Cyber Security I. Netzplan: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
 
(17 dazwischenliegende Versionen desselben Benutzers werden nicht angezeigt)
Zeile 1: Zeile 1:
{{#drawio:cybersec-1-plan}}
+
==Übersicht==
 +
{{#drawio:cybersec-1.1-plan}}
 +
 
 +
==IPv4==
 +
*'''gateway 192.168.Y.254'''
 +
*'''nameserver 78.47.133.194'''
 +
*'''externe Domain labXX.linuggs.de'''
 +
*'''interne Domain labXX.int'''
 +
{| class="wikitable"
 +
! Teilnehmer !! Labor !! Netz !! Öffentliche Adresse !! CLIENTS !! SERVER !! DMZ
 +
|-
 +
| TN01 || lab00 || 172.26.0.0/22 || 192.168.Y.21 || 172.26.1.0/24 || 172.26.2.0/24 || 172.26.3.0/24
 +
|-
 +
| TN02 || lab04 || 172.26.4.0/22 || 192.168.Y.22 || 172.26.5.0/24 || 172.26.6.0/24 || 172.26.7.0/24
 +
|-
 +
| TN03 || lab08 || 172.26.8.0/22 || 192.168.Y.23 || 172.26.9.0/24 || 172.26.10.0/24 || 172.26.11.0/24
 +
|-
 +
| TN04 || lab0c || 172.26.12.0/22 || 192.168.Y.24 || 172.26.13.0/24 || 172.26.14.0/24 || 172.26.15.0/24
 +
|-
 +
| TN05 || lab10 || 172.26.16.0/22 || 192.168.Y.25 || 172.26.17.0/24 || 172.26.18.0/24 || 172.26.19.0/24
 +
|-
 +
| TN06 || lab14 || 172.26.20.0/22 || 192.168.Y.26 || 172.26.21.0/24 || 172.26.22.0/24 || 172.26.23.0/24
 +
|-
 +
| TN07 || lab18 || 172.26.24.0/22 || 192.168.Y.27 || 172.26.25.0/24 || 172.26.26.0/24 || 172.26.27.0/24
 +
|-
 +
| TN08 || lab1c || 172.26.28.0/22 || 192.168.Y.28 || 172.26.29.0/24 || 172.26.30.0/24 || 172.26.31.0/24
 +
|-
 +
| TN09 || lab20 || 172.26.32.0/22 || 192.168.Y.29 || 172.26.33.0/24 || 172.26.34.0/24 || 172.26.35.0/24
 +
|-
 +
| TN10 || lab24 || 172.26.36.0/22 || 192.168.Y.30 || 172.26.37.0/24 || 172.26.38.0/24 || 172.26.39.0/24
 +
|-
 +
| TN11 || lab28 || 172.26.40.0/22 || 192.168.Y.31 || 172.26.41.0/24 || 172.26.42.0/24 || 172.26.43.0/24
 +
|-
 +
| TN12 || lab2c || 172.26.44.0/22 || 192.168.Y.32 || 172.26.45.0/24 || 172.26.46.0/24 || 172.26.47.0/24
 +
|-
 +
| TN13 || lab30 || 172.26.48.0/22 || 192.168.Y.33 || 172.26.49.0/24 || 172.26.50.0/24 || 172.26.51.0/24
 +
|-
 +
| TN14 || lab34 || 172.26.52.0/22 || 192.168.Y.34 || 172.26.53.0/24 || 172.26.54.0/24 || 172.26.55.0/24
 +
|}
 +
 
 +
=Weiteres=
 +
;Offizielle Zertifikate
 +
*https://web.samogo.de/certs/
 +
;drawio rpm runterladen und installieren
 +
*https://github.com/jgraph/drawio-desktop/releases/tag/v24.7.17
 +
 
