The GIAC
Red Team Assessment of Firewall Architecture
Pages
26
Time to read
42 mins
Publication
Language
English
Pages
26
Time to read
42 mins
Publication
Language
English
This technical report presents a Red Team assessment of a firewall architecture designed by Dujko Radovnikovic for a SANS Security practical assignment. The assessment aims to evaluate the security of a Linux-based firewall environment configured with IPChains. The author replicates the original setup, which includes a Linux SlackWare box acting as a firewall and a Windows 98 machine simulating a victim. The report details the configuration of IPChains rules that allow specific TCP port access for web and FTP services. It outlines the methodology used in the assessment, including reconnaissance, scanning, and exploiting systems, following guidelines from the SANS Computer and Network Hacker Exploits course. The report documents the steps taken during the attack process, including the tools used, such as Nmap and Nessus, and the results of various tests conducted to identify vulnerabilities in the firewall and host configurations. The author aims to provide a clear and replicable account of the assessment process.