Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 41 guests and 2 members online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow building a windows enterprise hacking lab suggestions?
EH-Net
May 22, 2013, 03:31:15 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: building a windows enterprise hacking lab suggestions?  (Read 6615 times)
0 Members and 1 Guest are viewing this topic.
jinwald12
Jr. Member
**
Offline Offline

Posts: 77



View Profile
« on: April 20, 2012, 07:41:15 PM »

Ok, so i have used linux based labs to practice network hacking for a while now. But now i want to build a virtual network that will emulate a windows enterprise network, i currently have set up a DC/DNS server a web server i intend to put vulnerable asp web apps on i also set up a SMB share server all in Windows 2003 R2 and i will add clients varying from XP SP3 to Windows 7 and vista (to simulate the ever changing landscape of a large network) i will add Cisco IOS gns3 vms and i may add a UC/VOIP system running traffic generation scripts. My question is what other services or network appliances should  i add to make this as realistic a lab as possible, keep in mind that while i can run VMs of alot of things i am on a student budget so alot of hardware components are not available to me. Thanks in advance for what ever advice you may give.
Logged

where did all the fun go?
cd1zz
Hero Member
*****
Offline Offline

Posts: 561


View Profile WWW
« Reply #1 on: April 20, 2012, 09:27:13 PM »

That is a hell of a start. Add some SQL, mysql, apache, sharepoint... just to name a few more! I think you'll have your hands full.
Logged

jinwald12
Jr. Member
**
Offline Offline

Posts: 77



View Profile
« Reply #2 on: April 20, 2012, 10:59:52 PM »

based on the resources available to me and my goal to stick to M$ products i will go with MS SQL server may add fake spoils as entries in the database now that i think about it, i also will add a fedora Snort box because from what i understand that is a common IDS setup, and how could i forget? a Mail server?!!  i may add actual mail accounts and internal emails for lulz and realism sake maybe a sharepoint like you said any one else have any ideas?
Logged

where did all the fun go?
ziggy_567
Sr. Member
****
Offline Offline

Posts: 361


View Profile
« Reply #3 on: April 21, 2012, 12:10:47 PM »

You got an extra AS400 lying around?!?!  Grin Grin Grin
Logged

--
Ziggy


eCPPT - GSEC - GCIH - GCUX - RHCE - SCSecA - Security+ - Network+
jinwald12
Jr. Member
**
Offline Offline

Posts: 77



View Profile
« Reply #4 on: April 22, 2012, 05:50:20 PM »

no Sad
Logged

where did all the fun go?
chrisj
Hero Member
*****
Offline Offline

Posts: 1163


View Profile WWW
« Reply #5 on: April 22, 2012, 11:14:03 PM »

Last network I oversaw with windows had some of following (forgetting some, leaving others out):

DC
DNS
Time was from DC for windows boxes
Exchange with antagen
Sharepoint
Great Plains
MSSQL
AV Server
Windows 2008 License server
CISCO VOIP Server running on win2k

I'm sure they've changed it put more windows crap in it since I left.
Logged

OSWP, Sec+
jinwald12
Jr. Member
**
Offline Offline

Posts: 77



View Profile
« Reply #6 on: April 23, 2012, 12:58:47 PM »

thanks i will add a exchange server and i may go the office communicator route for VOIP and have clients with softphones running traffic generation scripts and a MSSQL server i don't have much experience with sharepoint so it would make a good learning experience i may also add a VPN server as that is always a good way into a network.
Logged

where did all the fun go?
3xban
Hero Member
*****
Offline Offline

Posts: 608


View Profile WWW
« Reply #7 on: April 25, 2012, 08:16:55 PM »

As a Windows guy, you have quite a bit in that list and should keep you busy for a while.  Not sure if I missed it, but maybe throw in a snort box for an IDS/IPS.  If you REALLY want to give yourself some work, implement PKI and add IPSec policies for "lulz"

Cheesy
Logged

Certs: GCWN
(@)Dewser
kriscamaro68
Jr. Member
**
Offline Offline

Posts: 61



View Profile
« Reply #8 on: April 26, 2012, 01:59:14 PM »

As 3xban said implement PKI and kerberos as well as that is common in enterprise networks. Also there is DHCP, the System Center set of products like config manager forefront endpoint protection, WSUS, WDS, RRAS, Terminal Services, Branche Cache, there is a ton more services and features to add that would be useful but thats just a start.
Logged

A+, Net+, Server+, Security+, MCP/XP
jinwald12
Jr. Member
**
Offline Offline

Posts: 77



View Profile
« Reply #9 on: April 26, 2012, 07:25:02 PM »

i have DHCP i was thinking of putting a fedora box running snort as that seems to be a common platform for snort i will add a kerberos box later if only there was a way to make virtual telephone networks (i don't mean voip) but that would be extremely difficult oh well but yeah i have a lot to keep me busy.
Logged

where did all the fun go?
3xban
Hero Member
*****
Offline Offline

Posts: 608


View Profile WWW
« Reply #10 on: April 30, 2012, 10:26:16 AM »

Check the vmware appliances list at their site, their might be a free snort virtual appliance available.
Logged

Certs: GCWN
(@)Dewser
jinwald12
Jr. Member
**
Offline Offline

Posts: 77



View Profile
« Reply #11 on: April 30, 2012, 07:44:29 PM »

that's a good idea thanks
Logged

where did all the fun go?
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.068 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.