Chapter 10


Have-A-Seat

  1. As discussed in Chapter 5, Have-A-Seat would use access lists on the routers that border their DMZ should they choose to implement a firewall. Those would allow access to their web server and e-mail server, but not allow direct access into Have-A-Seat’s internal network.

  2. Yes, you could use compression to save bandwidth. Be sure that CPU utilization on affected routers is below 65 percent, though.

Willow Creek School District

  1. Scott can use SAP filters at the high schools and junior high schools to prevent their local server’s services from being advertised out.

  2. Cisco IOS supports encryption between routers, not between hosts. A better solution might be to either use security between the web server and client, or to use switches and VLANs to ensure that administrative traffic could not be overheard on student workstations.

  3. Cisco IOS supports GNS Proxy, whereby the router in the elementary school will build its own SAP table and respond to local GNS requests. There is no need to configure bridging, and the workstations will never care that there is not actually a Novell server present.




CCDA. Cisco Certified Design Associate Study Guide
CCDA: Cisco Certified Design Associate Study Guide, 2nd Edition (640-861)
ISBN: 0782142001
EAN: 2147483647
Year: 2002
Pages: 201

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net