final project from the HCIA-Security scholarship at Huawei ICT Academy – Egypt, NTI. This project involved building a complete secure network infrastructure using Huawei firewalls, with a focus on high availability, structured security zones, and advanced VPN technologies.
Key highlights:
Active/Standby Firewall setup with VRRP for seamless failover
Three security zones:
Trust (can access Untrust & DMZ)
Untrust (isolated from Trust, can reach DMZ)
DMZ (hosts public servers)
Well-defined security policies and NAT configuration
Advanced features added for enhanced security:
GRE Tunnel
L2TP VPN
IPSec VPN
This project not only strengthened my technical skills in firewall configuration, network security, and VPNs, but also taught me teamwork, problem-solving, and the value of mentorship.