CramX Logo
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Document preview page 1

CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 1

Document preview content for CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020)

CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020)

CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) is designed to make certification prep easy and effective.

Michael Davis
Contributor
4.4
67
over 1 year ago
Preview (31 of 1635 Pages)
100%
Log in to unlock
Page 1 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 1 preview image
Page 2 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 2 preview imageDownloadedfromStudyXY.com[=Ww+StudyXYoias.Za\Rr'BE\StudyAnythingThisContentHasbeenPostedOnStudyXY.comassupplementarylearningmaterial.StudyXYdoesnotendroseanyuniversity,collegeorpublisher.Allmaterialspostedareundertheliabilityofthecontributors.|8)www.studyxy.com
Page 3 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 3 preview image
Page 4 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 4 preview imageCCNPandCCIESecurityCoreSCOR350-701OfficialCertGuideOmarSantosHoboken,poooUSA
Page 5 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 5 preview imageCCNPandCCIESecurityCoreSCOR350-701OfficialCertGuideOmarSantosCopyright©2020CiscoSystems,Inc.Publishedby:Pearson221RiverSt.Hoboken,NJ07030USAAllrightsreserved.Thispublicationisprotectedbycopyright,andpermissionmustbeobtainedfromthepublisherpriortoanyprohibitedreproduction,storageinaretrievalsystem,ortransmissioninanyformorbyanymeans,electronic,mechanical,photocopying,recording,orlikewise.Forinformationregardingpermissions,requestforms,andtheappropriatecontactswithinthePearsonEducationGlobalRights&PermissionsDepartment,pleasevisitWWwWw.pearson.com/permissions.Nopatentliabilityisassumedwithrespecttotheuseoftheinformationcontainedherein.Althougheveryprecautionhasbeentakeninthepreparationofthisbook,thepublisherandauthorassumenoresponsibilityforerrorsoromissions.Norisanyliabilityassumedfor
Page 6 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 6 preview imagedamagesresultingfromtheuseoftheinformationcontainedherein.ScoutAutomatedPrintCodeLibraryofCongressControlNumber:2020901233ISBN-10:0-13-597197-7ISBN-13:978-0-13-597197-0WarningandDisclaimerThisbookisdesignedtoprovideinformationabouttheImplementingandOperatingCiscoSecurityCoreTechnologies(SCOR350-701)exam.Everyefforthasbeenmadetomakethisbookascompleteandaccurateaspossible,butnowarrantyorfitnessisimplied.Theinformationprovidedisonan“asis”basis.Theauthorandthepublishershallhaveneitherliabilitynorresponsibilitytoanypersonorentitywithrespecttoanylossordamagesarisingfromtheinformationcontainedinthisbookorfromtheuseofthesupplementalonlinecontentorprogramsaccompanyingit.SpecialSalesForinformationaboutbuyingthistitleinbulkquantities,orforspecialsalesopportunities(whichmayincludeelectronicversions;customcoverdesigns;and
Page 7 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 7 preview imagecontentparticulartoyourbusiness,traininggoals,marketingfocus,orbrandinginterests),pleasecontactourcorporatesalesdepartmentatcorpsales@pearsoned.comor(800)382-3419.Forgovernmentsalesinquiries,pleasecontactgovernmentsales@pearsoned.com.ForquestionsaboutsalesoutsidetheU.S.,pleasecontactinternational@pearsoned.com.TrademarkAcknowledgmentsAlltermsmentionedinthisbookthatareknowntobetrademarksorservicemarkshavebeenappropriatelycapitalized.PearsonITCertificationcannotattesttotheaccuracyofthisinformation.Useofaterminthisbookshouldnotberegardedasaffectingthevalidityofanytrademarkorservicemark.SpecialSalesForinformationaboutbuyingthistitleinbulkquantities,orforspecialsalesopportunities(whichmayincludeelectronicversions;customcoverdesigns;andcontentparticulartoyourbusiness,traininggoals,marketingfocus,orbrandinginterests),pleasecontactourcorporatesalesdepartmentatcorpsales@pearsoned.comor(800)382-3419.
