Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 36 guests online
Free Business and Tech Magazines and eBooks
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
Lab setup Help Needed
EH-Net
May 22, 2013, 05:49:33 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
(Moderator:
don
) >
Lab setup Help Needed
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: Lab setup Help Needed (Read 4101 times)
0 Members and 1 Guest are viewing this topic.
millwalll
Guest
Lab setup Help Needed
«
on:
April 03, 2012, 08:14:29 AM »
Hi all,
Ok so first of all at the moment I have vm lab as much as I enjoy practicing my skills against that I have identified a big gap in my education and now trying to bridge that gap.
I have not worked as sysadmin or in helpdesk role my networking/Windows side is in need of some education. I have been using Windows for over 14 years just not in corporate world (Home user) so know how to perform most task but not had any exposure to active directory,domain contollers so on.
So in order to bridge this gap I am trying to get a job as sysadmin / help desk I am also looking at doing the CCNA once i get study material.
In the meantime I was lucky enough to get my hands on some hardware. I have the following at my disposal:
Dell PowerEdge 1850 Server / Xeon 3.0GHz / 1GB RAM / 2 x 72GB HDD
Dell PowerEdge 1850 Server / Xeon 3.4GHz / 6GB RAM / 2 x 72GB HDD
Dell PowerEdge SC1425 Server / Xeon 3.2GHz / 1GB RAM 120GB HDD
Dell PowerEdge 1850 Server / Dual Xeon 2.8GHz / 2GB RAM / 2 x 72GB HDD
Cisco 2600 router x 2
Cisco 2500 router
Cisco 2900 XL switch
I was thinking of upgrading my lab so it involves this hardware I just really wanted advice on how you would set it all up would you have web server,windows server,sql server ? any advice would be really appreciated. so if you can give me as much information like what os you would install and why.
Thanks a lot
Logged
cd1zz
Hero Member
Offline
Posts: 561
Re: Lab setup Help Needed
«
Reply #1 on:
April 03, 2012, 08:28:03 AM »
I think that is a good plan.
Go get a Technet Subscriber Download subscription and you'll have every OS and app they make at your disposal, for testing only of course.
I would spin up an AD domain, install Exchange, SQL 2000/2005/2008, so you can see what is different. Learn how to add users, run SQL queries. I would also not install any patches on your lab box at first, or at least have a copy of your VM's with no patches. This way you can learn about what missing patches can give you a shell. Also install all that software with security not in mind, so you can also see what happens when you do that. For example, install SQL with a blank or easy SA password and see if you can get a shell.
Make sure you setup an AD domain and know how to dump all the password hashes from AD for example. Know how to add users, know what users have the most power, setup logon scripts, know where to look for those logon scripts. You need to be so comfortable with all this that you don't panic when you're on a pentest. I was in operations for 12 years doing all this stuff and it has paid off immensely in my PT career.
These are just a few examples to get the wheels turning. Bottom line, know what everything does and try to break it.
Logged
OSCE | OSCP | GXPN | OSWP | CISSP
http://www.pwnag3.com
http://www.networkadminsecrets.com
hayabusa
Hero Member
Offline
Posts: 1632
Re: Lab setup Help Needed
«
Reply #2 on:
April 03, 2012, 08:38:25 AM »
Hey Jamie.R,
In addition to what cd1zz said (and that is very important...)
I would set it up to (as closely as possible) mimic a real-world scenario:
1.) use the routers to define at least two 'corporate locations'
2.) Put a web or app server in a DMZ, on one or both sides, and a windows / sql / sharepoint or whataver other, inside the network, but accessible by the stuff in the DMZ (to replicate what most places will have)
3.) setup your vlans on the 2900 switch, as if in the main corporate office
4.) since you have extra servers, use one with some VM's (likely the beefier one) to simulate some clients and other machines in the network.
5.) get comfortable with NAT configuration, and how it affects things
6.) download, setup and configure firewall / IDS / IPS so you can begin to see how they behave, and how your activities do / don't trip them, etc.
That's what I'd do to get some things going, although, if you're starting out for sysadmin learning, etc, focus on the earlier stuff, first (routing / switching and the networking aspects.) Get comfortable with those, as they'll play more roles in security for you, later on.
(Note - you'll likely want to be acquiring some more RAM for those servers, as you'll be limited with what you can do with them, on the lower boundaries you've got, if you want to use them as Windows / app servers.)
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
millwalll
Guest
Re: Lab setup Help Needed
«
Reply #3 on:
April 03, 2012, 08:48:16 AM »
Cool thank for the advice and this is my plain is to try config it as much to a real work as possible the main problems I have is I never done anything like this before so one don't really know what you would find in real world corp environment and two never attempted to set something like this up before hence the reason for doing it.
I don't know really where to start and I think at the moment this is the hardest thing is starting off with maybe one server and getting that setup. I also plan setting up vp connection to the lab once its done. I recently had a job interview and the company like me but they fill they cant take me on as I am now and wanted to me to try learn more about firewalls, ACL, VPNS I also plan adding to the lab once its setup so maybe a firewall too.
Logged
cd1zz
Hero Member
Offline
Posts: 561
Re: Lab setup Help Needed
«
Reply #4 on:
April 03, 2012, 08:50:53 AM »
You may want to start looking at the MCITP or something similar. It will at least give you a framework for what kinds of things are in a M$ shop. Keep in mind, a lot of this exp you would get on the job at in a sys admin or even starting in a help desk role. It's not uncommon to start in HD. You sound motivated so it likely wouldn't be a long stay as a help desk person if you cant get that network admin/sys admin role you want.
