28.06.2014 Views

Learning by Doing: CISCO Certified Network ... - SCN Research

Learning by Doing: CISCO Certified Network ... - SCN Research

Learning by Doing: CISCO Certified Network ... - SCN Research

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Objective:<br />

To learn how to use ACL’s to build a mini-protocol inspector.<br />

Tools and Materials:<br />

(2) workstations<br />

(4) straight-through cables<br />

(1) DCE/DTE serial cable<br />

(2) routers<br />

(2) switches (or 1 with 2 VLAN’s)<br />

Lab Diagram:<br />

Making a Protocol Inspector with ACL’s<br />

Goodguys<br />

ISP<br />

e0 s0/1 e0<br />

s0/0<br />

Good Guy WS ☺<br />

Bad Guy WS <br />

192.168.1.2/24 172.16.1.2/16<br />

Addressing:<br />

Router goodguys ISP<br />

S0/0 (DCE) n/a 220.100.50.1/24<br />

S0/1 (DTE) 220.100.50.2/24 n/a<br />

E0/0 192.168.1.1/24 172.16.1.1/16<br />

Background:<br />

A denial of service attack (DoS) occurs when disruption of services to legitimate users<br />

occurs. Denial of service attacks are gaining in number as evidenced in the media.<br />

Lately we have seen denial of service attacks that have crashed the networks of Yahoo,<br />

Ebay, Buy.com, CNN.com, E*Trade, ZDNet, Microsoft, and others. Initiating DoS<br />

attacks are very simple…the tools are readily available over the Internet. To launch a<br />

DoS attack the attacker needs only a Linux/UNIX box with one of the following<br />

programs: Trinoo, TFN, TFN2K, and Stacheldraht.<br />

There are essentially three main categories of denial of service attacks: smurf,<br />

fraggle, and sync attacks. A smurf attack (not the little blue guy) is caused <strong>by</strong> a flood of<br />

icmp messages. A fraggle attack is caused <strong>by</strong> a flood of UDP packets. A sync attack is<br />

caused <strong>by</strong> a flood of TCP packets. As we can see all three are closely related. We can<br />

354

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!