SlideShare a Scribd company logo
Assignment 2: Secure Intranet Portal Login
Background:
You are the security professional for a medium-sized
manufacturing company. The organization would like to deploy
a secure portal for in-house use only. The portal will be
available from the company's intranet. The company is utilizing
a Microsoft Internet Information Services (IIS) server to run the
local intranet website. The portal will be created by in-house
programming staff utilizing ASP.NET technology and scripting.
The management requires the login to be protected using
Hypertext Transfer Protocol Secure (HTTPS). In addition, the
management would like to use an integrated login so that users
do not have to remember or create a separate username or
password for this portal login. The company is using a Windows
Server 2012 Active Directory infrastructure. All users logging
on to the portal also have existing active directory user
accounts. The company also has an in-house Windows Server
that serves as a local certificate authority for other existing web
applications and services.
Tasks:
Create a 4- to 5-page report that will be shared with the
company's board of directors, providing guidance and
recommendations on how to best secure the web portal. Your
report should cover the following aspects:
Describe what Windows-integrated authentication is and how it
could potentially be used to provide secure access control to the
portal.
Describe the use of Windows security groups and explain how a
connection to active directory could be performed using the
existing technology (existing IIS server and Windows Server
2012 Active Directory).
Describe how Windows certificate services work. Recommend a
solution that would utilize the in-house Windows certificate
authority server to provide a certificate to the new portal.
Explain how users can connect and log on to the portal in a
secure fashion using secured socket layer (SSL) or HTTPS to
ensure that all login credentials and activities on the portal are
secure and encrypted.
Ensure that you write in a clear, concise, and organized manner;
demonstrate ethical scholarship in accurate representation and
attribution of sources; and display accurate spelling, grammar,
and punctuation.
Submission Details:
Create your report in a Microsoft Word document.
Save the document as M4_A2_Lastname_Firstname.doc.
By
Wednesday, June 14, 2017
, submit your document to the
M4 Assignment 2 Dropbox
.
Assignment 2 Grading Criteria
Maximum Points
Described what Windows-integrated authentication is and
explained how it could potentially be used to provide secure
access control to the portal.
20
Described the use of Windows security groups and how a
connection to active directory could be performed using the
existing technology (existing IIS server and Windows Server
2012 Active Directory).
20
Described how Windows certificate services work.
Recommended a solution that would utilize the in-house
Windows certificate authority server to provide a certificate to
the new portal.
20
Explained how users can connect and log on to the portal in a
secure fashion using SSL/HTTPS to ensure that all login
credentials and activities on the portal are secure and encrypted.
20
Wrote in a clear, concise, and organized manner; demonstrated
ethical scholarship in accurate representation and attribution of
sources (i.e., APA); and displayed accurate spelling, grammar,
and punctuation.
20
Total:
100

More Related Content

PPTX
Presentation for information security & hacking
PPTX
12 Crucial Windows Security Skills for 2018
PDF
Portal Authentication: A Balancing Act Between Security Usability and Complia...
PDF
The hacker playbook: How to think and act like a cybercriminal to reduce risk...
PDF
Active directory & exchange 3 3-11
PDF
SPCA2013 - It’s Me, and Here’s My ProofIdentity & Authentication in SharePoin...
DOCX
Assignment 2 Recipe for Success!Every individual approaches life .docx
DOCX
Assignment 2 Research proposal1)Introduce the issue a.docx
Presentation for information security & hacking
12 Crucial Windows Security Skills for 2018
Portal Authentication: A Balancing Act Between Security Usability and Complia...
The hacker playbook: How to think and act like a cybercriminal to reduce risk...
Active directory & exchange 3 3-11
SPCA2013 - It’s Me, and Here’s My ProofIdentity & Authentication in SharePoin...
Assignment 2 Recipe for Success!Every individual approaches life .docx
Assignment 2 Research proposal1)Introduce the issue a.docx

More from MerrileeDelvalle969 (20)

