0%

Book Description

CCIE Professional Development

Network Security Technologies and Solutions

A comprehensive, all-in-one reference for Cisco network security

Yusuf Bhaiji, CCIE No. 9305

Network Security Technologies and Solutions is a comprehensive reference to the most cutting-edge security products and methodologies available to networking professionals today. This book helps you understand and implement current, state-of-the-art network security technologies to ensure secure communications throughout the network infrastructure.

With an easy-to-follow approach, this book serves as a central repository of security knowledge to help you implement end-to-end security solutions and provides a single source of knowledge covering the entire range of the Cisco network security portfolio.  The book is divided into five parts mapping to Cisco security technologies and solutions: perimeter security, identity security and access management, data privacy, security monitoring, and security management. Together, all these elements enable dynamic links between customer security policy, user or host identity, and network infrastructures.

With this definitive reference, you can gain a greater understanding of the solutions available and learn how to build integrated, secure networks in today’s modern, heterogeneous networking environment. This book is an excellent resource for those seeking a comprehensive reference on mature and emerging security tactics and is also a great study guide for the CCIE Security exam.

“Yusuf’s extensive experience as a mentor and advisor in the security technology field has honed his ability to translate highly technical information into a straight-forward, easy-to-understand format. If you’re looking for a truly comprehensive guide to network security, this is the one! ”

–Steve Gordon, Vice President, Technical Services, Cisco

Yusuf Bhaiji, CCIE No. 9305 (R&S and Security), has been with Cisco for seven years and is currently the program manager for Cisco CCIE Security certification. He is also the CCIE Proctor in the Cisco Dubai Lab. Prior to this, he was technical lead for the Sydney TAC Security and VPN team at Cisco.

  • Filter traffic with access lists and implement security features on switches

  • Configure Cisco IOS router firewall features and deploy ASA and PIX Firewall appliances

  • Understand attack vectors and apply Layer 2 and Layer 3 mitigation techniques

  • Secure management access with AAA

  • Secure access control using multifactor authentication technology

  • Implement identity-based network access control

  • Apply the latest wireless LAN security solutions

  • Enforce security policy compliance with Cisco NAC

  • Learn the basics of cryptography and implement IPsec VPNs, DMVPN, GET VPN, SSL VPN, and MPLS VPN technologies

  • Monitor network activity and security incident response with network and host intrusion prevention, anomaly detection, and security monitoring and correlation

  • Deploy security management solutions such as Cisco Security Manager, SDM, ADSM, PDM, and IDM

  • Learn about regulatory compliance issues such as GLBA, HIPPA, and SOX

  • This book is part of the Cisco CCIE Professional Development Series from Cisco Press, which offers expert-level instruction on network design, deployment, and support methodologies to help networking professionals manage complex networks and prepare for CCIE exams.

    Category: Network Security

    Covers: CCIE Security Exam

    Table of Contents

    1. Title Page
    2. Copyright Page
    3. About the Author
    4. Dedication
    5. Acknowledgments
    6. Contents at a Glance
    7. Contents
    8. Icons Used in This Book
    9. Command Syntax Conventions
    10. Foreword
    11. Introduction
    12. Part I: Perimeter Security
      1. Chapter 1. Overview of Network Security
      2. Chapter 2. Access Control
      3. Chapter 3. Device Security
      4. Chapter 4. Security Features on Switches
      5. Chapter 5. Cisco IOS Firewall
      6. Chapter 6. Cisco Firewalls: Appliance and Module
      7. Chapter 7. Attack Vectors and Mitigation Techniques
    13. Part II: Identity Security and Access Management
      1. Chapter 8. Securing Management Access
      2. Chapter 9. Cisco Secure ACS Software and Appliance
      3. Chapter 10. Multifactor Authentication
      4. Chapter 11. Layer 2 Access Control
      5. Chapter 12. Wireless LAN (WLAN) Security
      6. Chapter 13. Network Admission Control (NAC)
    14. Part III: Data Privacy
      1. Chapter 14. Cryptography
      2. Chapter 15. IPsec VPN
      3. Chapter 16. Dynamic Multipoint VPN (DMVPN)
      4. Chapter 17. Group Encrypted Transport VPN (GET VPN)
      5. Chapter 18. Secure Sockets Layer VPN (SSL VPN)
      6. Chapter 19. Multiprotocol Label Switching VPN (MPLS VPN)
    15. Part IV: Security Monitoring
      1. Chapter 20. Network Intrusion Prevention
      2. Chapter 21. Host Intrusion Prevention
      3. Chapter 22. Anomaly Detection and Mitigation
      4. Chapter 23. Security Monitoring and Correlation
    16. Part V: Security Management
      1. Chapter 24. Security and Policy Management
      2. Chapter 25. Security Framework and Regulatory Compliance
    17. Index
    18.221.53.5