.. | ||
configs | ||
diagrams | ||
labs | ||
machines | ||
osquery_project | ||
README.md | ||
rsyslog.md | ||
vyos.md | ||
wazuh.md |
Network Security Controls
Machine | IP Address | Default Gateway | DNS Server | Network | Description |
---|---|---|---|---|---|
fw01 | eth0: 10.0.17.151/24 eth1: 172.16.50.2/29 eth2: 172.16.150.2/24 |
10.0.17.2 | 10.0.17.2 | WAN/DMZ/LAN | VyOS router for all networks |
edge01 | eth0: 10.0.17.151/24 eth1: 172.16.50.2/29 eth2: 172.16.150.2/24 |
10.0.17.2 | 10.0.17.2 | WAN/DMZ/LAN | Assessment VyOS router |
fw-mgmt | eth0: 172.16.150.3/24 eth1: 172.16.200.2/28 |
172.16.150.2 | 172.16.150.2 | LAN/MGMT | VyOS for LAN/MGMT |
web01 | 172.16.50.3/29 | 172.16.50.2 | 172.16.50.2 | DMZ | CentOS Apache server |
nginx01 | 172.16.50.3/29 | 172.16.50.2 | 172.16.50.2 | DMZ | Ubuntu NGINX server |
log01 | 172.16.50.5/29 | 172.16.50.2 | 172.16.50.2 | DMZ | CentOS log server |
jump | 172.16.50.4/29 | 172.16.50.2 | 172.16.50.2 | DMZ | SSH jump host |
wazuh | 172.16.200.10/28 | 172.16.200.2 | 172.16.200.2 | MGMT | Wazuh SIEM server |
mgmt01 | 172.16.150.10/24 | 172.16.150.2 | 172.16.150.2 | LAN | Ubuntu admin station |
mgmt02 | 172.16.200.11/28 | 172.16.200.2 | 172.16.200.2 | MGMT | Windows admin server |
wks01 | 172.16.150.50/24 | 172.16.150.2 | 172.16.150.2 | LAN | Windows workstation |
rw01 | 10.0.17.51/24 | 10.0.17.2 | 10.0.17.2 | WAN | Ubuntu road warrior |
traveler | 10.0.17.51/24 | 10.0.17.2 | 10.0.17.2 | WAN | Windows road warrior |
dhcp01 | 172.16.150.151/24 | 172.16.150.2 | 172.16.150.2 | LAN | Ubuntu DHCP server |
Note: fw01 was replaced by edge01, web01 was replaced by nginx01, log01 was repurposed as jump, and rw01 was replaced by traveler