Tuesday, April 28, 2020

Kusku Cagi Essays - , Term Papers, Research Papers

Kusku Cagi KLAS?K KAP?TAL?ZM?N UMUDU VE PEYGAMBERLER? Bug?nk? ekonomik d?zenin alt yap?s?n?n ve dnce ?eklinin olu?mas? uzun bir zaman dilimini kapsamt?r. Bu olu?umun on sekizinci y?zy?l?n ikinci yar?s?nda ba?lad kabul edilir. Ekonomik ya?am, Bat? Avrupa'da(yo?un olarak ?ngiltere'de) ve daha sonrada New England'da buhar makinesinin icad? ve Dokuma Devrimi ile de?i?meye ba?lamt?r. Sanayi Devrimi ile ekonomik dnceler de de?i?meye ba?lamt?r. Sanayi Devrimi'nden ?nce ekonomik d?zene k?rsal b?lgelerde ya?ayanlar y?n veriyordu. G, insanlar?n sahip olduklar? topran ve ya?ad?klar? yerlerin b?y?kl ile ?llmekteydi T?m ?rklar i?inde ?sko?lar ?nemli iktisatlar yeti?tirmi?lerdir. ?sko?ya'n?n yeti?tirdi?i en ?nl? ki?i ve ilk iktisat Adam Smith'tir. Smith Wealth of Nations adl? yap?t?nda kendi ki?i?el karlar?yla ?eli?kili oldu?u halde y?ksek prensip sahibi olma iddias?nda bulunan insanlardan ku?ku duydu?unu belirtmi?tir. Smith'in ziyaret etti?i ki?ilerden biri Voltaire'dir.Voltaire yeni bilgiler toplayarak dncelerini geli?tiriyordu. Voltaire'nin bu ?zelli?i Smith'in ufkunu geni?letmi? ve onu alan?nda bir ?nc? yapmt?r. Smith Fransa'da bulundu?u s?rada Fransa'n?n en ?nemli gelir kayna tar?md?. Fizyokratlar diye bilinen bir grup ekonomik dn?r t?m zen?inli?in topraktan, dolay?s?yla tar?mdan kaynaklandna inan?yorlard?. Smith'i bu gruptan en ?ok etkileyen Fran?ois Quesnay'di. Quesnay'?n Ekonomik Tablosu ekonomik sistemin karl?kl? b?l?mlerini g?steriyordu. Smith Uluslar?n Zenginli?inin Yap?s? ve Nedenleri ?zerine Bir Ara?t?rma adl? kitab?n? 1776'da yay?nlad?. Smith kitab?nda insanlar?n karlar? i?in ?abalamalar?n?n hem kendilerine hem de topluma yararl? oldu?unu dn?r. ?nsanlar?n bireysel dnmeleri i?g?d?seldir ve devletin zorlamas?ndan daha iyidir. Adam Smith'e g?re bir ulusun zenginle?mesi i?in ilk ?nce emek ve ?ok ?alma daha sonra da ?retimde i? b?l?m? ve uzmanla?ma gereklidir. Smith anonim ?irketlere karyd?. nk? ?irket y?neticilerinin kendi paralar?n? kullan?rken g?sterdikleri dikkati ba?kalar?n?n paras?n? da kullan?rken g?stermeleri beklenemezdi. Sanayi Devrimi birdenbire ortaya kmam olu?umu a?ama a?ama ger?ekle?mi?tir. Tar?mla ge?imini s?rd?ren insanlar makinelerin icadi ile ?ehirlerdeki dokuma ve rr fabrikalardaki i?lere ak?n ediyorlard?. K?rsal kesim bo?almaya ba?lamt?. New Lanark ?rnek bir dokuma kentiydi. Smith, g?n?m?zde ekonomik model diyebilece?imiz iktisadi sistemin nas?l i?ledi?ine ili?kin bir g?r geli?tirmi?tir. Smith'in olu?turdu?u bu g?r ?l?m?nden sonra David Ricardo ve Thomas Maltus taraf?ndan ?l?m?nden sonra yeniden ele al?nmt?r. Uluslar?n Zenginli?i'nin yay?nland y?l emperyalist ?ngiltere Amerika'y? kaybetmekteydi. O d?nemde ?retim ve ticaretteki geli?meler Smith'in vaat etti?i t?m zenginli?i sa?lamaktayd?. Yirminci y?zy?lda Smith'in fikirleri Marx taraf?ndan ve devlet m?dahelesini gerekli bulanlar taraf?ndan sald?r?ya u?ramt?r. GELM KAP?TAL?ZMDE DAVRANI? BMLER? VE AHLAK ANLAYI?I Yirminci y?zy?l kapitalizminde m?lkiyet zenginle?me unsuru olarak g?r?ldnden b?y?k toprak sahipleri eme?i ile ?alanlardan daha fazla haklara sahipti. B?yle bir sistemde e?itlik?i devlet anlayna tersti. Sanayi devrimi ile birlikte bu g?r b?y?k ?lde de?i?mi?, sanayi kapitalistlerinin b?y?k toprak sahiplerinden daha da zengin olabilecekleri ortaya kmt?. Zengin s?n?f? ile ilgili aklanmayan bir?ok ?ey vard?r. nk? bilimadamlar? genellikle yoksullarla ilgili ara?t?rmalar yapmlard?r. Halbuki ondokuzuncu y?zy?lda zenginler topluma egemen ?st?n bir s?n?f olarak g?r?l?yordu. Sosyoloji alan?nda ?nc? olan ?ngiliz Herbert Spencer ya?ama en iyi uyum sa?layan?n hayatta kalmas? deyi?iyle ayr?cal?kl? s?n?flar?n nas?l ayakta kaldn? aklar. Spencer'in dnceleri yeni kapitalistlere uymu?tu. Onun dnceleri zenginli?i tamamiyle korumaktayd?. Spencer'den bir ku?ak gen? olan Summer Darvin'in g?rleri benimsemi?, Spencer gibi zenginlerin zenginliklerini b?t?n?yle toplum as?ndan yaral? g?rmt?r. Ondokuzuncu y?zy?lda ekonomik i?leyi?ten ?t?r? yoksulluk kan?lmaz g?r?l?yordu. Bu y?zy?lda yoksullar?n do?al olarak ay?klan?p at?ld g?r yayg?nd?. Zenginlerin tamamiyle gl? olduklar? zamanda Veblen onlar hakk?nda i?neleyici yaz?lar yazmt?.Veblen'in ilk ve en b?y?k kitab? U?ra?s?z S?n?f Kuram? yirminci y?zy?lda yay?nland?.Bu eserde Veblen zenginlerin servetlerinden dolay? kendilerini gl? hissetmeleri konusunu ele ald?. Yirminci y?zy?l?l?n ba?lar?nda yap?lan Newport evleri bir zenginlik g?stergesiydi. Bu evler tam anlam?yla zenginlerin servetini yans?tmak i?in yeterli de?ildi. Bunun yan?nda servet g?stergesi olarak len balo gibi pahal? e?lenceler yap?l?yordu. Bu evlerde ya?ayanlar servetlerinin b?y?kln? kamuoyuna New York Herald gazetesi ile yans?t?yorlard?. G?n?m?zde se?kinlik servetin b?y?kl ile ?llm?yor. Politikac?lar servet sahiplerinden daha ?st d?zeyde bulunuyor.Yani kapitalizmin davran bi?imleri b?y?k ?lde degi?ime u?ramt?r. KARL MARX'IN YOL AYRIMI Toplumda s?regelen dnce bi?imi, siyasal ve ekonomik d?zen Karl Marx ile sorgulanmaya ba?lamt?r.Marx Hegel'in dncelerinden etkilenmi? Hegel'in belirtti?i toplumun organik geli?im ve de?i?im s?reci Marx'?n dncelerinin temelini olu?turur. Toplumun de?i?imi s?n?flar aras?ndaki ?atmadan kaynaklan?r. Hegel s?n?f bilincine sahip proletaryan?n kapitalistleri yenilgiye u?rat?p ii devletini ortaya karacan? belirtir. Marx K?ln'de Rheinische Zeitung'da yazmaya ba?lad?. O s?ralarda devrim konusu ?ok tartlmaktayd?. Marx bu tartmalar s?ras?nda kom?nizmin dnce yap?s?n?n ?arp?t?lmas?n? gazete yaz?lar?nda ele?tirmi?tir. Marx'?n bo?anma konusu sebebiyle daha ?zg?r bir tartma ortam? istemesi ?ar?n gazete yay?n?n? yasaklamas?na sebep oldu. Marx Paris'te Alman Frans?z Y?ll ad?yla dergi kard?. Ama dergide kan bir kitab?n ele?tiri sebebiyle dergi yay?ndan kald?r?ld?. Bu d?nemde sosyalizm ?ok yo?un olarak tartlmaktayd?. Marx da

