
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 180
Outside
W2K_VPN
NetBrute Nil N/A
Outside
192.168.16.0
NetBrute Nil N/A
Outside
W2K_VPN
Share
Scanner
Nil N/A
Outside
192.168.16.0
Share
Scanner
Nil N/A
Outside
W2K_VPN
Sub_Net 8080 N/A Again,8080isnotneeded.Itshouldbefiltered.
*TCP8080issubjecttotheRingZeroTrojanattack.
Outside
192.168.16.0
Sub_Net Nil N/A
Rulebaseassessment:
SetupaVPNclientwithanaddressnotincludedinthe“allowed
partners/supplierslist”.TrytomakePPTPconnectionstotheserver.
Connectionfails.EventsloggedintheRASlog.Thisis
thedesirableresult.
SetupaVPNclientwithanaddressincludedinthe“allowedpartners/suppliers
list”.TrytomakeanonPPTPconnectionstotheserver.
Connectionfails.Eventsloggedinthe RASlog.Thisis
thedesirableresult.
Comentários a estes Manuais