|
|
Title |
Duration |
|
|
|
Welcome to CCNA Security: Cisco Certification and Getting the Most from This Series
With every new program, there is typically an included "Read Me First" text file. In the same sense, consider this nugget the "Watch Me First" of the series. This nugget presents the strategies you can use for getting the most from the series, changes to the Cisco certification program, and the ideal CCNA Security lab environment.
|
00:32:45 |
|
|
|
|
00:31:18 |
|
|
|
Welcome to CCNA Security: Understanding the Threats, Part 2
Jeremy continues defining the properties of a secure network by discussing many of the network attacks you can face and a general mitigation strategy. In addition, Jeremy discusses the components behind the Cisco Self-Defending Network system.
|
00:27:49 |
|
|
|
Foundation Router Security: Using SDM to Lock Down Your Router
The Cisco Security Device Manager (SDM) is a powerful graphic interface you can use to manage your router and perform complex tasks with the click of a mouse button. This nugget walks through the process of configuring your router to support Cisco SDM and using the SDM to perform a security audit or one-step lockdown of your device.
|
00:41:22 |
|
|
|
Foundation Router Security: Implementing Secure Router Management
One of the first areas of security you should consider is the management traffic between you and the network devices. In this nugget, Jeremy describes creating an Out Of Band (OOB) management network and three areas of network management: syslog, SNMP, and SSH.
|
00:47:46 |
|
|
|
Foundation Router Security: Understanding and Implementing AAA
AAA is more than just roadside assistance; it represents authentication, authorization, and accounting (AAA) methods you can use on a Cisco device. This nugget describes the concepts behind AAA and walks through the setup of a AAA device and the Cisco ACS TACACS+ server.
|
00:43:22 |
|
|
|
Foundation Router Security: Using IOS-based Tools for Administrative Access
While server security is essential, network security is of the utmost importance. One of the first network areas requiring more security is the area of administrative access. By default Cisco switches and routers will allow someone to attempt to logon to the device infinitely. This nugget focuses on locking down this logon prompt, configuring role-based access (sub-administrators), and securing the IOS and configuration files on your devices.
|
00:32:21 |
|
|
|
Foundation Router Security: Becoming an ACL Wizard
Understanding the implementation of Access Control Lists (ACLs) is critical for any Cisco environment, however, you can apply ACLs in more ways than one. In this nugget, Jeremy walks through guidelines for using ACLs followed by four practical scenarios of ACL implementation.
|
00:49:15 |
|
|
|
Foundation Switch Security: Locking Down the Catalyst Switch
In this nugget, all eyes turn to the internal network as Jeremy discusses Layer 2 security for your network. This initial nugget explores the reasons for L2 security, common attacks at L2, and concludes with one of the core mitigation techniques: port security.
|
00:29:51 |
|
|
|
|
00:38:49 |
|
|
|
|
00:34:29 |
|
|
|
|
00:22:35 |
|
|
|
|
01:00:46 |
|
|
|
Security Services: Implementing Router-Based IPS
The Cisco Integrated Service Router (ISR) product line was designed to implement many traditionally separate network functions into a single device. This made the implementation of Intrusion Prevention System (IPS) a natural one. In this nugget, Jeremy discusses the place and configuration of Cisco IPS on an ISR device.
|
00:52:00 |
|
|
|
Security Services: Understanding VPN Components - IPSec and Encryption
(VPNs) have become a commonplace technology to allow remote users to access a network and bridge multiple offices connected to the Internet into a seamless network fabric. The architecture behind VPN technology is anything but commonplace. In this nugget, Jeremy discusses the IP Security (IPSec) protocol used to create VPN connections, focusing specifically on the encryption capabilities.
|
00:51:49 |
|
|
|
|
00:31:48 |
|
|
|
Security Services: Understanding VPN Architecture
This final, conceptual nugget on VPN technology focuses on the process devices go through when establishing a VPN connection. Special attention is given to the important concepts of identifying interesting traffic and the Internet Key Exchange (IKE) phases.
|
00:19:09 |
|
|
|
|
00:50:21 |
|
|
|
|
00:17:10 |
|
|
|
|
00:06:10 |