Changes

Jump to: navigation, search

OPS535 A2 201603

414 bytes removed, 12:50, 13 March 2019
m
Due Dates: - fixing for Winter 2019
= Due Dates =
* This assignment worth 15% of your final grade.
* Due Date: March 29thApril 3rd, 2019* Important: You must be in the Lab on March 29thApril 3rd, 2019 to present your systems in order to have your assignment marked unless it is for medical reason.
=Specification=
* A SMTP email server (running postfix) that is capable of receiving and sending emails for users in your domain.
** Users in your domain must be able to send emails to users in the same domain and users in other students' domain domains in the class.
** Users in your domain must be able to receive emails from other email users (both in your domain or from other domains).
* An IMAP Access Agent (running dovecot) allowing users in your domain to remotely access their mail.
* Configure your DNS server to implement and provide the DNSSEC records for your domain.
**Provide the administrator for the .ops domain (your professor) with a copy of the DS key for your domain.
**Configure a DNSSEC Trust Anchor so that your co-nfs server considers the .ops server to already be authenticated. I will provide the key necessary for this through blackboard.
== Supporting Services ==
You need the following services and network infrastructure to support your Internet Email System (some of which should have been configured in assignment 1):
* A primary DNS name server for your domain with the proper MX record(s), SPF record(s), A record(s), and PTR record(s).
**Update your DNS server info on the wiki site as well. URL of the wiki site: http://zenit.senecac.on.ca/wiki/index.php/Domainreg . If you have trouble editing the wiki page, please send an email to your professor.**Provide the administrator of the .ops domain (your professor) with either glue records or a stub zone definitionfor your domain.
* Proper static network routes to and from other Email servers in the Lab.
== BONUS ==
# Optional: Use LDAP authentication to secure your web mail server or Access Agent. (Bonus item +10%)
# Optional: Configure a DNSSEC Trust Anchor so that your co-nfs server considers the .ops server to already be authenticated. I will provide the key necessary for this through blackboard. (Bonus item +10%)
# Optional: Enable postfix restrictions to reject malformed or suspicious incoming mail (Bonus item - up to +10% depending on quality of configuration)
<!-- # Optional: Implement dynamic firewall rules to block black-listed IP addresses of email spammer. (Bonus item +10%) -->
932
edits

Navigation menu