VU23218: Implement Network Security Infrastructure for an Organisation

Download Solution Order New Solution

Disclaimer

This resource was developed by Holmesglen Institute of TAFE in 2024 for the State of Victoria (Department of Education and Training) for educational purposes, is © State of Victoria (Department of Education and Training) and is available under a Creative Commons Attribution Non-commercial 4.0 International (CC BY-NC 4.0) license.

The license does not apply to:
• Trademarks or branding (including the Victorian Government logo)
• Any unattributed content supplied by third parties

Section A : Program / Course Details

Field Details Qualification Code(s) 22603VIC Qualification Title Certificate IV in Cyber Security Unit Code VU23218 Unit Title Implement network security infrastructure for an organisation Pre/Co-Requisites VU23213 : Utilize basic network concepts and protocols required in cyber security

Section B : Assessment Task Details

Field Details Assessment Number 2 of 2 Semester / Year 1 / 2025 Due Date 19/05/2025 Duration 50 hours Assessment Result ☒ Ungraded (Satisfactory / Not Yet Satisfactory)

Section C : Instructions to Learners

This is Assessment Task 2 of 2 for this unit. It contains PART A (Knowledge Questions) and PART B (Portfolio / Practical Evidence).

PART A : Scenario-Based Knowledge Questions

  • Provide answers in your own words.

  • Include screenshots of your device configurations (routers/switches/PCs/servers).

PART B : Practical Components

This section has four parts:

Part 1: Identifying Project Requirements

Write 50:100-word responses and attach required screenshots.

Part 2: Configure Basic Device Settings

  • Configure and secure the network as per the scenario.

  • Provide screenshots.

Part 3: Control Administrative Access for Routers

  • Implement AAA, SSH, banners, password security.

  • Provide screenshots.

Part 4: Implement Firewall Technologies

  • Create and apply an extended ACL.

  • Verify traffic.

  • Provide screenshots.

General Requirements

  • Complete all answers within this document.

  • All answers must meet marking criteria.

  • You may use Brightspace resources and the internet but must write in your own words.

  • Submit the signed coversheet and all supporting files in a zipped folder by the due date.

  • Academic honesty and plagiarism rules apply.

Section D : Conditions for Assessment

Key Conditions

  • Individual task.

  • Open book (internet allowed).

  • Must meet all criteria for Satisfactory.

  • Two (2) resubmissions allowed if required.

  • Adjustments available if approved.

  • Appeals allowed under Holmesglen policy.

Equipment Requirements : Student

Students learning remotely or using BYOD must have:

  • Laptop/PC (Quad-Core CPU, 16GB RAM, 250GB storage, 2GHz+)

  • Windows 10 (or VM)

  • Headset with mic (webcam preferred)

  • Internet access

  • Access to:

    • Brightspace

    • Office 365

    • WebEx

    • Chrome

    • Packet Tracer

    • NetLab Virtual Cisco Lab

    • VMware Workstation

Equipment Provided by RTO

  • Computer lab with required specifications

  • Access to Cisco routers, switches, ASA

  • Access to NetLab, NetAcad, Packet Tracer

  • VMware IT Academy access

Section E : Assessment Questions / Criteria

PART A : Knowledge Questions

(Each question includes a Satisfactory checkbox and Comment area)

Question 1 : NGFW

Describe what a next-generation firewall (NGFW) is. List one technology it uses that classic firewalls do not.

Question 2 : Router Serial Link

Using Cisco CLI, configure two routers to communicate via serial link. Provide screenshots.

Question 3 : VPN

a) Difference between remote-access VPN and site-to-site VPN
b) Describe two IPsec protocols
c) Compare two commercial VPN software packages

Question 4 : MFA Implementation

Explain how you would implement Multi-Factor Authentication for an organisation.

Question 5 : (Duplicate of Q4)

(This question is repeated exactly as written in your original document.)

Question 6 : NAC & Monitoring Tools

a) Name and describe 2 Network Access Control examples
b) Provide 3 network monitoring tools + screenshots

Question 7 : Endpoint Security

Describe EPP, EDR, XDR, DLP.

Question 8 : RC4 vs AES

Compare strengths and weaknesses of RC4 and AES.

Question 9 : Cryptology

a) Cryptography vs Cryptanalysis
b) Three primary security objectives + approach

Question 10 : Symmetric vs Asymmetric Encryption

Describe differences and list 3 protocols for each.

