Find Jobs
Hire Freelancers

Design & Implement Network Security

$15-25 USD / hour

Σε Εξέλιξη
Αναρτήθηκε πάνω από 3 χρόνια πριν

$15-25 USD / hour

We have 6 servers, each hosting multiple VMS. We are planning to put a FortiGate-200E in front of those servers for security. Our users will access the VMS through forticlient VPN. We are seeking for an expert to advise us and do the initial setup of FortiGate, and design the network. First, answer the following question, in a convincing way. 1- For optimal performance, we are thinking to connect the VMS through a cisco switch/fortiswitch do you think this is needed, or we use Fortinet itself for the switching across the internal network? Do we need a 2nd card if we decide to use a dedicated switch? 1 card connects to the switch and another to the fortigate. The switch would connect to FortiGate to provide access to the internet. 2- All the VMZ will need internet access to download software and updates. 3- A few selected VMS will act as webservers/proxy servers and will have static IPs on the internet those ports will be opened through DMZ on FortiGate, those same servers will have access to the other VMS through the internal network for database access. would someone be able to hack those web servers, how can we guarantee that the internal network is safe? You can implement a few rules, and hand to us to implement the other rules
Ταυτότητα εργασίας: 27893040

Σχετικά με την εργασία

20 προτάσεις
Απομακρυσμένη Εργασία
Ενεργός/ή 4 χρόνια πριν

Ψάχνεις τρόπο για να κερδίσεις μερικά χρήματα;

