Cisco® Course Listings
|
Securing Networks with Cisco Routers and Switches (SNRS) 2.0
 | Duration: | 30 hours |
 | Skill Level: | Intermediate |
 | Certifications: | N/A |
 | Delivery Type: | Expert Encore |
| Description |
A vital part of a secure Cisco network is properly configuring Cisco Routers and Switches. Securing Networks with Cisco Routers and Switches (SNRS) 2.0 explores the key goals and designs of doing just that. This class is designed to educate students securing Layer 2 devices as well as routers; it addresses the Cisco Network Foundation Protection, various aspects of secured connectivity, and provides extensive explanations of the Adaptive Threat Defense.
|
| Skills Taught |
After completing this course, students will be able to:
- Secure a network using existing Cisco IOS security
- Implement Trust and Identity with Identity Based Networking Service (IBNS)
- Implement Network Foundation Protection (NFP) including securing the Control, Management and Data Plane.
- Invoke Secured Connectivity with IPsec and VPNs
- Implement Adaptive Threat Defense by configuring Cisco Classic Firewalls
- Implement Adaptive Threat Defense by configuring Zone-Based Firewalls and Cisco IOS IPS.
|
| Audience |
This class is designed for students with a strong background in Cisco networking, particularly those who have achieved the CCNA or CCNP certifications. It is directed primarily to technicians who have advanced knowledge of Cisco security products and their functionality, as well as network engineers and administrators with a background in or experience with securing Cisco network devices. It also applies to Cisco channel partners, resellers and customers.
|
| Prerequisites |
This class assumes familiarity with Ethernet switching, TCP/IP addressing and basic networking configuration of the Cisco IOS software. Ideally, students possess CCNA certification or equivalent knowledge (SND).
|
| Outline |
Module 1: Network Address Translation
- Overview of NAT Technologies
- Configuring and maintaining NAT
- Advanced NAT concepts
Module 2: Cisco Secure ACS for Windows Configuration
- Deploying Cisco Secure Access Control Server fro Windows
- Configuring RADIUS and TACACS+ with Cisco Secure ACS for Windows
- Implementing and Configuring Cisco Secure ACS for Windows
Module 3: Configuring Cisco IOS Security Features
- Setup and Management of IOS Firewall CBAC (Context-Based Access Control)
- New Features in CBAC
- Authentication Proxy
- IPS (Intrusion Prevention System)
Module 4: Layer 2 Security
- Mitigating Layer 2 Attacks
- Cisco IBNS (Identity Based Network Services)
- 802.1x Port-Based Authentication
- Identifying Layer 2 Security Best Practices
Module 5: Cisco IOS-Based Virtual Private Networks
- Building Cisco IOS-based VPNs Using Cisco Routers and Pre-Shared Keys
- Building Cisco IOS-based VPNs Using Cisco Routers and Certificate Authorities
- Cisco IOS Remote Access Using Cisco Easy VPN
Module 6: Security Device Manager (SDM)
- Overview and setup of SDM on a Cisco device
- Detailed management and reconfiguration of SDM-enabled systems
Included Labs
- Cisco Identity Based Network Services (IBNS)
- 802.1x Port-Based Authentication
- Configuring Cisco Secure Access Control Server (ACS) for Windows
- Cisco IOS remote access using Cisco Easy VPN
- Configuring Cisco IOS Security Feature Set including IOS Firewall CBAC, authentication proxy, and Intrusion Prevention System (IPS)
- Cisco Security Device Manager (SDM)
- Building Cisco IOS-based VPNs using Cisco routers and Certificate Authorities
- Building Cisco IOS-based VPNs using Cisco routers and pre-shared keys
|
|