CCSP: Securing Cisco IOS Networks Study Guide (642-501)
Todd Lammle, Sybex ISBN:0782142311, Edition: , 2003-06-10 Price: $49.99
Table of Contents
Chapter 1 Introduction to Network Security
Introduction to network security
Creating a security policy
Reasons for creating a security policy
Security issues
Security threats
Chapter 2 Introduction to AAA Security
Securing network access using AAA
Authentication methods
Configuring local AAA
Verifying AAA
Chapter 3 Configuring CiscoSecure ACS and TACACS+
CiscoSecure ACS for Windows NT or Windows 2000
Installing CiscoSecure ACS 3.0 for Windows NT or Windows 2000
Configuring CiscoSecure ACS for Windows 2000
Administering and troubleshooting CiscoSecure ACS for Windows NT or Windows 2000
CiscoSecure ACS 2.3 for Unix (Solaris)
Understanding and configuring TACACS+
Verifying TACACS+
Chapter 4 Cisco Perimeter Router Problems and Solutions
Identifying perimeter security problems and implementing solutions
Identifying and overcoming eavesdropping and session replay
Identifying and solving unauthorized access, data manipulation, and malicious destruction problems
Solving lack of legal IP address problems
Defending against rerouting attacks
Defending against denial-of-service attacks
Chapter 5 Context-Based Access Control Configuration
Understanding the Cisco IOS Firewall
Configuring Context-Based Access Control
Establishing global timeouts and thresholds
Implementing Port-to-Application Mapping
Defining inspection rules
Defining inspection rules and ACLs applied to router interfaces
Verifying the Cisco IOS Firewall
Chapter 6 Cisco IOS Firewall Authentication and Intrusion Detection
Understanding the Cisco IOS Firewall Authentication Proxy
Configuring the AAA server
Configuring AAA
Configuring the Authentication Proxy
Verifying the Cisco IOS Firewall
Understanding IOS Firewall IDS
Initializing Cisco IOS Firewall IDS
Configuring, disabling, and excluding signatures
Creating and applying audit rules
Chapter 7 Understanding Cisco IOS IPSec Support
Understanding Cisco IOS IPSec technologies
Using key exchange mechanisms
Understanding the Cisco IOS Cryptosystem
Establishing IPSec support in Cisco systems products
Using tunneling protocols
Using virtual private networks
Chapter 8 Cisco IOS IPSec Pre-Shared Keys and Certificate Authority Support
Configuring IPSec encryption tasks
Preparing for IKE and IPSec
Configuring IKE
Configuring IPSec
Configuring transform set suites
Configuring global IPSec Security Association (SA) lifetimes
Creating crypto ACLs
Creating crypto maps
Applying crypto maps to interfaces
Testing and verifying IPSec
Configuring IPSec manually
Configuring IPSec for RSA-encrypted nonces
Configuring CA support tasks
Understanding CA support
Configuring CA support
Chapter 9 Cisco IOS Remote Access Using Cisco Easy VPN
Understanding Cisco Easy VPN
Understanding the Easy VPN Server
Understanding the Cisco VPN 3.5 Client
Setting up the Easy VPN Server
Setting up the Cisco VPN 3.5 Client
Apendix A
Introduction to the PIX Firewall
Glossary
|