Thursday, March 19, 2020

50 Words or Less

50 Words or Less 50 Words or Less 50 Words or Less By Maeve Maddox In a recent post I have the following sentence: Conveying a coherent report in 50 words or less is quite a feat, and the writers in my paper usually do an amazingly good job of it. Several readers wrote to ask if I shouldn’t have written â€Å"50 words or fewer.† I appreciate readers who gently point out my errors so that I can have them corrected before too many more people see them. In the case of â€Å"50 words or less,† however, I’m on solid ground. The distinction between less and fewer when used to qualify nouns was codified in the 18th century. Fewer is used to qualify countable nouns: Channel 10 runs fewer commercials than Channel 5. Fewer people are in touch with Nature these days. Less is used to qualify uncountable nouns: She loves her new job, but she is earning less money. With the new standards, children may read less literature in school. There are exceptions to this rule. Less is used to describe units, such as time, money, and distance: I’ve spent less than two hours on my homework today. We owe less than $1,000 on the car. Our new house is located less than three miles from the school. When the relevant â€Å"items† (e.g., hours, dollars, miles) are seen as a unit and not as individual items, less is the word to use. A few years ago the UK store chain TESCO, overwhelmed by grammar sticklers, changed its express lane signs from â€Å"10 items or less† to â€Å"Up to 10 items.† According to Pocket Fowler’s Modern English Usage (Oxford, 2008), they needn’t have done so: Supermarket checkouts are correct when the signs they display read 5 items or less (which refers to a total amount), and are misguidedly pedantic when they read 5 items or fewer (which emphasizes individuality, surely not the intention). The usage â€Å"50 words or less† falls into the same category as the check-out sign. Want to improve your English in five minutes a day? Get a subscription and start receiving our writing tips and exercises daily! Keep learning! Browse the Grammar category, check our popular posts, or choose a related post below:Math or Maths?Homogeneous vs. Heterogeneous7 Proofreading Steps