Question 11 : NIPS

a) Describe IPS/IDS functions
b) Updating signature files
c) Compare strengths/weaknesses
d) Role of AI/ML

Question 12 : Vigenère Cipher

Decrypt the ciphertext using key “CISCOCCNAS”. Show process/screenshots.

Question 13 : Securing Devices

List 5 actions to secure network infrastructure. Why keep AV updated?

Question 14 : Proxy Server Vulnerabilities

Identify two vulnerabilities and mitigation methods.

Question 15 : WLAN OSI Layers

Describe data exchange between OSI Physical & Data Link layers in WLAN.

Question 16 : WLAN Security Checklist

Write a small business WLAN security checklist.

Question 17: Accessing Cisco Devices

List 3 methods to access CLI and how to secure each.

Question 18: Zone-Based Firewall

Explain zone-based firewall and provide configuration example + screenshots.

PART B : Portfolio / Practical

Checklist

All required items must be submitted:
Part 1 : Project Requirements
Part 2 : Basic Device Settings
Part 3 : Administrative Access & Security
Part 4 : ACL Implementation

PART 1 : Identifying Project Requirements

Complete four items based on brief:

  1. Identify network security architecture required

  2. List three core needs

  3. Identify three modern cyber security threats

  4. Describe two security testing methodologies

PART 2 : Configure Basic Device Settings

Includes configuration & connectivity verification.
Screenshots must show:

  • Full window

  • Name + student ID in Notepad

  • PC date & time

Tasks include IP configuration, OSPF, PC setup, ping/traceroute.

PART 3 : Administrative Access Security

Observed skills:

  • Securing console, VTY, AUX

  • AAA

  • SSH

  • Password policies

  • Banners

  • Verify connectivity

Include screenshots as stated.

PART 4 : Firewall & ACL Implementation

Configure Extended ACL 150 on R3:

  • Block HTTP

  • Permit HTTPS

  • Permit ICMP

  • Apply on correct interface

  • Verify with ping + browser tests

Section F : Feedback to Learner

Includes assessor feedback, resubmission eligibility, assessor signature, learner signature.

Supporting Document 

Company: Impossible Triangle

  • Leading 3D printing service provider

  • Clients upload 3D designs online

  • High web traffic after recent update

Problem

Website exploited as attack entry point.
Recent attacks include:

  • Trojans

  • DoS / DDoS

  • Spoofing

  • Phishing / Spear Phishing

  • MITM

  • Password attacks

Project Requirements

  • Secure all devices

  • Fix default passwords & misconfiguration

  • Use full topology provided

  • Apply best-practice security settings

Addressing Table

(Included exactly as provided : full table retained.)

Summary of Assessment Requirements VU23218 Assessment Task 2

What the assessment requires 

You must complete a two-part assessment (PART A Knowledge Questions; PART B Practical Portfolio) to demonstrate competence in implementing network security infrastructure for an organisation. PART A contains scenario-based written questions on firewalls, VPNs, cryptography, endpoint protection, IDS/IPS, etc. PART B is hands-on: build the topology, configure IPs and OSPF, secure device administration (AAA, SSH, password policies, banners), and implement an extended ACL that controls HTTP/HTTPS/ICMP traffic. All configurations must be evidenced by full-window screenshots that include your name, student ID in a Notepad file, and PC date/time. Submit the completed document plus all working files in a zipped upload to Brightspace by the due date.

Get the Most Out of This Sample Use It Wisely

Before you download the sample solution, remember that it is meant strictly for reference and learning purposes. Many students use these samples to understand structure, formatting, and academic approach but submitting this file as your own can lead to plagiarism penalties, loss of grades, or academic misconduct issues. Always use sample solutions responsibly.

If you need a fresh, plagiarism-free, and fully customized assignment written exactly according to your university guidelines, our team of professional academic writers is ready to help you. Every order comes with original content, detailed explanations, and guaranteed on-time delivery helping you learn better while staying safe from academic risks.

Why Students Prefer Fresh, Custom-Written Solutions

  • 100% original content written from scratch

  • Tailored to your specific topic, instructions, and university format

  • No plagiarism concerns or re-use of existing samples

  • Expert subject specialists handle your work

  • Detailed explanations to help you understand the concepts

  • Timely delivery with unlimited edits as needed

Using the sample can guide your preparation but ordering a personal, professionally written assignment ensures accuracy, originality, and peace of mind.

Download the Sample Solution Order a Fresh Assignment 

Get It Done! Today

Country
Applicable Time Zone is AEST [Sydney, NSW] (GMT+11)
+

Every Assignment. Every Solution. Instantly. Deadline Ahead? Grab Your Sample Now.