenshot showing rw01 successfully browsing the test page on your httpd server.

Configuring rsyslog services on log01
Install rsyslog on log01-hanne
Allow UDP and TCP 514 for syslog traffic permanently




Configuring rsyslog client on web01
Create file /etc/rsyslog.d/sec350.conf

Test rsyslog messaging from web01 to log01


Deliverable 7: Take a screenshot that shows the test message arriving in log01’s /var/log/messages file from web01.

rw01->SSH->web01->SSH->log01
Deliverable 8: Provide a screenshot that shows this layered ssh session.

Last updated
