1 Chapter 7: NAT in Internet and Intranet Designs Designs That Include NAT Essential NAT Design Concepts Data Protection in NAT Designs NAT Design Optimization.

Slides:



Advertisements
Similar presentations
Configuring Internet Access for a Network. Overview Options for Connecting a Network to the Internet Configuring Internet Access by Using a Router Configuring.
Advertisements

© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Implementing IP Addressing Services Accessing the WAN – Chapter 7.
CMPE 150- Introduction to Computer Networks 1 CMPE 150 Fall 2005 Lecture 25 Introduction to Computer Networks.
Understanding Internet Protocol
Configuring and Troubleshooting Network Connections
© 2007 Cisco Systems, Inc. All rights reserved.ICND1 v1.0—1-1 Building a Simple Network Understanding the TCP/IP Internet Layer.
©2012 ClearOne Communications. Confidential and proprietary. COLLABORATE ® Video Conferencing Networking Basics.
CSIT 320 (Blum) 1 DHCP. CSIT 320 (Blum) 2 Dynamic Host Configuration Protocol does not require an administrator to add an entry for a computer into the.
1 Chapter 2: Networking Protocol Design Designs That Include TCP/IP Essential TCP/IP Design Concepts TCP/IP Data Protection TCP/IP Optimization.
Module 5: Configuring Access for Remote Clients and Networks.
Module 1: Microsoft Windows 2000 Networking Services Infrastructure Overview.
Lesson 17 – UNDERSTANDING OTHER NETWARE SERVICES.
Chapter 8 Administering TCP/IP.
Chapter 2 Internet Protocol DoD Model Four layers: – Process/Application layer – Host-to-Host layer – Internet layer – Network Access layer.
Chapter 8: Configuring Network Connectivity. Installing Network Adapters Network adapter cards connect a computer to a network. Installation –Plug and.
Virtual Private Network (VPN) © N. Ganesan, Ph.D..
Module 6: NAT As a Solution for Internet Connectivity.
Chapter 11: Dial-Up Connectivity in Remote Access Designs
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
VPN Scenarios © N. Ganesan, Ph.D.. Chapter Objectives.
Network Services Lesson 6. Objectives Skills/ConceptsObjective Domain Description Objective Domain Number Setting up common networking services Understanding.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public ITE PC v4.0 Chapter 1 1 Network Addressing Networking for Home and Small Businesses – Chapter.
Configuring Routing and Remote Access(RRAS) and Wireless Networking
Virtual Private Network (VPN) SCSC 455. VPN A virtual private network that is established over, in general, the Internet – It is virtual because it exists.
Introduction to Networking Concepts. Introducing TCP/IP Addressing Network address – common portion of the IP address shared by all hosts on a subnet/network.
Module 8: Configuring Virtual Private Network Access for Remote Clients and Networks.
Connecting Networks © 2004 Cisco Systems, Inc. All rights reserved. Exploring How IP Address Protocols Work INTRO v2.0—4-1.
Objectives Configure routing in Windows Server 2008 Configure Network Address Translation 1.
Chapter 13 – Network Security
1 Chapter 6: Proxy Server in Internet and Intranet Designs Designs That Include Proxy Server Essential Proxy Server Design Concepts Data Protection in.
Chapter 1: Introduction to Web Applications. This chapter gives an overview of the Internet, and where the World Wide Web fits in. It then outlines the.
Implementing IP Addressing Services Accessing the WAN – Chapter 7.
1 Chapter Overview Installing the TCP/IP Protocols Configuring TCP/IP.
11 CONNECTING WINDOWS XP PROFESSIONAL TO A NETWORK Chapter 10.
© 2007 Cisco Systems, Inc. All rights reserved. 1 Network Addressing Networking for Home and Small Businesses – Chapter 5 Darren Shaver – Modified Fall.
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
PC Maintenance: Preparing for A+ Certification Chapter 22: Setting Up a Windows Network.
Linux+ Guide to Linux Certification Chapter Fifteen Linux Networking.
VIRTUAL PRIVATE NETWORK By: Tammy Be Khoa Kieu Stephen Tran Michael Tse.
C HAPTER 9 Supporting TCP/IP, DNS using Windows XP.
1 Chapter Overview Password Protection Security Models Firewalls Security Protocols.
1 Chapter 3: Multiprotocol Network Design Designs That Include Multiple Protocols IPX Design Concepts AppleTalk Design Concepts SNA Design Concepts.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Implementing IP Addressing Services Accessing the WAN – Chapter 7.
Module 1: Configuring Routing by Using Routing and Remote Access.
1 Week #5 Routing and NAT Network Overview Configuring Routing Configuring Network Address Translation Troubleshooting Routing and Remote Access.
Network Infrastructure Microsoft Windows 2003 Network Infrastructure MCSE Study Guide for Exam
Module 10: Providing Secure Access to Remote Offices.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 4: Planning and Configuring Routing and Switching.
1 Chapter 13: RADIUS in Remote Access Designs Designs That Include RADIUS Essential RADIUS Design Concepts Data Protection in RADIUS Designs RADIUS Design.
Connection Technologies and IP Addressing CONNECTING TO THE INTERNET.
1 Chapter 8: DHCP in IP Configuration Designs Designs That Include DHCP Essential DHCP Design Concepts Configuration Protection in DHCP Designs DHCP Design.
How to use the Internet Ikjun Yeom. How to send a packet  buy a computer  make sure that the computer is equipped with a network interface card  find.
Network protocles (TCP), (UDP), (DHCP), (DNS) DR:abd alrauoof alshtawi
TCP/IP Protocol Suite ©Richard L. Goldman September 25, 2002.
1 Welcome to Designing a Microsoft Windows 2000 Network Infrastructure.
ITMT Windows 7 Configuration Chapter 5 – Connecting to a Network ITMT 1371 – Windows 7 Configuration 1.
11 MAINTAINING A NETWORK INFRASTRUCTURE Chapter 9.
Windows Vista Configuration MCTS : Advanced Networking.
Chapter 1 Introduction to Networking
Module 3: Enabling Access to Internet Resources
Virtual Private Network (VPN)
Networking for Home and Small Businesses – Chapter 5
Chapter 5: Multiprotocol Routing Designs
Networking for Home and Small Businesses – Chapter 5
Implementing IP Addressing Services
Virtual Private Network (VPN)
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 4: Planning and Configuring Routing and Switching.
Implementing IP Addressing Services
Review of Internet Protocols Network Layer
Presentation transcript:

