CCNA Security 640-554 Official Cert Guide

Book description

Trust the best selling Official Cert Guide series from Cisco Press to help you learn, prepare, and practice for exam success. They are built with the objective of providing assessment, review, and practice to help ensure you are fully prepared for your certification exam.

CCNA Security 640-554 Official Cert Guide presents you with an organized test preparation routine through the use of proven series elements and techniques. “Do I Know This Already?” quizzes open each chapter and enable you to decide how much time you need to spend on each section. Exam topic lists make referencing easy. Chapter-ending Exam Preparation Tasks help you drill on key concepts you must know thoroughly.

·         Master Cisco CCNA Security 640-554 exam topics

·         Assess your knowledge with chapter-opening quizzes

·         Review key concepts with exam preparation tasks

·         Practice with realistic exam questions on the CD-ROM

CCNA Security 640-554 Official Cert Guide, focuses specifically on the objectives for the Cisco CCNA Security IINS exam. Expert networking professionals Keith Barker and Scott Morris share preparation hints and test-taking tips, helping you identify areas of weakness and improve both your conceptual knowledge and hands-on skills. Material is presented in a concise manner, focusing on increasing your understanding and retention of exam topics.

Well-regarded for its level of detail, assessment features, comprehensive design scenarios, and challenging review questions and exercises, this official study guide helps you master the concepts and techniques that will enable you to succeed on the exam the first time.

The official study guide helps you master all the topics on the CCNA Security IINS exam, including:

  • Network security concepts

  • Security policies and strategies

  • Network foundation protection (NFP)

  • Cisco Configuration Professional (CCP)

  • Management plane security

  • AAA security

  • Layer 2 security threats

  • IPv6 security

  • Threat mitigation and containment

  • Access Control Lists (ACLs)

  • Network Address Translation (NAT)

  • Cisco IOS zone-based firewalls and ASA firewalls

  • Intrusion prevention and detection systems

  • Public Key Infrastructure (PKI) and cryptography

  • Site-to-site IPsec VPNs and SSL VPNs

CCNA Security 640-554 Official Cert Guide is part of a recommended learning path from Cisco that includes simulation and hands-on training from authorized Cisco Learning Partners and self-study products from Cisco Press. To find out more about instructor-led training, e-learning, and hands-on instruction offered by authorized Cisco Learning Partners worldwide, please visit

Table of contents

  1. Title Page
  2. Copyright Page
  3. About the Authors
  4. About the Contributing Authors
  5. About the Technical Editors
  6. Dedications
  7. Acknowledgments
  8. Contents at a Glance
  9. Contents
  10. Command Syntax Conventions
  11. Introduction
  12. Part I: Fundamentals of Network Security
    1. Chapter 1. Networking Security Concepts
    2. Chapter 2. Understanding Security Policies Using a Lifecycle Approach
    3. Chapter 3. Building a Security Strategy
  13. Part II: Protecting the Network Infrastructure
    1. Chapter 4. Network Foundation Protection
    2. Chapter 5. Using Cisco Configuration Professional to Protect the Network Infrastructure
    3. Chapter 6. Securing the Management Plane on Cisco IOS Devices
    4. Chapter 7. Implementing AAA Using IOS and the ACS Server
    5. Chapter 8. Securing Layer 2 Technologies
    6. Chapter 9. Securing the Data Plane in IPv6
  14. Part III: Mitigating and Controlling Threats
    1. Chapter 10. Planning a Threat Control Strategy
    2. Chapter 11. Using Access Control Lists for Threat Mitigation
    3. Chapter 12. Understanding Firewall Fundamentals
    4. Chapter 13. Implementing Cisco IOS Zone-Based Firewalls
    5. Chapter 14. Configuring Basic Firewall Policies on Cisco ASA
    6. Chapter 15. Cisco IPS/IDS Fundamentals
    7. Chapter 16. Implementing IOS-Based IPS
  15. Part IV: Using VPNs for Secure Connectivity
    1. Chapter 17. Fundamentals of VPN Technology
    2. Chapter 18. Fundamentals of the Public Key Infrastructure
    3. Chapter 19. Fundamentals of IP Security
    4. Chapter 20. Implementing IPsec Site-to-Site VPNs
    5. Chapter 21. Implementing SSL VPNs Using Cisco ASA
    6. Chapter 22. Final Preparation
  16. Part V: Appendixes
    1. Appendix A. Answers to the “Do I Know This Already?” Quizzes
    2. Appendix B. CCNA Security 640-554 (IINSv2) Exam Updates
  17. Glossary
  18. Index
  19. Appendix C. Memory Tables
  20. Appendix D. Memory Tables Answer Key
  21. Where are the Companion Content Files?

Product information

  • Title: CCNA Security 640-554 Official Cert Guide
  • Author(s):
  • Release date: July 2012
  • Publisher(s): Cisco Press
  • ISBN: 9780132966061