Book description
Hands-on preparation for the CCIE Security lab exam
Prepare for the CCIE Security lab exam with comprehensive practice lab scenarios designed to test your readiness to take the actual exam
Enhance your network security deployment skills by examining the wealth of case studies and lessons in each chapter
Understand the security capabilities of Cisco IOS Software and Catalyst 3550 switches, VLANs, and IP addressing
Configure ATM, Frame Relay, and ISDN connectivity
Evaluate the common security problems associated with IP routing, including coverage of RIP, EIGRP, OSPF, IS-IS, and BGP routing protocols
Examine security practices for Cisco devices that can be utilized to increase security on the network, including access lists, IP services, and Cisco IOS Software and CatOS security
Learn how to implement AAA, basic and advanced VPNs, and VPDNs
Discover effective deployment techniques for the Cisco PIX and IOS Firewalls
Learn the steps necessary to deploy IDS on the PIX Firewall and Cisco IOS Software
CCIE Practical Studies: Security leads you through the requirements of the CCIE Security one-day lab exam by providing practical lab exercises designed to model complex security solutions. These lab scenarios help you to master the broad scope of technologies needed to succeed on the CCIE Security lab exam and provide you with a solid foundation of knowledge that you can apply to your everyday job as a network security expert.
Serving the dual role of expert-level network security reference and CCIE Security lab exam preparation tool, CCIE Practical Studies: Security begins with a review of routing and switching fundamentals and builds upon this foundation with more advanced requirements of modern network security technology. Each chapter contains technology overviews coupled with mini-lab scenarios that demonstrate practical application of the technology. The book concludes with a final chapter containing complete lab scenarios that integrate the concepts and technologies covered in all the earlier chapters. These comprehensive labs mimic the types of scenarios candidates face on the actual one-day lab exam.
CCIE Practical Studies: Security is part of a recommended study program from Cisco Systems that includes simulation and hands-on training from authorized Cisco Learning Partners and self-study products from Cisco Press. To find out more about instructor-led, e-learning, and hands-on instruction offered by authorized Cisco Learning Partners worldwide, please visit www.cisco.com/go/authorizedtraining.
"Working through lab activities and practice with show commands and debugs will better prepare the exam candidate to implement and troubleshoot solutions efficiently and successfully."
-Kathe Saccenti, co-developer of the CCIE Security exam, Cisco Systems, Inc.
Companion CD-ROM
CD-ROM contains the solutions to the 8 complete lab scenarios in the book.
This book is part of the Cisco Press Practical Studies Series, which offers readers a means to apply theoretical knowledge through hands-on lab scenarios. This unique approach enables readers to practice and hone their internetworking skills while preparing for Cisco certification exams.
Table of contents
- Copyright
- About the Authors
- Acknowledgments
- Foreword
- Introduction
- Command Syntax Conventions
- Device Icons Used in the Figures
- The CCIE Program and Your Lab Environment
-
Connectivity
-
Layer 2 and Layer 3 Switching and LAN Connectivity
- Catalyst Operating System
- Switching Overview
- Spanning Tree Overview
- Layer 3 Switching Overview
- Virtual LAN Overview
- VLAN Trunking Protocol Overview
- Switch Interface Overview
- EtherChannel Overview
- Optional Configuration Items
- Switched Port Analyzer Overview
- Basic Catalyst 3550 Switch Configuration
- Summary
- Review Questions
- FAQs
-
Frame Relay Connectivity
- Frame Relay Overview
- Frame Relay Devices
- Frame Relay Topologies
- Frame Relay Virtual Circuits
- Frame Relay Signaling
- Network-to-Network Interface
