x
CCIE(SECURITY)认证 课程周期:6-8个月

Cisco Certified Internetwork Expert 被视为是全球Internetworking领域中的顶级CCIE认证证书。这个认证主要提供工程师在今日快速变动的网络环境中驾驭Cisco设备所需的专业知识。

成为CCIE,除了整个产业的认同之外,Security CCIE也是你不断持有新的网络知识的指标;你将会在你的专业领域中成为一位具有竞争力的人。

 

如何成为Security CCIE专家?


要取得Security CCIE认证,必须通过以下课程考试:
Security CCIE理论考试(Security CCIE考试号 350-018、考试时间两个半小时)
Security CCIE实验考试(一天8小时)

 

入学条件


已经通过CCSP或者具备相应水平者

 

Security CCIE认证培训班型


Security CCIE脱产班
Security CCIE一三五晚班
Security CCIE二四晚班
Security CCIE周末下午班
Security CCIE周末班

 

Security CCIE认证培训目标


现在市场上主流的3大防火墙产品,checkpoint公司的checkpoint全套产品.juniper公司的
netscreen,cisco 公司的ASA .作为三家业界龙头的防火墙产品,在市场上具有很高的市场占有率。
让学员真正学会使用所有的防火墙产品,成为名副其实网络安全专家。 
 

CCIE课程特色


CCIE认证培训设有官方标准课程。 
课程内容是由ONLY认证培训考试中心的10多名CCIE讲师设计开发。
把历年所有的CCIE认证考试的全真考题版本,拆成分解实验,再按照知识点分类,讲解和操作分解实验。
这些知识点的分解实验都掌握了,即使考试变题也可以保证通过。
因为任何的CCIE认证全真考题版本都是由知识点分解实验组合起来。
通过CCIE认证培训的入学测试后进入B阶段的学习。
B阶段的主要目的是掌握所有的知识点和分解实验,达到真实的CCIE认证水准。
通过内部考核确认技术水平达标后再进入A阶段的学习。
A阶段的主要目的是针CCIE认证考试的全面冲刺,全真考题的讲解分析考试技巧,确保学员通过。
CCIE认证培训的考生在考前一个月,由ONLY认证培训考试中心3位CCIE讲师作考前评估,
水平完全达到要求再参加考试。

 

Security CCIE课程介绍


Firewall

PIX and ASA Firewall
Basic Initialization
Access Management
Address Translation
ACLs
IP Routing
Object Groups
VLANs
AAA
VPNs
Filtering
Failover
Layer 2 Transparent Firewall
Security Contexts (Virtual Firewall)
Modular Policy Framework
Application-Aware Inspection
High Availability Scenarios
QoS Policies
Other Advanced Features 

IOS Firewall

CBAC
Audit
Auth Proxy
PAM
Access Control
Performance Tuning
Advanced Features

VPN

IPSec LAN-to-LAN
SSL VPN
DMVPN
CA (PKI)
Remote Access VPN
VPN3000 Concentrator
VPN3000 IP Routing
Unity Client
WebVPN
EzVPN Hardware Client
XAuth, Split-tunnel, RRI, NAT-T
High Availability
QoS for VPN
GRE, mGRE
L2TP
PPTP
Advanced VPN Features

Intrusion Prevention System (IPS)

IPS 4200 Series Sensor Appliance
Basic Initialization
Sensor Configuration
Sensor Management
Promiscuous and Inline Monitoring
Signature Tuning
Custom Signatures
Blocking
TCP Resets
Rate Limiting
Signature Engines
IDM
Event Action
Event Monitoring
IOS IPS
PIX IDS
SPAN, RSPAN
Advanced Features
Identity Management
Security Protocols (RADIUS and TACACS+)
Cisco Secure ACS Configuration
Access Management (Telnet, SSH, Pwds, Priv Levels)
Proxy Authentication
Service Authentication (FTP, Telnet, HTTP, other)
Network Admission Control (NAC Framework solution)
802.1x
Advanced Features

Advanced Security

Mitigation Techniques
Packet Marking Techniques
Security RFCs (RFC1918, RFC2827, RFC2401)
Service Provider Security
Black Holes, Sink Holes
RTBH Filtering (Remote Triggered Black Hole)
Traffic Filtering using Access-lists
NAT
TCP Intercept
uRPF
CAR
NBAR
NetFlow
Flooding
Spoofing
Policing
Fragmentation
Sniffer Traces
Catalyst Management and Security
Traffic Control and Congestion Management
Catalyst Features and Advanced Configuration

Network Attacks

Network Reconnaissance
IP Spoofing Attacks
MAC Spoofing Attacks
ARP Spoofing Attacks
Denial of Service (DoS)
Distributed Denial of Service (DDoS)
Man-in-the-Middle (MiM) Attacks
Port Redirection Attacks
DHCP Attacks
DNS Attacks
Fragment Attacks
Smurf Attacks
SYN Attacks
MAC Attacks
VLAN Hopping Attacks
Other Layer2 and Layer3 Attacks


考试时间


CCIE Sec认证考试分为以两个组成部分:

1. CCIE Sec 笔试(code:350-018),2小时考试时间

2. CCIE Sec Lab 考试,8小时的实验考试时间

 

考试分数


总分1000分,800分合格


Security CCIE认证学习路径:



cciesad.png

 

Security CCIE认证证书样本


cciesad2.png


参加任意课程培训考核合格
上海交大教育集团颁发结业证书
热线:400-820-7975   邮箱:ch@sjtu-gr.com
Copyright © 上海交大教育集团