CCIE Practical Studies: Security (CCIE Self-Study)

  • Published: Jun 9, 2003
  • Copyright 2003
  • Dimensions: 7-3/8" x 9-1/8"
  • Pages: 1104
  • Edition: 1st
  • Book
  • ISBN-10: 1-58705-110-9
  • ISBN-13: 978-1-58705-110-4
  • eBook (Adobe DRM)
  • ISBN-10: 1-58705-295-4
  • ISBN-13: 978-1-58705-295-8

Register your product to gain access to bonus material or receive a coupon.

More Information

DescriptionReviewsSample ContentUpdates

Product Description

Hands-on preparation for the CCIE Security lab exam

  • Prepare for the CCIE Security lab exam with comprehensive practice lab scenarios designed to test your readiness to take the actual exam
  • Enhance your network security deployment skills by examining the wealth of case studies and lessons in each chapter
  • Understand the security capabilities of Cisco IOS Software and Catalyst 3550 switches, VLANs, and IP addressing
  • Configure ATM, Frame Relay, and ISDN connectivity
  • Evaluate the common security problems associated with IP routing, including coverage of RIP, EIGRP, OSPF, IS-IS, and BGP routing protocols
  • Examine security practices for Cisco devices that can be utilized to increase security on the network, including access lists, IP services, and Cisco IOS Software and CatOS security
  • Learn how to implement AAA, basic and advanced VPNs, and VPDNs
  • Discover effective deployment techniques for the Cisco PIX and IOS Firewalls
  • Learn the steps necessary to deploy IDS on the PIX Firewall and Cisco IOS Software

CCIE Practical Studies: Security leads you through the requirements of the CCIE Security one-day lab exam by providing practical lab exercises designed to model complex security solutions. These lab scenarios help you to master the broad scope of technologies needed to succeed on the CCIE Security lab exam and provide you with a solid foundation of knowledge that you can apply to your everyday job as a network security expert.

Serving the dual role of expert-level network security reference and CCIE Security lab exam preparation tool, CCIE Practical Studies: Security begins with a review of routing and switching fundamentals and builds upon this foundation with more advanced requirements of modern network security technology. Each chapter contains technology overviews coupled with mini-lab scenarios that demonstrate practical application of the technology. The book concludes with a final chapter containing complete lab scenarios that integrate the concepts and technologies covered in all the earlier chapters. These comprehensive labs mimic the types of scenarios candidates face on the actual one-day lab exam.

CCIE Practical Studies: Security is part of a recommended study program from Cisco Systems that includes simulation and hands-on training from authorized Cisco Learning Partners and self-study products from Cisco Press. To find out more about instructor-led, e-learning, and hands-on instruction offered by authorized Cisco Learning Partners worldwide, please visit www.cisco.com/go/authorizedtraining.

"Working through lab activities and practice with show commands and debugs will better prepare the exam candidate to implement and troubleshoot solutions efficiently and successfully."

-Kathe Saccenti, co-developer of the CCIE Security exam, Cisco Systems, Inc.

Companion CD-ROM

CD-ROM contains the solutions to the 8 complete lab scenarios in the book.

This book is part of the Cisco Press Practical Studies Series, which offers readers a means to apply theoretical knowledge through hands-on lab scenarios. This unique approach enables readers to practice and hone their internetworking skills while preparing for Cisco certification exams.

Customer Reviews

6 of 6 people found the following review helpful
3.0 out of 5 stars Should have covered the Security Topics only....., December 6, 2003
By 
This review is from: CCIE Practical Studies: Security (CCIE Self-Study) (Hardcover)
I ordered this book in the hope that it would help me study for the CCIE Security Lab exam. I already have Soli's Practical Studies (both volumes). The beginning chapters in the book are related to Ethernet, ISDN, Routing Protocols etc. Don't expect the same level of detail for these topics here that you would find in Soli's book or in Jeff Doyle's book. Use those books to cover these topics. The security Practices (Part IV) of the book is why you bought this book.
Being an instructor for almost all cisco security courses, I was disappointed by the level of detail in Chapters 14 through 17. But then, the book might be covering just what you need for your exam. In my opinion, you need Saadat Malik's book Network Security Principles and Practices. I would give that book 5 stars!.
For me, the only chapters worth anything were Advanced VPNs (Chapter 20) and Chapter 26 (Sample Lab Scenarios -- which has eight scenarios).
The VPN Concentrator, which now appears on the lab is... Read more
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


3 of 3 people found the following review helpful
5.0 out of 5 stars This book is Excellent!, August 18, 2003
By 
Fabrice Bobes (Vancouver, BC Canada) - See all my reviews
This review is from: CCIE Practical Studies: Security (CCIE Self-Study) (Hardcover)
This book came out right in time for me, just 2 months before my Security lab exam. I passed my lab (CCIE #8609 R&S and now Security also). The simulation labs at the end of the book have been extremely helpful. The contents are also right in line with the lab and the samples configs are a welcome addition.
Two thumbs up!
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


2 of 2 people found the following review helpful
5.0 out of 5 stars The only real guide for your once in a lifetime lab, September 29, 2003
By A Customer
This review is from: CCIE Practical Studies: Security (CCIE Self-Study) (Hardcover)
Having passed your CCIE Security Qualification Exam, you'll need to spend some time preparing for the lab - no easy task, and with so little information around, you'll need all the help you can get.

