rent-now

Rent More, Save More! Use code: ECRENTAL

5% off 1 book, 7% off 2 books, 10% off 3+ books

9781587132155

CCNP Implementing Secured Converged Wide-Area Networks (ISCW 642-825) Lab Portfolio (Cisco Networking Academy)

by ; ;
  • ISBN13:

    9781587132155

  • ISBN10:

    158713215X

  • Edition: 1st
  • Format: Paperback
  • Copyright: 2008-01-01
  • Publisher: Cisco Press
  • Purchase Benefits
List Price: $40.00

Summary

CCNP Implementing Secured Converged Wide-Area Networks (ISCW 642-825) Lab Portfolio David Kotfila bull; Joshua Moorhouse bull; Ross G. Wolfson, CCIEreg; No. 16696 CCNP Implementing Secured Converged Wide-Area Networks (ISCW 642-825) Lab Portfolioprovides you with opportunities for hands-on practice to secure and expand the reach of an enterprise-class network to teleworkers and branch sites. The labs reinforce your understanding of how to secure and expand the reach of an enterprise network with a focus on VPN configuration and securing network access to remote sites. The bookrs"s primary focus includes teleworker configuration and access, Frame Mode MPLS, site-to-site IPsec VPN, Ciscoreg; EZVPN, strategies used to mitigate network attacks, Cisco device hardening, and Cisco IOSreg; firewall features. Those preparing for the Implementing Secured Converged Wide-Area Networks (ISCW 642-825) certification exam should work through this book cover to cover. If you need to quickly review configuration examples, you can go directly to the relevant chapter. CCNP Implementing Secured Converged Wide-Area Networks (ISCW 642-825) Lab Portfolioincludes 27 Labs built to support v5 of the Implementing Secured Converged Wide-Area Networks course within the Cisco Networking Academyreg; curriculum providing ample opportunity for practice. 2 Challenge and Troubleshooting Labs added to the core curriculum labs to test your mastery of the topics. 2 Case Studies to give you a taste of what is involved in a fully functioning network covering all the technologies taught in this course. Even if you do not have the actual equipment to configure these more complex topologies, it is worth reading through these labs to expand your thinking into more complex networking solutions. David Kotfila, CCNPreg;, CCAI, is the director of the Cisco Networking Academy at Rensselaer Polytechnic Institute (RPI), Troy, New York. Joshua Moorhouse, CCNP, recently graduated from Rensselaer Polytechnic Institute with a bachelor of science degree in computer science, where he also worked as a teaching assistant in the Cisco Networking Academy. He currently works as a network engineer at Factset Research Systems. Ross Wolfson, CCIEreg; No. 16696, recently graduated from Rensselaer Polytechnic Institute with a bachelor of science degree in computer science. He currently works as a network engineer at Factset Research Systems. Use this Lab Portfolio with: CCNP ISCW Official Exam Certification Guide ISBN-10: 1-58720-150-X ISBN-13: 978-1-58720-150-9 CCNP ISCW Portable Command Guide ISBN-10: 1-58720-186-0 ISBN-13: 978-1-58720-186-8 This book is part of the Cisco Networking Academy Series from Cisco Pressreg;. Books in this series support and complement the Cisco Networking Academy curriculum.

Table of Contents

Introduction
Remote Network Connectivity Requirements
Lab Configuration Guide
Teleworker Connectivity
Scenario: Configuring the CPE as the PPPoE Client
Scenario: Configuring the CPE as the PPPoE Client over the ATM Interface
IPsec VPNs
Configuring SDM on a Router (3.10.1)
Scenariop. 7
Step 1p. 7
Prepare the Router for SDMp. 7
Configure Addressingp. 8
Extract SDM on the Hostp. 10
Install SDM on the PCp. 13
Run SDM from the PCp. 16
Install SDM to the Routerp. 19
Run SDM from the Routerp. 23
Monitor an Interface in SDMp. 24
Configuring a Basic GRE Tunnel (3.10.2)p. 26
Scenariop. 26
Configure Loopbacks and Physical Interfacesp. 26
Configure EIGRP AS 1p. 27
Configure a GRE Tunnelp. 28
Routing EIGRP AS 2 over the Tunnelp. 30
Configuring Wireshark and SPAN (3.10.3)p. 33
Scenariop. 33
Configure the Routerp. 33
Install Wireshark and WinPcapp. 33
Configure SPAN on a Switchp. 39
Sniff Packets Using Wiresharkp. 40
Configuring Site-to-Site IPsec VPNs with SDM (3.10.4)p. 43
Scenariop. 43
Configure Addressingp. 43
Configure EIGRPp. 44
Connect to the Routers via SDMp. 45
Configure Site-to-Site IPsec VPN via SDMp. 45
Generate a Mirror Configuration for R3p. 53
Verify the VPN Configuration Using SDMp. 56
Verify the VPN Configuration Using the IOS CLIp. 59
Challenge: Use Wireshark to Monitor Encryption of Trafficp. 65
TCL Script Outputp. 70
Configuring Site-to-Site IPsec VPNs with the IOS CLI (3.10.5)p. 74
Scenariop. 74
Configure Addressingp. 74
Configure EIGRPp. 75
Create IKE Policiesp. 76
Configure Preshared Keysp. 78
Configure the IPsec Transform Set and Lifetimesp. 78
Define Interesting Trafficp. 80
Create and Apply Crypto Mapsp. 81
Verify
Table of Contents provided by Publisher. All Rights Reserved.

