Implementation and Configuration of Next-Generation Firewalls and IDS/IPS
Budget: ₹600 – ₹1,500 INR
Project Overview: I am seeking a skilled cybersecurity professional to assist with two critical assignments focused on network security: the installation and configuration of a Next-Generation Firewall (NGFW) using pfSense (or OPNsense) and the deployment of an Intrusion Detection/Prevention System (IDS/IPS) using Snort, Suricata, or Zeek.
Assignment 1: Next-Generation Firewall (NGFW)
Objective:
Install pfSense (or OPNsense) as a virtual machine.
Set up a management PC and a client PC as virtual machines.
Configure the firewall to control internet access, set up a captive portal, and integrate pfBlocker-NG for enhanced security.
Tasks:
Install pfSense in VirtualBox with 1GB RAM and two virtual NICs.
Set up management and client PCs with lightweight operating systems (e.g., Ubuntu).
Configure NTP, basic firewall rules, and restrict internet access for the client PC.
Implement traffic shaping and a captive portal.
Install and configure the pfBlocker-NG package, and set up a Virtual IP for NAT.
Assignment 2: IDS/IPS Implementation
Objective:
Utilize the existing firewall setup to add an IDS/IPS system.
Install and configure Snort, Suricata, or Zeek to monitor network traffic and prevent potential threats.
Tasks:
Set up a NAT to access the internal server using Virtual IP.
Install and configure the chosen IDS/IPS in non-blocking mode.
Test the IDS/IPS by simulating web application attacks and verify alert generation.
Enable blocking mode and confirm that offensive IP addresses are blocked.
Explore and write custom signatures for detection.
Install Zeek, configure it, and demonstrate rule customization.
Assignment 1: Next-Generation Firewall (NGFW)
Objective:
Install pfSense (or OPNsense) as a virtual machine.
Set up a management PC and a client PC as virtual machines.
Configure the firewall to control internet access, set up a captive portal, and integrate pfBlocker-NG for enhanced security.
Tasks:
Install pfSense in VirtualBox with 1GB RAM and two virtual NICs.
Set up management and client PCs with lightweight operating systems (e.g., Ubuntu).
Configure NTP, basic firewall rules, and restrict internet access for the client PC.
Implement traffic shaping and a captive portal.
Install and configure the pfBlocker-NG package, and set up a Virtual IP for NAT.
Assignment 2: IDS/IPS Implementation
Objective:
Utilize the existing firewall setup to add an IDS/IPS system.
Install and configure Snort, Suricata, or Zeek to monitor network traffic and prevent potential threats.
Tasks:
Set up a NAT to access the internal server using Virtual IP.
Install and configure the chosen IDS/IPS in non-blocking mode.
Test the IDS/IPS by simulating web application attacks and verify alert generation.
Enable blocking mode and confirm that offensive IP addresses are blocked.
Explore and write custom signatures for detection.
Install Zeek, configure it, and demonstrate rule customization.
Related categories:
Web Security
Computer Security
Network Administration
Internet Security
Firewall