Exam Overview
- Overview and briefing on the one-day Cisco CCIESecurityLab.
Configuring the Firewall PIX in version 6.2
- Translations, Access rules.
- URL and HTML object filtering.
- Authentication and authorization.
- VPN Site to Site towards router
Configuring the Firewall CBAC in version 12.1 T
- Authentication and authorization Advanced Features.
Configuring IDS on Pix, Router and Sensor 4210
- Designing inspection rules, reporting on Management Stations.
- Alarms and Signatures advanced tuning.
Advance Nat configuration on IOS
- Simple and Extended translations.
- NAT and Access List Integration.
VPN IPSEC Advanced Configuration on IOS, Pix and VPN3005
- Site-to-site VPN and Remote-Access with Pre-Shared and PKI.
- Configuring GRE / IPSEC tunnel.
Advance Security Features.
- Secure relationship with RIP, EIGRP, OSPF, BGP.
- SSH, NTP, 802.1X, QoS / VPN, ISDN with AAA
- Lock and Key, Advance filters.
Final Preparation to the LAB CCIESec :
- Running a simulation of the practical examination, with conditions close to those of the Cisco Lab.
Infrastructure
- One student per Pod.
- Each Pod consists of
- 7 router s(26xx/36xx) with various interfaces (Ethernet, Fast Ethernet, ATM, Serial, Frame-relay, ISDN)
- 2 x 3550 Catalysts,
- Pix 1 - 515/520 with 3 Interfaces
- Pix 2 - 501
- VPN = 3005 concentrator
- IDS = 4230 Sensor Appliance running 4.0/4.1
- ISDN Simulator
- ATM LS1010 Switch