CCNP Security VPN 642-648 Official Cert Guide, Rough Cuts, 2nd Edition

Rough Cuts

  • Available to Safari Subscribers
  • About Rough Cuts
  • Rough Cuts are manuscripts that are developed but not yet published, available through Safari. Rough Cuts provide you access to the very latest information on a given topic and offer you the opportunity to interact with the author to influence the final publication.

Not for Sale
  • Description
  • Sample Content
  • Updates
  • Copyright 2012
  • Dimensions: 7-3/8" x 9-1/8"
  • Pages: 832
  • Edition: 2nd
  • Rough Cuts
  • ISBN-10: 0-13-296643-3
  • ISBN-13: 978-0-13-296643-6

This is the Rough Cut version of the printed book.

The official study guide helps you master all the topics on the CCNP Security VPN exam, including

Configuring policies, inheritance, and attributes

·         AnyConnect Remote Access VPN solutions

·         AAA and Dynamic Access Policies (DAP)

·         High availability and performance

·         Clientless VPN solutions

·         SSL VPN with Cisco Secure Desktop

·         Easy VPN solutions

·         IPsec VPN clients and site-to-site VPNs

The CD-ROM contains a free, complete practice exam.

Includes Exclusive Offer for 70% Off Premium Edition eBook and Practice Test

Pearson IT Certification Practice Test minimum system requirements:

Windows XP (SP3), Windows Vista (SP2), or Windows 7; Microsoft .NET Framework 4.0 Client; Pentium class 1GHz processor (or equivalent);
512 MB RAM; 650 MB disc space plus 50 MB for each downloaded practice exam

This volume is part of the Official Cert Guide Series from Cisco Press. Books in this series provide officially developed exam preparation materials that offer assessment, review, and practice to help Cisco Career Certification candidates identify weaknesses, concentrate their study efforts, and enhance their confidence as exam day nears.

CCNP Security VPN 642-648 Official Cert Guide is a best of breed Cisco exam study guide that focuses specifically on the objectives for the CCNP Security VPN exam. Cisco Certified Internetwork Expert (CCIE) Howard Hooper shares preparation hints and test-taking tips, helping you identify areas of weakness and improve both your conceptual knowledge and hands-on skills. Material is presented in a concise manner, focusing on increasing your understanding and retention of exam topics.

CCNP Security VPN 642-648 Official Cert Guide presents you with an organized test-preparation routine through the use of proven series elements and techniques. “Do I Know This Already?” quizzes open each chapter and enable you to decide how much time you need to spend on each section. Exam topic lists make referencing easy. Chapter-ending Exam Preparation Tasks help you drill on key concepts you must know thoroughly.

The companion CD-ROM contains a powerful testing engine that enables you to focus on individual topic areas or take a complete, timed exam. The assessment engine also tracks your performance and provides feedback on a module-by-module basis, laying out a complete assessment of your knowledge to help you focus your study where it is needed most.

Well-regarded for its level of detail, assessment features, and challenging review questions and exercises, this official study guide helps you master the concepts and techniques that will enable you to succeed on the exam the first time.

CCNP Security

Table of Contents

Introduction

Part I ASA Architecture and Technologies Overview

Chapter 1 Examining the Role of VPNs and the Technologies Supported by the ASA

“Do I Know This Already?” Quiz

Foundation Topics

Introducing the Virtual Private Network

    VPN Termination Device (ASA) Placement

Meet the Protocols

    Symmetric and Asymmetric Key Algorithms

    IPsec

    IKEv1

    Authentication Header and Encapsulating Security Payload

    IKEv2

    SSL/TLS

    SSL Tunnel Negotiation

    Handshake

    DTLS

ASA Packet Processing

The Good, the Bad, and the Licensing

    Time-Based Licenses

        When Time-Based and Permanent Licenses Combine

    Shared SSL VPN Licenses

        Failover Licensing

Exam Preparation Tasks

Review All Key Topics

Complete Tables and Lists from Memory

Define Key Terms

Chapter 2 Configuring Policies, Inheritance, and Attributes

“Do I Know This Already?” Quiz

Foundation Topics

Policies and Their Relationships

Understanding Connection Profiles

    Group URL

    Group Alias

    Certificate-to-Connection Profile Mapping

    Per-User Connection Profile Lock

    Default Connection Profiles

Understanding Group Policies

Configure User Attributes

Using External Servers for AAA and Policies

Exam Preparation Tasks

Review All Key Topics

Complete Tables and Lists from Memory

Define Key Terms

Part II Cisco Clientless Remote-Access VPN Solutions

Chapter 3 Deploying a Clientless SSL VPN Solution

“Do I Know This Already?” Quiz

Foundation Topics

Clientless SSL VPN Overview

Deployment Procedures and Strategies

Deploying Your First Clientless SSL VPN Solution

    IP Addressing

    Hostname, Domain Name, and DNS

    Become a Member of a Public Key Infrastructure

    Adding a CA Root Certificate

    Certificate Revocation List

    Revocation Check

    CRL Retrieval Policy

  &nb