Try to write rules as general as possible. For example, although there are only two nodes outside, try to write rules such that the policy is achieved even if there were more than two nodes outside.

Computer Networking: A Top-Down Approach (7th Edition)
7th Edition
ISBN:9780133594140
Author:James Kurose, Keith Ross
Publisher:James Kurose, Keith Ross
Chapter1: Computer Networks And The Internet
Section: Chapter Questions
Problem R1RQ: What is the difference between a host and an end system? List several different types of end...
icon
Related questions
Question

Given the following topology of a network where the router connecting the two subnets together, Nodes 1 and 2 are ’inside’ of the subnet neta, Nodes 4 and 5 are ’outside’ of neta and Node 3 with a firewall is the gateway of neta.

Try to write rules as general as possible. For example, although there are only two nodes outside, try to write rules such that the policy is achieved even if there were more than two nodes outside.

Suppose the default policy is ACCEPT in the firewall on Node 3. Write

packet filtering rules for the following goals (each of which is treated separately):

Rule 1. Block ping (icmp) packets being forwarded between the two subnets; Rule 2. Block ping packets coming into the firewall;
Rule 3. Prevent Node1 from SSHing to any outside nodes;

Change the default policy as DROP and write packet filtering rules for the following golas: Rule 4. Allow inside hosts can access outside websites;
Rule 5. Allow outside hosts can SSH into Node1. No other access should be allowed.

 

 

i have tried to understand while getting an explanation of the task but i dont get it. i need to see how the task answear can look like

eth1: 1.11
eth1: 2.21
eth1: 1.1
4
neta
3
netb
eth2: 2.1
eth1:1.12
eth1: 2.22
LO
2.
Transcribed Image Text:eth1: 1.11 eth1: 2.21 eth1: 1.1 4 neta 3 netb eth2: 2.1 eth1:1.12 eth1: 2.22 LO 2.
Expert Solution
steps

Step by step

Solved in 2 steps

Blurred answer
Recommended textbooks for you
Computer Networking: A Top-Down Approach (7th Edi…
Computer Networking: A Top-Down Approach (7th Edi…
Computer Engineering
ISBN:
9780133594140
Author:
James Kurose, Keith Ross
Publisher:
PEARSON
Computer Organization and Design MIPS Edition, Fi…
Computer Organization and Design MIPS Edition, Fi…
Computer Engineering
ISBN:
9780124077263
Author:
David A. Patterson, John L. Hennessy
Publisher:
Elsevier Science
Network+ Guide to Networks (MindTap Course List)
Network+ Guide to Networks (MindTap Course List)
Computer Engineering
ISBN:
9781337569330
Author:
Jill West, Tamara Dean, Jean Andrews
Publisher:
Cengage Learning
Concepts of Database Management
Concepts of Database Management
Computer Engineering
ISBN:
9781337093422
Author:
Joy L. Starks, Philip J. Pratt, Mary Z. Last
Publisher:
Cengage Learning
Prelude to Programming
Prelude to Programming
Computer Engineering
ISBN:
9780133750423
Author:
VENIT, Stewart
Publisher:
Pearson Education
Sc Business Data Communications and Networking, T…
Sc Business Data Communications and Networking, T…
Computer Engineering
ISBN:
9781119368830
Author:
FITZGERALD
Publisher:
WILEY