Tuesday, March 3, 2020

Five Ways to Look Up

Five Ways to Look Up Five Ways to Look Up Five Ways to Look Up By Maeve Maddox ESL learners have a tough row to hoe when they set themselves to learn English idioms. Note: â€Å"to have a tough row to hoe† = â€Å"to have a difficult task to carry out.† For example, each of the following sentences contains the verb look and the word up, but each conveys a different thought: 1. It’s a surprise! Keep your head down and don’t look up. In this sentence, up functions as an adverb modifying the verb look. In this context, â€Å"to look up,† means, â€Å"to direct one’s gaze upward.† 2. Before you use an unfamiliar word, be sure to look up the meaning. Here, â€Å"to look up† is a phrasal verb with the meaning â€Å"to search for an item of information, or seek information concerning (a person or thing), in a book or database, on the Internet, etc.† 3. Many youngsters look up to professional athletes. In this context, â€Å"to look up to† is a phrasal verb meaning, â€Å"to have a great deal of respect for, to admire, venerate.† 4. While I’m in Chicago, I intend to look up my old college roommate. This colloquial use of â€Å"to look up† means â€Å"to visit or contact a person, especially for the first time or after loss of contact. 5. My financial planner assures me that the economy is about to look up. This idiom is most commonly used in the progressive tense: â€Å"Things are looking up.† The meaning is â€Å"improving, getting better.† From the verb â€Å"look up† (to seek information) comes the noun lookup, a computer term meaning â€Å"the action or process of looking something up in a database.† Lookup is also used as a qualifier: I often  use the Passage Lookup to compare English translations from the NIV, ESV, NASB, and NKJV.   The  lookup feature  allows you to quickly search your contact manager or PIM (personal information manager) for phone numbers to dial. On my iPad, the  lookup feature  isnt working right for certain entries. Want to improve your English in five minutes a day? Get a subscription and start receiving our writing tips and exercises daily! Keep learning! Browse the Expressions category, check our popular posts, or choose a related post below:Grammar Test 1Is There a Reason â€Å"the Reason Why† Is Considered Wrong?Shore It Up

Sunday, February 16, 2020

Updated Annotated Bibliography Essay Example | Topics and Well Written Essays - 1750 words

Updated Annotated Bibliography - Essay Example ed data, including the additional bibliographic information, purpose of work, critique, and worth of the presented information, are provided in this work. Each source is catalogued in APA format by authors, year of publication, title of work, location, and publisher. The paper makes use of various sources like published research materials and Internet articles. Badur, G. (2003). International students perspectives on their cross-cultural adjustment to American higher education. J. C. P. G. Palmer. United States -- Illinois, Illinois State University. Illinois State University. This study examines the cross-cultural adjustment of international students from India, China, South Korea, and Japan in a Midwestern public university to identify factors that inhibit or assist in their academic, social, and cultural journeys as they participate in campus life. Graduate and undergraduate students were chosen from the targeted countries with a follow-up interview. The research was based on a host of socio-cultural and educational theories. The focus was mainly on their experience with using English, academic and social competence and approach to American culture. The findings suggest areas of improvement in service delivery to the students in terms of catering to their various academic and social needs. Chaparro, D. P. (2009). Are our efforts worthwhile? International students perceptions of a project-based program designed to internationalize higher education. D. D. Hendel. United States -- Minnesota, Educational Policy and Administration. Educational Policy and Administration. This qualitative research focuses on international students perspectives on a project-based program designed to internationalize higher education. It shows that the Culture Corps project had helped international students in getting acclimatized to the university setting academically, linguistically and culturally. The study explains the basis of the Culture Corp project, undertaken by the

Sunday, February 2, 2020

Do some brief research on the topic of resisting change. What Paper

Do some brief on the topic of resisting change. What determines whether or not people resist change - Research Paper Example Researchers have observed many types of resistance. Employees avoid doing tasks or postponement of tasks, resignation and underproduction are the most common outcomes recognized by researchers. Another study unveils few other indicators that show resistance for change in the organization, which include increased absenteeism, impatience and frustration (Todnem, 2005). These indicators and reactions of employees are reflective of the resistance to change. In order to manage the change effectively and to avoid these negative after effects of change in the organization, mangers must understand the reasons behind the resistance. Employees do resist change and their negative responses are caused by few rational reasons. One reason behind the resistance of change by employees is uncertainty about the effects of change being implemented in the organization. Uncertainty about job performance is another reason that triggers employees to resist change because they are unaware of the tasks, which will be given to them after change and they have fear of not having the required skills. Another reason behind this resistance is no involvement of employee in the change process, which creates the fear of abrupt change in the mind of employees and they think they are not the part of the organization. To cope with these consequences, management must be proactive, enable employee participation, and make them aware of the effects of the change in the organization (Todnem,

