Consider a routing environment within a large, public sector security-conscious
ID: 3891731 • Letter: C
Question
Consider a routing environment within a large, public sector security-conscious organisation; all traffic leaving its AS is encrypted using a variety of techniques including SSL, encrypted ZIP files and VPN end-points. There are two ISPs providing connectivity across the Internet and no private network links (such as dark fibre) are used. . List and describe any routing weaknesses that could cause a loss of confidentiality [8 marks] Describe under what conditions encrypted traffic could be dropped by an ISP that is forwarding the encrypted traffic through its AS I8 marks] .Explanation / Answer
Answer 1 :
Routing Weaknesses :
1. Data Overhead
Dissimilar to a point-to-point "layer 2" connect, routers include extra IP-based headers. These headers incorporate data, for example, source and goal addresses, UDP data and checksums. These headers are connected to each payload of data. Extensive bits of data are regularly broken into a large number of littler headers, influencing this header data to devour a level of the aggregate accessible bandwidth. Moreover, the routers communicate refreshes on the network keeping in mind the end goal to keep up routing tables. Whenever possible, killing the directed network condition will offer an ostensible speed pick up.
2. Entangled Setup
The previously mentioned switch requires NAT to be set up. Likewise, every computer must be relegated a private IP address that is commonly sorted out by a DHCP server. This is required for the least complex associations. Interfacing with extra IP-based networks includes extra complexity through routing tables - a table that portrays the best course to reach a coveted network. In the event that IP communication or video administrations are to keep running on the IP network, you'll likewise need to think about nature of administration arrangements. QoS organizes one sort of movement, for example, voice, over others when bandwidth is restricted. As extra administrations are included, more setup winds up expected of the course.
DEAR PLEASE DO RATE IT IF HELPS ELSE LET ME KNOW YOUR DOUBT.
KINDLY POST SEPARATELY AS WE ARE RESTRICTED TO ANSWER MORE THAN ONE QUESTION FROM MULTIPLE POSTED QUESTIONS.
THANK YOU!!!