05 - Network Access Control & Cloud Computing
Theory: Network Access Control & Cloud Computing
Labs:
Cloud security
5.1
5.1) A company will use Cloud Computing. The company will place all company documents in the cloud – inclusive documents from the company R&D department. The company is facing an extensive global competition. What will be your advice to the company
5.2
5.2) Investigate the security of the popular file storage service Dropbox (confidentiality, integrity, authenticity, where/how are keys stored). Dropbox provides some details at https://www.dropbox.com/features/security but there are other places with more details such as https://www.cloudwards.net/dropbox-security/ (search for more places). You may also ask a chatbot, but ask for the sources and verify the
EAP
5.3
5.3) Explain different fields of an EAP message.
5.4
5.4) Explain the different EAPOL frame types.
5.5
5.5) Is EAP a secure protocol? Investigate if any attacks to EAP have been reported (in theory or in practice). You may also ask a chatbot, but ask for the sources and verify the
RADIUS
5.6
5.6) Explore FreeRADIUS at https://freeradius.org/, especially visit http://deployingradius.com/ and investigate the simplest way to configure FreeRADIUS. Which EAP methods are supported? Search information on the supported EAP methods. You may of cause also install and configure FreeRADIUS but this is not mandatory since it requires knowledge of Linux OS.
5.7
5.7) Get Cisco Packet Tracer simulation tool from https://www.netacad.com/courses/getting-started-cisco-packet-tracer and get started using it. You need to create an account on the Cisco Networking Academy website. We advice NOT to login with Google and NOT to reuse your DTU account password
- You might already have Cisco Packet Tracer from the Data Communication class.
5.8
5.8) In the ‘File’ menu in Packet Tracer open samples and move to ’03 Cybersecurity’ and ‘AAA’. Here investigate the AAA_Radius examples and carry out the small tasks there.
5.9
5.9) In the ‘File’ menu in Packet Tracer open samples and move to ’03 Cybersecurity’ and ‘Port-Based NAC’. Here open ‘wire dot1x.pkt’ and learn about 802.1x by carrying out the small task