Whether you are studying for the Cisco IOS Network Security certification exam (Currently referred to as IINS v3) or just want to have a quick reference guide to practical security commands, this book will be useful to keep on hand. This book takes a practical but detailed approach to security controls of IOS devices as well as a functional introduction to the ASA adaptive security appliances. The security countermeasures covered include device protection for routers and switches, identity-aware access control, firewall services, IPS deployment, Layer 2 attack mitigation, and VPN technologies.
Table of Contents from First Edition
Part I: Networking Security Fundamentals
CHAPTER 1 Networking Security Concepts
CHAPTER 2 Implementing Security Policies Using a Lifecycle Approach
CHAPTER 3 Building a Security Strategy for Borderless Networks
Part II: Protecting the Network Infrastructure
CHAPTER 4 Network Foundation Protection
CHAPTER 5 Protecting the Network Infrastructure Using CCP
CHAPTER 6 Securing the Management Plane
CHAPTER 7 Securing Management Access with AAA
CHAPTER 8 Securing the Data Plane on Catalyst Switches
CHAPTER 9 Securing the Data Plane in IPv6 Environments
Part III: Threat Control and Containment
CHAPTER 10 Planning a Threat Control Strategy
CHAPTER 11 Configuring ACLs for Threat Mitigation
CHAPTER 12 Configuring Zone-Based Firewalls
CHAPTER 13 Configuring Cisco IOS IPS
Part IV: Secure Connectivity
CHAPTER 14 VPNs and Cryptology
CHAPTER 15 Asymmetric Encryption and PKI
CHAPTER 16 IPsec VPNs
CHAPTER 17 Configuring Site-to-Site VPNs
Part V: Securing the Network Using the ASA
CHAPTER 18 Introduction to the ASA
CHAPTER 19 Introduction to ASDM
CHAPTER 20 Configuring Cisco ASA Basic Settings
CHAPTER 21 Configuring Cisco ASA Advanced Settings
CHAPTER 22 Configuring Cisco ASA SSL VPNs
APPENDIX Create Your Own Journal Here
TOC, 9781587204487, 5/1/2012
NEW TO THIS EDITION:
Major updates include:
IOS 15
ASA Firewall
Adaptive Security Device Manager (ASDM) which is a GUI tool for the firewall.
Security related to IPv6
FEATURES:
- Practical, example-rich information for every command on Cisco's newest CCNAŽ Security exam
- Real-world samples and best-practice topologies help students work more efficiently, and pass the first time
- Covers security policies, securing routers, switches, and firewalls; VPNs, IPS, LAN security, and more
- Perfect take-anywhere resource: no need for thick books or Web access