Network Services Update Bruce Campbell Director, Network Services Information Systems and Technology January 14,2011.

Slides:



Advertisements
Similar presentations
Agenda Benefits of Campus LAN Other Benefits Survey Prerequisities
Advertisements

NETWORK TRANSFORMATION THROUGH VIRTUALIZATION
Selecting the Right Network Access Protection (NAP) Architecture Infrastructure Planning and Design Published: June 2008 Updated: November 2011.
Chapter 3: Planning a Network Upgrade
IPv6 Planning and Implementation at PSU.  1986 – PSU gets Class B network ( ) & 5 Class C networks  1988 – Department of Computer.
UAB VPN Service David Wolford, Communications Network Specialist.
Computer Engineer -- Network and Operating System Specialization Prepared By: Eng.Alaaeddin B. Al-Qazzaz.
Secure Computing Network
1 10/31/05 NETWORK PLANNING TASK FORCE Information Security.
UNITS meeting September 30, 2004 Network Security Roger Safian
This work is supported by the National Science Foundation under Grant Number DUE Any opinions, findings and conclusions or recommendations expressed.
Technology Update TSAG Meeting 11/14/02. Announcements: Spam Open Forum  Monday November 18, 2pm-3pm  OV Presentation Room Campus Operations Center:
Communications Infrastructure Committee Update for LAN Managers Friday, May 27, 2011.
Data Center and Network Planning and Services Mark Redican IET CCFIT Update Feb 13, 2012.
Treaded Case Study Computer Networks 2002 Daire Sheriden Ronan Monaghan Mark Gilmore.
Internet Service Provisioning Phase - I August 29, 2003 TSPT Web:
1 October 20-24, 2014 Georgian Technical University PhD Zaza Tsiramua Head of computer network management center of GTU South-Caucasus Grid.
ICT Department “Keeping our Customers Happy”
Emergency Notification implications to networking Bruce Campbell Information Systems and Technology.
Natick Public Schools Technology Presentation February 6, 2006 Dennis Roche, CISA Director of Technology.
DECS Community IT DIVISION OF ENGINEERING COMPUTING SERVICES Michigan State University College of Engineering.
1. 1. Overview: Telecommunications Project  Planning and implementation (2007-today) 2. Discussion: Proposal to Improve Infrastructure  Upgrade horizontal.
ESubnet Enterprises Inc. Richard Danielli, eSubnet Higher sales volumes through high network availability INTIX 2010.
Dell ProSupport: Networking support capabilities update
Security Professional Services. Security Assessments Vulnerability Assessment IT Security Assessment Firewall Migration Custom Professional Security Services.
Solutions for BDMHS  JF&C is a highly qualified company that performs a wide variety if technical services in the Chicago land area to business, government.
1 Prepared by: Les Cottrell SLAC, for SLAC Network & Telecommunications groups Presented to Kimberley Clarke March 8 th 2011 SLAC’s Networks.
CD FY09 Tactical Plan Status FY09 Tactical Plan Status Report for Site Networking Anna Jordan April 28, 2009.
Supercomputing Communications Data NCAR Scientific Computing Division NETS 12/10/ Network Engineering & Telecommunications Section Update Jim Van.
Information Technology Study Fiscal Crisis and Management Assistance Team (FCMAT) Las Virgenes Unified School District Presented By: Leslie Barnes Steve.
Computer Science Computing Facility Technical Staff supporting the School of Computer Science.
1 Second ATLAS-South Caucasus Software / Computing Workshop & Tutorial October 24, 2012 Georgian Technical University PhD Zaza Tsiramua Head of computer.
CAEN Wireless Network College of Engineering University of Michigan October 16, 2003 Dan Maletta.
Update on Campus Networks December 2009 Bruce Campbell Director, Network Services Information Systems and Technology.
VolNet2 Bill White Network Services. September 20, 2004OIT Fall Staff Meeting Why Volnet2? Based on the Security Assessment findings Insecure protocols.
1 Network-level Security at UVa Jim Jokl Common Solutions Group January 2006.
Information MSU Through the eyes of the users! Dewitt Latimer, Ph.D. Chief Information Officer
Technology Update October Bring Your Own Device (BYOD) Different stages of implementation (contingent on wireless infrastructure) Full School Partial.
March 15, 19991Matt Bishop Recommendations for One- Time Instructional Technology Funds Usage Instructional Technology Infrastructure Subcommittee, Academic.
Based on work by DoIT Network Services, UW-Madison The Network and the Role of Tools January 6, 2006 Ron Kraemer, Deputy CIO.
The Next Generation Wireless Yuri Kolomiyets Network Services Information Systems and Technology.
Terri Lahey Control System Cyber-Security Workshop October 14, SLAC Controls Security Overview Introduction SLAC has multiple.
Cell and Wifi Service Bruce Campbell Director, Network Services Information Systems and Technology January 18, 2011.
BNL Tier 1 Service Planning & Monitoring Bruce G. Gibbard GDB 5-6 August 2006.
Update on Campus Network Upgrades, Activities, Directions, etc Bruce Campbell Director, Network Services Information Systems and Technology.
Defense in Depth. 1.A well-structured defense architecture treats security of the network like an onion. When you peel away the outermost layer, many.
CISCO NETWORKING ACADEMY Chabot College ELEC Internet Security Introduction.
6.1 © 2004 Pearson Education, Inc. Exam Designing a Microsoft ® Windows ® Server 2003 Active Directory and Network Infrastructure Lesson 6: Designing.
Backup Exec System Recovery. 2 Outline Introduction Challenges Solution Implementation Results Recommendations Q & A.
Education – Partnership – Solutions Information Security Office of Budget and Finance Christopher Giles Governance Risk Compliance Specialist The Internet.
Job offer IT Infrastructure Specialist We are currently looking for an IT infrastructure specialist in order to respond to one key-account customer demand.
© 2003, Cisco Systems, Inc. All rights reserved. 2-1 Campus Network Design.
This work was performed under the auspices of the U.S. Department of Energy by Lawrence Livermore National Laboratory under contract DE-AC52-07NA27344.
City of Hyattsville City Council IT Briefing October 19, 2015 dataprise.com | #ITinRealLife.
Wireless Expansion Update Greg Redder Academic Computing & Networking Services 2/17/09.
Cosc 5/4765 NAC Network Access Control. What is NAC? The core concept: –Who you are should govern what you’re allowed to do on the network. Authentication.
INTERNATIONAL ISLAMIC UNIVERSITY MALAYSIA (IIUM)
FY09 Tactical Plan Status Report for Site Networking
Welcome To : Group 1 VC Presentation
NTC 320 Competitive Success-- snaptutorial.com
NTC 320Competitive Success/snaptutorial.com
NTC 320 Education for Service-- snaptutorial.com
NTC 320 RANK Knowledge is divine-- ntc320rank.com.
NTC 320 RANK Perfect Education/ ntc320rank.com.
NTC 320 Teaching Effectively-- snaptutorial.com
NTC 320 Education for Service-- snaptutorial.com
Based on work by DoIT Network Services, UW-Madison
Topic What is Network & Network Security ? Network Security Companies
Yale University Ivy Update
Implementing Firewalls
Presentation transcript:

