Global Knowledge-Cisco - (Page 47) New SNRS – Securing Networks with Cisco Routers & Switches v3.0 Course 5733 Cisco Course v3.0 | Prepares you for Cisco Exam 642-504 SNRS. Course Description Discover advanced concepts in IOS router and switch security in this course that starts where IINS v1.0, core training for the CCNA Security Associate certification, stops. In SNRS v3.0, a component in the Cisco Certified Security Professional certification, you will take your IOS router and switch security skills to the professional level. You’ll cover switch topics, including advanced Layer 2 security and Identity-Based Networking Services (IBNS) based on IEEE 802.1x, and you’ll cover router topics, including network platform security, VPN, firewall, and IPS. Learn how to secure a router’s control plane, data plane, and management plane. You will spend a large portion of the class covering advanced VPN topics, including using digital certificates for VPN authentication, GRE over IPsec, Dynamic Virtual Trunk Interfaces, Dynamic Multipoint VPN (DMVPN), Group Encryption Transport VPN (GET VPN), remote access IPsec VPN with the Easy VPN Server, Cisco VPN Client and Easy VPN Remote (hardware client), and SSL VPN. Examine both the newer Zone-Based Policy Firewall (ZFW) as well as the traditional Context-Based Access Control (now referred to as IOS Classic Firewall). You’ll cover advanced IPS topics as well, including event action overrides, event action filters, signature tuning, and custom signature creation. E-Labs Included for Post-Class Lab Practice Following classroom instruction, you will receive 5 e-Lab credits for post-class lab practice, allowing you to hone your skills using the same hands-on lab equipment you used in the classroom. Hands-On Labs We have enhanced our SNRS v3.0 hands-on labs beyond what you’ll find in a standard Cisco SNRS course, providing more realistic and robust scenarios. The root of our enhancements lies in the topology that we provide. For professional-level security training, our SNRS v3.0 topology combines our standard FSA topology with a router supplement. Each pod has four routers, two switches, and ten PC instances. The topology provides a main site with an internal network with multiple subnets and a DMZ for public services, along with two remote site networks and a simulated Internet. PC systems are strategically placed in the topology, and services such as DNS, SMTP, FTP and HTTP are configured realistically. Lab 1: Advanced Layer 2 Security Lab 2: Layer 2 AAA with 802.1x Lab 3: Cisco Network Foundation Protection Lab 4: Site-To-Site VPN with PKI Lab 5: IPsec Redundancy using GRE Lab 6: DMVPN Lab 7: GET VPN Lab 8: Cisco Easy VPN Lab 9: IOS SSL VPN Lab 10: IOS Classic Firewall Lab 11: IOS Zone-Based Policy Firewall Lab 12: IOS IPS Course Content 1. Network Platform Security with Switches • Configuring Advanced Layer 2 Security • Introducing Cisco IBNS • Implementing Basic 802.1x Authentication • Configuring Advanced 802.1x Authentication and Authorization 2. Network Platform Security with Routers • Examining the Cisco Network Foundation Protection Strategy • Securing the Control Plane • Securing the Management Plane • Securing the Data Plane 3. Secure Site-to-Site Communications • Examining VPN and IPsec Fundamentals • Implementing IPsec VPNs with PKI • Implementing GRE over IPsec • Configuring High-Availability VPNs and VTI • Implementing DMVPN • Implementing GET VPN 4. Secure Remote Access Communications • Implementing Cisco IOS Remote Access using Cisco Easy VPN • Examining a Cisco IOS SSL VPN 5. Threat Control and Containment • Configuring NAT and PAT • Configuring a Cisco IOS Classic Firewall • Configuring a Cisco IOS ZoneBased Policy Firewall • Configuring Cisco IOS IPS What You’ll Learn in Class • Layer 2 Security: Attack methods and techniques to mitigate the attacks • Identity Based Networking Services: 802.1x authentication and authorization with Cisco switches • Network Foundation Protection: Secure an IOS router’s control plane, management plane, and data plane • VPN Connectivity: - IPsec overview - Site-to-site IPsec VPN using public key infrastructure and digital certificates for authentication - Virtual tunnel interfaces - GRE over IPsec - High-availability VPN options - Dynamic Multipoint VPN - Group Encryption Transport VPN - Cisco IOS SSL VPN (WebVPN) - Easy VPN Server, Remote, and Client for Remote Access IPsec VPN • Protect your network with Cisco IOS Classic Firewall and Cisco IOS Zone-Based Policy Firewall • Defend against threats on your network using IOS Intrusion Prevention Systems B Buy 1 course, get 1 half off. Buy 2 courses, get 3rd free. www.globalknowledge.com/bogo Prerequisites • CCNA Boot Camp (p. 5) • IINS (p. 43) Classroom Learning 5 days $3,195 32 CLCs On-Site Learning Call for info. Classroom Learning AB Calgary Mar 9-13 BC Vancouver May 11-15 CA Los Angeles Apr 6-10 CA San Jose Mar 30-Apr 3 DC Dulles, VA May 18-22 DC Washington Feb 2-6 DC Washington May 11-15 FL Orlando Apr 27-May 1 GA Atlanta Apr 20-24 IL Chicago IL Chicago IL Chicago MA Boston NC Raleigh NJ Morristown NY New York NY New York ON Ottawa ON Toronto Dec 15-19 Mar 9-13 Jun 22-26 Feb 9-13 Mar 16-20 Mar 23-27 Jan 19-23 May 4-8 May 25-29 Dec 15-19 ON ON QC TX TX TX TX VA Toronto Toronto Montreal Dallas Dallas Houston Houston Dulles Mar 23-27 Jun 8-12 Mar 30-Apr 3 Mar 2-6 Jun 1-5 Feb 23-27 Jun 15-19 May 18-22 REGISTER NOW 1-800-COURSES www.globalknowledge.com/cisco 47 http://www.globalknowledge.com/bogo http://www.globalknowledge.com/bogo http://www.globalknowledge.com/cisco
For optimal viewing of this digital publication, please enable JavaScript and then refresh the page. If you would like to try to load the digital publication without using Flash Player detection, please click here.