Are you sure you want to cancel your subscription?
Sorry to see you go

Your subscription will remain active until . If you change your mind, you may rectivate your subscription anytime before that date.

Are you sure you want to reactivate?
Welcome Back!

Your subscription has been reactivated and you will continue to be charged on .

Reactivate Subscription

Thank you for choosing to reactivate your subscription. In order to lock in your previous subscription rate, you owe: .

Your Subscription term is from - .

Questions? Call Sales.

541-284-5522
Payment Due:

OK
Auto-Renew Subscription

To auto-renew your subscription you need to select or enter your payment method in "Your Account" under Manage Payments.

Click continue to set up your payments.
Back

Cisco CCNP Security (formerly known as CCSP) SECURE 642-637

Secure v1.0 Securing Networks with Cisco Routers and Switches

Michael Shannon

CBT Nuggets Trainer

"I really enjoy the way that computers can bring people together, move information quickly and empower learning. I come from three generations of teachers. My great-grandmother had a huge influence... Read more.

Take your first big step towards CCNP Security certification by passing Cisco's 642-637 exam. Why does Cisco CCNP Security certification give you instant job security? Because IT managers, CEOs and corporate shareholders are really nervous about network security.

With 642-637 under your belt, you'll be advancing your security knowledge and career, upping your odds for scoring a promotion and building your clout within any IT team.

Trainer Michael Shannon covers everything you need to know, from NFP controls to VPN deployment. By the time you've finished this training series, you'll understand Cisco defense-in-depth and how to deploy, implement, and configure Cisco security features. Plus, you'll be ready for the CCNP Security 642-637 exam!
  • Videos
Title Duration
 
Introduction to SECURE
This introductory nugget to the CCNP Security 642-637 SECURE series covers an exam and certification overview, exam objectives, and best practices for the getting the most out of this SECURE CBT Nugget.
00:12:09
 
NFP Controls
This first "official" nugget covers the infrastructure and implementation of Network Foundation Protection (NFP) controls, the network functionality planes (data, control, management), the NFP deployment model, and the availability of NFP controls.
00:34:42
 
Private VLANs and PVLAN Edge
Here we explore OSI layer 2 security for VLANs. First, we look at layer 2 attacks and countermeasures; then Private VLANs are explained; PVLAN is configured on a 3750 multilayer switch; and PVLAN Edge is discussed as well.
00:39:27
 
Additional Advanced Switched Data Plane Controls
In this continuation of the previous nugget, you will learn about DHCP control, ARP control, source IP address control, and finish up with an introduction to Identity-Based Networking Services (IBNS) - otherwise known as 802.1X.
00:47:15
 
802.1X Configuration on ACS for Windows 4.2
This module contains the following topics: a continuing discussion of Cisco IBNS; configuring an 802.1X authenticator; configuring ACS 4.2 for EAP-FAST; and configuring a Cisco SSC supplicant.
00:42:29
 
Advanced Routed Data Plane Security
These are topics that are particularly relevant to the Service Provider but are also valuable for the enterprise organization. Data plane security countermeasures are explored here including Unicast Reverse Path-Forwarding (uRPF), Flexible Packet Matching (FPM), and IOS NetFlow.
00:43:27
 
Routed Control Plane Security: iACLs and CPPR
This may be one of the most important nuggets in the series, from a real-world as well as testing standpoint. You will learn all about the meaning of control planes on routers, how to deploy infrastructure ACLs, Control Plane Policing (CoPP), and the new Control Plane Protection (CPPr) feature on a 2921 ISR G2 running IOS 15.
00:42:58
 
Routed Control Plane Security: Routing Protocol Authentication
This nugget continues the exploration of control plane protection as you configure routing protocol authentication for RIPv2, EIGRP, OSPF, and BGP.
00:25:15
 
Management Plane Security
This module covers the following topics: understanding the management plane; iACLs for management access; control plane protection for management; using IOS MPP; Role-Based CLI access control; and SNMP security.
00:27:31
 
Basic Zone-Based Policy Firewall
This nugget takes up where the IINS nugget left off with the new router firewall paradigm known as Zone-Based Policy Firewall which somewhat replaces and enhances elaborate ACLs and CBAC configurations on ISR G1 and G2 routers.
00:33:07
 
Advanced Zone-Based Policy Firewall
Here is part two of ZPF where we learn application-layer filtering (advanced protocol filtering), URL filtering, and User-Based Firewalling features.
00:26:19
 
Deploying Software IOS IPS
Here is a very heavily tested area of 642-637: the IOS Intrusion Prevention feature of the ISR. You will learn how to prepare the ISR, configure IPS policies, tune the IOS IPS, perform event monitoring, and troubleshoot IOS IPS. This nugget is also an excellent precursor to the CCNP Security IPS exam.
00:48:38
 
Overview of Site-to-Site VPN Technologies
Welcome to the first of 8 - count them - 8 CCNP Security SECURE nuggets on VPN technologies. In lucky number 13, we summarize VPN WAN topologies, VPN WAN technology, IPSec VPN technology, and cryptographic mechanisms.
00:27:25
 
VTI-Based Site-to-Site VPNs
Here we first answer the age-old...ok...very recent question: "What is a VTI?". You will learn how to configure IKE peering with PSK, static P2P VTI tunnels, and dynamic P2P VTI tunnels.
00:32:03
 
Scalable VPN Authentication
What does the term "scalable authentication" mean exactly? Well, three letters: PKI. In this vital nugget you will deploy a certificate server for the purposes of a VPN headend solutions. You will also learn how to configure the PKI client and configure a PKI-Based Site-to-Site VPN.
00:43:22
 
Dynamic Multipoint VPNs
If I could produce a commercial for this one, the tagline would say: "Stay Scalable My Friends". We will look at a newer - very flexible - robust solution for point-to-point, partial-mesh, and even full-mesh overlay VPN solutions with Cisco DMVPN. Some of the keywords for this nugget are: Multipoint GRE, NHRP, NHS, and DMVPN Hub and DMVPN Spoke. We will also explore dynamic routing and high-availability for DMVPN.
00:46:34
 
GET VPN
No this isn't an advertisement from Cisco telling you to "Get" a VPN. This is Group Encrypted Transport VPN which is in fact a highly scalable, any-to-any, tunnel-less security solution. We will get an understanding of this extension to IPSec ISAKMP; then we will configure a key server, configure a group member, and take a peek at GET VPN high-availability.
00:40:02
 
Cisco SSL VPN
Here is the "artist formerly known as WebVPN" in some of its glory. You will learn how to configure an SSL VPN gateway on a 2921 ISR G2. You will configure basic user authentication along with full-tunneling and clientless access to the SSL VPN gateway.
00:43:28
 
Cisco Easy VPN Server
This nugget includes an overview of Easy VPN, an important configuration of a dynamic VTI-based Easy VPN Server solution, and the steps to verify your implementation.
00:34:19
 
Cisco Easy VPN Client and Remote
The final nugget in the Cisco CCNP Security SECURE series explores the client and remote side of the Easy VPN deployment.
00:24:58
Total Series Duration: 11:55:28
Bookmarks

No Bookmarks