(d-5273) CCIE Security v3.0 Written Exam Topics



Similar documents
CCIE Security Written Exam ( ) version 4.0

SNRS. Securing Networks with Cisco Routers and Switches. Length 5 days. Format Lecture/lab

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD SEGURIDAD EN REDES. NIVEL I. VERSION 2.0

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0

Implementing Cisco IOS Network Security

The IINS acronym to this exam will remain but the title will change slightly, removing IOS from the title, making the new title

IINS Implementing Cisco Network Security 3.0 (IINS)

Asheville-Buncombe Technical Community College Department of Networking Technology. Course Outline

CCNA Security. IINS v2.0 Implementing Cisco IOS Network Security ( )

CISCO IOS NETWORK SECURITY (IINS)

Cisco Certified Network Expert (CCNE)

Implementing Cisco IOS Network Security v2.0 (IINS)

Securing Networks with Cisco Routers and Switches 1.0 (SECURE)

Cisco Certified Security Professional (CCSP)

Chapter 1 The Principles of Auditing 1

Tim Bovles WILEY. Wiley Publishing, Inc.

The following chart provides the breakdown of exam as to the weight of each section of the exam.

Securing Cisco Network Devices (SND)

TABLE OF CONTENTS NETWORK SECURITY 1...1

APNIC elearning: Network Security Fundamentals. 20 March :30 pm Brisbane Time (GMT+10)

Network Security Fundamentals

Cisco Secure ACS. By Igor Koudashev, Systems Engineer, Cisco Systems Australia 2006 Cisco Systems, Inc. All rights reserved.

VPN Modules for Cisco 1841 and Cisco 2800 and 3800 Series Integrated Services Routers

CCNP Security SECURE

CCNA Security 1.1 Instructional Resource

A host-based firewall can be used in addition to a network-based firewall to provide multiple layers of protection.

TABLE OF CONTENTS NETWORK SECURITY 2...1

Security in IPv6. Basic Security Requirements and Techniques. Confidentiality. Integrity

How To Pass A Credit Course At Florida State College At Jacksonville

ICTTEN8195B Evaluate and apply network security

Security. Contents. S Wireless Personal, Local, Metropolitan, and Wide Area Networks 1

Securing Networks with PIX and ASA

Implementing Secured Converged Wide Area Networks (ISCW) Version 1.0

Chapter 1 Network Security

Cisco Certified Security Professional (CCSP) 50 Cragwood Rd, Suite 350 South Plainfield, NJ 07080

Cisco ASA, PIX, and FWSM Firewall Handbook

SSECMGT: CManaging Enterprise Security with Cisco Security Manager v4.x

Securing Networks with Cisco Routers and Switches ( )

Implementing Core Cisco ASA Security (SASAC)

Introduction of Quidway SecPath 1000 Security Gateway

NEW YORK INSTITUTE OF TECHNOLOGY School of Engineering and Technology Department of Computer Science Old Westbury Campus

CCNA Security v1.0 Scope and Sequence

Secure SCADA Network Technology and Methods

PKI Uncovered. Cisco Press. Andre Karamanian Srinivas Tenneti Francois Dessart. 800 East 96th Street. Indianapolis, IN 46240

Cisco ASA. Administrators

Cisco Certified Network Professional (CCNP Routing & Switching)

Managing Enterprise Security with Cisco Security Manager

Implementing Cisco IOS Network Security

Network Access Security. Lesson 10

How To Set Up A Cisco Safesa Firewall And Security System

Gigabit SSL VPN Security Router

Secure Network Foundation 1.1 Design Guide for Single Site Deployments

Security. AAA Identity Management. Premdeep Banga, CCIE # Cisco Press. Vivek Santuka, CCIE # Brandon J. Carroll, CCIE #23837

Foreword Introduction Product Overview Introduction to Network Security Firewall Technologies Network Firewalls Packet-Filtering Techniques

How To Learn Cisco Cisco Ios And Cisco Vlan

CompTIA Exam N CompTIA Network+ certification Version: 5.1 [ Total Questions: 1146 ]

ASM Educational Center (ASM) Est. 1992

Security Threats VPNs and IPSec AAA and Security Servers PIX and IOS Router Firewalls. Intrusion Detection Systems

Interconnecting Cisco Networking Devices: Accelerated (CCNAX) 2.0(80 Hs) 1-Interconnecting Cisco Networking Devices Part 1 (40 Hs)

Integrated Services Router with the "AIM-VPN/SSL" Module

Computer Networks. Secure Systems

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

Cisco IOS Advanced Firewall

Course Contents CCNP (CISco certified network professional)

C H A P T E R Management Cisco SAFE Reference Guide OL

Cisco Cisco 3845 X X X X X X X X X X X X X X X X X X

Network Security. Lecture 3

Cisco 5915 Embedded Services Router

Interconnecting Cisco Networking Devices Part 2

"Charting the Course...