Supplemental Materials

What is included with this book?

The New copy of this book will include any supplemental materials advertised. Please check the title of the book to determine if it should include any access cards, study guides, lab manuals, CDs, etc.

The Used, Rental and eBook copies of this book are not guaranteed to include any supplemental materials. Typically, only the book itself is included. This is true even if the title states it includes any access cards, study guides, lab manuals, CDs, etc.

Excerpts

Introduction IntroductionMy first motivation for writing this book was to serve the needs of CCNP instructors and students in the Cisco Networking Academy Program. For the past four years, I (David) have had the privilege of serving on the National Advisory Council for the Cisco Networking Academy, representing four-year colleges and universities. Also on the council are numerous two-year community colleges. Inevitably, at council meetings, we discussed both CCNP curriculum and labs. As I spoke with a number of my CCNP instructor peers, a common theme emerged. Instructors felt that the labs needed to be rewritten to be more comprehensive. In the past, labs have lacked complexity. When I realized that I was rewriting the Networking Academy CCNP labs, and that my peers were rewriting the same labs, the thought occurred to me that perhaps an engineering school, like RPI, was up to the task of writing these labs in a way that would better serve the needs of the community. It is not that the previous labs were inappropriate; rather, it's just that the Cisco Networking Academy has grown up. Having just celebrated its tenth birthday, folks in the Academy are ready for bigger challenges. I believe that these labs fill that role.My second motivation for writing these labs was to help networking professionals who are trying to upgrade their skill set to the CCNP level. As a former hiring manager at a Tier 1 ISP, I have a strong sense of what an industry is looking for when it hires someone with CCNP credentials. Each year, numerous hiring managers from Fortune 500 companies contact me about hiring my students. I know the level of expertise they expect from a CCNP. These labs reflect the convictions those managers shared with me.My third motivation for writing these labs was to see how much of a challenge university undergraduates could rise to if they were asked to do a big job. My coauthors, Josh Moorhouse and Ross Wolfson, were both undergraduates when they authored these labs. I gave them a huge task, and they responded with skill and grace. I firmly believe that we frequently do not ask enough of our students. If we ask for greatness, we will sometimes get it. If we settle for the normal, we are more assured of success, but we might miss the opportunity to see our students soar to new heights. With these labs, whether you are an instructor or student, I hope that your technical knowledge soars to new heights. Goals and MethodsThe most important goal of this book is to help you master the technologies necessary to configure secure WANs in a production environment. After all, what is the point of getting certified and getting that dream job or promotion if you cannot perform after you are there? Although it is impossible to simulate a network of 300 routers, we have added loopback interfaces to simulate additional networks and increase complexity.This book's secondary goal is to help people pass the ISCW certification exam. For two years, I was on the CCNP Assessment authoring team. After all of those years of complaining, "What were they thinking when they putthatquestion on the exam?," suddenly, the questions I was writing were the subject of someone else's complaint. I know how important it is, both to students and networking professionals, to pass certifications. Frequently, prestige, promotion, and money are all at stake. Although all the core configurations on the certification exam are covered in this book, no static document, like a book, can keep up with the dynamic way in which the certification exam is constantly upgraded. Who Should Read This Book?Cisco Networking Academy instructors and students who want a written copy of the electronic labs will find this book greatly useful. In addition to all the official labs that are part of the Networking Academy curriculum, additional Cha

Rewards Program