Transcript Slide 1

Client
User
• Obtain IP Address
• Gains ability to send IP traffic across network
• User Types URL into Web Browser
• Name Resolution Occurs
• Data Routed Across Internet (Black Box)
Network
Server
• Firewall Determines if Packet Allowed
• TCP Stack Routes Packet to Process
• Web Server Process’s Request
• Web Page Routed Back to User
Network
IP Routing
Every Client on Network
IP Address
Default Gateway
DNS Servers
Default Gateway
Subnet
Troubleshoot Slow Routes
Client
User
• Obtain IP Address
• Gains ability to send IP traffic across network
• User Types URL into Web Browser
• Name Resolution Occurs
• Data Routed Across Internet (Black Box)
Network
Server
• Firewall Determines if Packet Allowed
• TCP Stack Routes Packet to Process
• Web Server Process’s Request
• Web Page Routed Back to User
Network
Name Resolution
server1.serktools.com?
10.0.0.15
ns1.serktools.com
blog.serktools.com?
.com NS
Root NS
.com?
serktools.com
NS
serktools.com?
blog.serktools.com?
67.205.50.110
ns1.comp.com
Client
User
• Obtain IP Address
• Gains ability to send IP traffic across network
• User Types URL into Web Browser
• Name Resolution Occurs
• Data Routed Across Internet (Black Box)
Network
Server
• Firewall Determines if Packet Allowed
• TCP Stack Routes Packet to Process
• Web Server Process’s Request
• Web Page Routed Back to User
Network
Client
User
• Obtain IP Address
• Gains ability to send IP traffic across network
• User Types URL into Web Browser
• Name Resolution Occurs
• Data Routed Across Internet (Black Box)
Network
Server
• Firewall Determines if Packet Allowed
• TCP Stack Routes Packet to Process
• Web Server Process’s Request
• Web Page Routed Back to User
Network
Ports
• TCP (Transmission Control Protocol)
– State, Handshake, Confirmed
• UDP (User Datagram Protocol)
– Stateless, No Confirmation
• Numbers
– 1-1023 Well Known
• 80 = HTTP, 443 = HTTPS, 25 = SMTP, 53 = DNS
– 1024-49151 Registered
• http://www.iana.org/assignments/port-numbers
– 49152-65535 Dynamic
Ports
• DEMO
– Telnet
– NMAP (http://nmap.org/ )
Client
User
• Obtain IP Address
• Gains ability to send IP traffic across network
• User Types URL into Web Browser
• Name Resolution Occurs
• Data Routed Across Internet (Black Box)
Network
Server
• Firewall Determines if Packet Allowed
• TCP Stack Routes Packet to Process
• Web Server Process’s Request
• Web Page Routed Back to User
Network
Sniffing Packets
Hub/Wireless
Sniffing Packets
• DEMO
– Wireshark (http://wireshark.org/ )
– Fiddler2 (http://www.fiddler2.com/)
IPv6
• IPv4
– Address Space = 2^32
– Address Exhaustion Soon (~2011)
• IPv6
– Address Space = 2^128
– Ipsec Built In
Steve Evans
•
•
•
•
Microsoft MVP, Directory Services
Blog – http://SerkTools.com
Twitter - @scevans
President of SerkTools (http://SerkTools.com)
– Content Creation for Customers
• Screencast, Whitepapers, Blogging, Events
– Consulting
• Microsoft IT Infrastructure (Active Directory, SQL,
SharePoint, Exchange, Identity, etc)
• Cloud Computing (especially AWS)