METROPOLITAN TECHNOLOGICAL UNIVERSITY
INFORMATION AND COMMUNICATION TECHNOLOGIES
Automated parking
TECHNICAL MEMORANDUM
FOR THE IMPLEMENTATION OF THE NETWORKS AND SERVERS PROJECT
PRESENTED BY
CHABLE TEC JESUS EDUARDO
GUADALUPE ANAI CONCHA GARCIA
Francisco Uitzil May
VICTOR MANUEL ORDOÑEZ ÁLVAREZ
MIGUEL MONTERO VÁZQUEZ
Mérida, Yuc. April 2013
BACKGROUND
In the previous project, an IDS server was implemented on the platform
FREEBSD. It is a security tool for detection and monitoring of
events occurring on the network, in search of attempts to compromise security, with
the ability to prevent and alert against any suspicious activity
not designed to stop attacks but to generate responses to this type of
vulnerability in the network.
OBJECTIVES AND PURPOSE
GENERAL OBJECTIVE.
The objective of this project in the servers area includes the presentation of
development services for network security through implementation
of an IDS on the Linux Centos platform whose general function will be search
of previously defined patterns that involve any type of activity
suspicious or malicious on our network that generates alerts about attacks and
implement a response to these.
SPECIFIC OBJECTIVES
Another objective considered within this project is the implementation of
a Web server IIS on the Windows Server 2008 platform that will be
designed to transfer Hypertexts. The web server will run on a computer
waiting for requests from a client and that
will respond to these requests appropriately through a web page that
will be displayed in the browser. In the same way, a domain will be implemented.
identification associated with the devices connected to the network.
DESCRIPTION OF THE PROJECT TECHNIQUE
When implementing our IIS server, we opted for the platform
Windows Server 2008 because it is a low resource consumption system and us
allows having multiple available roles such as:
Active Directory Domain Services
Active Directory Lightweight Directory Services (AD LDS)
Dynamic Host Configuration Protocol (DHCP) Server
DNS Server
Mérida, Yuc. April 2013
File Services
Print Server
Streaming Media Services
Which will be necessary for our required services in the project.
IDS SERVER CENTOS
For the implementation of this IDS Server, we will work on the Centos platform.
by being a stable system of the Linux family and having efficient functions to provide
services like server.
Required packages for its implementation:
Barnyard is a Snort output system. Snort creates a binary format of
special output called unified. Barnyard reads this file and then
resend the data to a back-end database. Unlike the
database plugin production, Barnyard manages the sending of events to the
database and stores it in the temporary database cannot accept
connections.
BASE is the basic analysis and security engine. It is based on the code of the
Intrusion Database Analysis Console (ACID) project. This
application provides a web front-end for querying and analyzing alerts that
they come from an IDS system Snort.
Oinkmaster is a script that will help you update and manage the rules of
Snort.
RESULTS OBTAINED
Windows Server 2008 was successfully installed for the execution of the
practices during the course to achieve the server at 100%.
the Linux (Ubuntu) server could be set up, making it the server that
will be used to monitor traffic on the network and to ensure security as well
in network traffic.
the Active Directory product was obtained on the virtual machine, having a grna
progress on the project.
Mérida, Yuc. April 2013
ANNEXES
Creation of users and groups.
Creation of the domain called '[Link]'
Mérida, Yuc. April 2013
Roles created on the DHCP server, DNS, IIS, Active Directory.
REMOTE DESKTOP.
DNS
Mérida, Yuc. April 2013
Web and FTP Server in IIS.
FTP Security.
Merida, Yuc. April 2013
Services running.
Bibliography:
[Link]
[Link]
[Link]
38110
Mérida, Yuc. April 2013
CONCLUSION
In conclusion, a significant part of the project's implementation of a
WAN with network services helped us a bit more in the referral for
implement the various services that can be offered to users that the
they share, in the same way I generalize more our knowledge in the
use of other programs for server setup in order to achieve the
objectives we focus on.
As already mentioned, it was proposed to design and more than anything, implement a network of
broad area so as to have the availability of services through
of the domain, along with the http service, mail server, of
files, and the security service, all based on the Windows OS
Server 2008.
Based on the knowledge previously acquired, be able to raise the
server sustained on Linux, where we implement again the
network security services, this is what led us to the use of Ubuntu, and
also based on WAN networks, the creation of a topology, in order to
implement the already completed servers.
Cabe mencionar que se requirió de otros software´s para la realización de las
daily activities on the server, this as an example to be able to virtualize it
S.O.
Mérida, Yuc. April 2013