CCSP Cisco Secure PIX Firewall Advanced Exam Certification Guide (CCSP Self-Study)

Front Cover
Cisco Press, 2003 - Computers - 433 pages

Official self-study test preparation guide for the Cisco 9E0-111 and 642-521 CSPFA exams

Coverage of the CSPFA topics enables you to identify and fill your knowledge gaps before the exam date. You'll learn about:

  • The comprehensive line of Cisco PIX Firewall products and the technology and features central to each one
  • Transport protocols, Network Address Translation (NAT), and Port Address Translation (PAT)
  • Using access control lists and URL filtering
  • Use and configuration of group objects
  • Attack guards and intrusion detection
  • Concepts that support failover as well as configuration information
  • Enabling a secure virtual private network (VPN)
  • Using Cisco PIX Device Manager to configure a firewall and to create VPNs

Becoming a CCSP distinguishes you as part of an exclusive group of experts, ready to take on today's most challenging security tasks. Administration of the Cisco PIX Firewall is a difficult and complex task, critical for protecting a network. Whether you are seeking a PIX Focused Certification or the full-fledged CCSP Certification, learning what you need to know to pass the CSPFA (Cisco Secure PIX Firewall Advanced) exam will qualify you to keep your company's network safe while meeting business needs.

Each chapter of the CCSP Cisco Secure PIX Firewall Advanced Exam Certification Guide tests your knowledge of the exam subjects through features such as quizzes that assess your knowledge, sections that detail exam topics to master, and areas that highlight essential subjects for quick reference and review. Because experienced IT professionals will agree that the most demanding portion of their jobs is troubleshooting, the final section of this book includes scenarios dedicated to troubleshooting Cisco PIX Firewall configuration. This includes a description of the problem, a portion of the system configuration, debug output, and suggestions to help you resolve the issue. The companion CD-ROM's customizable testing engine enables you to take practice exams that mimic the real testing environment, focus on particular topic areas, randomize answers for reusability, track your progress, and refer to the electronic text for review.

CCSP Cisco Secure PIX Firewall Advanced Exam Certification Guide is part of a recommended learning path from Cisco Systems that can include simulation and hands-on training from authorized Cisco Learning Partners and self-study products from Cisco Press. To find out more about instructor-led training, e-learning, and hands-on instruction offered by authorized Cisco Learning Partners worldwide, please visit www.cisco.com/go/authorizedtraining.

Companion CD-ROM
This companion CD-ROM contains a test bank with more than 200 practice exam questions.

 

What people are saying - Write a review

We haven't found any reviews in the usual places.

Contents

Network Security
3
AVVID and SAFE
9
Firewall Technologies and the Cisco PIX Firewall
13
The Cisco Secure PIX Firewall
23
Foundation Summary
42
System Maintenance
47
Installing a New Operating System
50
Understanding Cisco PIX Firewall Translation and Connections
65
Content Filtering with the Cisco PIX Firewall
245
Foundation Summary
253
Overview of AAA and the Cisco PIX Firewall
257
Foundation Summary
269
Configuration of AAA on the Cisco PIX Firewall
273
Cisco Secure and CutThrough Configuration
300
Foundation Summary
307
Attack Guards and Multimedia Support
313

Configuring DNS Support
82
Getting Started with the Cisco PIX Firewall
91
Sample PIX Configuration
105
Configuring Access
111
TurboACL
118
Syslog
129
Cisco PIX Firewall Failover
143
Virtual Private Networks
159
Configuring the PIX Firewall as a VPN Gateway
168
Cisco VPN Client
184
QA
191
Completed PIX Configurations
201
PIX Device Manager
209
Using PDM for VPN Configuration
227
Foundation Summary
240
ip verify reversepath Command
324
Appendix A Answers to the Do I Know This Already? Quizzes and QA Questions
331
Chapter 5
339
Chapter 7
345
Chapter 10
354
Chapter 14
365
Appendix B
371
Appendix B Case Study and Sample Configuration
378
Configuring Access Rules on HQ
385
Configuring Failover
395
Glossary
409
Glossary
420
Index
425
Copyright

Other editions - View all

Common terms and phrases

About the author (2003)

Greg Bastien, CCNP(r), CCSP, CISSP, works as a senior network security engineer for True North Solutions, Inc., as a consultant to the U.S. Department of State. He holds a position as adjunct professor at Strayer University, teaching networking and network security classes. He completed his undergraduate and graduate degrees at Embry-Riddle Aeronautical University while on active duty as a helicopter flight instructor in the U.S. Army. Greg lives with his wife, two sons, and two dogs in Monrovia, Maryland.

Christian Abera Degu, CCNP, CCDP(r), CCSP, works as a senior network engineer for Veridian IT Services (VITS), as a consultant to the Federal Energy Commission. He recently held a position as an adjunct professor at Strayer University, teaching computer information systems. He holds a master's degree in computer information systems. Christian resides in Alexandria, Virginia.

Bibliographic information