Πλεονεκτήματα πλειοδοσίας στο Freelancer

Καθόρισε τον προϋπολογισμό σου και το χρονοδιάγραμμα
Πληρώσου για τη δουλειά σου
Περίγραψε την πρόταση σου
Η εγγραφή και η πλειοδοσία σε εργασίες είναι δωρεάν
Βραβεύτηκε στον/στην:
Avatar Χρήστη
$0 USD σε 20 ημέρες
4,9 (215 αξιολογήσεις)
7,0
7,0
20 freelancers δίνουν μια μέση προσφορά $20 USD/ώρα για αυτή τη δουλειά
Avatar Χρήστη
Hello, Hope you are doing well. I have 5+ years of Experience in Network Security & Administration. I can handle your Project.
$20 USD σε 40 ημέρες
4,9 (31 αξιολογήσεις)
5,3
5,3
Avatar Χρήστη
Hello Dear, I am an Expert Network Engineer and I am working as Expert Network Engineer at Multinational ISP. I have great hands-on experience for more than 5 years in various network technologies. I have Cisco CCNA & CCNP (Routing & Switching) and CCNP Enterprise (Enterprise Core & Enterprise Advanced Infrastructure Implementation) certifications. I have Juniper JNCIA-Junos (JN0-102) and JNCIA (Cloud) certifications. I have very good knowledge in Cisco wireless technology, VOIP & Network Security. My specialties: - Design/implement medium and large scale enterprise networks. - Configure Cisco Routers (ASR 1K & 9k, 2900, 2800, ISR 4K, 878, 888), Switches (Cat 6500, 3750, 3850, 2900, 2960, SG- 300, SG-500, [Nexus 5K, 7K and 9K]), Firewalls ([ASA 5505, 5506x, 5508], Fortigate, Palo Alto) and Wireless Acess Points 1800 and 2700. - Configure Juniper Routers (M7, M10, MX 480, MX 960) and SRX (300, 500). - Huawei, Mikrotik, HP & Ubiquiti devices Expert. - Packet Tracer, GNS-3, EVE-NG, VMWare workstation & VirtualBox Expert. - Routing protocols (RIP, OSPF, EIGRP, ISIS & BGP) Configuration and troubleshooting Expert and Switching Expert (VLANs, STP, VTP...). - VPNs Configuration Expert (IPSEC/L2TP, GRE/PPTP, OPENVPN & SoftEther). - Linux, Unix & windows servers Expert. - Wireshark Traffic Capture & Analysis Expert. - Write technical reports and summaries. Thanks to check my profile and let me know if you are interested. Best Regards, Ahmed
$15 USD σε 40 ημέρες
4,9 (67 αξιολογήσεις)
5,0
5,0
Avatar Χρήστη
Hi , I can fulfill your requirements. I am an enthusiastic, results-oriented Network and Infrastructure Professional with 7+ years of experience, handling a variety of assignments in the IT & Service Industry (Network Infrastructure & Security). I have done various certifications ( CCNA, MSCE, ICNS|CCSS). Key Network Skills & Security Products Experience : • Firewall – Checkpoint, Cisco ASA • IPSEC and SSL VPN • Cisco Switches – 4500, 2900, 3650 • Intrusion Detection & prevention – Cisco, Checkpoint • Switching: Vlan, Inter Vlan, Stp, Vtp, EtherChannel, Switch Port • Configuration and troubleshooting of routing protocols OSPF, RIP, EIGRP • Setup of security implementations (Filtering Tool ACL, route map, port security.) • Well versed in the operations, configuring, and troubleshooting of various issues in Checkpoint and Cisco Devices. • Checkpoint IPSec VPN Blade, Application & URL filtering Blade, IPS Blades It would be a pleasure to work with you. Thanks
$22 USD σε 40 ημέρες
5,0 (9 αξιολογήσεις)
4,4
4,4
Avatar Χρήστη
Hi, Am a Network Engineer with 9+ years of experience in Design and Support of large-scale multi-vendor Local and Wide Area networks. Good understanding of TCP/IP, specifically relating to routing, switching, wireless LAN, security, NAC services, VOIP. Certified in CCNP Routing and switching Certified, Silver peak Certified SPSP, Aruba Mobility Master Associate (HPE6-A70). Extensive hands-on experience in Designing, Installation, and configuration on products like Cisco routers, Catalyst switches & Nexus switches, ASA. Meraki LAN, WLAN, SD WAN. Aruba Mobility Master, Mobility Controllers, RAP, Access points. Juniper SRX, Mikrotik, TPlink, Optilink, VOIP products – Design, Installation, and configuration of CUCM, Avaya, Free PBX, Fusion PBX, Elastix PBX. Firewalls ---- Cisco ASA with firepower, FortiGate, Juniper SRX, Sophos, pfSense. Sonicwall, paloalto NAC services --- Radius installation and configuration, ClearPass, Cisco ISE. Wireless --- Ubiquiti, Unifi, Meraki, Tplink, Mikrotik, Monitoring Tools ---- Cacti server installation and configuration,.
$22 USD σε 40 ημέρες
5,0 (4 αξιολογήσεις)
3,7
3,7
Avatar Χρήστη
Good Day, I have gone through your requirement and I can complete the project smoothly. I am having 15+ Years of Industry experience/exposure. My core exposure includes planning, design & implement highly sophisticated and complex Datacentres inclusive of clustering, bridging, and failovers especially for Cyber Security Projects. Cybersecurity technologies, Enterprise switching & routing, Server, Storage, Virtualization, Cloud Computing, Email & Hosting, Security Posture Assessment (SPA) and end user computing together with ISMS procedure, compliance and policy add value to skill sets. I have been building Cyber Security Operation Center (SOC) and Network Operation Center (NOC) for Private & SMB Customers for past 10+ Years for Managed Security Services (MSS) Projects with Fifteen over Technologies. Please initiate a chat session to discuss further. Thanks, and Regards.
$30 USD σε 2 ημέρες
5,0 (8 αξιολογήσεις)
3,8
3,8
Avatar Χρήστη