Saturday, January 25, 2020

Analysis of Company Network Models

Analysis of Company Network Models CHAPTER 1 ABSTRACT The purpose of this exercise is to provide a detailed design document as per the requirements given in various formats by the Client NoBo Inc. The scope of this document includes at first explaining the requirements provided by the client, explaining the solution both from a top level view and detailed, also explained are the configuration steps, technologies used and scope of the future work and recommendations. We have used modular design approach for designing the network .The final outcome is a detailed document which will extensively assist in deploying and configuration stages of network for NoBo Designs. CHAPTER 2 INTRODUCTION 2.1 AIM: This project aims to analyse the various network models and design a network according to the clients requirements. 2.2 OBJECTIVES: All the Cisco network models: Campus network, Hierarchical network, Enterprise edge model have been reviewed. According to the client requirements the suitable network model has been identified and designed. Proper selection of the devices (Routers, Switches, Computers, cables) has been made to meet the service requirements. The cost for all the devices and equipments that are required has been estimated. Centralised internet connection has been provided for the branch sites from their respective headquarters. This provides high control on the data between the sites. IPsec is cond for data security while using the backup line when the main link goes down. Cisco IOS Firewall is also cond on the perimeter devices. The designed network has been cond on the simulator and all its functioning has been tested. 2.3 DISSERTATION STRUCTURE: CHAPTER 1: This chapter briefly discusses about the abstract of our project. CHAPTER 2: This chapter briefly explains the introduction of our project topic, reviewing all the objectives and ends with the conclusions of each and individual chapter in our dissertation. CHAPTER 3: This chapter explains the background of various network topologies, reviewing of all the concepts like routing, switching, IP addressing and ends with the discussion of the QOS, security issues. CHAPTER 4: This chapter introduces the requirements of network design, implementation, testing and ends with the explanation of all configurations. CHAPTER 5: This chapter briefly discusses about all the experimental results and ends with the analysis of the obtained results. CHAPTER 6: This chapter discusses the entire evaluation of our project and ends with the introduction of conclusions. CHAPTER 7: This chapter briefly discusses about the overall conclusions. CHAPTER 8: This chapter provides the recommendations and future work in our present topic. CHAPTER 3 LITERATURE REVIEW 3.1 Cisco Network Models: Network models may change due to the implementation of different technologies which are applicable to us. But the goal of each model is finally same which is convergence and achieving service integration. There are 6 different geographies available in an end-end network architecture which is briefly discussed below: ( Inc., C. S. (Mar2009, Roberts, E. (8/28/95). 3.2 Cisco Hierarchical model: It is an older model which is good for network scalability. The entire network is divided into 3 layers which are given below: Access layer: These devices are generally developed entirely in a network for the purpose of providing clients access to the network. In general it has been done by the switch port access. Distribution layer: In general, these devices are developed as aggregation points for access layer devices. These devices can be used for the dividing of workgroups or some other departments in the network environment. They can also provide WAN aggregation connectivity at various Cisco Network Models. Core layer: These devices are designed for the purpose of fast switching of packets and they should provide the redundant otherwise it results in loss of degradation of service at the time of network congestion or link failures. Finally these devices help in carrying the entire network traffic from one end to the other end. Finally this model provides good scalability and it supports the combination of SONA, other interactive services and these are applicable to any topology (LAN, WAN, MAN, VPN..) or other connectivity options which are applicable to us. The following diagram (3.1) shows us the Cisco Hierarchical model. 3.3 Campus Network Architecture: In last 10 years it has been developed rapidly and the no of services supported in this model are more. The basic structure of this model is just an extension of the previous model. It supports the implementation of various technologies in this model like QOS, MPLS VPN, IPSEC VPN, and HSRP and so on. It provides the network access to campus wide resources and provides layer 2 switching; layer 3 switching at the Access and Distribution respectively. Services in this model are switched from stateless to stateful and provide redundant devices to monitor all the events, connections in a network. Meeting of these requirements requires some changes in its basic model. The following (3.2) shows us the campus network architecture model.( Gilmer, B. (Nov2004) It provides the combination, multi- service environment which gives the sharing and connectivity of all the users who are working at the remote, branch sites. It requires the combination of both hardware and software devices for providing the services and applications to all the clients in a network architecture. SONA architecture helps an enterprise model to extend its services to the remote site under the consideration of good service levels. Cisco Unified Communications, security and so on can be offered at all the branch sites to overcome the problems of inadequate connectivity. The following diagram (3.3) shows the branch network architecture. It plays a major role in the deployment of any network. Now days, it is growing rapidly to implement more SONA functions. These additions of new functions like virtual servers, instant applications, dynamic change of network configurations and so on. Some resources will be added online to get the support of upcoming needs. This network architecture provides the info about on- demand services which provides dynamic network environment to all the users, consolidation of services while growing of various business applications provided by an adaptive network. Finally this network model reports more usage of our capital without any changes in its infrastructure. In general it has been developed for the purpose of higher level security features in network architecture. It has been done by the support of several server farms having different functionality from DMZ (demilitarized zone) functions like DNS, FTP, HTTP, Telnet and so on for all the users (internal/ external) to share various applications and services among partners and to get the access of internet applications. This network architecture is entirely different and it can make a new or it can break the all discussed Cisco versions. Based on the discussion of all the services like SONA, QOS, and transport services and so on which would mandatory in an end- end system? Based on the bandwidth requirements, their functions and providing QOS the WAN/ MAN has been designed. The functioning and geography plays a major role in deciding the method and speed connectivitys among various sites. The cost of total deployment of a network may vary and it is different from each other. If the connection exists between the sites is a traditional frame relay or if it is provided by a service provider. For example, by using MPLS this provides layer three connectivity between two ends. And it also varies by considering the distance between two