CISCO IOS NETWORK SECURITY (IINS)

Similar documents
Cisco Certified Security Professional (CCSP)

CCNA Security. IINS v2.0 Implementing Cisco IOS Network Security ( )

Implementing Secured Converged Wide Area Networks (ISCW) Version 1.0

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0

The IINS acronym to this exam will remain but the title will change slightly, removing IOS from the title, making the new title

CCNA Security v1.0 Scope and Sequence

Asheville-Buncombe Technical Community College Department of Networking Technology. Course Outline

Cisco Certified Network Expert (CCNE)

CCNA Security 2.0 Scope and Sequence

Tim Bovles WILEY. Wiley Publishing, Inc.

CCNA Security v1.0 Scope and Sequence

Implementing Cisco IOS Network Security v2.0 (IINS)

CCNP: Implementing Secure Converged Wide-area Networks

Securing Cisco Network Devices (SND)

Cisco CCNP Implementing Secure Converged Wide Area Networks (ISCW)

SNRS. Securing Networks with Cisco Routers and Switches. Length 5 days. Format Lecture/lab

Implementing Cisco IOS Network Security

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD SEGURIDAD EN REDES. NIVEL I. VERSION 2.0

IINS Implementing Cisco Network Security 3.0 (IINS)

Security Threats VPNs and IPSec AAA and Security Servers PIX and IOS Router Firewalls. Intrusion Detection Systems

How To Pass A Credit Course At Florida State College At Jacksonville

Securing Networks with Cisco Routers and Switches 1.0 (SECURE)

(d-5273) CCIE Security v3.0 Written Exam Topics

TABLE OF CONTENTS NETWORK SECURITY 2...1

This chapter covers the following topics:

Implementing Cisco IOS Network Security

NEW YORK INSTITUTE OF TECHNOLOGY School of Engineering and Technology Department of Computer Science Old Westbury Campus

Cisco Certified Security Professional (CCSP) 50 Cragwood Rd, Suite 350 South Plainfield, NJ 07080

Latest IT Exam Questions & Answers

TABLE OF CONTENTS NETWORK SECURITY 1...1

Basics of Internet Security

Industrial Network Security for SCADA, Automation, Process Control and PLC Systems. Contents. 1 An Introduction to Industrial Network Security 1

Securing Networks with PIX and ASA

CCNA Cisco Associate- Level Certifications

ICAB5238B Build a highly secure firewall

Network Security. 1 Pass the course => Pass Written exam week 11 Pass Labs

Security and Access Control Lists (ACLs)

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data

Högskolan i Halmstad Sektionen för Informationsvetenskap, Data- Och Elektroteknik (IDÉ) Ola Lundh. Name (in block letters) :

CCNA Security 1.1 Instructional Resource

PRACTICE WAY TO TEACHING OF NETWORK SECURITY ONE YEAR AFTER. Used devices and their topology. JAROSLAV DOČKAL, PhD 1

Appendix A: Configuring Firewalls for a VPN Server Running Windows Server 2003

One-Step Lockdown with Cisco SDM

IINS Implementing Cisco IOS Network Security Exam.

CCIE Security Written Exam ( ) version 4.0

FIREWALLS & CBAC. philip.heimer@hh.se

1. Cyber Security. White Paper Data Communication in Substation Automation System (SAS) Cyber security in substation communication network

General Network Security

Lab Organizing CCENT Objectives by OSI Layer

information security and its Describe what drives the need for information security.

Cisco ASA. Administrators

PCISS-1. Job Description: Key Responsibilities: I. Perform troubleshooting& support:

Lab Developing ACLs to Implement Firewall Rule Sets

Objectives. Background. Required Resources. CCNA Security

Securing the Connected Enterprise

Cisco Secure ACS. By Igor Koudashev, Systems Engineer, Cisco Systems Australia 2006 Cisco Systems, Inc. All rights reserved.

Cisco Advanced Services for Network Security

Network Access Security. Lesson 10

Ficha técnica de curso Código: IFCAD111

Cisco Router and Security Device Manager (SDM)

Securing Networks with Cisco Routers and Switches ( )

Network Security. Tampere Seminar 23rd October Overview Switch Security Firewalls Conclusion

Lab Configure IOS Firewall IDS

Classic IOS Firewall using CBACs Cisco and/or its affiliates. All rights reserved. 1

Scenario: Remote-Access VPN Configuration

Table of Contents. Introduction

THE BUSINESS CASE FOR NETWORK SECURITY: ADVOCACY, GOVERNANCE, AND ROI

Configuring IPSec VPN Tunnel between NetScreen Remote Client and RN300

Remote Access Security

Firewalls, Tunnels, and Network Intrusion Detection. Firewalls

ACL Compliance Director FAQ

Developing Network Security Strategies

PART D NETWORK SERVICES

Firewalls, Tunnels, and Network Intrusion Detection

Configuring IPsec VPN with a FortiGate and a Cisco ASA

8. Firewall Design & Implementation

CCNA Security Portable Command Guide

Common Remote Service Platform (crsp) Security Concept

Router Security - Approaches and Techniques You Can Use Today

How To Learn Cisco Cisco Ios And Cisco Vlan

The following chart provides the breakdown of exam as to the weight of each section of the exam.

