Proxy Security – Module 1

  • Squid Proxy Initialization, Discuss Squid concepts & applications
  • Configure DNS on primary SuSE Linux server for the Squid Proxy environment
  • Confirm DNS environment, Start Squid and evaluate default configuration
  • Install Squid Proxy server

General Proxy Usage

  • Configure web browser tutilize proxy services,
  • Grant permissions tpermit local hosts tutilize proxy services
  • Discuss ideal file system layout – partitioning
  • Explore key configuration files, Use client ttest the performance of proxy services
  • Discuss HIT/MISS logic for serving content
  • Configure proxy support for text-based (lftp/wget/lynx) HTTP clients

Squid Proxy Logs

  • Discuss Squid Proxy logging mechanism
  • Discuss & explore the Access log tidentify HITS and/or MISSES
  • Discuss & explore the Store log tidentify cached content
  • Convert Squid logs tthe Common Log Format (CLF) for easy processing
  • Configure Webalizer tprocess Squid-CLF logs
  • Configure Webalizer tprocess Squid Native logs

Squid Network Configuration & System Stats

  • Discuss cachemgr.cgi Common Gateway Interface(CGI) script
  • Explore the available metrics provided by cachemgr.cgi
  • Change default Squid Proxy port, Modify text/graphical clients and test communications
  • Discuss Safe Ports – usage & applications

Squid Access Control Lists (ACLs)

  • IntrtAccess Control Lists (ACLs) – syntax
  • Define & test multiple HTTP-based ACLs
  • Define & test ACL lists – tsupport multiple hosts/subnets
  • Implement destination domain based ACLs
  • Exempt destination domains from being cached tensure content freshness
  • Discuss the benefits of Regular Expressions (Regexes)
  • Implement Regular Expressions ACLs tmatch URL patterns
  • Exempt hosts/subnets from being cached or using the Squid cache
  • Configure enterprise-class CiscPIX firewall tdeny outbound traffic
  • Configure DNS round-robin with multiple Squid Proxy caches for load-balancing
  • Discuss delay pool concepts & applications – bandwidth management
  • Configure delay pools – tsupport rate-limiting
  • Examine results of various delay pool classes
  • Enforce maximum connections to deter Denial of Service (DoS) attacks
  • Verify maximum connections comply with security policy

Download

Play games on itechub.com


Related posts:

  1. Difference Between Windows 7 Home Premium, Professional & Ultimate Editions
  2. IBM Rational Application Developer V6.0 training
  3. CheckPoint NGX R65 CBT Training
  4. Ubuntu Linux Toolbox: 1000+ Commands for Ubuntu and Debian Power Users
  5. Cisco Exam Pack 642-524 SNAF (Securing Networks with ASA Foundation)
  6. Exam 70-351 : Microsoft Internet Security and Acceleration Server 2006, Configuring
  7. Exam 70-350 : Implementing Microsoft Internet Security and Acceleration (ISA) Server 2004
  8. Exam-Pack 70-270 : Windows XP Vol 1 (Implementing, administrating and installing Windows XP Professional desktop operating system).
  9. Cisco ASA Configuration (Networking Professional’s Library)
  10. IP Address Classes

Leave a Reply

(required)

(required)

© 2010 itechub.com Suffusion WordPress theme by Sayontan Sinha