2.3 SOHO Networks Flashcards

1
Q

SOHO network

A

Small office/home office network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

SOHO router

A

All in one device

  • modem, router, switch, wireless AP (access point), firewall)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Routing and switching (soho)

A

Connects to outside world via DSL connection or cable modem
- routes between internal private network and external internet

  • switches built in - typical 4 vlans, devices can be plugged in with ethernet cable

Not much to configure, just plug in and turn on

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Access point settings (soho)

A

Setting options

  • you can enable or disable frequencies
    • decide which bands to communicate on - 2.4GHz and or 5 GHz

Configure SSID (name of network)

  • choose security mode
  • –wpa2 preffered
  • can set pre-shared key or enterprise (everyone puts in own password)

Can decide what channel is used to provide connectivity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

IP addressing (Soho router)

A
  • need IP address for WAN and LAN on Soho router

WAN

  • —automatically assigned by DHCP from ISP
  • -some may require authentication

LAN
Soho router is DHCP server in itself
Plug in device and router will assign an IP automatically

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

NIC configuration (Soho router)

A

2 options wired & wireless

Plug in through Wired option

  • will configure on its own…
  • —speed: 10/100/1000 megabits/s
  • duplex: half/full

Wireless

  • Enable/disable wireless adapter
  • Select SSID (network name)
  • password
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

End user-device configuration

A

2 options: manually and automatic

should have automatic option for tcp/IP (how IP is assigned)

  • using DHCP (automtic)
  • manually ( you type in IP)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Internet of things (IOT)

A

Mostly wireless

  • Thermostat
  • door lock
  • lights
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Firewall And DMZ ports (configuring SOHO)

A

Every SOHO router is also a fire

  • no external device can directly access the internal network
  • cant be disabled

DMZ (demilitarized ports) can be configured to allow unrestricted access
- not usually good idea

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

NAT (in SOHO router)

A
Network address translation 
Aka PAT (port address translation)

translates all internal IP address in LAN to appear as one IP address in WAN. (Person inside network sends to router, Nat In router will translate what the real IP was to the generic router IP and forward out to WAN with that new IP)

  • NAT knows real IP because it saves which ports things are coming from and associates original IP with it
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Port Forwarding

A

Allows 24/7 access to a service that is internally on the network

Makes it so an Internal device is available externally

If external IP on router is accessed through a specific port that you have set to be forwarded to an internal port it will automatically have access to that feature

Ex: IP 45 was accessed through port 80. I have that port set up for automatic forwarding, router will now forward the message to the IP associated with that port

Rule doesn’t expire

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

UPnP

A

Universal plug and play

Allows network devices to automatically configure and find other network devices
- zero configuration

Used for applications on internal network to communicate through ports

Port only open when application is open and disabled when they’re closed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Whitelist/blacklist (Soho router)

A

Router allows you to filter content

Whitelist

  • only items listed are let in and nothing else
  • nothing passes through firewall unless site is listed as allowed (approved)
  • very restrictive

Blacklist

  • nothing on the “bad list”
  • lists what shouldn’t be allowed and everything else is let in
  • can be certain URL’s
  • Domain names
  • IP addresses
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

MAC filtering

A

Media access control
- the hardware address

Can configure firewall to block certain Mac addresses
- ex: neighbors

Not best security technique because mac addresses can be spoofed( faked/changed) to get around the block that’s on your router

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Wireless channels & encryption (Soho router)

A

If using wireless configure for highest encryption possible

Good configuration

  • WPA2-AES
  • WPA2 better than EPA
  • do not use WEP (vulnerable)

Check encryption setting for WAP as well

With lots of WAPs check frequency so not conflicting with other devices in area.
- change channel settings for this

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Managing QoS (soho)

A

If router has this option…

Change priority of traffic for applications
- ex: voice- set as high, others as low

Prioritizes through ports and mac addresses

Careful not to prioritize incorrectly and slow down an application you didn’t intend to.