The existing setup of Zara Asia is as follows: They have an office building in Singapore, their
Question:
The existing setup of Zara Asia is as follows:
They have an office building in Singapore, their HQ office, and the staff strength here is the highest with 230 staff.
The following are the number of staff on each floor
4th floor - Finance- 50 staff
3rd floor - HR - 50 staff
2nd floor - Sales - 120 staff
1st floor - Tech support - 10 staff
.
Currently the company has 3 other branch offices overseas, which have no connection back to the HQ and communication is only by telephone or snail mail:
Thailand - 30 staff
Vietnam - 20 staff
Japan - 20 staff
Zara Asia's requirements as follows:
1. They want an IP network to be created to connect all their sites. Appropriate VLSM should be adopted, VLANs and viable routing protocols must be configured. You may use the private address range of 10.0.0.0/8 for assigning address for all sites within the company (overseas and local). All LAN addresses to the PCs should be given through DHCP. This includes wireless clients.
2. Japan and Singapore are advanced sites who want to embark on running an IPv6 dual stacked network for their LAN. They want to be able to connect to each other through a WAN link using suitable IPv6 routing protocols. You may use 2001:db8::0/64 as the IPv6 range for VLSM allocation for these sites.
Thailand and Vietnam need a secure PPP CHAP connection between them. Use the password NYP2021 for CHAP authentication. For extra marks, try to configure CHAP authentication with hostname NYP and password as NYP2021.
3. The company wants to use eBGP to dual home to 2 ISPs, SingTel and Starhub in Singapore. Design your network to accommodate this requirement and state your AS numbers used. Create an external client and ensure that he has access to company's website implemented in the DMZ at Singapore HQ. You may use Static NAT to achieve this. The public range given to Zara is 200.1.1.0/24.
4. Access Control Lists are a definitive part of any company. Zara Asia wants to protect its Finance department such that:
Only HR and Finance Departments can communicate with each other. No one else can ping the Finance Department.
Finance Department can access the Internet, Web and Email Services
The Tech Support Department are the only ones allowed to do SSH into the company routers. No telnet should be allowed for remote configuration.
Implement IPv6 ACL such that Japan sites cannot ping SG Finance Department but can ping all others in SG.
International Marketing And Export Management
ISBN: 9781292016924
8th Edition
Authors: Gerald Albaum , Alexander Josiassen , Edwin Duerr