Home   |   Contact Us   |   Virtual Class  |      |   LABWOLF BBS
 
 
Special Promotion - You name it Guarantee!IT training companies all over the US and Canada are offering end of year deals, special buy one get one 50%...
 
One-on-one CISCO CCIE SP Lab Boot Camp TrainingIntensive Track (CRSPLT-I) 7 days (56+ hours)Schedule of events:Student instruction is conducted privat...
... See More News    
  Available Courses
  Expert Level
    Routing & Switching (CCIE)
    Service Provider (CCIE)
    Security (CCIE)
    Voice (CCIE)
  Professional Level
    CCSP (Security Pro)
    CCNP (Network Pro)
    CCVP (Voice Pro)
    CCIP (Internetwork Pro)
    CCDP (Design Pro)
    CCNA (Network Associate)
    CCDA (Design Associate)
  Advance Specialist Level
    Advance BGP
    Advance MPLS & VPN
    Advance Pix Firewall
    Advance Security & VPN
    Advance Multicast
    Quality of Service
    Unity CUE & CME
    Gateway & Gatekeeper
    Cisco IP Telephony
    C Voice
Advance Security and VPN

Cisco VPN Specialist


Cisco security certifications focus on the growing need for knowledgeable network professionals who can implement complete security solutions. Cisco VPN Specialists can configure VPNs across shared ublic networks using Cisco IOS Software and Cisco VPN 3000 Series Concentrator technologies.

Cisco VPN Specialist Exams & Recommended Training

642-552 SND Securing Cisco Network Devices (SND)
642-511 CSVPN                         Cisco Secure Virtual Private Networks (CSVPN)

SND

The Securing Cisco Network Devices 642-552 SND is the exam associated with the Cisco Certified Security Professional, Cisco Firewall Specialist, Cisco IPS Specialist, and Cisco VPN Specialist certifications. Candidates can prepare for this exam by taking the Securing Cisco Network Devices v2.0 (SND) course. This exam tests a candidate's knowledge of securing Cisco routers and switches and their associated networks. Topics covered include; Security threats facing modern network infrastructures, Securing Cisco routers, Implementing basic AAA, Using ACLs to mitigate router and network threats, Implementing secure management and reporting, Mitigating common Layer 2 attacks, and Implementing Cisco IOS Firewall features, Cisco IOS IPS features, and IPsec VPN features using Cisco Security Device Manager

Exam Topics

The following information provides general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes the guidelines below may change at any time without notice.

Describe the products in the Cisco security portfolio and explain how they mitigate security threats to a network

  • Identify the appropriate devices to secure a network
  • Identify the appropriate device feature to secure a network
  • Describe the difference in functionality and capabilities of the different security devices
  • Identify security issues with common management protocols
  • Describe threats to a network and network devices
  • Identify different techniques to deal with security threats

Describe the security features available for a Cisco Layer 2 device in a secure network

  • Identify security features on a Layer 2 device
  • Describe basic security feature configurations on a Layer 2 device

Implement security on a Cisco IOS Router

  • Identify mitigation techniques for common physical router security threats
  • Configure router for secure administrative access
  • Implement basic AAA for router administrative authentication
  • Configure AutoSecure to harden Cisco routers
  • Configure router access lists to secure networks
  • Configure security for router services and interfaces
  • Implement Syslog logging
  • Identify major components of the SDM

Describe and configure Cisco IPS and HIPS

  • Configure user accounts
  • Describe and configure Network Access lists
  • Describe how the sensor device is secure by default
  • Install the sensor on the network
  • Describe the methods used to access a sensor
  • Describe the process for displaying the sensor configuration
  • Identify major components of IDM
  • Describe basic sensor operations
  • Describe the process of using alarms to identify network attacks
  • Identify the appropriate platform required to install the CSA MC
  • Configure the default group
  • Describe the process of agent kit deployment and verifying management of the agent
  • Describe key features and concepts of VMS
  • Describe the interoperability of the components of VMS
  • Describe the hardware and software requirements of VMS

Configure and verify basic remote access on a Cisco VPN 3000 Concentrator

  • Perform an initial configuration
  • Configure users and groups
  • Configure VPN clients
  • Verify IPSec tunnel establishment

Implement a Cisco PIX security appliance

  • Describe basic PIX security appliance hardware and software architecture
  • Identify appropriate PIX security appliance hardware and software configuration
  • Configure basic network settings using CLI
  • Configure basic interface features on a PIX security appliance
  • Verify initial configurations
  • Identify major components of the PDM
  • Configure static address translation
  • Configure Network Address Translation
  • Configure firewall to secure inbound traffic
  • Verify inbound traffic restrictions
  • Describe basic IPSec topologies
  • Define the services provided by IPSec
  • Describe the IPSec protocol framework
  • Describe the IPSec algorithm framework
  • Describe the concepts of split tunneling
  • Describe the various authentication methods
  • Describe how the PIX security appliance uses IPSec to secure networks