Integrated Services Router with the "AIM-VPN/SSL" Module

Licenses are not interchangeable between the ISRs and NGX Series ISRs.

Cisco ASA 5500 Series Adaptive Security Appliance 8.2 Software Release

Professional Profile Company Experience & Biography SixNet Consulting Group .SixNetConsulting

Cisco WRVS4400N Wireless-N Gigabit Security Router: Cisco Small Business Routers

Cisco Secure Access Control Server 4.2 for Windows

CTS2134 Introduction to Networking. Module Network Security

CCNP: Implementing Secure Converged Wide-area Networks

How To Use A Cisco Wvvvdns4400N Wireless-N Gigabit Security Router For Small Businesses

Cisco RV 120W Wireless-N VPN Firewall

Managing Enterprise Security with Cisco Security Manager

Cconducted at the Cisco facility and Miercom lab. Specific areas examined

Gerardo L. Ahuatzin Sánchez Desarrollo de un esquema de traducción de direcciones IPv6-IPv4-IPv6. Anexo A. RFC s

Industrial Network Security for SCADA, Automation, Process Control and PLC Systems. Contents. 1 An Introduction to Industrial Network Security 1

APNIC elearning: IPSec Basics. Contact: esec03_v1.0

Chapter 4: Security of the architecture, and lower layer security (network security) 1

Infrastructure Protection and Security Service Integration Design for the Next Generation WAN Edge v2.0

CCNA Security v1.0 Scope and Sequence

CCNA Security 2.0 Scope and Sequence

Cisco CCNP Implementing Secure Converged Wide Area Networks (ISCW)

Networking. Systems Design and. Development. CRC Press. Taylor & Francis Croup. Boca Raton London New York. CRC Press is an imprint of the

Cisco EXAM Implementing Cisco Secure Mobility Solutions (SIMOS) Buy Full Product.

Microsoft. CompTIA Network+ Rapid Review. (Exam N10-005) Craig Zacker

Cisco 5940 Series Embedded Services Router

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data

1.1.1 Security The integrated model will provide the following capabilities:

1 Data information is sent onto the network cable using which of the following? A Communication protocol B Data packet

CS 356 Lecture 27 Internet Security Protocols. Spring 2013

COURSE AGENDA. Lessons - CCNA. CCNA & CCNP - Online Course Agenda. Lesson 1: Internetworking. Lesson 2: Fundamentals of Networking

This section provides a summary of using network location profiles to identify network connection types. Details include:

Transcription:

(d-5273) CCIE Security v3.0 Written Exam Topics CCIE Security v3.0 Written Exam Topics The topic areas listed are general guidelines for the type of content that is likely to appear on the exam. Please note, however, that other relevant or related topic areas may also appear. The CCIE Security written exam for the v3.0 curriculum is a two-hour, multiple choice test with 100 questions covering the areas of skills and competency needed by a Security Engineer to implement, deploy, configure, maintain, and troubleshoot Cisco Network Security solutions and designs. Topics include Cisco network security devices, appliances, protocols, firewalls, VPNs, intrusion prevention devices, policy management, and best practices for implementing a secure network. All exam materials are provided and no outside reference materials are allowed. Exam Sections and Sub-task Objectives 1.00 General Networking 1.10 Networking Basics (IPv4 and IPv6) 1.20 OSI Layers 1.30 TCP/IP Protocols 1.40 LAN Switching (e.g. VTP, VLANs, Spanning Tree, Trunking) 1.50 Routing Protocols (RIP, EIGRP, OSPF, and BGP) (IPv4 only) 1.60 Tunneling Protocols (GRE, NHRP) 1.70 IP Multicast 2.00 Security Protocols, Ciphers, Hashes, and Encryption 1

