RE: Preparing for Security Lab

From: Geralt Omhof (geralt@OmnIT.nl)
Date: Mon Sep 09 2002 - 11:26:18 GMT-3


Hi Chuck,
 
I think the only problem is access to an IDS. The other (software-based) products are available in a time-limited trial version, so you don't have to buy any of those expensive products.
 
Regards,
 
Geralt

        -----Original Message-----
        From: Chuck Church [mailto:cchurch@MAGNACOM.com]
        Sent: Mon 9/9/2002 1:02 AM
        To: 'ccielab@groupstudy.com'
        Cc:
        Subject: FW: Preparing for Security Lab
        
        

        All, sorry if this is a re-post. I didn't see it show up after I sent it a
        couple days ago.
        
                I'm thinking about going for the Security CCIE. But looking at the
        blueprint, the things I've never touched are:
        
        Security Protocols:
        Remote Authentication Dial In User Service (RADIUS)
        Terminal Access Controller Access Control System Plus (TACACS+)
        Kerberos
        Certificate Enrollment Protocol (CEP)
        Layer 2 Tunneling Protocol (L2TP)
        
        Operating Systems:
        UNIX (Well, I know a little UNIX, but just enough to be dangerous :)
        
        Application Protocols:
        Secure Shell (SSH)
        Lightweight Directory Access Protocol (LDAP)
        Active Directory
        
        General Networking:
        none!
        
        Security Technologies:
        Active Audit
        Content Filters
        Authentication Technologies
        
        Cisco Security Applications:
        Cisco Secure UNIX
        Cisco Secure NT
        Cisco Secure Policy Manager (formerly Cisco Security Manager)
        Cisco Secure Intrusion Detection System (formerly NetRanger)
        Cisco Secure Scanner (formerly NetSonar)
        
        Security General:
        Intrusion Detection
        
                If I didn't list it, it's because I'm pretty familiar with that
        topic. I have no problem learning the missing parts, my issue is trying to
        learn the applications (Policy Manager, IDS, Scanner, Radius, TACACS+,
        Kerberos, etc) without hands-on exposure to them. I'd be funding everything
        myself, and don't plan on buying any of these expensive packages. I guess
        my question is can you successfully prepare using only books, such as:
        
        http://www.ccbootcamp.com/secexamwkbk.asp
        
        or is this as insane as trying to pass the R&S exam without hands on?
        
        Thanks,
        
        Chuck Church
        CCIE #8776, MCNE, MCSE
        Sr. Network Engineer
        Magnacom Technologies
        140 N. Rt. 303
        Valley Cottage, NY 10989
        845-267-4000



This archive was generated by hypermail 2.1.4 : Mon Oct 07 2002 - 07:43:47 GMT-3