CCIE Security written (Version 4.0) has proven to be very useful those exam takers that want to achieve abundant of information on the technology which proves to be very useful for those who take the exam and get certified. Content information is given as follows.
350-018: CCIE Security written (Version 4.0) exam provides the
individuals with a lot of information about CCIE which is related to the
security. The topics given for this exam are Infrastructure, Connectivity,
Communications, and Network Security which consists of Network addressing
basics, OSI layers, TCP/UDP/IP protocols, LAN switching such as VTP, VLANs,
spanning tree, and trunking, Routing protocols such as RIP, EIGRP, OSPF, and
BGP. Fifteen percent is covered by Security Protocols that covers RSA, RC4,
MD5, SHA, DES, 3DES, AES, IPsec, ISAKMP, IKE and IKEv2, GDOI, AH, ESP, CEP, TLS
and DTLS, SSL, SSH, RADIUS, TACACS+, LDAP EAP methods that consists of EAP-MD5,
EAP-TLS, EAP-TTLS, EAP-FAST, PEAP, and LEAP, PKI, PKIX, and PKCS, IEEE 802.1X,
WEP, WPA, and WPA2, WCCP, SXP and MACsec.
Ten percent 350-018: CCIE Security
written (Version 4.0) is covered by Application and Infrastructure Security
which includes HTTP, HTTPS, SMTP, DHCP, DNS, FTP and SFTP, TFTP, NTP, SNMP,
syslog, Netlogon, NetBIOS, and SMB, RPCs, RDP and VNC, PCoIP, OWASP and Manage
unnecessary services. Ten percent is covered by Threats, Vulnerability Analysis,
and Mitigation that consist of mitigate common attacks, ICMP attacks and PING
floods, MITM, Replay, Spoofing, Backdoor, Botnets, Wireless attacks, DoS and
DDoS attacks, Virus and worm outbreaks, Header attacks, Tunneling attacks,
Software and OS Content filtering and packet inspection, Endpoint and posture
assessment and QoS marking attacks.
Twenty percent of the 350-018: CCIE Security written (Version
4.0) exam is covered by Cisco Security Products, Features that consists of
Cisco Adaptive Security Appliance (ASA), Firewall functionality, Routing and
multicast capabilities, Firewall modes, NAT, Object definition and ACLs, MPF
functionality, Context-aware firewall, Identity-based services, Failover
options, Cisco IOS firewalls and NAT, CBAC,
Zone-based firewall, Port-to-application mapping, Identity-based
firewalling, Cisco Intrusion Prevention administration, Network access, IEEE
802.1X, VSAs, Cisco Identity Services Engine (ISE), Cisco Secure ACS Solution
Engine, Cisco Network Admission Control (NAC) Appliance Server, Endpoint and
client, Cisco AnyConnect VPN Client, Cisco VPN Client, Cisco Secure Desktop,
Cisco NAC Agent, Secure access gateways (Cisco IOS router or ASA), IPsec, SSL
VPN, PKI and Virtual security gateway.
Seventeen percent is covered
by Cisco Security Technologies and Solutions in which the applicant learns
about Router hardening features, Switch security features, NetFlow, Wireless
security, Network segregation, VRF-aware technologies and many others.
350-018: CCIE Security written (Version 4.0) also provides
information on Cisco Catalyst 6500 Series ASA Services Modules, ScanSafe
functionality and components, Cisco Web Security Appliance and Cisco Email
Security Appliance, Security management, Cisco Security Manager, Cisco Adaptive
Security Device Manager (ASDM), Cisco IPS Device Manager (IDM), Cisco IPS
Manager Express (IME), Cisco Configuration Professional and Cisco Prime. Preparation for this exam is a must and
should be done very carefully to pass the exam. Training kits can be the best
resource for practicing the exam of Cisco.

No comments:
Post a Comment