Hello Dear, I am Professional IT Expert with 10 plus years of experience in Microsoft Office, networking, cisco, servers, technical support, emails security Firewall (Juniper, Fortigate) support and service to clients and customers. I am hands on experienced on Hikvision NVR/DVR installation & configuration, windows servers, Juniper firewall setup including webfilter, content filter, traffic monitoring, VIP, IPsec VPN, SSL VPN, Traffic shapping etc. Expert in LAN, WAN, Vlan, dhcp, DNS, Email, AD, HyperV, VMware, complete firewall configurations & Management, networking planning & design. I have complete IT infrastructure knowledge and good basic to advance level of knowledge on ports, protocols, cisco etc. Please feel free to chat and contact me. Thank you. M kmr
$17 USD σε 8 ημέρες
5,0 (8 αξιολογήσεις)
3,2
3,2
Avatar Χρήστη
Hi There, I can handle your project, I will implement firewall into your network. I have more then 6 years of experience in server and network administration
$20 USD σε 40 ημέρες
5,0 (1 αξιολόγηση)
2,7
2,7
Avatar Χρήστη
Hi , it would be a pleasure for me to assite you on this project . i am CCNP Sec & Fortinet NSE 7 certified . i alreadey deployed solutions including Fortiget-200E. to answer you questions : 1- i recommande to deploy a L2 Switch with 10G interfaces to be interconnected to the Servers . for the HA it is better t have 2 if possible . With sufficent Commutation & forwarding rate . 2- for VM updates it is possible to dedicate a differents rulles or a proxy Virtual Domain VDOM. 3- it is possible to implement 2 Level of VDOMs and implement advenced IPS on incuming traffic . I recommand you to also deploy a Fortianalyser VM to get a clear reports and an adequate traffic Logs ( 7 day & More ) Please feal free to contacte me . Sincerly
$25 USD σε 40 ημέρες
5,0 (3 αξιολογήσεις)
2,3
2,3
Avatar Χρήστη
hi, im an network security engineer, im working as expert network security engineer certified in NSE 7, NSE 5, NSE 4 , CCNA RS, JNCIS my specialist 1. designs and implements fortinet device fortigate: 7000, 6000, 3700, 2500, 1200, 1101, 601, 501, 200 using virtual domain, ha , snat, dnat, central nat, security profile ( IPS, AV, APP control etc ) for network im also configure on device huawei, cisco
$19 USD σε 40 ημέρες
0,0 (0 αξιολογήσεις)
0,0
0,0
Avatar Χρήστη
hello I'm a network security engineer. i have hands-on experience with fortigate firewalls. i suggest for you the following points: use two cisco switches for better and faster communication between VMs if needed. one switch for the DMZ zone and the other for internal VMs. it would be a pleasure to work with you. thank you in advance.
$17 USD σε 20 ημέρες
0,0 (1 αξιολόγηση)
0,0
0,0
Avatar Χρήστη
Telecommunications and Network Engineer having three years of experience as Head of Data Networks Department in Insiyabi Pakistan and also have the experience of design and configuration of enterprise computer network for data centers and call centers along with the experience in Network Solutions and Security
$26 USD σε 40 ημέρες
0,0 (0 αξιολογήσεις)
0,0
0,0
Avatar Χρήστη
Hello, Firstly I work in a Cloud Company as a Sr. System Administrator. I've been managing and creating network topologies over ten years. I think, I qualified enough for this project. Here is the my answers, 1 - ) For both of scenario the network will finalized the FortiGate. So if you use the fiber connection for server traffic then yes you need to use switch/fortiswitch but if the traffic will be 1 gigabit then you don't need to use extra switch just finalized the network to the FortiGate. P.S : I mean the traffic of the between the servers as you know. 2 - ) For example, you have /29 Public subnet on your environment, we'll assign the /29 subnet to the FortiGate and after that we can use SNAT/DNAT. We'll create a SNAT rule for the Servers to ANY. But we won't create DNAT, so the servers can reach the internet, but there won't be traffic from the internet to the servers. 3 - ) Why do we need a server that acts as a reverse proxy? The Fortigate can do this. Also, if the whole servers have the same network ID and then the traffic won't pass through the Gateway/Fortigate. For this scenario, we need to improve the security at OS Layer. But if the servers have not the same network ID then we will create a few rules to specified ports. King Regards.
$15 USD σε 25 ημέρες
5,0 (1 αξιολόγηση)
0,0
0,0
Avatar Χρήστη
hi, I have done ccse also have 7+ years of experience in cyber security solutions. worked with different firewalls like checkpoint, fortigate. discuss for more details over chat.
$22 USD σε 40 ημέρες
0,0 (0 αξιολογήσεις)
0,0
0,0

Σχετικά με τον πελάτη

Σημαία της LEBANON
Hazmieh, Lebanon
0,0
0
Επαληθευμένη μέθοδος πληρωμής
Μέλος από Ιουλ 23, 2020

Επαλήθευση Πελάτη

Ευχαριστούμε! Σου έχουμε στείλει ένα email με ένα σύνδεσμο για να διεκδικήσεις τη δωρεάν πίστωση σου.
Κάτι πήγε στραβά κατά την προσπάθεια αποστολής του email σου. Παρακαλούμε δοκίμασε ξανά.
Εγγεγραμμένοι Χρήστες Συνολικές Αναρτημένες Δουλειές
Freelancer ® is a registered Trademark of Freelancer Technology Pty Limited (ACN 142 189 759)
Copyright © 2024 Freelancer Technology Pty Limited (ACN 142 189 759)
Φόρτωση προεπισκόπησης
Δόθηκε πρόσβαση για Geolocation.
Η σύνδεση σου έχει λήξει και τώρα έχεις αποσυνδεθεί. Παρακαλούμε συνδέσου ξανά.