1 Chapter 7: NAT in Internet and Intranet Designs Designs That Include NAT Essential NAT Design Concepts Data Protection in NAT Designs NAT Design Optimization

2 NAT and Microsoft Windows 2000 Network Address Translation (NAT) Is included in Routing and Remote Access Provides small office or home office (SOHO) connectivity Supports translated connections only Is not available in Windows 2000 Professional

3 NAT Design Review Amount and confidentiality of data Network resources accessed by remote users Future growth plans Existing routers Network uptime

4 NAT Characteristics NAT modifies the IP packet. IP header Transmission Control Protocol (TCP) header User Datagram Protocol (UDP) header IP packet data NAT does not work with many protocols.

5 NAT Design Decisions Base on organizational requirements. Decide what the design will support. Connection type Client type Connection method Network filters Remote access methods Number of connections

6 Stand-Alone SOHO Design

7 NAT in SOHO Designs Provides automatic IP configuration to Dynamic Host Configuration Protocol (DHCP) clients Uses IP filters to restrict access Provides automatic network address translation Supports public and private IP addressing Provides shared Internet access Provides Internet connectivity over Windows 2000 network interface

8 Branch Office Connectivity Design

9 NAT in the Network Design

10 NAT Server Interfaces Minimum of two network interfaces Persistent or nonpersistent connections IP address and subnet mask

11 IP Address Assignment NAT automatic address assignment Manual configuration Automatic Private IP Assignment (APIPA) DHCP server

12 DNS Name Resolution Clients need fully qualified domain name (FQDN)–to–IP resolution. Clients use the DNS server to resolve FQDNs. Manually configure for specific DNS servers Specify automatic use of the DNS server NAT

13 Protecting SOHO Network Resources Routing and Remote Access IP packet filters NAT address mapping NAT address pools

14 Restricting Internet Access Use Routing and Remote Access IP packet filters. Restrict outbound traffic by specifying IP headers. Allow or disallow users access to Internet resources.

15 Protecting Corporate Network Resources

16 NAT Optimization Dedicate a computer to running NAT. Choose persistent Internet connection. Consider using Microsoft Proxy Server 2.0 or Routing and Remote Access routing.

17 Chapter Summary NAT is cost effective. The NAT server should be placed between the network and the Internet. Resources can be protected by using Routing and Remote Access packet filters NAT address mapping NAT address pools Use virtual private network (VPN) to protect confidential data. NAT can be optimized.