- User-Network Interface
- Congestion-Control Mechanisms
- Configuring Frame Relay
- Creating a Broadcast Queue for an Interface
- Transparent Bridging and Frame Relay
- Configuring a Backup Interface for a Subinterface
- TCP/IP Header Compression
- Troubleshooting Frame Relay Connectivity
- Summary
- Review Questions
- FAQs
- ISDN Connectivity
- ATM Connectivity
-
Layer 2 and Layer 3 Switching and LAN Connectivity
-
IP Routing
- RIP
- EIGRP
- OSPF
-
IS-IS
- Integrated IS-IS Overview
- Configuring IS-IS
- IS-IS Building Blocks
- The IS-IS State Machine
- Pseudonodes
- IS-IS Addressing
- Limiting LSP Flooding
- Generating a Default Route
- Route Redistribution
- Setting IS-IS Optional Parameters
- Configuring IS-IS Authentication
- Using show and debug Commands
- Summary
- Review Questions
- FAQs
- BGP
- Redistribution
-
Security Practices
- Security Primer
- Basic Cisco IOS Software and Catalyst 3550 Series Security
-
Access Control Lists
- Overview of Access Control Lists
- ACLs on the IOS Router and the Catalyst 3550 Switch
- Time-of-Day ACLs
- Lock-and-Key ACLs
- Reflexive ACLs
- Router ACLs
- Port ACLs
- Fragmented and Unfragmented Traffic
- Logging ACLs
- Defining ACLs
- Maintaining ACLs
- Unsupported Features on the Catalyst 3550 Switch
- Summary
- Review Questions
- FAQs
-
IP Services
- Managing IP Connections
- MTU Packet Size
- Filtering IP Packets Using Access Lists
- Hot Standby Router Protocol Overview
- IP Accounting Overview
- Configuring TCP Performance Parameters
- Configuring the MultiNode Load Balancing (MNLB) Forwarding Agent
- Network Address Translation Overview
- Configuring IP Services
- Monitoring and Maintaining IP Services
- Summary
- Review Questions
- FAQs
- Authentication and Virtual Private Networks
- Firewalls
- Intrusion Detection
-
Sample Lab Scenarios
-
Sample Lab Scenarios
- Practice Lab Format
- How the Master Lab Compares to the CCIE Security Lab Exam
- CCIE Practice Lab 1: Building Layer 2
- CCIE Practice Lab 2: Routing
- CCIE Practice Lab 3: Configuring Protocol Redistribution and Dial Backup
- CCIE Practice Lab 4: Configuring Basic Security
- CCIE Practice Lab 5: Dial and Application Security
- CCIE Practice Lab 6: Configuring Advanced Security Features
- CCIE Practice Lab 7: Service Provider
- CCIE Practice Lab 8: All-Inclusive Master Lab
- Summary
-
Sample Lab Scenarios
-
Appendixes
- Basic UNIX Security
- Basic Windows Security
- ISDN Error Codes and Debugging Reference
-
Password Recovery on Cisco IOS, CatalystOS, and PIX
- The Software Configuration Register
- The Break Sequence
- Using the Software Configuration Register for Password Recovery
- Renaming Software to Recover a Password
- Replacing Software to Recover a Password
- Password Recovery Through Resetting the Device
- Using Hardware Settings to Recover a Password
- Password Recovery on the Cisco Secure IDS Sensor
- Password Recovery on the Cisco Secure PIX Firewall
- Password Recovery for ACS on UNIX
- Password Recovery for ACS on NT
- Password Recovery on VPN Concentrators
- How to Simulate a Break Key Sequence
- Summary
- Security-Related RFCs and Publications
- Answers to the Review Questions
- Index
Product information
- Title: CCIE Practical Studies: Security (CCIE Self-Study)
- Author(s):
- Release date: June 2003
- Publisher(s): Cisco Press
- ISBN: 9781587051104
You might also like
book
Implementing Cisco Networking Solutions
Learn the art of designing, implementing, and managing Cisco's networking solutions on datacenters, wirelessly, security and …
book
Policy Routing Using Linux®
Traditional IPv4 routing is summarized as "All routing is a destination driven process". When a router …
book
IPv6 Fundamentals: A Straightforward Approach to Understanding IPv6, 2nd Edition
Organizations are increasingly transitioning to IPv6, the next generation protocol for defining how devices of all …
book
Ubuntu Server Cookbook
Arm yourself to make the most of the versatile, powerful Ubuntu Server with over 100 hands-on …