2.01 Rivest, Shamir and Adleman (RSA) 2.02 Rivest Cipher 4 (RC4) 2.03 Message Digest 5 (MD5) 2.04 Secure Hash Algorithm (SHA) 2.05 Data Encryption Standard (DES) 2.06 Triple DES (3DES) 2.07 Advanced Encryption Standard (AES) 2.08 IP Security (IPsec) 2.09 Internet Security Association and Key Management Protocol (ISAKMP) 2.10 Internet Key Exchange (IKE) 2.11 Group Domain of Interpretation (GDOI) 2.12 Authentication Header (AH) 2.13 Encapsulating Security Payload (ESP) 2.14 Certificate Enrollment Protocol (CEP) 2.15 Transport Layer Security (TLS) 2.16 Secure Socket Layer (SSL) 2.17 Secure Shell (SSH) 2.18 Remote Authentication Dial In User Service (RADIUS) 2.19 Terminal Access Controller Access- Control System Plus (TACACS+) 2.20 Lightweight Directory Access Protocol (LDAP) 2.21 EAP Methods (e.g. EAP-MD5, EAP- TLS, EAP-TTLS, EAP-FAST, PEAP, LEAP) 3.00 Application Protocols 3.01 Hypertext Transfer Protocol (HTTP) 3.02 Hypertext Transfer Protocol Secure (HTTPS) 3.03 Simple Mail Transfer Protocol (SMTP) 3.04 Dynamic Host Configuration Protocol (DHCP) 2

3.05 Domain Name System (DNS) 3.06 File Transfer Protocol (FTP) 3.07 Trivial File Transfer Protocol (TFTP) 3.08 Network Time Protocol (NTP) 3.09 Simple Network Management Protocol (SNMP) 3.10 Syslog 4.00 Security Technologies 4.01 Packet Filtering 4.02 Content Filtering 4.03 URL Filtering 4.04 Authentication Technologies 4.05 Authorization Technologies 4.06 Proxy Authentication 4.07 Public Key Infrastructure (PKI) 4.08 IPsec VPN 4.09 SSL VPN 4.10 Dynamic Multipoint VPN (DMVPN) 4.11 Group Encrypted Transport VPN (GET VPN) 4.12 Network Intrusion Prevention Systems 4.13 Host Intrusion Prevention Systems 4.14 Event Correlation 4.15 Network Admission Control (NAC) 4.16 802.1x 4.17 Endpoint Security 4.18 Network Address Translation (NAT) 5.00 Cisco Security Appliances and Applications 5.01 Cisco Adaptive Security Appliance (ASA) Firewall 5.02 Cisco Intrusion Prevention System (IPS) 5.03 Cisco IOS Firewall (CBAC, Zone- Based, PAM) 3

5.04 Cisco IOS IPS 5.05 Cisco IOS AAA 5.06 Cisco IOS IPsec VPN 5.07 Cisco Easy VPN 5.08 Cisco SSL VPN 5.09 Cisco AnyConnect VPN Client 5.10 Cisco VPN Client 5.11 Cisco Secure Desktop (CSD) 5.12 Cisco Network Admission Control (NAC) Appliance 5.13 Cisco Security Agent (CSA) 5.14 Cisco Secure ACS for Windows 5.15 Cisco Secure ACS Solution Engine 5.16 Cisco Security Monitoring, Analysis and Response System (MARS) 5.17 Cisco Catalyst 6500 Series Security Services Modules (FWSM, IDSM-2, VPNSPA) 6.00 Cisco Security Management 6.01 Cisco Adaptive Security Device Manager (ASDM) 6.02 Cisco Router & Security Device Manager (SDM) 6.03 Cisco Security Manager (CSM) 6.04 Cisco IPS Device Manager (IDM) 6.05 Cisco IPS Manager Express (IME) 6.06 Cisco Configuration Professional (CCP) 7.00 Cisco Security General 7.01 Router Security Features (e.g. ACL, NBAR, MQC, CAR, FPM, urpf, CoPP, CPPr, MPP) 7.02 Switch Security Features(e.g. IP & MAC Spoofing, MAC Address Controls, Port Security, DHCP Snooping, DNS Spoofing, ARP Spoofing, BPDU/Root Guard, PVLAN) 7.03 NetFlow 4

7.04 Wireless Security 7.05 IPv6 Security 8.00 Security Solutions 8.01 Network Attack Mitigation 8.02 Virus and Worms Outbreaks 8.03 DoS/DDoS Attacks 8.04 Web Server & Web Application Security 8.05 DNS Security 9.00 Security General 9.01 Security Policy 9.02 Information Security Standards (e.g. ISO/IEC 27001, ISO/IEC 27002) 9.03 Standards Bodies (e.g. ISO, IEC, ITU, ISOC, IETF, IAB, IANA, ICANN) 9.04 Industry/Regulatory Compliance (e.g. SOX, HIPAA, GLBA, PCI DSS, FISMA) 9.05 Common RFC/BCP (e.g. RFC1918, RFC3330, RFC2827/BCP38, RFC3704/BCP84, RFC2401) 9.06 Security Audit & Validation 9.07 Risk Assessment 9.08 Change Management Process 9.09 Incident Response Framework 9.10 Computer Security Forensics We would like to get your feedback; please comment and/or rate this document. 5