Course detail

Projecting, Administration and Security

FIT-NSBAcad. year: 2013/2014

Computer networks security. Security in operating systems. Authentication, authorization, and accounting. IDS and IPS systems. Firewalls and traffic shaping. Virtual private networks. Operation and maintenance of computer networks. Operation and maintenance of applications. Backups. Monitoring of network elements and workload of computer systems. Cabling systems. Design of computer networks. Advanced routing.

Language of instruction

Czech

Number of ECTS credits

5

Mode of study

Not applicable.

Learning outcomes of the course unit

Students are able to move in projecting computer networks and in extended network services.

Prerequisites

Basic orientation in computer networks and operating systems.

Co-requisites

Not applicable.

Planned learning activities and teaching methods

The course uses teaching methods in form of Lecture - 2 teaching hours per week, Computer exercise - 2 teaching hours per week.

Assesment methods and criteria linked to learning outcomes

Min. 20 points during the term.

Course curriculum

    Syllabus of lectures:
    • Introduction. Computer networks security.
    • Security in operating systems.
    • Authentication, authorization, and accounting.
    • IDS and IPS systems.
    • Firewalls and traffic shaping.
    • Virtual private networks.
    • Operation and maintenance of computer networks.
    • Operation and maintenance of applications.
    • Backups.
    • Monitoring of network elements and workload of computer systems.
    • Cabling systems.
    • Design of computer networks.
    • Advanced routing.

    Syllabus of computer exercises:
    • Radius, Kerberos, S/Key
    • ACL, Audit, MAC
    • Firewall, traffic shaping Dummynet and AltQ
    • Socat, Ptunnel, IPsec (HTTPS, OpenVPN)
    • SNMP, NetFLow

Work placements

Not applicable.

Aims

To give the knowledge of computer networks projecting, extended services, administration and securing computer systems and networks.

Specification of controlled education, way of implementation and compensation for absences

The monitored are presence in computer labs, tests in labs, presentation and final exam.

Recommended optional programme components

Not applicable.

Prerequisites and corequisites

Not applicable.

Basic literature

Oppenheimer, P.: Top-Down Network Design, 2. vydání, Cisco Press, 2004, ISBN 1-58705-152-4 (EN)
Wayne, L.: Cisco Networking Academy Program CCNP 1-4, Cisco Press, 2004-2005, ISBN 1-58713-135-8, 1-58713-145-5, 1-58713-143-9, 1-58713-141-2 (EN)
Stallings, W.: Network Security Essentials, 3. vydání, Prentice Hall, 2007, ISBN 0-13-238033-1 (EN)
Zwicky, E. D.: Building Internet Firewalls, 2. vydání, O'Reilly, 2000, ISBN 1-56592-871-7  (EN)

Recommended literature

Not applicable.

Classification of course in study plans

  • Programme IT-MSC-2 Master's

    branch MBS , 2 year of study, summer semester, compulsory
    branch MIN , 0 year of study, summer semester, elective
    branch MIS , 2 year of study, summer semester, compulsory-optional
    branch MMI , 0 year of study, summer semester, elective
    branch MMM , 0 year of study, summer semester, elective
    branch MPV , 0 year of study, summer semester, elective
    branch MBI , 0 year of study, summer semester, compulsory-optional
    branch MGM , 0 year of study, summer semester, elective
    branch MSK , 0 year of study, summer semester, elective

Type of course unit

 

Lecture

26 hod., optionally

Teacher / Lecturer

Syllabus

  • Introduction. Computer networks security.
  • Security in operating systems.
  • Authentication, authorization, and accounting.
  • IDS and IPS systems.
  • Firewalls and traffic shaping.
  • Virtual private networks.
  • Operation and maintenance of computer networks.
  • Operation and maintenance of applications.
  • Backups.
  • Monitoring of network elements and workload of computer systems.
  • Cabling systems.
  • Design of computer networks.
  • Advanced routing.

Exercise in computer lab

26 hod., optionally

Teacher / Lecturer

Syllabus

  • Advanced Authentication - Kerberos, 802.1x, Radius
  • Traffic shaping (AltQ)
  • Building VPN Networks, Certification Authority
  • Network Monitoring using NetFLow, sFlow, SNMP etc.

E-learning texts