CCNA Security 210-260

Download as pdf or txt
Download as pdf or txt
You are on page 1of 2

1

Cisco Certified Network Associate in Security for 210-260


Course Outline:

• Common network security concepts


• Secure routing and switching infrastructure
• Deploy basic authentication, authorization, and accounting services
• Deploy basic firewalling services
• Deploy basic site-to-site and remote access VPN services
• Advanced security services such as intrusion protection, content security and identity
management
• Develop a comprehensive network security policy to counter threats against information
security
• Configure routers with Cisco IOS software security features, including management and
reporting functions
• Bootstrap the Cisco ASA Firewall for use in a production network
• Configure the Cisco ASA Firewall for remote access to a Secure Sockets Layer (SSL) VPN
• Configure a Cisco IOS zone-based firewall (ZBF) to perform basic security operations on a
network
• Configure site-to-site VPNs using Cisco IOS features
• Configure security features on IOS switches to mitigate various Layer 2 and Layer 3 attacks
• How a network can be compromised using freely available tools
• Implement line passwords, and enable passwords and secrets
• Examine authentication, authorization, and accounting (AAA) concepts and features using the
local database as well as Cisco Secure ACS 5.2
• Configure packet filtering on the perimeter router

Hands-On Laboratory Activities:

1-1 Configure Administrative Access & Roles on a Router


1-2 Confiugring Aministrative Roles Using CLI
2-1 Configure WinRadius and AAA using SDM
2-2 Configure AAA with RADIUS using CLI
2-3 Configure AAA Authentication
3-1 Configure AutoSecure, Banners, Passwords, SSH, CBAC
3-2 Verify AutoSecure Results
4-1 Configure a Context-Based Access Control (CBAC) Firewall
4-2 Configure a Zone-Based Firewall
4-3 Modify Policies of a Firewall
5-1 Configure Intrusion Prevention System
5-2 Configure Syslog & Modify IPS Signatures
6-1 Configure SSH
6-2 Secure Trunk & Access Ports
6-3 Enable PortFast & BPDU Guard
2

6-4 Configure SPAN & Monitor Traffic With WireShark


6-5 Configure Private Vlans
7-1 Install Kiwi Syslog Server & Configure Logging
7-2 Configure SNMP Traps & Verify Logs

8-1 Cisco Policy Builder


8-2 Apply Basic Security Configuration - Routers
8-3 Apply Basic Security Configuration - Switches
9-1 Configure Site to Site VPN Using CLI
10-1 Configure Extended ACLs Scenario 1
10-2 Configure Extended ACLs Scenario 2
10-3 Configure IP ACLs to Mititgate Attacks
10-4 Configure IPv6 ACLs 119
11-1 Configure Authentication to Secure OSPF Routing Protocol
12-1 Configure ASA Basic Firewall Settings & Connectivity Using CLI
12-2 Configure ASA Using ASDM

You might also like