sites. The convergence of various types of application over an IP network requires good connectivity, high security levels and providing of good services over the large WAN. The following fig (3.6) shows the WAN/ MAN architecture. (Israelsohn, J. (7/22/2004.) In this approach the overall network design and implementation is discussed with the adequate background. Modular Design Approach: The recipe for an efficient and robust network is to design the network taking into Consideration the various functionalities/requirement required by the network and placing that functionality into a module. Various modules might end up acting in independent physical devices or one physical device may contain all the modules, the idea is to visualize the various functionalities acting as independent unit. The part of the network which consists of hardware and configurations for the wide area networks is termed as the WAN module of the network. It should contain of the all routers, interfaces, cabling and configurations that belong to the Wide Area Networks. The module should be designed separate from the other modules. Similarly all the devices, interfaces and configurations that are involved in the virtual private network would be designed as one module. Some aspects of the design for which there are no pointers in the design documents are also discussed in the detail design section with details of the relevant choices. 1) Performance: A network to its end user is as good as how his/her applications perform. Following are few metrics to for measuring network performance. Responsiveness: The design should be such that it is par with the acceptable responsive time of all the business applications. Throughput: The rate of traffic passing through a given point in the network, it can be calculated in multiples of bits per second or packets per second. Utilization: utilization of resources is the most effective metric to calculate the congestion points in the network, aiding the network design to a great extent. 2) Availability: Network Availability is the key factor to a proper network design. Planning for continuous uptime is important for the business to carry out their activities without any interruptions. Following are a few points for availability: Device Fault tolerance: All the devices installed in the network should be of quality and reliable. Where ever possible redundant ports, modules and devices should be installed. Capacity Planning: A network design should consider adequate capacity planning, for example how many connections can a link handle in worst case scenarios. Link Redundancy: As per the business requirement at least all the important links and internet connectivity should be redundant. 3) Scalability: All the network modules should be designed as such that they should cater for future requirements as well as todays needs. Topology: The topology should be designed as such that it would require minimal configuration whenever any major or minor changes are required. Addressing: The network addressing should allow routing with minimum resources. For example by using route summarization and proper ip addressing scheme which would have minimal impact or no impact on the existing networks or subnets and routing mechanisms. Local Area Network Module: The local area network design primarily consists of dividing the various departmental requirements into logical network separations. At all the sites will create individual virtual area networks for all the departments. All the virtual area networks will use a class c /24 subnet mask, reason behind that is the IP addressing used for the internal networks is all private and hence no sub netting is required. All the Vlans at all the sites are local Vlans which means that they do not extend across the wan pipes. The departments at different sites might have similar names and functionality but its always recommended that the Vlans are kept to be local. The Virtual are network will divide the whole LAN into virtual boundaries allowing for broadcast control and provide for access-control using access-lists. A VLAN has been provisioned for the Server Network and wireless network at each site as well. The VLANS are local to the respective sites only and are class C /24 networks.DOT1q trunks have been placed between the layer 2 switches and the routers at each site. DHCP: The DHCP is Dynamic Host Configuration Protocol provides automatic IP addresses To the hosts on the TCP/Ip network [RFC 1531].It uses BOOTP known as bootstrap protocol. The DHCP server can be on the same or on a different network away from the host pcs. This is possible with the dhcp relay agent. When a client Pc boots, it searches for the server by sending broadcast packets on the network. When server gets theses broadcast packet it responds and sends a packet with an IP address to the client from the DHCP pool. The client can use the IP or can request for another IP instead. The client can hold this IP as according to the configuration in the DHCP server. The minimum duration for the client to hold the IP address is 8 days. After this period the clients has to make a new request for an IP address. This how , the DHCP usage in the network will reduce the intervention of the administrator from giving the IP addresses manually. NAT: For a Pc to connect to the internet and communicate with the other Pcs on the internet, it needs a public Ip address. One has to pay to have a public IP. It will be very expensive to have all Public IP addresses in a network. So, NAT provides a facility to convert the private IP address to the Public Ip which is on the interface of the device (router) that is directly connected to the internet via ISP. This saves money. Moreover it provides the additional security to the internal network By using the one public address. Following are the benefits that NAT provides: Preservation of IP address IP address and application privacy Easy management Routing Module: The routing module consists of the routing architecture at each site; it is the responsibility of the routers to forward packets to the correct destination. Routers by querying the routing table make the forwarding decision. 1) Static routes: At each site static routes have been placed at each head quarter sites. Static routes are the manual routes that are placed by the network administrator manually in the router and have to be taken out manually as well. At the headquarter site the static routes point to far end headquarter site or to the vpn subnet. 2) Default routes have been placed at all sites, Default routes are treated by the routers as a catch all. If there are no specific routes towards a given destination, the default route will be picked up and the packet would be forwarded out of that interface to which the default route belongs. Since the Internet has more than 100,000 routes , it would be infeasible to place all those routes into our routing table , so instead a default route has been placed at each headquarter to forward all the internet traffic towards the interface belonging to the ISP end. Since we are using the far end headquarter as back up to our internet connections at each site. A special type of default route has been added in each headquarter, if the internet link goes down, the floating route will come into the routing table and the original route will disappear. The floating route is nothing but a default route with a higher administrative distance. This is a feature of Cisco IOS, it originally takes the route with the lower AD and places that into the routing table, if that route is lost it would place the second default route with the higher administrative distance. 