<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Prodclab on My New Hugo Site</title>
    <link>https://prodclab.ddns.net/</link>
    <description>Recent content in Prodclab on My New Hugo Site</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Mon, 01 Jan 0001 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://prodclab.ddns.net/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>ClearPass</title>
      <link>https://prodclab.ddns.net/clearpass/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://prodclab.ddns.net/clearpass/</guid>
      <description>&lt;h1 id=&#34;clearpass&#34;&gt;ClearPass&lt;/h1&gt;&#xA;&lt;p&gt;ClearPass jest przygotowywany jako komponent AAA / NAC.&lt;/p&gt;&#xA;&lt;h2 id=&#34;plan&#34;&gt;Plan&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;RADIUS&lt;/li&gt;&#xA;&lt;li&gt;NAC&lt;/li&gt;&#xA;&lt;li&gt;role-based access&lt;/li&gt;&#xA;&lt;li&gt;integracja z FortiGate&lt;/li&gt;&#xA;&lt;li&gt;integracja z Aruba&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;docelowe-scenariusze&#34;&gt;Docelowe scenariusze&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;uwierzytelnianie VPN&lt;/li&gt;&#xA;&lt;li&gt;802.1X&lt;/li&gt;&#xA;&lt;li&gt;policy enforcement&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>FortiGate</title>
      <link>https://prodclab.ddns.net/fortigate/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://prodclab.ddns.net/fortigate/</guid>
      <description>&lt;h1 id=&#34;fortigate&#34;&gt;FortiGate&lt;/h1&gt;&#xA;&lt;p&gt;FortiGate pełni w labie rolę urządzenia brzegowego.&lt;/p&gt;&#xA;&lt;h2 id=&#34;zakres&#34;&gt;Zakres&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;edge firewall&lt;/li&gt;&#xA;&lt;li&gt;NAT&lt;/li&gt;&#xA;&lt;li&gt;DNAT&lt;/li&gt;&#xA;&lt;li&gt;firewall policies&lt;/li&gt;&#xA;&lt;li&gt;przygotowanie pod SSL VPN&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;co-działa&#34;&gt;Co działa&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;wyjście do Internetu&lt;/li&gt;&#xA;&lt;li&gt;publikacja strony przez DNAT&lt;/li&gt;&#xA;&lt;li&gt;routing do sieci wewnętrznych&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;kolejne-kroki&#34;&gt;Kolejne kroki&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;SSL VPN&lt;/li&gt;&#xA;&lt;li&gt;RADIUS przez ClearPass&lt;/li&gt;&#xA;&lt;li&gt;bardziej granularne policy&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>Roadmap</title>
      <link>https://prodclab.ddns.net/roadmap/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://prodclab.ddns.net/roadmap/</guid>
      <description>&lt;h1 id=&#34;roadmap&#34;&gt;Roadmap&lt;/h1&gt;&#xA;&lt;h2 id=&#34;zrobione&#34;&gt;Zrobione&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;podstawowa topologia&lt;/li&gt;&#xA;&lt;li&gt;routing&lt;/li&gt;&#xA;&lt;li&gt;publikacja strony&lt;/li&gt;&#xA;&lt;li&gt;DDNS&lt;/li&gt;&#xA;&lt;li&gt;HTTPS&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;następne-kroki&#34;&gt;Następne kroki&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;SSL VPN&lt;/li&gt;&#xA;&lt;li&gt;ClearPass RADIUS&lt;/li&gt;&#xA;&lt;li&gt;AD integration&lt;/li&gt;&#xA;&lt;li&gt;802.1X Aruba&lt;/li&gt;&#xA;&lt;li&gt;monitoring&lt;/li&gt;&#xA;&lt;li&gt;IPSec&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>Routing</title>
      <link>https://prodclab.ddns.net/routing/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://prodclab.ddns.net/routing/</guid>
      <description>&lt;h1 id=&#34;routing&#34;&gt;Routing&lt;/h1&gt;&#xA;&lt;p&gt;Routing w labie opiera się na statycznych trasach i sieciach tranzytowych.&lt;/p&gt;&#xA;&lt;h2 id=&#34;sieci-tranzytowe&#34;&gt;Sieci tranzytowe&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;FortiGate ↔ R1&lt;/li&gt;&#xA;&lt;li&gt;R1 ↔ R2&lt;/li&gt;&#xA;&lt;li&gt;R1 ↔ ArubaCX&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;vlan-y&#34;&gt;VLAN-y&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;VLAN10 MGMT&lt;/li&gt;&#xA;&lt;li&gt;VLAN20 USERS&lt;/li&gt;&#xA;&lt;li&gt;VLAN30 LAB&lt;/li&gt;&#xA;&lt;li&gt;VLAN40 SERVERS&lt;/li&gt;&#xA;&lt;li&gt;VLAN50 NAC&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;zakres&#34;&gt;Zakres&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;static routing&lt;/li&gt;&#xA;&lt;li&gt;traffic flow&lt;/li&gt;&#xA;&lt;li&gt;inter-network communication&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>Services</title>
      <link>https://prodclab.ddns.net/services/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://prodclab.ddns.net/services/</guid>
      <description>&lt;h1 id=&#34;services&#34;&gt;Services&lt;/h1&gt;&#xA;&lt;p&gt;Warstwa usług wspierająca portfolio i publikację strony.&lt;/p&gt;&#xA;&lt;h2 id=&#34;komponenty&#34;&gt;Komponenty&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Linux server&lt;/li&gt;&#xA;&lt;li&gt;nginx&lt;/li&gt;&#xA;&lt;li&gt;Hugo&lt;/li&gt;&#xA;&lt;li&gt;No-IP DDNS&lt;/li&gt;&#xA;&lt;li&gt;Let&amp;rsquo;s Encrypt&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;cel&#34;&gt;Cel&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;hostowanie portfolio&lt;/li&gt;&#xA;&lt;li&gt;publikacja do Internetu&lt;/li&gt;&#xA;&lt;li&gt;integracja networkingu z Linuxem&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>Topology</title>
      <link>https://prodclab.ddns.net/topology/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://prodclab.ddns.net/topology/</guid>
      <description>&lt;h1 id=&#34;topology&#34;&gt;Topology&lt;/h1&gt;&#xA;&lt;p&gt;Ta sekcja opisuje architekturę labu.&lt;/p&gt;&#xA;&lt;h2 id=&#34;główne-elementy&#34;&gt;Główne elementy&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;FortiGate&lt;/li&gt;&#xA;&lt;li&gt;Cisco vIOS&lt;/li&gt;&#xA;&lt;li&gt;Aruba CX&lt;/li&gt;&#xA;&lt;li&gt;Linux&lt;/li&gt;&#xA;&lt;li&gt;ClearPass&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;flow&#34;&gt;Flow&lt;/h2&gt;&#xA;&lt;p&gt;Internet → FortiGate → routing wewnętrzny → switching → serwery i klienci&lt;/p&gt;&#xA;&lt;h2 id=&#34;do-dodania&#34;&gt;Do dodania&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;diagram topologii&lt;/li&gt;&#xA;&lt;li&gt;adresacja VLAN&lt;/li&gt;&#xA;&lt;li&gt;rola urządzeń&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
  </channel>
</rss>
