Andrei Canciu

Case Study: Presentation website

Request: presentation website, network auditing, pennetration testing, security update.

Client: Nxdc

  • Industry: IT&C, Data Center
  • Size: 5+
  • Website: www.nxdc.ro
  • Status: Finnished
Started with a request for a 5 pages, static, presentation website. But the project became more complex as we had the website live and we keept getting blacklisted.

Project Requirements

  • Network auditing and implementing best practices.
  • Creating presentation website, installing mail server, anti-spam, DNS server, NS records.
  • Pennetrating testing and reporting results with documentation for best practices.

Project Overview

The request was simple, presentation website, static, 5 pages. The website was delivered as requested and on time but then the problems appeared. The mail was not working for more than a day. After many days of investigation we found out the problem: domain and IP blacklisted!!!

The Challenge

Was to make the website visible online but most important to make the mail server working. The SSL cert was needed, web hosting, email server, DNS, DHCP, Anti-Spam server redone.

The Approach & Solution

First thing I did was to scan the network, install and update OS and Antivirus apps, DNS/DHCP servers redone. Mail server was a linux virtual machine out of date. The solution was to install a new virtual machine with latest CentOS version, up to date and to setup the Anti-Spam server. After all this couple days all was good and the it was blacklisted again. Further investigation showed us that the MIkrotik router was attacked and infected and it was used for spamming. After exporting the configuration and analyze it I saw some strange Firewall settings. Using Wireshark I was able to see some odd traffic. The solution was to upgrade to latest firmware and to do the Firewall and complete setup from scratch.

image
image

After setting everything and scannig the internal traffic I saw that everyting was ok. Now was the time to ask again for removing the domain and IP from different blacklists.

The Results

Efficiency
95% up
rDNS needed, waiting for ISP response.
Customer Satisfaction
100% up
Website and email server working.
Sales Generated
$n/a
Not available info.
Overall Cost
147% up
More than budget.

The overall cost was over budget because the network secutity and Router Firewall were not part from the initiall request. The client was happy with the overall cost even when it was 147% over budget because at the end he had a working website, working internal network but most important a working email server.

Client Testimonial

Andrei did more then we ask. He helped us to solve problem that we were not aware about our email server and our network security
image
Private
Owner, Nxdc

Want me to help with your project?

If you take on freelance work, you can use this section to prompt any potential clients to get in touch with you with their project requirements.