The following information
provides general guidelines for the
content likely to be included on this
exam. However, other related topics
may also appear on any specific delivery
of the exam.
Basic Cisco Router Security
 |
Secure administrative
access for Cisco routers |
 |
Describe the
components of a basic AAA implementation |
 |
Test the perimeter
router AAA implementation using
applicable debug commands |
Advanced AAA Security
for Cisco Router Networks
 |
Describe the
features and architecture of
CSACS 3.0 for Windows |
 |
Configure the
perimeter router to enable AAA
processes to use a TACACS remote
service |
Cisco Router Threat
Mitigation
 |
Disable unused
router services and interfaces |
 |
Use access lists
to mitigate common router security
threats |
Cisco IOS Firewall CBAC
Configuration
 |
Define the Cisco
IOS Firewall and CBAC |
 |
Configure CBAC |
Cisco IOS Firewall Authentication
Proxy Configuration
 |
Describe how
authentication proxy technology
works |
 |
Configure AAA
on a Cisco IOS Firewall |
Cisco IOS Firewall IDS
Configuration
 |
Name the two
types of signature implementations
used by the Cisco IOS Firewall
IDS |
 |
Initialize a
Cisco IOS Firewall IDS router |
Building Basic IPSec
Using Cisco Routers
 |
Configure a Cisco
router for IPSec using pre-shared
keys |
 |
Verify the IKE
and IPSec configuration |
 |
Explain the issues
regarding configuring IPSec
manually and using RSA encrypted
nonces |
Building Advanced IPSec
VPNs Using Cisco Routers and Certificate
Authorities
 |
Advanced IPSec
VPNs using Cisco Routers and
CAs |
Configuring Cisco Remote
Access IPSec VPNs
 |
Describe the
Easy VPN Server |
Managing Enterprise
VPN Routers
 |
Managing Enterprise
VPN Routers |
|