Configuring an IPsec VPN to provide ios devices with secure, remote access to the network

Network System Design Lesson Objectives

A Preliminary Evaluation of the new Cisco Network Security Course

APNIC elearning: IPSec Basics. Contact: esec03_v1.0

Interconnecting Cisco Networking Devices: Accelerated (CCNAX) 2.0(80 Hs) 1-Interconnecting Cisco Networking Devices Part 1 (40 Hs)

The Cisco IOS Firewall feature set is supported on the following platforms: Cisco 2600 series Cisco 3600 series

C H A P T E R Management Cisco SAFE Reference Guide OL

A Model Design of Network Security for Private and Public Data Transmission

FIREWALLS & NETWORK SECURITY with Intrusion Detection and VPNs, 2 nd ed. Chapter 5 Firewall Planning and Design

SonicWALL PCI 1.1 Implementation Guide

Consensus Policy Resource Community. Lab Security Policy

Security. AAA Identity Management. Premdeep Banga, CCIE # Cisco Press. Vivek Santuka, CCIE # Brandon J. Carroll, CCIE #23837

VPN_2: Deploying Cisco ASA VPN Solutions

CCNP Security SECURE

Training Course on Network Administration

Chapter 1 The Principles of Auditing 1

SAULT COLLEGE OF APPLIED ARTS AND TECHNOLOGY SAULT STE. MARIE, ONTARIO COURSE OUTLINE

Chapter 12. Security Policy Life Cycle. Network Security 8/19/2010. Network Security

PT Activity: Configure Cisco Routers for Syslog, NTP, and SSH Operations

Transcription:

CISCO IOS NETWORK SECURITY (IINS) SEVENMENTOR TRAINING PVT.LTD [Type text]

Exam Description The 640-553 Implementing Cisco IOS Network Security (IINS) exam is associated with the CCNA Security certification. This exam tests a candidate's knowledge of securing Cisco routers and switches and their associated networks. It leads to validated skills for installation, troubleshooting and monitoring of network devices to maintain integrity, confidentiality and availability of data and devices and develops competency in the technologies that Cisco uses in its security infrastructure. Candidates can prepare for this exam by taking the Implementing Cisco IOS Network Security (IINS) course. Exam Topics The following topics are general guidelines for the content likely to be included on the Implementing Cisco IOS Network Security (IINS) exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice. Describe the security threats facing modern network infrastructures Describe and list mitigation methods for common network attacks Describe and list mitigation methods for Worm, Virus, and Trojan Horse attacks Describe the Cisco Self Defending Network architecture

Secure Cisco routers Secure Cisco routers using the SDM Security Audit feature(640-553) IINS Exam Topics (Blueprint) Use the One-Step Lockdown feature in SDM to secure a Cisco router Secure administrative access to Cisco routers by setting strong encrypted passwords, exec timeout, login failure rate and using IOS login enhancements Secure administrative access to Cisco routers by configuring multiple privilege levels Secure administrative access to Cisco routers by configuring role based CLI Secure the Cisco IOS image and configuration file Implement AAA on Cisco routers using local router database and external ACS Explain the functions and importance of AAA Describe the features of TACACS+ and RADIUS AAA protocols Configure AAA authentication Configure AAA authorization Configure AAA accounting Mitigate threats to Cisco routers and networks using ACLs Explain the functionality of standard, extended, and named IP ACLs used by routers to filter packets

Configure and verify IP ACLs to mitigate given threats (filter IP traffic destined for Telnet, SNMP, and DDoS attacks) in a network using CLI Configure IP ACLs to prevent IP address spoofing using CLI Discuss the caveats to be considered when building ACLs Implement secure network management and reporting Use CLI and SDM to configure SSH on Cisco routers to enable secured management access Use CLI and SDM to configure Cisco routers to send Syslog messages to a Syslog server Mitigate common Layer 2 attacks Describe how to prevent layer 2 attacks by configuring basic Catalyst switch security features Implement the Cisco IOS firewall feature set using SDM Describe the operational strengths and weaknesses of the different firewall technologies Explain stateful firewall operations and the function of the state table Implement Zone Based Firewall using SDM

Implement the Cisco IOS IPS feature set using SDM Define network based vs. host based intrusion detection and prevention Explain IPS technologies, attack responses, and monitoring options Enable and verify Cisco IOS IPS operations using SDM Implement site-to-site VPNs on Cisco Routers using SDM Explain the different methods used in cryptography Explain IKE protocol functionality and phases Describe the building blocks of IPSec and the security functions it provides Configure and verify an IPSec site-to-site VPN with pre-shared key authentication using SDM We would like to get your feedback; please comment and/or rate this document.