Network Services Update Bruce Campbell Director, Network Services Information Systems and Technology January 14,2011

Network Management IST responsible for campus network management as of January 1, 2011 – Monitoring – Repair/replacement of failed equipment – Expansion – Evolution of services in consultation with stakeholders Time and materials charges for network cabling IST funds incremental expansion of network, and is responsible for seeking funding for major campus network upgrades as needed. Network equipment for new buildings and major renovations charged to building/renovation project.

Firewalls The University’s networks are generally open and not firewalled. Several firewall deployments do exist: – Juniper SRX firewalls for point of sale devices in SLC and SCH – Juniper SRX firewall cluster for IST machine room – Sonicwall in Civil Engineering – Juniper Netscreen in Computer Science

Firewall Support IST supports the Juniper SRX product Civil Engineering : proposing replacing Sonicwall with small SRX or ACLs on router Computer Science : preparing to deploy used SRX 650’s coming out of service from wireless NAT (larger units being deployed for wireless NAT)

Firewalls Consult with IST IT Security group Firewalls are needed in some cases for PCI compliance, or as recommended by auditor. Provide a layer of security. Little apparent correlation between compromised systems and firewalls (or lack thereof) – difficult to measure effectiveness. (hard to say what didn’t get broken into) Many compromises are related to phishing, malware – difficult to address. Can add complexity and cost, and impact service (ease of use). Consult with IST IT Security group !

Campus VPN Service Campus project, lead by Trevor Grove of CSCF, to select a VPN solution for faculty, grad students and staff. To provide simplified/secure access to some applications, from off campus, as needed. Looked at Cisco, Juniper, Microsoft and open source. Cisco ASA 5540 chosen. Procurement of redundant pair in progress, IST to begin implementation within a month. Expecting users.

IP Addresses We are running out of subnets ! The University has 65,536 public IP address available ( /16) This is generally broken into 256 subnets of 256 addresses each (with exceptions) Only 14 such subnets left (5%) We expect to be out of subnets by the end of 2011, as each new building will require several subnets. A major campus effort is needed to optimize use of the campus IP address space. Discussions have started at CTSC and CNAG. Technical effort is not difficult, but it can be time consuming. Involves changing IP addresses on computers, working with end users.