Logged
OSCE | OSCP | GXPN | OSWP | CISSP
http://www.pwnag3.com
http://www.networkadminsecrets.com
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Lab setup Help Needed
«
Reply #5 on:
April 03, 2012, 09:12:19 AM »
Great advice so far, and a strong +1 on the Technet subscription. I used that for my MCSE/MCITP studies, and having cheap access to all that enterprise software was a huge benefit.
I'd expand on Hayabusa's #4/note points and tell you to virtualize everything. I believe all those systems are going to be on VMware's ESXi HCL, which is a free bare-metal hypervisor. You can boot that off a 1-2GB thumb drive (I have 2GBs, but I can't remember if that's required) and use all your internal storage for VMs. If you ever need more storage, you can load VMs via NFS instead of purchasing expensive internal storage for those servers.
Even with only 1GB of RAM, you can still get a few light VMs going. XP will easily run with only 64MB and Server 2003 will be fine at 128-256 depending on what you're doing. You'll need more if you add SQL or Exchange, but DCs, web servers, file servers, etc. will be fine with low memory in a lab environment. Many Linux systems will also run very well in the 64-128MB range; just think of all the vulnerable distros you could load
If you get a Technet sub and have access to Server 2008 / 2008 R2, you can also experiment with Hyper-V on the systems that have more RAM (Maybe the 6GB system; 2GB will be pretty lean for that setup). I greatly prefer VMware, but it'd still be good to compare and get acquainted with other technologies.
You'll probably want to add more RAM to those at some point, but you have more than enough to get started with. You could get 20 systems going if you average 512mb RAM per VM.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
hayabusa
Hero Member
Offline
Posts: 1632
Re: Lab setup Help Needed
«
Reply #6 on:
April 03, 2012, 09:36:22 AM »
Quote from: ajohnson on April 03, 2012, 09:12:19 AM
You'll probably want to add more RAM to those at some point, but you have more than enough to get started with. You could get 20 systems going if you average 512mb RAM per VM.
Full agreement. Was just saying that if he started throwing up app servers, the memory was lean.
But ajohnson is absolutely correct. For the basics, you've got a good setup to start loading a lot of barebones os's up on.
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
millwalll
Guest
Re: Lab setup Help Needed
«
Reply #7 on:
April 03, 2012, 09:54:23 AM »
but where best place to start I am total newbi to this sort things should I start with one server and install server 2003 or is 2008 better ? I want try get server done then use the cisco kit for ccna then build as one.
Logged
cd1zz
Hero Member
Offline
Posts: 561
Re: Lab setup Help Needed
«
Reply #8 on:
April 03, 2012, 10:05:49 AM »
Start with 2003. In a run dialog box type DCPROMO. Go from there.
Logged
OSCE | OSCP | GXPN | OSWP | CISSP
http://www.pwnag3.com
http://www.networkadminsecrets.com
Agoonie
Full Member
Offline
Posts: 176
Re: Lab setup Help Needed
«
Reply #9 on:
April 03, 2012, 10:11:56 AM »
Just to add to your environment, try to look on vmware.com for virtual appliances. You can add virtual firewalls and load balancers too to help you learn. But this may require you to beef up your virtual environments memory.
Logged
OSCE, OSCP, OSWP, CISSP, GPEN
www.agoonie.com
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Lab setup Help Needed
«
Reply #10 on:
April 03, 2012, 12:59:56 PM »
If you're not going to follow a cert path, the "Mastering," "Unleashed," and "Inside-Out" books will give you a fairly comprehensive overview for 2003, 2008, and 2008 R2.
Technet is a great resource too. The fifth result of
install active domain 2003 site:technet.microsoft.com
should tell you everything you need to get started.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
millwalll
Guest
Re: Lab setup Help Needed
«
Reply #11 on:
April 03, 2012, 01:13:01 PM »
I dont mind doing some certs but just not sure what best
Logged
millwalll
Guest
Re: Lab setup Help Needed
«
Reply #12 on:
April 04, 2012, 08:55:19 AM »
what would be the best server to setup server 2003/2008 how much memory does it require?
Logged
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Lab setup Help Needed
«
Reply #13 on:
April 04, 2012, 10:12:34 AM »
Quote from: Jamie.R on April 04, 2012, 08:55:19 AM
what would be the best server to setup server 2003/2008 how much memory does it require?
Just google <os version> system requirements
Start with the minimum and add more as you need it. It's going to vary considerably between a base system and a system with Exchange, SQL Server, etc. Review the requirements for whatever you're planning to install and go from there.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
GPEN - GIAC Certified Penetration Tester
: Karen Millen Outlet as an example SFTP
(0) by
dtree28yt
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(27) by
don
Greetings
: Hi from the UK
(2) by
n37sh@rk
Network Pen Testing
: AIX Vulnerability Assessments
(2) by
ras76
Tutorials
: Need guidance
(9) by
hanyhasan
Programming
: Finished Python Course in Codecademy now what?
(15) by
hanyhasan
Network Pen Testing
: Ruby on Rails Vulnerabilities / Attacks in BackTrack 5 r3
(0) by
SUdoctstudent
Network Pen Testing
: De-ICE 1.140 released!
(2) by
superkojiman
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.