Aperçu du cours
Context:
In today’s global business environment, organizations operate across multiple geographical locations, necessitating a robust network infrastructure that ensures secure, reliable, and seamless communication between sites. This laboratory exercise simulates a real-world scenario where you, as a network engineer, are tasked with designing and implementing a network that supports an organization with headquarters and multiple branch offices.
Problem Statement: The company aims to enhance its network infrastructure to improve connectivity, security, and manageability across three key sites: the headquarters and two branch offices. The network must support various applications and services, including secure internet access and inter-site communications.
Objective: Your task is to configure a network that not only meets the operational requirements but also incorporates advanced routing protocols and security measures to protect against potential cyber threats.
Technologies and Protocols:
- Cisco & MikroTik: Configuration of networking equipment for traffic management, tunnels, and security.
- PfSense: Implementation of a firewall and gateway functions for branches.
- DHCP: Setting up DHCP servers on Cisco for dynamic IP address management.
- ACLs (Access Control Lists): Securing networks by controlling incoming and outgoing traffic through defined rules.
- GRE Tunnel & IPSec: Establishing secure tunnels between different sites.
- NAT (Network Address Translation): Configuring NAT to enable secure external communication.
Routing and Network Protocols:
- Static Routes: Setting up static routes for direct and controlled communication.
- OSPF (Open Shortest Path First) Multi-Area: Using OSPF for efficient route management in an extensive network environment.
- EIGRP (Enhanced Interior Gateway Routing Protocol): Implementing EIGRP to optimize routing performance in Cisco networks.
- BGP (Border Gateway Protocol): Configuring BGP for managing route exchanges between different autonomous systems.
Prerequisites:
- Basic to intermediate knowledge of network configuration.
- Familiarity with Cisco IOS and MikroTik RouterOS.
- Understanding of IP addressing, subnetting, and network protocols.
- Access to network simulation tools like Cisco Packet Tracer or GNS3 for practical implementation.
Environment Setup: Participants will need the following setup to perform the lab:
- Network simulation software (Cisco Packet Tracer or GNS3).
- Access to Cisco routers and MikroTik routers (virtual or physical).
- PfSense software for firewall configurations.