Ask Software Engineering Expert

Introduction

Information security professionals who are tasked with protecting their organization's technological infrastructure must possess at least a basic understanding of networking. A quick and easy way to understand how systems are networked together is to perform network scanning. Network-scanning tools return results quickly, and are useful for troubleshooting. Network-scanning tools not only teach you how systems interconnect; they also reveal how systems appear on a network.

A network scan of any system might reveal unexpected services or vulnerabilities. Knowing how that system appears to others on the network is most valuable to someone seeking to exploit that system. For example, even though a Web server has a singular purpose, it might present itself on the network as offering many additional services. And while the administrator might be diligent in ensuring the Web service is protected, the other available services may provide a variety of opportunities for attack. These "attack vectors" are most easily identified through network scanning. It's critical that information security professionals use network scanning to identify these attack vectors before an attacker does. This enables the IT professional to mitigate or eliminate these unnecessary risks.

In this lab, you will learn about and practice network scanning. The tools used for the lab are some of the industry's most popular and well-known scanning tools available.

This lab has four parts, which should be completed in the order specified.

In the first part of the lab, you will complete a basic but thorough review of network essentials. This guarantees a foundation on which to build your network-scanning knowledge. Be prepared to gain a deeper understanding of why network-scanning skills are valuable. After research and a case study, you will be ready to perform network scanning on the virtual lab environment provided for you.

In the second part of the lab, you will perform network scanning within the virtual lab environment. The network environment contains multiple subnets and several systems per subnet. You will learn about and make use of the network-scanning application Nmap. Because Nmap is a command-line utility, the lab also makes use of the popular front-end GUI for Nmap, called Zenmap. Using Nmap and Zenmap, you will scan and map out all the connected devices. Your objective for the scan is to identify the operating system (OS) of each devices, services running on those devices, as well as the versions of target services.

The third section of the lab is about managing scan results. Running a network scan produces myriad scan results. This section provides several opportunities to manipulate and manage the results to produce reports and records for later use. Note that the information gathered and reported from this lab will be used in future labs. Therefore, it is important not only to scan correctly, but also to produce reports to be used later.

Finally, if assigned by your instructor, you will explore the virtual environment on your own in the fourth part of the lab to answer a set of challenge questions that allow you to use the skills you learned in the lab to conduct independent, unguided work, similar to what you will encounter in a real-world situation.

Learning Objectives

Upon completing this lab, you will be able to:

Understand the basic principles of networking and network scanning.

Use network-scanning tools, including Nmap and the graphical interface Zenmap.

Prepare and record scanning results be used for a later lab.

Overview
In this lab, you researched and gained an understanding of principles of computer networking and network scanning. You used network-scanning tools such as Nmap and the GUI interface Zenmap. Lastly, you prepared and recorded scan results. These lab results will be used for a future lab.

Lab Assessment Questions & Answers

1. What are some reasons an information security professional would scan a system or network of systems?

2. Why is it important to learn at least a few commonly used ports and their associated services?

3. What TCP/IP protocol relies on a three-way handshake to establish a connection-oriented transmission and how might this handshake assist in network scanning?

4. Between TCP and UDP, which protocol requires less overhead and is generally faster?

5. Give an example of a situation in which an information security professional might use Nmap to verify statements made by a system administrator.

6. Describe the relationship between Nmap and Zenmap.

7. If you wanted to use Nmap for command-line scanning, how would Zenmap help?

8. Describe the different scan profile types you used in Zenmap.

9. What scan profile type can you use to positively identify a system's OS?

10. True or False: The Zenmap application allows you to graphically present the full scanned topology.

11. True or False: The scans performed in Zenmap are automatically saved for later reference after the application is closed.

Software Engineering, Computer Science

  • Category:- Software Engineering
  • Reference No.:- M92254690
  • Price:- $140

Priced at Now at $140, Verified Solution

Have any Question?


Related Questions in Software Engineering

In this assignment you will answer the following questions

In this assignment, you will answer the following questions related to Android platform and Android security design. 1. Describe Android architecture in detail by explaining the four conceptual layers. 2. Describe Androi ...

The research paper for this course is about some of the

The research paper for this course is about some of the best sources of digital evidence for child abuse and exploitation, domestic violence, and gambling according to the National Institute of Justice. Research commerci ...

Research projectin the course we have covered various

RESEARCH PROJECT In the course, we have covered various security and privacy issues that arise in the cyberspace field. We have learned to identify these risks and have discussed the current approaches and developments f ...

Overviewyou are required to modify and logically extend

Overview You are required to modify and logically extend the functionality of a provided code base to implement a game. This requires you to modify the code base as well as create documentation and implement various user ...

Address the following integrating biblical perspectives

Address the following, integrating biblical perspectives where appropriate: Define a hate crime and describe how white supremacist groups use the Internet to spread their message of hate. Explain why hate crime legislati ...

In this assignment you will answer the following review

In this assignment, you will answer the following review questions from the reading materials of the module/week. 1. "What are the key components of a typical P2P application? Describe their functions." 2. "What are the ...

Write reply to this article with references with apa

Write reply to this article with references with APA bibliography. Hate Crimes Over the past couple of years, hate crimes have been on the rise in America's largest cities. Studies show that there were sharp spikes in th ...

Reply to this article with apa referencehate crimes

Reply to this article with APA reference. Hate crimes According to Merriam-Webster, hate crime is any of various crimes (such as assault or defacement of property) when motivated by hostility to the victim as a member of ...

Proposaldesign of an efficient gps tracking system tag for

Proposal Design of an efficient GPS Tracking System (tag) for monitoring small species IMPLEMENTING EMBEDDED SYSTEMS USING SYSML Task Using PapyrusSysML Software (Downloadable online - Evaluation Copy- Latest Version) Mo ...

Write review on this article with apa formatgovernment

Write review on this article with APA format. Government surveillance is a major issue in the United States and globally. Surveillance refers to any collection and processing of personal data, whether, identifiable or no ...

  • 4,153,160 Questions Asked
  • 13,132 Experts
  • 2,558,936 Questions Answered

Ask Experts for help!!

Looking for Assignment Help?

Start excelling in your Courses, Get help with Assignment

Write us your full requirement for evaluation and you will receive response within 20 minutes turnaround time.

Ask Now Help with Problems, Get a Best Answer

Why might a bank avoid the use of interest rate swaps even

Why might a bank avoid the use of interest rate swaps, even when the institution is exposed to significant interest rate

Describe the difference between zero coupon bonds and

Describe the difference between zero coupon bonds and coupon bonds. Under what conditions will a coupon bond sell at a p

Compute the present value of an annuity of 880 per year

Compute the present value of an annuity of $ 880 per year for 16 years, given a discount rate of 6 percent per annum. As

Compute the present value of an 1150 payment made in ten

Compute the present value of an $1,150 payment made in ten years when the discount rate is 12 percent. (Do not round int

Compute the present value of an annuity of 699 per year

Compute the present value of an annuity of $ 699 per year for 19 years, given a discount rate of 6 percent per annum. As