I bought this book on its release in July and have just passed the CCIE Security lab in Brussels. The lab was very difficult - and not to be underestimated. This book is close to the real thing and was an invaluable guide, and (with LOTS of practice) helped me to my goal. Above all, it helped me realise how under prepaired I would have been. I'm pretty sure that without this book, I would have failed the lab.

The book has twenty-five chapters of background, followed by eight "Labs" for you to try for yourself. If you can master those in the time given, you'll be in a good position to tackle the real thing. There's the odd typo here and there, but is generally sound and well written, but should of course be suplimented by other material aswell.

Good luck!

Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


Share your thoughts with other customers:
 See all 11 customer reviews...

Index

Download - 145 KB -- Index

Foreword

Download - 51.4 KB -- Book Foreword (pdf)

Table of Contents



Foreword.


Introduction.


1. The CCIE Security Program.

The Cisco CCIE Program. The CCIE Security Exam. Summary.



2. Building a CCIE Mind-Set.

What It Takes to Become a CCIE. Developing Proper Study Habits. Lab Experience Versus Real-World Experience. Summary.



3. Building the Test Laboratory.

Study Time on a Lab. Planning Your Home Lab. Designing Your Practice Lab for This Book. Summary.



4. Layer 2 and Layer 3 Switching and LAN Connectivity.

Catalyst Operating System. Switching Overview. Spanning Tree Overview. Layer 3 Switching Overview. Virtual LAN Overview. VLAN Trunking Protocol Overview. Switch Interface Overview. EtherChannel Overview. Optional Configuration Items. Switched Port Analyzer Overview. Basic Catalyst 3550 Switch Configuration. Summary. Review Questions. FAQs.



5. Frame Relay Connectivity.

Frame Relay Overview. Frame Relay Devices. Frame Relay Topologies. Frame Relay Virtual Circuits. Frame Relay Signaling. Network-to-Network Interface. User-Network Interface. Congestion-Control Mechanisms. Configuring Frame Relay. Creating a Broadcast Queue for an Interface. Transparent Bridging and Frame Relay. Configuring a Backup Interface for a Subinterface. TCP/IP Header Compression. Troubleshooting Frame Relay Connectivity. Summary. Review Questions. FAQs.



6. ISDN Connectivity.

ISDN Overview. Point-to-Point Protocol (PPP) Overview. Dial-on-Demand Routing (DDR) Overview. Configuring ISDN. Summary. Review Questions. FAQs.



7. ATM Connectivity.

ATM Overview. Configuring ATM. Summary. Review Questions. FAQs.



8. RIP.

RIP Structure. Configuring RIP. Summary. Review Questions. FAQs.



9. EIGRP.

An EIGRP Overview. Configuring EIGRP. EIGRP Building Blocks. Configuring EIGRP Options. Troubleshooting EIGRP. Summary. Review Questions. FAQs.



10. OSPF.

Configuring OSPF. Monitoring and Maintaining OSPF. Summary. Review Questions. FAQs.



11. IS-IS.

Integrated IS-IS Overview. Configuring IS-IS. IS-IS Building Blocks. The IS-IS State Machine. Pseudonodes. IS-IS Addressing. Limiting LSP Flooding. Generating a Default Route. Route Redistribution. Setting IS-IS Optional Parameters. Configuring IS-IS Authentication. Using show and debug Commands. Summary. Review Questions. FAQs.



12. BGP.

Understanding BGP Concepts. Configuring BGP. Summary. Review Questions. FAQ.



13. Redistribution.

Metrics. Administrative Distance. Classless and Classful Capabilities. Avoiding Problems Due to Redistribution. Configuring Redistribution of Routing Information. Summary. Review Questions. FAQs.



14. Security Primer.

Important Security Acronyms. White Hats Versus Black Hats. Cisco Security Implementations. VPN Overview. AAA Overview. IDS Fundamentals. Summary. Review Questions. FAQs.



15. Basic Cisco IOS Software and Catalyst 3550 Series Security.

Cisco IOS Software Security. Basic IOS Security Configuration. Catalyst 3550 Security. Summary. Review Questions. FAQs.