 +
=Netzplan=
 +
*wget https://xinux.de/downloads/linuggs.de/cybersec1.drawio.svg
 +
=Wie passe ich einen Debian/Ubuntu Rechner an=
 +
;Resolver
 +
*cat /etc/resolv.conf
 +
nameserver 78.47.133.194
 +
search lab34.linuggs.de
 +
;Netzwerk
 +
*cat /etc/network/interfaces
 +
auto enp0s3
 +
iface enp0s3 inet static
 +
  address 172.26.55.2/24
 +
  gateway 172.26.55.1
 +
;Hostnamen setzen
 +
*hostnamectl set-hostname opfer.lab34.linuggs.de
 +
;Lokale Hostnamensauflösung
 +
*cat /etc/hosts
 +
127.0.0.1 localhost.localdomain localhost
 +
::1 localhost6.localdomain6 localhost6
 +
'''172.26.55.2    opfer.lab34.linuggs.de opfer'''
 +
# The following lines are desirable for IPv6 capable hosts
 +
::1    localhost ip6-localhost ip6-loopback
 +
fe00::0 ip6-localnet
 +
ff02::1 ip6-allnodes
 +
ff02::2 ip6-allrouters
 +
ff02::3 ip6-allhosts
 +
=Portforwarding=
 +
*192.168.12.34:9923 -> 172.26.55.2:22
 +
*192.168.12.34:9924 -> 172.26.53.52:22

Aktuelle Version vom 16. Juni 2025, 07:58 Uhr

Übersicht

IPv4

  • gateway 192.168.Y.254
  • nameserver 78.47.133.194
  • externe Domain labXX.linuggs.de
  • interne Domain labXX.int
Teilnehmer Labor Netz Öffentliche Adresse CLIENTS SERVER DMZ
TN01 lab00 172.26.0.0/22 192.168.Y.21 172.26.1.0/24 172.26.2.0/24 172.26.3.0/24
TN02 lab04 172.26.4.0/22 192.168.Y.22 172.26.5.0/24 172.26.6.0/24 172.26.7.0/24
TN03 lab08 172.26.8.0/22 192.168.Y.23 172.26.9.0/24 172.26.10.0/24 172.26.11.0/24
TN04 lab0c 172.26.12.0/22 192.168.Y.24 172.26.13.0/24 172.26.14.0/24 172.26.15.0/24
TN05 lab10 172.26.16.0/22 192.168.Y.25 172.26.17.0/24 172.26.18.0/24 172.26.19.0/24
TN06 lab14 172.26.20.0/22 192.168.Y.26 172.26.21.0/24 172.26.22.0/24 172.26.23.0/24
TN07 lab18 172.26.24.0/22 192.168.Y.27 172.26.25.0/24 172.26.26.0/24 172.26.27.0/24
TN08 lab1c 172.26.28.0/22 192.168.Y.28 172.26.29.0/24 172.26.30.0/24 172.26.31.0/24
TN09 lab20 172.26.32.0/22 192.168.Y.29 172.26.33.0/24 172.26.34.0/24 172.26.35.0/24
TN10 lab24 172.26.36.0/22 192.168.Y.30 172.26.37.0/24 172.26.38.0/24 172.26.39.0/24
TN11 lab28 172.26.40.0/22 192.168.Y.31 172.26.41.0/24 172.26.42.0/24 172.26.43.0/24
TN12 lab2c 172.26.44.0/22 192.168.Y.32 172.26.45.0/24 172.26.46.0/24 172.26.47.0/24
TN13 lab30 172.26.48.0/22 192.168.Y.33 172.26.49.0/24 172.26.50.0/24 172.26.51.0/24
TN14 lab34 172.26.52.0/22 192.168.Y.34 172.26.53.0/24 172.26.54.0/24 172.26.55.0/24

Weiteres

Offizielle Zertifikate
drawio rpm runterladen und installieren

Netzplan

Wie passe ich einen Debian/Ubuntu Rechner an

Resolver
  • cat /etc/resolv.conf
nameserver 78.47.133.194
search lab34.linuggs.de 
Netzwerk
  • cat /etc/network/interfaces
auto enp0s3
iface enp0s3 inet static
 address 172.26.55.2/24
 gateway 172.26.55.1
Hostnamen setzen
  • hostnamectl set-hostname opfer.lab34.linuggs.de
Lokale Hostnamensauflösung
  • cat /etc/hosts
127.0.0.1	localhost.localdomain	localhost
::1		localhost6.localdomain6	localhost6
172.26.55.2    opfer.lab34.linuggs.de opfer
# The following lines are desirable for IPv6 capable hosts
::1     localhost ip6-localhost ip6-loopback
fe00::0 ip6-localnet
ff02::1 ip6-allnodes
ff02::2 ip6-allrouters
ff02::3 ip6-allhosts

Portforwarding

  • 192.168.12.34:9923 -> 172.26.55.2:22
  • 192.168.12.34:9924 -> 172.26.53.52:22