Course Length: 7 Days
Certifications: CCIE® Security
Course Overview: CCIE Security certification indicates expert level knowledge of IP and IP routing as well as specific security protocols and components such as IOS firewall, PIX firewall, VPN Concentrator and IDS sensor.
Prerequisites: Students must be CCNA® or CCSP® Certified to take this course or have equivalent knowledge.
CCIE® Security Lab Boot Camp Features are,
CCIE Security Ver 2.0 lab Boot Camp Course Outline
1. Firewall
1. IOS Firewall
1. CBAC
2. Audit
3. Auth Proxy
4. PAM
5. Access Control
6. Performance Tuning
7. Advanced Features
2. VPN
1. IPSec LAN-to-LAN
2. SSL VPN
3. DMVPN
4. CA (PKI)
5. Remote Access VPN
6. VPN3000 Concentrator
7. VPN3000 IP Routing
8. Unity Client
9. WebVPN
10. EzVPN Hardware Client
11. XAuth, Split-tunnel, RRI, NAT-T
12. High Availability
13. QoS for VPN
14. GRE, mGRE
15. L2TP
16. PPTP
17. Advanced VPN Features
3. Intrusion Prevention System (IPS)
1. IPS 4200 Series Sensor Appliance
2. Basic Initialization
3. Sensor Configuration
4. Sensor Management
5. Promiscuous and Inline Monitoring
6. Signature Tuning
7. Custom Signatures
8. Blocking
9. TCP Resets
10. Rate Limiting
11. Signature Engines
12. IDM
13. Event Action
14. Event Monitoring
15. IOS IPS
16. PIX IDS
17. SPAN, RSPAN
18. Advanced Features
4. Identity Management
1. Security Protocols (RADIUS and TACACS+)
2. Cisco Secure ACS Configuration
3. Access Management (Telnet, SSH, Pwds, Priv Levels)
4. Proxy Authentication
5. Service Authentication (FTP, Telnet, HTTP, other)
6. Network Admission Control (NAC Framework solution)
7. 802.1x
8. Advanced Features
5. Advanced Security
1. Mitigation Techniques
2. Packet Marking Techniques
3. Security RFCs (RFC1918, RFC2827, RFC2401)
4. Service Provider Security
5. Black Holes, Sink Holes
6. RTBH Filtering (Remote Triggered Black Hole)
7. Traffic Filtering using Access-lists
8. NAT
9. TCP Intercept
10. uRPF
11. CAR
12. NBAR
13. NetFlow
14. Flooding
15. Spoofing
16. Policing
17. Fragmentation
18. Sniffer Traces
19. Catalyst Management and Security
20. Traffic Control and Congestion Management
21. Catalyst Features and Advanced Configuration
22. IOS Security Features
6. Network Attacks
1. Network Reconnaissance
2. IP Spoofing Attacks
3. MAC Spoofing Attacks
4. ARP Spoofing Attacks
5. Denial of Service (DoS)
6. Distributed Denial of Service (DDoS)
7. Man-in-the-Middle (MiM) Attacks
8. Port Redirection Attacks
9. DHCP Attacks
10. DNS Attacks
11. Fragment Attacks
12. Smurf Attacks
13. SYN Attacks
14. MAC Attacks
15. VLAN Hopping Attacks
16. Other Layer2 and Layer3 Attacks