16. Access Control Lists.

Overview of Access Control Lists. ACLs on the IOS Router and the Catalyst 3550 Switch. Time-of-Day ACLs.Lock-and-Key ACLs. Reflexive ACLs. Router ACLs. Port ACLs. Fragmented and Unfragmented Traffic. Logging ACLs. Defining ACLs. Maintaining ACLs. Unsupported Features on the Catalyst 3550 Switch. Summary. Review Questions. FAQs.



17. IP Services.

Managing IP Connections. MTU Packet Size. Filtering IP Packets Using Access Lists. Hot Standby Router Protocol Overview. IP Accounting Overview. Configuring TCP Performance Parameters. Configuring the MultiNode Load Balancing Forwarding Agent. Network Address Translation Overview. Configuring IP Services. Monitoring and Maintaining IP Services. Summary. Review Questions. FAQs.



18. AAA Services.

TACACS+ Versus RADIUS. Configuring AAA. Summary. Review Questions. FAQs.



19. Virtual Private Networks.

Virtual Private Network (VPN) Overview. IPSec Overview. Tunnel and Transport Modes. IPSec Operation. Configuring IPSec in Cisco IOS Software and PIX Firewalls. Certificate Authority (CA) Support. Summary. Review Questions. FAQs.



20. Advanced Virtual Private Networks.

Issues with Conventional IPSec VPNs. Configuring Advanced VPNs. Summary. Review Questions. FAQs.



21. Virtual Private Dialup Networks.

L2F and L2TP Overview. VPDN Process Overview. PPTP Overview. Configuring VPDNs. Summary. Review Questions. FAQs.



22. Cisco IOS Firewall.

Creating a Customized Firewall. Configuring TCP Intercept. CBAC Overview. Port-to-Application Mapping (PAM). Summary. Review Questions. FAQs.



23. Cisco PIX Firewall.

Security Levels and Address Translation. TCP and UDP. Configuring a Cisco PIX Firewall. Summary. Review Questions. FAQs.



24. IDS on the Cisco PIX Firewall and IOS Software.

Cisco IOS Software Intrusion Detection. Cisco PIX Firewall Intrusion Detection. Cisco IOS Software and PIX IDS Signatures. Configuring Cisco IDS. Summary. Review Questions. FAQs.



25. Internet Service Provider Security Services.

Preventing Denial-of-Service Attacks). Layer 2 VPN (L2VPN). Configuring ISP Services. Summary. Review Questions. FAQs.



26. Sample Lab Scenarios.

Practice Lab Format. How the Master Lab Compares to the CCIE Security Lab Exam. CCIE Practice Lab 1: Building Layer 2. CCIE Practice Lab 2: Routing. CCIE Practice Lab 3: Configuring Protocol Redistribution and Dial Backup. CCIE Practice Lab 4: Configuring Basic Security. CCIE Practice Lab 5: Dial and Application Security. CCIE Practice Lab 6: Configuring Advanced Security Features. CCIE Practice Lab 7: Service Provider. CCIE Practice Lab 8: All-Inclusive Master Lab. Summary.



Appendix A. Basic UNIX Security.


Appendix B. Basic Windows Security.


Appendix C. ISDN Error Codes and Debugging Reference.


Appendix D. Password Recovery on Cisco IOS, CatalystOS, and PIX.


Appendix E. Security-Related RFCs and Publications.


Appendix F. Answers to the Review Questions.

Downloadable Sample Chapter

Download - 339 KB -- Chapter 15: Basic Cisco IOS Software and Catalyst 3550 Series Security

Errata

Errata -- 63 KB

Book

This product currently is not for sale.

Buy

eBook (Adobe DRM)  $68.00  $54.40

About Adobe DRM eBooks

InformationThis eBook requires the free Adobe® Digital Editions software.

Before downloading this DRM-encrypted PDF, be sure to:

  • Install the free Adobe Digital Editions software on your machine. Adobe Digital Editions only works on Macintosh and Windows, and requires the Adobe Flash Player. Please see the official system requirements.
  • Authorize your copy of Adobe Digital Editions using your Adobe ID. If you don’t already have an Adobe ID, you can create one here.
  • Visit our eBook FAQ page for more information.
Purchase Reward: One Month Free Subscription
By completing any purchase on Cisco Press, you become eligible for an unlimited access one-month subscription to Safari Books Online.

Get access to thousands of books and training videos about technology, professional development and digital media from more than 40 leading publishers, including Addison-Wesley, Prentice Hall, Cisco Press, IBM Press, O'Reilly Media, Wrox, Apress, and many more. If you continue your subscription after your 30-day trial, you can receive 30% off a monthly subscription to the Safari Library for up to 12 months. That's a total savings of $199.