Case Study

mahjoub

Member
Joined
Oct 24, 2011
Messages
4
Location
Jordan
I have the following assignment, I need help to do it:

Bayview Hill secondary school is located in Northern Ontario Canada in a newly developed area where no good communication infrastructure exists. The education board demanded schools to start implementing their own network to be a part of the global network of the education board. The school has already purchased 10 work stations with built in Vista operating system and in following the policy of the board the school director requested a plan for this newly needed network.
The school consists of the director, teachers, secretary, and library departments, in addition to a computer lab.

Questions:
1- Draft a plan of the network with all software and hardware requirement as per the above description.​
2- Suggest an Active directory design that can be integrated with the education board directory. Explain your design and use graphic presentation to show all suggested AD elements. Use a Domain name as BVUHILL.com​
3- If you were to suggest Windows Server 2008 for the Domain controller, explain the benefit of such suggestion.​
4- Suppose the network includes 2 Domain Name systems (DNS) servers that are named DNS1 and DNS2. They both host the same Active Directory-Integrated zone. A security analysis reveals that an attacker can obtain a list of host (A) records using the nslookup command. You need to prevent the attackers from using this command to retrieve information about the computers on the internal network. What should you do?​
5- You become a network administrator for The Education board, whose network is composed of a single Active Directory domain, EDUBoard.com. The EDUBoard.com zone is stored in Active Directory.​
At their main office the EDUBoard.com domain controllers host the DNS zones for the domain. The EDUBoard.com network also includes several branch offices.​
[indent=1.8]1. The Toronto office does not include a DNS server. You want to improve name resolution of computer names in the EDUBoard.com domain, but you dont want to host a domain controller at the Toronto site. Minimizing zone transfer traffic is not a priority. What should you do?[/indent][indent=1.8]2. You want zone transfers to the Toronto office to occur whenever a change occurs in the zone data. How can you enable this functionality?[/indent]
6- Your network includes a DHCP server connected to both a wired subnet and a wireless subnet.​
The DHCP server uses a separate scope to provide addressing for each of the two subnets. For the wired subnet the DHCP leases addresses in the range 192.168.10.0/24, and for the wireless subnet the DHCP server leases addresses in the range 192.168.20.0/24. These two subnets share many configuration options, including the same DNS domain name, the same DNS server list, and the same WINS server.​
[indent=1.8]1. At what level should you configure the DHCP options specifying a domain name, DNS server, and WINS server?[/indent][indent=1.8]2. You want to configure a special connection-specific DNS suffix for 30 of the 200 DCHP clients on the wired subnet. How can you best achieve this by using DHCP options?[/indent]
7- You have configured all client computers to download updates directly from Microsoft and automatically install them. However, after a recent service pack release, you notice that the bill from your Internet service provider (ISP) for Internet bandwidth jumped significantly after Microsoft released a large service pack to Windows Update (you pay per usage with your contract).​
Youd like to use WSUS to reduce your bandwidth usage to your main Education Board office, where you have approximately 250 computers. Eventually, youd like to begin testing updates before deploying them. However, you do not have the staff to perform the testing, so for the time being you want updates to be automatically approved and installed.​
You go into the directors office to discuss the ISP expenses and how they can avoid it in the future.
Answer the following questions:[indent=1.8]1. How can WSUS reduce your bandwidth utilization?[/indent][indent=1.8]2. How many WSUS servers will you need?[/indent][indent=1.8]3. How can you configure WSUS to automatically approve updates?[/indent]
8- Recently, the director of the school called because he couldnt download his e-mail. The help support technician identified the source of the problem as low disk space, helped the director clear sufficient free space, and resolved the problem.​
The director would like to develop a proactive way to identify low disk space problems on computers so that you can free more disk space before the condition causes application failures.​
Answer the following questions:[indent=1.8]1. How can you monitor client computers for low disk space events?[/indent][indent=1.8]2. Which client operating systems can you monitor?[/indent]
9- The school is beginning to deploy servers running Windows Server 2008. The director is very concerned about recovering a server that fails because of a failed hard disk.​
Answer the following questions:[indent=1.8]1. When purchasing servers, what are the hardware requirements for scheduling backups using Windows Server Backup?[/indent][indent=1.8]2. After performing a backup, how will you recover a server with a failed system disk?[/indent][indent=1.8]3. Can the same backup be used to restore files that become corrupted or are accidentally deleted?[/indent]
 
I have the following assignment, I need help to do it:

Help... means that you don't understand something OR it means that you want all the answers to all questions?

I think that the 90% of questions are really really easy... the other 10% it's a bit harder but just because you need to be familiar with some concepts (like question 4, it talks about zone transfers).

So, let us know what do you really need.
 
Dear Moderators,

I would highly appreciate your assistance to provide me the correct answers to previous questions.

thank you inadvance
 
1) Update existing WS to Windows 7 > others WS (I don't know how many) with the following hardware:
4 GB ram
Core i3 / i5 or AMD X3
500 GB hd
A workstation should cost about 700$ with monitor, HP is ok.
2) 6 groups: dir, sec, tea, lib, comp lab, students. If you want you can create multiple under-groups for students (class 1, 2, ...).
3) Most used and with Windows clients, it's the best integration.
4) It's not specified if the attack is from outside or inside, anyway, block the ZONE TRANSFER on DNS.
5)
8]1. Stupid question: why I can't host a DC? If I delegate a control (which is the only solution), the problem on questione #4 persist...
8]2. Once again... you can specify how many times the zone transfer succede but actually I should implement a DC in Toronto...
6)
8]1. WINS server? Why should I have enabled WINS? Anyway I don't understand the question: "AT WHAT LEVEL SHOULD YOU CONFIGURE THE DHCP OPTIONS?" er... Where the DHCP is made?! On Windows server? So, in windows server...
8]2. Using scopes or address pools with rules, once again... WHO IS PROVIDING DHCP?!
7)
8].1 It downloads the updates ONCE and the DEPLOY to the network, clients must be configured (via GP) to point to WSUS server.
8].2 1 server should be ok, updates can be done during the night and with policies you can divide updates. What I mean is: monday: update STUDENTS CLIENTS (AD Group), thusday TEACHERS CLIENTS, and so on.
8].3 Once installed, there are many options and one is called: "AUTO APPROVE AND INSTALL"
8)
8].1 Best thing is to use a SNMP monitor, enable SNMP on clients and install a software to monitor (SYSAID is free, take a look!)
8].2 Any, you just need SNMP which is compatible with almost any OS.
9)
8].1 Depending on where you want to save data. ANyway, first of all buy an INTERNAL RAID CONTROLLER and set up a RAID 5 (at least 3 internal disks). Then buy an external NAS and there you can backup. Another (but more expensive) solution is a SCSI drive, external. Faster but REALLY expensive.
8].2 With a RAID 5 you can easily replace the faulty disk and everything is restored without downtime. You can also use Acronis or Ghost to perform a system image.
8].3 Yes, Acronis or Ghost can restore a single file. Only from RAID YOU CANNOT RESTORE A FILE.
 
Back
Top