CCNP Security IPS 642-627 Official Cert Guide

Book description

CCNP Security IPS 642-627 Official Cert Guide

David Burns

Odunayo Adesina, CCIE® No. 26695

Keith Barker, CCIE No. 6783

     .    Master CCNP Security IPS 642-627 exam topics

     .    Assess your knowledge with chapter-opening quizzes

     .    Review key concepts with exam preparation tasks

Learn, prepare, and practice for exam success

CCNP Security IPS 642-627 Official Cert Guide is a best-of-breed Cisco exam study guide that focuses specifically on the objectives for the CCNP Security IPS exam. Senior security engineers David Burns, Odunayo Adesina, and Keith Barker share preparation hints and test-taking tips, helping you identify areas of weakness and improve both your conceptual knowledge and hands-on skills. Material is presented in a concise manner, focusing on increasing your understanding and retention of exam topics.

CCNP Security IPS 642-627 Official Cert Guide presents you with an organized test-preparation routine through the use of proven series elements and techniques. “Do I Know This Already?” quizzes open each chapter and enable you to decide how much time you need to spend on each section. Exam topic lists make referencing easy. Chapter-ending Exam Preparation Tasks help you drill on key concepts you must know thoroughly.

Well-regarded for its level of detail, assessment features, and challenging review questions and exercises, this official study guide helps you master the concepts and techniques that will enable you to succeed on the exam the first time.

CCNP Security IPS 642-627 Official Cert Guide is part of a recommended learning path from Cisco that includes simulation and hands-on training from authorized Cisco Learning Partners and self-study products from Cisco Press. To find out more about instructor-led training, e-learning, and hands-on instruction offered by authorized Cisco Learning Partners worldwide, please visit

The official study guide helps you master all the topics on the CCNP Security IPS exam, including

  • Cisco IPS software, hardware, and supporting applications

  • Network IPS and IDS deployment architecture

  • Installing and maintaining Cisco IPS physical and virtual sensors

  • Traffic analysis

  • IPS signatures and responses

  • Anomaly-based operations

  • Improving alarm response and quality

  • Managing and analyzing events

  • High availability and performance

  • IPS modules for ASAs, routers, and switches

  • Includes Exclusive Offer for 70% Off Premium Edition eBook and Practice Test

    CCNP Security

    Category: Cisco Press—Cisco Certification

    Covers: CCNP Security IPS 642-627

    Table of contents

    1. Title Page
    2. Copyright Page
    3. About the Authors
    4. About the Technical Editor
    5. Dedications
    6. Acknowledgments
    7. Contents at a Glance
    8. Contents
    9. Command Syntax Conventions
    10. Introduction
    11. Part I: Introduction to Intrusion Prevention and Detection, Cisco IPS Software, and Supporting Devices
      1. Chapter 1. Intrusion Prevention and Intrusion Detection Systems
      2. Chapter 2. Cisco IPS Software, Hardware, and Supporting Applications
      3. Chapter 3. Network IPS Traffic Analysis Methods, Evasion Possibilities, and Anti-evasive Countermeasures
      4. Chapter 4. Network IPS and IDS Deployment Architecture
    12. Part II: Installing and Maintaining Cisco IPS Sensors
      1. Chapter 5. Integrating the Cisco IPS Sensor into a Network
      2. Chapter 6. Performing the Cisco IPS Sensor Initial Setup
      3. Chapter 7. Managing Cisco IPS Devices
    13. Part III: Applying Cisco IPS Security Policies
      1. Chapter 8. Configuring Basic Traffic Analysis
      2. Chapter 9. Implementing Cisco IPS Signatures and Responses
      3. Chapter 10. Configuring Cisco IPS Signature Engines and the Signature Database
      4. Chapter 11. Deploying Anomaly-Based Operation
    14. Part IV: Adapting Traffic Analysis and Response to the Environment
      1. Chapter 12. Customizing Traffic Analysis
      2. Chapter 13. Managing False Positives and False Negatives
      3. Chapter 14. Improving Alarm and Response Quality
    15. Part V: Managing and Analyzing Events
      1. Chapter 15. Installing and Integrating Cisco IPS Manager Express with Cisco IPS Sensors
      2. Chapter 16. Managing and Investigating Events Using Cisco IPS Manager Express
      3. Chapter 17. Using Cisco IPS Manager Express Correlation, Reporting, Notification, and Archiving
      4. Chapter 18. Integrating Cisco IPS with CSM and Cisco Security MARS
      5. Chapter 19. Using the Cisco IntelliShield Database and Services
    16. Part VI: Deploying Virtualization, High Availability, and High-Performance Solutions
      1. Chapter 20. Using Cisco IPS Virtual Sensors
      2. Chapter 21. Deploying Cisco IPS for High Availability and High Performance
    17. Part VII: Configuring and Maintaining Specific Cisco IPS Hardware
      1. Chapter 22. Configuring and Maintaining the Cisco ASA AIP SSM Modules
      2. Chapter 23. Configuring and Maintaining the Cisco ISR AIM-IPS and NME-IPS Modules
      3. Chapter 24. Configuring and Maintaining the Cisco IDSM-2
    18. Part VIII: Final Exam Preparation
      1. Chapter 25. Final Preparation
    19. Part IX: Appendixes
      1. Appendix A. Answers to the “Do I Know This Already?” Quizzes
      2. Appendix B. CCNP Security IPS 642-627 Exam Updates, Version 1.0
      3. Glossary
      4. Index
      5. Appendix C. Memory Tables
      6. Appendix D. Memory Tables Answer Key

    Product information

    • Title: CCNP Security IPS 642-627 Official Cert Guide
    • Author(s): David Burns, Odunayo Adesina, Keith Barker
    • Release date: October 2011
    • Publisher(s): Cisco Press
    • ISBN: None