1 chapter 11: dial-up connectivity in remote access designs designs that include dial-up remote...

19
1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts Data Protection in Dial-Up Remote Access Designs Dial-Up Remote Access Design Optimization

Upload: jocelin-robertson

Post on 30-Jan-2016

220 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

1

Chapter 11: Dial-Up Connectivity in Remote Access Designs

Designs That Include Dial-Up Remote Access

Essential Dial-Up Remote Access Design Concepts

Data Protection in Dial-Up Remote Access Designs

Dial-Up Remote Access Design Optimization

Page 2: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

2

Routing and Remote Access Introduction For remote access to private networking

resources, you can use Dial-up Virtual private network (VPN) Remote Authentication Dial-In User Service (RADIUS)

Dial-up access lets you control Remote access servers Modem types and data rates Access phone numbers User accounts Accessibility of private network resources

Dial-up access uses Point-to-Point Protocol (PPP).

Page 3: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

3

Routing and Remote Access and Microsoft Windows 2000

A Windows 2000 feature Remote access client Remote access server

Page 4: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

4

Remote Access Clients and Servers

Page 5: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

5

Dial-Up Remote Access Design Review

Amount of data transmitted Number of locations Existing modems and phone lines Plans for network growth Number of simultaneous clients Operating systems used by clients Protocols used by clients

Page 6: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

6

Dial-Up Remote Access Design Decisions

Integration into existing network Hardware requirements for servers Confidential data protection Availability to remote access users Optimization of network traffic

Page 7: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

7

Dial-Up Remote Access Designs Use dial-up remote access to control all

design aspects. Evaluate cost of ownership issues.

Number of simultaneous remote users Number of locations requiring remote access Monthly phone line costs Initial investment in modems Phone line installation Ongoing support costs

Consider outsourcing to reduce costs.

Page 8: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

8

Number of Remote Access Servers

Determine the maximum number of users.

Determine the sustained data rate. Perform a pilot test. Calculate the number of servers.

Page 9: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

9

Placing Remote Access Servers

Placement goals: Centralize administration Reduce costs Reduce network traffic

Single or multiple location configuration

Page 10: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

10

Single Location Configuration The hardware must support the

maximum number of users. Advantages:

Centralized administration Reduced administration costs

Disadvantages: Increased network traffic on segments Increased telephone charges No redundancy

Page 11: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

11

Multiple Location Configuration The hardware must support the

maximum number of users. Advantages:

Reduced network traffic between segments Reduced telephone charges Redundancy

Disadvantages: Decentralized administration Increased administration costs

Page 12: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

12

Remote Access Client Support Communications ports Transport protocols determined by

Operating system Applications Network management tools Resource servers accessed by client

Network address assignment Manually allocate Automatically assign using Dynamic Host

Configuration Protocol (DHCP)

Page 13: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

13

Preventing Unauthorized Access

Restrict access to resources on the server.

Restrict traffic on the server by using filters. Resources or servers Network segments Traffic types (for example, HTTP)

Place servers on screened subnets.

Page 14: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

14

Preventing Unauthorized Access (Cont.)

Page 15: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

15

Protecting Remote Access Data Authenticate remote users.

Local accounts Active Directory directory service accounts

Encrypt confidential data. Microsoft Point-to-Point Encryption (MPPE) Internet Protocol Security (IPSec)

Enforce remote access policies. Conditions Remote access permissions Profiles

Page 16: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

16

Enhancing Remote Access Availability

Include multiple dial-up remote access servers.

Use backup phone numbers. Dedicate a computer to Routing and

Remote Access.

Page 17: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

17

Improving Remote Access Performance

Upgrade server hardware. Intelligent communications adapters Faster modems Server processor and memory

Distribute clients across multiple servers.

Dedicate a computer to Routing and Remote Access.

Page 18: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

18

Chapter Summary

Dial-up provides control over remote access but is more expensive.

Services include remote access client and server.

Page 19: 1 Chapter 11: Dial-Up Connectivity in Remote Access Designs Designs That Include Dial-Up Remote Access Essential Dial-Up Remote Access Design Concepts

19

Chapter Summary (Cont.)

Your design should Determine maximum number of users and

data rate Use multiple servers Evaluate client needs Protect the private network Improve availability and performance