Your Name
University
Professor
Date
Access Control List
An ACL is a configuration script of a router that manages whether a router denies or permits packets to pass founded on criteria placed in the packet header. It is also employed in selecting forms of traffic to be processed, forwarded, or analyzed in other ways. As every packet passes through an interface with a related ACL, the ACL is analyzed, one line at a time from top to bottom, searching for a pattern corresponding to the incoming packet. The ACL inflicts one or more policies of the corporate security by applying deny or permit rule to establish the fate of the packet. ACLs can be configured to manage access to subnet or network. ACL is a router firewall. It is applied on a router based on the three Ps, where one ACL can be configured as per interface, per direction and as per protocol. Per protocol configuration controls the flow of traffic on an interface. In this case each protocol must be defined to facilitate an interface. Per direction configuration wheels traffic in one direction at a go, on an interface. Per interface configuration controls interface traffic for instance fast Ethernet.
Security Policy
To ensure maximum security in our system, the following security policies will be observed.
No packets whose source is not recognized will be allowed into the company’s network. This will be ensured by use of per protocol interface where packet’s IP will be retrieved to establish the source.
All network users will be required to be authorized. This will be established by use of password and access restriction levels.
System configuration must ensure that no loopholes are left to protect the network from all forms of vulnerabilities
Standard antivirus and antispyware should be employed to ensure all devices in the system are free from virus and spywares.
References
Vachon, B., & Graziani, R. (2008). Accessing the WAN CCNA exploration
References: Vachon, B., & Graziani, R. (2008). Accessing the WAN CCNA exploration companion guide. Indianapolis, IN: Cisco Press.