3) Routing Information Protocol: Routing information protocol version 2 has been used to propagate the Subnet routing between the sites. RIP is a distance vector routing protocol which advertises its routing tables to its neighbours and has a hop count of 15 , since our network has only five sites at the moment, RIP has been used for routing between the networks , the RIP version2 is the recent version of the rip ipv4 and it can carry variable length subnet masks . The RIP is adequate for our requirement. (http://www.ciscosystems.org/en/US/docs/internetworking/technology/handbook/Routing-Basics.html accessed on Dec 12 ,2009) RIP: As said earlier Routing Information Protocol is the only widely used distance vector protocol. It propagates the full routing table out to all participating interface in every 30 seconds. RIP works very well in smaller networks, but it is not scalable for large networks having slow WAN links or on networks with more than 15 routers installed. RIP version only supports class full routing, which essentially means that all devices in the network must have the same subnet mask. The reason: RIP version 1 does not propagate with subnet mask information. RIP version 2 supports classless routing, which is also called prefix routing and does send subnet mask in the route updates. (Chin-Fu Kuo; Ai-Chun Pang; Sheng-Kun Chan (Jan2009,) RIP Timers RIP has 3 different timers which regulate the performance: Route update timer: This timer sets the delay between the propagation of the full Routing table to all the neighbours: this would be normally 30 seconds. Route invalid timer If the router doesnt hear any updates for a particular router for 90 seconds it will declare that route invalid and will update all the neighbours to that the route has become invalid. Route flush timer : After the route has become invalid , another timer starts which is normally 240 seconds ,if the router doesnt hear anything about the said route , it will flush the route out of its routing table and will update the neighbour that I am going to remove this route from my routing . RIP Updates RIP being a distance-vector algorithm propagates full routing tables to neighbouring routers. The neighbouring routers then add the received routing updates with their respective local routing tables entries to accomplish the topology map. This is called routing by rumor, In routing by rumour the peer believes the routing table of its neighbour blindly without doing any calculations itself. Rip uses hop count as its metric and if it finds that multiple path share the same cost to a particular destination it will start load-balancing between those links, however there is no unequal cost path load balancing as there is possible in case of EIGRP. Rip can be troublesome in many ways: Rip actually only sees the hop count as a true metric, it doesnt take care into consideration any other factors So if a network has two paths, the first only 1 hop away with 64 Kbps of bandwidth but a second path exists with 2 hops but each link having a bandwidth of 2 mbps , RIP will always prefer path no 1 because the hop count is less. Rip has a very crude metric and hence not a protocol of choice in many networks. Since RIP by default is classless and is a true distance vector protocol, it also carries with itself same issues as presented by the distance vector routing protocols, fixes have been added to RIP to counterattack such problems. Snort is an open source network based intrusion detection system, it can do traffic logging and intrusion detection analysis on the live traffic, snort is installed on a host and the interesting traffic is copied to it via the port mirroring or port spanning techniques, Snort can be also used inline on an Ethernet tap, it can work in conjunction with Ip tables to drop unwanted traffic. Inter-site Routing: The routing protocol RIP version 2 will propagate routes among all the sites, each Vlan will be advertised as a network in the routing protocol. Switching: The switches at each site carry all the virtual local area networks. 1) A DOT1q trunk has been placed between the switches and the routers at each site. The dot1q trunks carries all the Vlans from the switches to the routers, the routers act as the layer 3 gateway for all the Vlans present in the site, the layer 2 switches alone cannot act as the layer 3 gateways and hence they require some kind of layer 3 device. 2) All the other ports in the switches are either access ports or are trunks to other switches in the same sites. The access ports are the user ports, each access ports would belong to one or the other Vlans. The no of access ports in the building would decide the number and the model of the switches to be placed inside the access layer. Vlan: By Default all the ports on a layer 2 switch belong to the same broadcast domain. The broadcast domains are segregated at the router level, however there are requirements to segregate the broadcast domains in campus switching environments, hence the virtual local area networks are used. The numbers of Vlans in a switch are equal to the number of broadcast domains, the ports on the switch which belongs to a particular Vlan belongs to a certain broadcast domain of that Vlan. Devices in one Vlan cannot connect to other Vlans if there is no layer 3 connectivity provided. Trunking: Speaking of IEEE 802.1Q. There are two different trunking protocols in use on todays Cisco switches, ISL and IEEE 802.1Q, generally referred to as dot1q. There are three main differences between the two. First, ISL is a Cisco-proprietary trunking protocol, where dot1q is the industry standard. (Those of you new to Cisco testing should get used to the phrases Cisco-proprietary and industry standard.) If youre working in a multivendor environment, ISL may not be a good choice. And even though ISL is Ciscos own trunking protocol, some Cisco switches run only dot1q.ISL also encapsulates the entire frame, increasing the network overhead. A Dot1q only place a header on the frame, and in some circumstances, doesnt even do that. There is much less overhead with dot1q as compared to ISL. That leads to the third major difference, the way the protocols work with the native Vlan. The native Vlan is simply the default Vlan that switch ports are placed into if they are not expressly placed into another Vlan. On Cisco switches, the native Vlan is Vlan 1. (This can be changed.) If dot1q is running, frames that are going to be sent across the trunk line dont even have a header placed on them; the remote switch will assume that any frame that has no header is destined for the native Vlan. The problem with ISL is that doesnt understand what a native Vlan is. Every single frame will be encapsulated, regardless of the Vlan its destined for. Access ports: An access port is a port which does not carry any Vlan information, the port which is cond as a an access port, on that port the switch takes off the Vlan information and passes the frame on to the end device, end device be it a pc or a printer or something else has no information passed about the Vlan. A).routing: The routing table in a router is populated mainly in 3 ways. a) Connected routes: router places the networks belonging to all types of its live interfaces in the routing table such routes carry an administrative distance of 0 as they are most trusted routers, these routes are taken out of the routing table if the interface goes down. b) Static routes are routes place manually by the router administrator and carry an administrative distance of 1, these routes are the second most trusted by the router after the connected routes, since these are being added by the administrator themselves c) Third type of routes are installed by the routing protocols and carry administrative distances according to the type of the routing protocol. Wireless local area network Module: A Vlan has been provided at each site