DOCX
Assignment 2 Required Assignment 1—The FMLA in PracticeThe Family.docx
DOCX
Assignment 2 Research ProjectThis assignment consists of two pa.docx
DOCX
Assignment 2 Required Assignment 2—Implementation of Sustainability.docx
DOCX
Assignment 2 Required Assignment 1—Intercultural Employee Motivatio.docx
DOCX
Assignment 2 Rape and PornographyA long-standing question in the .docx
DOCX
Assignment 2 Rape and Pornography Due Tuesday January 3rd, 2.docx
DOCX
Assignment 2 RA 2 Case ScenarioBackgroundThe defendant is a f.docx
DOCX
Assignment 2 RA 2 Characteristics of Effective Treatment Programs.docx
DOCX
Assignment 2 Pay Increase Demands of EmployeesYou are an HR manag.docx
DOCX
Assignment 2 Policy and Client Impact DevelopmentFor this assig.docx
DOCX
Assignment 2 Public Health Administration Modern medical an.docx
DOCX
Assignment 2 Nuclear MedicineNuclear medicine is a specialized br.docx
DOCX
Assignment 2 RA 1 Human Service Needs Assessment ReportOver the .docx
DOCX
Assignment 2 Music Analysis 3 pages pleasePURPOSE The purp.docx
DOCX
Assignment 2 Methods of InquiryThe principle methods of inquiry.docx
DOCX
Assignment 2 Legislator Communication Friday 01072 Tasks.docx
DOCX
Assignment 2 Last MileThe last mile is a term that is used to e.docx
DOCX
Assignment 2 LASA 2 Dropbox AssignmentThis assignment comp.docx
DOCX
Assignment 2 LASA 1The Value of a Quality Assurance Departm.docx
DOCX
Assignment 2 LASA 1 Create Your Own Political PartyScenarioYou.docx
Assignment 2 Required Assignment 1—The FMLA in PracticeThe Family.docx
Assignment 2 Research ProjectThis assignment consists of two pa.docx
Assignment 2 Required Assignment 2—Implementation of Sustainability.docx
Assignment 2 Required Assignment 1—Intercultural Employee Motivatio.docx
Assignment 2 Rape and PornographyA long-standing question in the .docx
Assignment 2 Rape and Pornography Due Tuesday January 3rd, 2.docx
Assignment 2 RA 2 Case ScenarioBackgroundThe defendant is a f.docx
Assignment 2 RA 2 Characteristics of Effective Treatment Programs.docx
Assignment 2 Pay Increase Demands of EmployeesYou are an HR manag.docx
Assignment 2 Policy and Client Impact DevelopmentFor this assig.docx
Assignment 2 Public Health Administration Modern medical an.docx
Assignment 2 Nuclear MedicineNuclear medicine is a specialized br.docx
Assignment 2 RA 1 Human Service Needs Assessment ReportOver the .docx
Assignment 2 Music Analysis 3 pages pleasePURPOSE The purp.docx
Assignment 2 Methods of InquiryThe principle methods of inquiry.docx
Assignment 2 Legislator Communication Friday 01072 Tasks.docx
Assignment 2 Last MileThe last mile is a term that is used to e.docx
Assignment 2 LASA 2 Dropbox AssignmentThis assignment comp.docx
Assignment 2 LASA 1The Value of a Quality Assurance Departm.docx
Assignment 2 LASA 1 Create Your Own Political PartyScenarioYou.docx
Ad

Recently uploaded (20)

