Implementing Secure Converged Wide Area Networks RETIRED
Exam Number: 642-825
Associated Certifications:CCNP
Duration:90 minutes
Available Languages:English, Japanese
Exam Topics
The following information provides general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes the guidelines below may change at any time without notice.
Implement basic teleworker services.
Describe Cable (HFC) technologies.
Describe xDSL technologies.
Configure ADSL (i.e., PPPoE or PPPoA).
Verify basic teleworker configurations.
Implement Frame-Mode MPLS.
Describe the components and operation of Frame-Mode MPLS (e.g., packet-based MPLS VPNs).
Configure and verify Frame-Mode MPLS.
Implement a site-to-site IPSec VPN
Describe the components and operations of IPSec VPNs and GRE Tunnels.
Configure a site-to-site IPSec VPN/GRE Tunnel with SDM (i.e., preshared key).
Verify IPSec/GRE Tunnel configurations (i.e., IOS CLI configurations).
Describe, configure, and verify VPN backup interfaces.
Describe and configure Cisco Easy VPN solutions using SDM.
Describe network security strategies.
Describe and mitigate common network attacks (i.e., Reconnaissance, Access, and Denial of Service).
Describe and mitigate Worm, Virus, and Trojan Horse attacks.
Describe and mitigate application-layer attacks (e.g., management protocols).
Implement Cisco Device Hardening
Describe, Configure, and verify AutoSecure/One-Step Lockdown implementations (i.e., CLI and SDM).
Describe, configure, and verify AAA for Cisco Routers.
Describe and configure threat and attack mitigation using ACLs.
Describe and configure IOS secure management features (e.g., SSH, SNMP, SYSLOG, NTP, Role-Based CLI, etc.)
Implement Cisco IOS firewall.
Describe the functions and operations of Cisco IOS Firewall (e.g., Stateful Firewall, CBAC, etc.).
Configure Cisco IOS Firewall with SDM.
Verify Cisco IOS Firewall configurations (i.e., IOS CLI configurations, SDM Monitor).
Describe and configure Cisco IOS IPS.
Describe the functions and operations of IDS and IPS systems (e.g., IDS/IPS signatures, IPS Alarms, etc.)
Configure Cisco IOS IPS using SDM.
1. As a network engineer, do you know which three techniques should be used to secure management protocols?
(Choose three.)
A. Configure SNMP with only read-only community strings.
B. Encrypt TFTP and syslog traffic in an IPSec tunnel.
C. Implement RFC 3704 filtering at the perimeter router when allowing syslog access from devices on the outside
of a firewall.
D. Use SNMP version 2.
Answer: ABC
2. In terms of worm attack, we may take many methods to mitigate it. What are two steps that must be taken when
mitigating a worm attack? (Choose two.)
A. Limit traffic rate.
B. Inoculate systems by applying update patches.
C. Enable anti-spoof measures.
D. Quarantine infected machines.
Answer: BD
選擇TestInside 642-825 考題:
1、TestInside題庫大師642-825題庫都是考試原題的完美組合,覆蓋率95%以上,答案由多位專業資深講師原版破解得出,正确率100%,只要您使用本站的題庫參加642-825考試,我們保証您一次輕松通過考試;
2、售后服務第一!我們相信要想在當今時代取得成功,必須為廣大用戶提供全套的周到細致的全程优質售后服務,只有客戶滿意了,我們才能發展。客戶至上是我們TestInside題庫大師的一貫宗旨;
3、TestInside實行¨一次不過全額退款”承諾。如果您購買我們的《642-825 Exam》考題題庫,只要不是首次通過,憑蓋有PROMETRIC或VUE考試中心鋼印的考試成績單,我們將退還您購買642-825題庫大師的全部費用,絕對保証您的利益不受到任何的損失;
4、本站642-825考古題根据厂家考試的變化動態更新,在厂家考題每次發生變化后,我們承諾2天內更新642-825題庫。确保642-825考古題的覆蓋率始終都在95%以上;我們提供2种 642-825 考古大師版本供你選擇:
5、軟件版本642-825 題庫大師优點:具有學習模式,測試模式,線上自動升級缺點:僅限固定電腦使用,不可打印為文本,只能PC閱讀
6、PDF 格式642-825 題庫大師优點:不需安裝軟件,方便用戶打印和攜帶,但也帶來了可隨意制的弊端,因此我們提醒用戶不得隨意公開或出售本站的642-825題庫,一經發現立即取消其升級資格,且不予退款。 缺點:不具備測試模式,通過查看TestInside.net网站及查收我們的更新E-MAIL獲取更新信息。
沒有留言:
張貼留言