which acts as a wireless network, the wireless Vlan connects to wireless access points which provides wireless connectivity to the users. Wireless access points are placed at each floor at all the sites, all the wireless access points will be of Cisco Linksys brands. The wireless access points at each site will be WIFI carrying all a, b or g standard. (O. Elkeelany , M. M. M., J. Qaddour (5 Aug 2004) The wireless networks will use WPA2 key security mechanisms to protect the network from unauthorised access and attacks. Proper placements of the wireless access points can be done after a physical inspection of the sites. If a barrier wall or something else obstructs the coverage of the wifi access points at a floor another wifi access point will be required at the same floor. IP Addressing Module: WAN Ip addressing, all wan connections are point to point and use a /30 subnet mask A /30 subnet only allows for two actual hosts which fits for the wan connections. VLAN Ip addressing, all the Vlans including the wireless and the server Vlans are /24 networks All the future Vlans should be /24 as well, this would help to limit the layer3 broadcasts to only 254 hosts, /24 is being used because our Vlans are all based on class c private addressing and there are adequate addresses in the same class for our future needs as well so there is no actual requirement to subnet any further, sub netting further would actually make the design complex without any real benefits. The routers also have a trunk which comes from their respective site switches. The 1st valid address of the each Vlan belongs to the router acting as a gateway to the Vlans. These .1 addresses are required to be hardcoded inside the routers themselves. The host addressing is taken care by the dhcp protocol, each router as its site will act as a dhcp server for all the Vlans present in the same site. The router acting as a dhcp server would provide gateway information to the hosts in each Vlan as well as the dns servers to be used and the domain information as well. A separate list has been maintained for the hosts outside the dhcp scope, should there be a requirement that a host be provided a static Ip address, and the same Ip address should be added to the list of non dhcp addresses for each Vlan at each site. Server Farm Module: A special virtual area network is in place at every site for a special purpose, this vlan only has servers placed in it, this Vlan acts as a DMZ at all sites. The servers at various sites are placed in separate Vlans to protect them from the broadcasts created by the users in the site as well as blocking unauthorised access. If the requirement arises that a server should also be placed in another Vlan at same time, either 2 network cards should be attached to the same server and each placed in the respective Vlan, if the server is required to be attached to more than 2 Vlans, then the server should carry a special network card which could build trunks with the 2960 switches. The speed and duplex modes on all the server ports should be manually cond by the network engineers as there are chances of duplex mismatch in the auto mode. Unauthorised access can be blocked into the server farm via using IP access-lists feature of the Cisco IOS.( Zhuo L , W. C., Lau FCM . (OCT 2003 ) Security Module: This is the most important module of the network design, as its name suggests it would cater for the network security, following are the security measures in place for the network designs. An integrated Cisco IOS firewall protects the perimeter interface (internet connection) from attacks from the outside world at both the headquarter sites; IOS firewall uses stateful inspection for the protocols listed in the firewall itself. As advised earlier the access to the server Vlan at each site is also controlled by the use of IP access-lists, only authorized IPs/networks and that too only on specific ports are allowed to traverse the DMZ(DEMILITARIZED ZONE). There are perimeter access-lists in place at the headquarter sites blocking most common and known attacks from the internet. The internet modules have been centrally designed to keep a tighter control and strict security. An additional measure of security can be placed at each site by adding an intrusion prevention system to each headquarter. A very effective intrusion detection engine is SNORT, being open source it can be installed in a very short period of time and is free. Further management Vlan can be secured by using port security and sticky Mac mechanisms. http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5708/ps5710/ps1018/prod_qas09186a008010a40e.html The Cisco IOS firewall is an EAL4 certified solution and is a stateful firewall, it is integrated into Cisco router IOS, IOS is the best available routing, security and VoIP software around, and integrating a stateful firewall produces an economical yet flexible solution. It is the ideal solution for small offices, branch offices and wherever the need arises for an embedded firewall solution. The Cisco IOS firewall can be turned on and off in the desired manner on the desired interface in the Cisco router Cisco IOS firewall can be cond in basically two modes, Classic firewall also known as CBAC control based access control or the new configuration technique which is called Zone based policy firewall. The later one is used wherever the network is required to be divided into various zones for example a DMZ zone. The later configuration methodology will be carried on in the future as it caters for the changing needs of networks. WAN MODULE: The Wan connectivity for the NoBo designs has been designed taking in consideration of the following characteristics WAN connectivity: Head -quarters: All the head Quarters have been has been connected via an International leased line from service provider. All the branch-offices are connected to their headquarters via leased lines as well via service provider. Wide Area Network Back up The internet connectivity at both the remote and client sites can be used as a backup in case the primary WAN link is down; a separate site-to-site vpn link will be required to be cond between the two sites. The site to site vpn will use the IPSEC framework which would be only used if the floating routes that are present in the Cisco routers start pointing towards the vpn links in case of the wan link outage. This IPSec vpn back up link should be strictly used as a back up as the internet bandwidth is limited and the latency is high. Network Management mechanisms would notify everyone, if the primary wan link is down. If the requirement for the backup link for a branch site comes up, same methodology can be used, the branch can acquire its own internet connection and use it as a backup link to its respective head office. In that case changes in routing will also occur. IPSec: IPSec is a protocol contains set of features that protect the data which traverses from one location point to another. The location itself defines the type of VPN. The location could be anything such as pc on the internet, a small regional office, a home office or any corp. headquarters. A user on the go would always connect to a user to site vpn and all the others would be called a site to site vpn. The IPSec protocol works on layer 3 and above, like tcp/udp header and data and does not protect any layer 2 frames, a different kind of protection mechanism has to be deployed for the same and also is possible only in the controlled network. The encryption and IPSec are many times thought to be one and the same thing but they are different, IPSec is basically a suite of protocols and one of them does encryption. Following are the features of the IPSEC protocol suite. Data confidentiality Data integrity Data origin authentication<