PDF
RMMM.pdf make it easy to upload and study
PDF
The Lost Whites of Pakistan by Jahanzaib Mughal.pdf
PPTX
Renaissance Architecture: A Journey from Faith to Humanism
PDF
Module 4: Burden of Disease Tutorial Slides S2 2025
PPTX
human mycosis Human fungal infections are called human mycosis..pptx
PPTX
GDM (1) (1).pptx small presentation for students
PDF
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
PPTX
Institutional Correction lecture only . . .
PDF
Anesthesia in Laparoscopic Surgery in India
PDF
grade 11-chemistry_fetena_net_5883.pdf teacher guide for all student
PDF
Computing-Curriculum for Schools in Ghana
PDF
O5-L3 Freight Transport Ops (International) V1.pdf
PDF
Insiders guide to clinical Medicine.pdf
PDF
Supply Chain Operations Speaking Notes -ICLT Program
PPTX
Cell Structure & Organelles in detailed.
PDF
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
PDF
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
PDF
2.FourierTransform-ShortQuestionswithAnswers.pdf
PPTX
Pharmacology of Heart Failure /Pharmacotherapy of CHF
PDF
STATICS OF THE RIGID BODIES Hibbelers.pdf
RMMM.pdf make it easy to upload and study
The Lost Whites of Pakistan by Jahanzaib Mughal.pdf
Renaissance Architecture: A Journey from Faith to Humanism
Module 4: Burden of Disease Tutorial Slides S2 2025
human mycosis Human fungal infections are called human mycosis..pptx
GDM (1) (1).pptx small presentation for students
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
Institutional Correction lecture only . . .
Anesthesia in Laparoscopic Surgery in India
grade 11-chemistry_fetena_net_5883.pdf teacher guide for all student
Computing-Curriculum for Schools in Ghana
O5-L3 Freight Transport Ops (International) V1.pdf
Insiders guide to clinical Medicine.pdf
Supply Chain Operations Speaking Notes -ICLT Program
Cell Structure & Organelles in detailed.
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
2.FourierTransform-ShortQuestionswithAnswers.pdf
Pharmacology of Heart Failure /Pharmacotherapy of CHF
STATICS OF THE RIGID BODIES Hibbelers.pdf
Ad

Assignment 2 Secure Intranet Portal LoginBackgroundYou are the.docx

  • 1. Assignment 2: Secure Intranet Portal Login Background: You are the security professional for a medium-sized manufacturing company. The organization would like to deploy a secure portal for in-house use only. The portal will be available from the company's intranet. The company is utilizing a Microsoft Internet Information Services (IIS) server to run the local intranet website. The portal will be created by in-house programming staff utilizing ASP.NET technology and scripting. The management requires the login to be protected using Hypertext Transfer Protocol Secure (HTTPS). In addition, the management would like to use an integrated login so that users do not have to remember or create a separate username or password for this portal login. The company is using a Windows Server 2012 Active Directory infrastructure. All users logging on to the portal also have existing active directory user accounts. The company also has an in-house Windows Server that serves as a local certificate authority for other existing web applications and services. Tasks: Create a 4- to 5-page report that will be shared with the company's board of directors, providing guidance and recommendations on how to best secure the web portal. Your report should cover the following aspects: Describe what Windows-integrated authentication is and how it could potentially be used to provide secure access control to the portal. Describe the use of Windows security groups and explain how a connection to active directory could be performed using the existing technology (existing IIS server and Windows Server 2012 Active Directory). Describe how Windows certificate services work. Recommend a solution that would utilize the in-house Windows certificate authority server to provide a certificate to the new portal. Explain how users can connect and log on to the portal in a
  • 2. secure fashion using secured socket layer (SSL) or HTTPS to ensure that all login credentials and activities on the portal are secure and encrypted. Ensure that you write in a clear, concise, and organized manner; demonstrate ethical scholarship in accurate representation and attribution of sources; and display accurate spelling, grammar, and punctuation. Submission Details: Create your report in a Microsoft Word document. Save the document as M4_A2_Lastname_Firstname.doc. By Wednesday, June 14, 2017 , submit your document to the M4 Assignment 2 Dropbox . Assignment 2 Grading Criteria Maximum Points Described what Windows-integrated authentication is and explained how it could potentially be used to provide secure access control to the portal. 20 Described the use of Windows security groups and how a connection to active directory could be performed using the existing technology (existing IIS server and Windows Server 2012 Active Directory). 20 Described how Windows certificate services work. Recommended a solution that would utilize the in-house Windows certificate authority server to provide a certificate to the new portal. 20 Explained how users can connect and log on to the portal in a secure fashion using SSL/HTTPS to ensure that all login credentials and activities on the portal are secure and encrypted. 20 Wrote in a clear, concise, and organized manner; demonstrated
  • 3. ethical scholarship in accurate representation and attribution of sources (i.e., APA); and displayed accurate spelling, grammar, and punctuation. 20 Total: 100