Secure Social Media Company Network System Design and Implementation
Scenario Description: Secure Social Media Company Network:
Facewall is a social media company which has recently received a huge attention from users. Currently, the company is located in London (HQ) but two new branches will be open in Tokyo and New York soon. You are hired as a security and network designer to design and implement a network infrastructure for communicating between HQ and branches. The company required network connectivity and secure communication between HQ and branches.
- Network topology should demonstrate at least 3 branches in 3 different geographical places. (Maximum is 5).
- Each branch must have below equipment: • Minimum 1 router
- Minimum configuration requirement for proposed topology: • Implement a minimum 3 zone-based firewall (Public, private and DMZ), You can have more based on your design.
• 1 ASA firewall
• Minimum 3 switches (the usage of both L2 and L3 switches is compulsory)
• Minimum 10 computers
• Minimum 2 server (Web server, email server and etc). HQ also has the main social media customers database in addition to its normal databases.
• Only one wireless access point in one of the branches. The other two branches will not have wireless access point. It is your choice to decide which branch must have access point.
• Each branch needs minimum 3 different VLANs (Max 6)
• DMZ and network need to protect with ASA
• 1 VPN connection from 2 branches (site to site VPN) to HQ
• Must configure ACL on each branch for controlling the access
• ASA rules must assign for each network with proper blocking and permitting configuration
• Wireless security such as mac filtering, etc
The network topology below satisfy the user requirements above and everything is verified, tested and working fine.