Friday, January 17, 2020

Mydin Hypermarket Essay

How MYDIN grew from a small grocery shop till a Multi-Billion Ringgit Retail Chain MYDIN business activity is in retailing and wholesaling. The products range from food line, household, soft-lines and hard-lines items. Hard-line products include hardware, electrical, stationery, porcelain and toys. Whilst soft-line comprises of textiles and fabrics products. Food line includes confectionery, drinks and beverages, delicatessen and dairy products. In their early years of operations, MYDIN’s focus has always been in the non-food sector until they bought over the first supermarket in Selayang in 1997. Each of the branches has their own business category, based on the capacity of goods traded. The category comprises hypermarket, emporium, minimarket, convenience shop, franchise store and bazaar. Currently, MYDIN operates more than 90 outlets nationwide inclusive of 16 hypermarkets, 16 emporiums, 3 bazaars, 48 minimarkets (MyMydin), 8 convenience shops (MyMart) and 6 franchise outlets (Mydin Mart). Each of the hypermarkets is located in MYDIN Mall. Above all, MYDIN operates its business based on ‘Halal’ concepts and stresses on honesty, sincerity and good discipline in all aspects of its business. Company Vision MYDIN is the world’s leading distributor of competitive â€Å"Halal† goods and services Company Mission We aim to be the leading wholesale and retail company by providing the best value, wide assortment of goods and continuous excellence based on our business formula Source: http://www.mydin.com.my/mydin/about-mydin