Table of Contents
Statement of Work
1
Scope of Work
1
Project Overview/ Summary
2
Group Members
2
Technical Overview
2
Business Objectives
3
Equipment and Technology
3
Topology or Network Map
4
IP Scheme
5
Timeline
5
Deliverables
6
Risks
6
Recommendations
7
Test Procedures
7
Software needed
8
References
8
Statement of Work
HYDRA Tech has been contracted to implement a new office for Force Inc. The contract
specifies that HYDRA Tech will design the physical and logical aspects of this project. Once the
project proposal is approved, any changes to the contractual agreement will necessitate the
drafting of a new contract. As the contract states, all deliverables will be turned over to Force Inc
on November 21, 2019.
Scope of Work
Hydra Tech assumes responsibility for the design and implementation of the following services
and technologies:
● Routing
● Switching
● Virtualization
● DHCP
● DNS
● Domain Controller
● DMZ
● File Server
● Email
● Workstations
HYDRA Tech has agreed upon the aforementioned project completion date of November 21,
2019. The items listed above are the scope of this project, and any service, technology, training,
etc. which falls outside this scope will necessitate the drafting of a new contract with HYDRA
Tech. User training, system maintenance AFTER project completion, and additional
components not listed above are examples of work that falls outside of this scope. As stated
above, these services can be provided by HYDRA Tech, but a new contract for the additional
work will need to be drafted.
1
Project Overview/ Summary
The services from the scope of work have been delegated to the team members of HYDRA
Tech. Upon approval of the proposal, Team HYDRA Tech will design, test, and implement the
technical components for the Force Inc. offices. The component structure will be outlined in
detail in the rest of this proposal. Confidentiality requires HYDRA Tech to be the only support
contact on the systems within this proposal until the project is complete.
Group Members
●
●
●
●
Jontell Cole
Jacob Dolph
Travis Durbin
Ashley Holshouser
Technical Overview
Our Dell PowerEdge R710 rack servers will be the backbone of our infrastructure. A
single server will provide support to our network which includes our workstations, switches,
Vlans and virtualize servers. Our servers run using ESXI 6.5 and run hypervisor. Hypervisor will
gives us tools to manage the server. One switch is directly connected to the server the other 2
switches are connected through a daisy chained. Switch 2 contains all the workstations between
the different branches. Splitting the different departments on different Vlans allows for reliable
and safe communication. Switch 3 contains our Windows, Ubuntu, and Fedora servers. The
main Server will be configured to run Active Directory. It will be configured with DHCP and DNS.
Lastly, well set up an email server for communication between workstations and a file server to
store important files.
2
Business Objectives
●
●
●
●
●
●
●
●
●
●
Main objective is to provide a properly working network for Force inc provided by
HYDRA Tech.
Through the use of Active Directory a standard of control and organization will be set for
servers and user accounts through admin oversight the domain will be maintained.
A domain controller will be properly configured so that Active Directory may be used.
To configure virtualization for the server ESXi Vsphere 6.5 which is a type 1 hypervisor
this will allow for better management over workstations and other features.
DNS will be properly configured so that IP’s may be properly converted and resolved.
Four scopes will be properly developed for DHCP each scope will be given a specific IP
address.
An Email server will be configured properly to maintain organization and route all internal
email traffic.
A file server will be configured so that the exchange of data and information can be
stored on a single server for multiple departments to access.
Workstations will be accessible for each department.
One Router, one Switch, one virtual switch, Four servers, and 4 workstations will be
properly configured all with their own unique IP address.
Equipment and Technology
Equipment
OPerating System & Software
Hardware
Palo Alto Firewall
ESXI 6.0 standalone, KVM on
Ubuntu, Hyper-V windows 2012 r2
server
PA-5060, 2tb Raid1, 4.5GB
ram,
Switch(2) Cisco
WS-C2960-24TT
Cisco IOS software version 12.2(25)
fx
Dell PowerEdge
ESXI 6.0
144gb quad core 2 tb
R710 Rack Server(4)
Dell optiplex 9020(3)
Windows 8.1, Ubuntu 18.04(2)
3
Router Cisco 2901
Topology or Network Map
IP Scheme
Machine
IP
VLAN
Router
-
Business Services
Firewall
-
Host
4
Windows PC
-
Vlan 20
192.1.1.9 /29
Linux PC
-
Windows PC
-
Server
-
Vlan 10
192.1.1.3 /24
Switch 1
-
Vlan 30
-/29 (.248)
Switch 2
-
PC 1
-
.243
PC 2
-
.242
PC3
-
.241
Web Server
-
Email Server
-
DNS/File Server
-
DHCP Server
-
Layer 3 Switch
-
.246
Timeline
Overall time
32 days
SETUP
Install ESXi 6.5
Configure routers and switches
Install workstations
Install Operating Systems
Install firewalls
Milestone
Configuring Windows server
Configure Active Directory
5 days
1 day
1 day
1 day
1 day
1 day
day 5
8 days
1 day
10/22 11/21
10/22 10/31
10/22/2019
10/24/2019
10/28/2019
10/29/2019
10/31/2019
11/4/2019
11/5 - 11/18
11/5/2019
5
Configure file server
Configure DNS
Configure email server
Testing phase
Milestone
Testing and troubleshooting
Milestone: project complete
1 day
1 day
1 day
4 day
1 day
4 day
0 days
11/7/2019
11/11/2019
11/12/2019
11/14/2019
11/18/2019
11/21/2019
11/21/2019
Deliverables
At the end of this project, a packet will be given to Force Inc, which will contain materials
necessary for user training, troubleshooting, etc. HYDRA Tech will not be responsible for the
implementation of these materials after November 21, 2019. If the services of HYDRA Tech are
required after this date, a new contract will need to be drafted for that work.
Risks
●
●
●
●
●
●
Technical issues including system and software bugs.
Delay in proposed timeline.
Electrical/ Equipment failure
Unauthorized access to physical hardware.
Scope creep
Physical Security
Recommendations
●
●
The first recommendation is to routinely run updates after system is properly configured
and setup. This way software bugs/glitches/holes may be patched.
The second recommendation is to install fire suppression equipment in case of fire within
the server room. This will allow damage to be contained to only the server room as well
as limit the amount of damage done to the electrical equipment itself.
6
●
The final recommendation is to run bi-yearly maintenance. This includes powering
everything down cleaning the racks, opening the equipment and removing any dust or
grim that may have built up over time. This will expand the life expectancy of the
equipment as well as it will help prevent future electrical problems.
Test Procedures
By the agreed date, all of the equipment listed below will be tested, connected and secure when
turned in.
Active Directory: access the AD to verify that users are able to access the server. Users that
have access or trouble signing in will be listed in the AD
Domain Name Server(DNS): Perform a DNS query. A DNS query is a user request sent to the
DNS for information.
DHCP: will be thoroughly tested with the network. It will assign IPs to devices connected to the
network that are not detailed in the IP scheme above.
Email: use a tool that will perform an Open Relay Test. This will verify that DNS is up and
running .
File server: use a workstation to access and store simple files.
Web server: ensuring that the web server can be connected to from an internal and external
workstation
Software needed
We will be using ESXI 6.0, Hyper-V for windows 2012 r2 server, Ubuntu 18.04 on PC’s,
Windows 8.1 on pc
7
References
http://www.paloguard.com/Firewall-PA-5060.asp
https://www.cloudns.net/wiki/article/254/
8