Multi-Layered Network Security & EVE-NG Setup
Budget: $30 – $250 USD
Network Security Project & EVE-NG Implementation
The goal is to build a modern, multi-layered Defense-in-Depth strategy, strengthen inter-branch connectivity, and harden critical business systems. This includes hands-on technical implementation using EVE-NG (60%), plus documentation deliverables (10%).
Tasks:
IP Addressing & Subnetting
– Departmental subnets, DMZ, firewall zones, scalable addressing for future growth.
L2/L3 Security Controls
– VLANs, ACLs, port security, DHCP snooping, DAI, storm control, and anti-spoofing.
Secure VPN Connectivity
– Encrypted site-to-site tunnels with failover for all branches.
Advanced IDS/IPS Deployment
– Install, tune, and validate IDS/IPS using simulated attacks.
Firewall High Availability
– Deploy active/active firewalls with internal, DMZ, and external zones.
AAA & RBAC Controls
– Integrate TACACS+/RADIUS and configure device-level role-based access.
End-to-End Testing
– Validate ACLs, segmentation, VPN tunnels, failover, firewall rules, and IDS/IPS alerts.
Deliverable -
• Cover page
• Table of contents
• List of figures and tables
• At least 15 academic or technical references (APA)
• Logical network design diagrams
• Eve-ng configuration files (The running configuration files for all devices + screenshots of testing + any relevant evidence)
• Screenshots with configuration explanations
• Conclusion and actionable recommendations
Delivery Deadline: December 12th
Project Files & Detailed Documents: Will be shared privately once we discuss further details.
The goal is to build a modern, multi-layered Defense-in-Depth strategy, strengthen inter-branch connectivity, and harden critical business systems. This includes hands-on technical implementation using EVE-NG (60%), plus documentation deliverables (10%).
Tasks:
IP Addressing & Subnetting
– Departmental subnets, DMZ, firewall zones, scalable addressing for future growth.
L2/L3 Security Controls
– VLANs, ACLs, port security, DHCP snooping, DAI, storm control, and anti-spoofing.
Secure VPN Connectivity
– Encrypted site-to-site tunnels with failover for all branches.
Advanced IDS/IPS Deployment
– Install, tune, and validate IDS/IPS using simulated attacks.
Firewall High Availability
– Deploy active/active firewalls with internal, DMZ, and external zones.
AAA & RBAC Controls
– Integrate TACACS+/RADIUS and configure device-level role-based access.
End-to-End Testing
– Validate ACLs, segmentation, VPN tunnels, failover, firewall rules, and IDS/IPS alerts.
Deliverable -
• Cover page
• Table of contents
• List of figures and tables
• At least 15 academic or technical references (APA)
• Logical network design diagrams
• Eve-ng configuration files (The running configuration files for all devices + screenshots of testing + any relevant evidence)
• Screenshots with configuration explanations
• Conclusion and actionable recommendations
Delivery Deadline: December 12th
Project Files & Detailed Documents: Will be shared privately once we discuss further details.
Related categories:
Computer Security
Network Administration
Internet Security
Documentation
Network Security
VPN
Firewall