CSVPN 642-511

The Cisco Secure Virtual Private Networks exam (CSVPN 642-511) is one of the exams associated with the Cisco Certified Security Professional and the Cisco VPN Specialist certifications. Candidates can prepare for this exam by taking the CSVPN v4.0 course. This exam includes simulations and tests a candidate's knowledge and ability to describe, configure, verify, and manage the Cisco VPN 3000 Concentrator, Cisco VPN Software Client, and Cisco VPN 3002 Hardware Client feature set. CCNA or CCDA recertification candidates who pass the 642-511 CSVPN exam will be considered recertified at the CCNA or CCDA level.

Exam Topics

The following information provides general guidelines for the content likely to be included on this exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes the guidelines below may change at any time without notice.

Overview of Virtual Private Networks and IPSec Technologies

  • Cisco products enable a secure VPN
  • IPSec overview
  • IPSec protocol framework
  • How IPSec works

Cisco Virtual Private Network 3000 Concentrator Series Hardware

  • Overview of the Cisco VPN 3000 Concentrator Series
  • Cisco VPN 3000 Concentrator
  • Cisco VPN 3000 Concentrator Series Client support

Configuring the Cisco VPN 3000 Series Concentrator for Remote Access Using Pre-shared Keys

  • Overview of remote access using pre-shared keys
  • Initial configuration of the Cisco VPN 3000 Concentrator Series for remote access
  • Browser configuration of the Cisco VPN 3000 Series Concentrator
  • Configure users and groups
  • More in-depth configuration information
  • Configure the Cisco Windows VPN Software Client

Configure Cisco Virtual Private Network 3000 Series Concentrator for Remote Access Using Digital Certificates

  • CA support overview
  • Certificate generation
  • Validating certificates
  • Configuring the Cisco VPN 3000 Concentrator Series for CA support

Configure the Cisco Virtual Private Network Firewall Feature for IPSec Software Client

  • Overview of software client's firewall feature
  • Software Client's Are You There feature
  • Software Client's Central Policy Protection feature
  • Software Client's firewall statistics
  • Customizing firewall policy

Configure the Cisco Virtual Private Network Client Auto-Initiation Feature

  • Overview of the Cisco VPN Software Client auto-initiation
  • Configure the Cisco VPN Software Client auto-initiation

Monitor and Administer Cisco VPN 3000 Remote Access Networks

  • Monitoring
  • Administration
  • Bandwidth Management

Configure the Cisco VPN 3002 Hardware Client for Remote Access

  • Cisco VPN 3002 Hardware client remote access with pre-shared keys

Configure the Cisco Virtual Private Network 3002 Hardware Client

  • Overview of the Hardware Client interactive unit and user authentication features
  • Configuring the Hardware Client interactive unit authentication feature
  • Configuring the Hardware Client user authentication feature
  • Monitoring the Hardware Client user statistics

Configure the Cisco Virtual Private Network Client Backup Server and Load Balancing

  • Configuring the Cisco VPN Client backup server feature
  • Configuring the Cisco VPN Client load balancing feature
  • Overview of the Cisco VPN Client Reverse Route Injection feature

Configure the Virtual Private Network 3002 Hardware Client for Software Auto-Update

  • Overview and configuration of the VPN 3002 Hardware Client software auto-update feature
  • Monitoring the Cisco VPN 3002 Hardware Client software auto-update feature

Configure the Cisco Virtual Private Network 3000 Series Concentrator for the IPSec Over UDP and IPSec Over TCP

  • Overview of Port Address Translation
  • Configuring IPSec over UDP
  • Configuring NAT-Transversal
  • Configuring IPSec over TCP

Cisco Virtual Private Network 3000 Series Concentrator LAN-to-LAN with Pre-Shared Keys

  • Cisco VPN 3000 Series Concentrator IPSec LAN-to-LAN
  • LAN-to-LAN configuration

Cisco Virtual Private Network 3000 Series Concentrator LAN-to-LAN with NAT

  • LAN-to-LAN overview
  • Configuring the Concentrator LAN-LAN NAT feature

Cisco Virtual Private Network 3000 Series Concentrator LAN-to-LAN using Digital Certificates

  • Root certificate installation
  • Identify certificate installation

Copyright ?2007 WOLF Network Technology Inc. All rights reserved. http://www.labwolf.com

..:. TOP  
Home   |   About Us   |   Sitemap   |   Policy   |   Contact
All Rights Reserved © 2007