Page 8 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 8 preview imageForgovernmentsalesinquiries,pleasecontactgovernmentsales@pearsoned.com.ForquestionsaboutsalesoutsidetheU.S.,pleasecontactintlcs@pearson.com.FeedbackInformationAtCiscoPress,ourgoalistocreatein-depthtechnicalbooksofthehighestqualityandvalue.Eachbookiscraftedwithcareandprecision,undergoingrigorousdevelopmentthatinvolvestheuniqueexpertiseofmembersfromtheprofessionaltechnicalcommunity.Readers’feedbackisanaturalcontinuationofthisprocess.Ifyouhaveanycommentsregardinghowwecouldimprovethequalityofthisbook,orotherwisealterittobettersuityourneeds,youcancontactusthroughemailatfeedback@ciscopress.com.PleasemakesuretoincludethebooktitleandISBNinyourmessage.Wegreatlyappreciateyourassistance.Editor-in-ChiefMarkTaubAlliancesManager,CiscoPressArezouGol
Page 9 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 9 preview imageDirector,ProductManagerBrettBartowManagingEditorSandraSchroederDevelopmentEditorChristopherA.ClevelandProjectEditorMandieFrankCopyEditorBartReedTechnicalEditorJohnStuppiEditorialAssistantCindyTeetersDesignerChutiPrasertsithComposition
Page 10 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 10 preview imagecodeMantraIndexerProofreader
Page 11 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 11 preview imageCreditsThiscontentiscurrentlyindevelopment.
Page 12 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 12 preview imageContentsataGlanceIntroductionChapter1.CybersecurityFundamentalsChapter2.CryptographyChapter3.Software-DefinedNetworkingSecurityandNetworkProgrammabilityChapter4.Authentication,Authorization,Accounting(AAA)andIdentityManagementChapter5.NetworkVisibilityandSegmentationChapter6.InfrastructureSecurityChapter7.CiscoNext-GenerationFirewallsandCiscoNext-GenerationIntrusionPreventionSystemsChapter8.VirtualPrivateNetworks(VPNs)Chapter9.SecuringtheCloudChapter10.ContentSecurity
Page 13 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 13 preview imageChapter11.EndpointProtectionandDetectionChapter12.FinalPreparationsGlossaryofKeyTermsAppendixA.Answerstothe“DoIKnowThisAlready?”QuizzesandQ&ASectionsAppendixB.CCNPSecurityCoreSCOR(350-701)ExamUpdatesAppendixC.(Websiteonly)StudyPlanner
Page 14 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 14 preview imageContentsIntroductionTheCCNPSecurityCertificationTheCCIESecurityCertificationTheExamObjectives(Domains)StepstoPasstheSCORExamSigningUpfortheExamFactsAbouttheExamAbouttheCCNPandCCIESecurityCoreSCOR350-701OfficialCertGuideTheCompanionWebsiteforOnlineContentReviewHowtoAccessthePearsonTestPrep(PTP)AppCustomizingYourExamsUpdatingYourExamsChapter1.CybersecurityFundamentals“DoIKnowThisAlready?”Quiz
Page 15 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 15 preview imageFoundationTopicsIntroductiontoCybersecurityCybersecurityvs.InformationSecurity(InfoSec)TheNISTCybersecurityFrameworkAdditionalNISTGuidanceandDocumentsTheInternationalOrganizationforStandardization(ISO)DefiningWhatAreThreats,Vulnerabilities,andExploitsWhatIsaThreat?WhatIsaVulnerability?WhatIsanExploit?Risk,Assets,Threats,andVulnerabilitiesDefiningThreatActorsUnderstandingWhatThreatIntelligenceIsExploringCommonThreatsVirusesandWormsTrojans
Page 16 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 16 preview imageDistributingMalwareRansomwareCovertCommunicationKeyloggersSpywareAnalyzingMalwareStaticAnalysisDynamicAnalysisCommonSoftwareandHardwareVulnerabilitiesInjectionVulnerabilitiesSQLInjectionHTMLInjectionCommandInjectionAuthentication-basedVulnerabilitiesCross-siteScripting(XSS)Cross-siteRequestForgeryCookieManipulationAttacksRaceConditionsUnprotectedAPIs
Page 17 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 17 preview imageReturn-to-LibCAttacksandBufferOverflowsOWASPTop10SecurityVulnerabilitiesinOpenSourceSoftwareConfidentiality,Integrity,andAvailabilityWhatIsConfidentiality?WhatIsIntegrity?WhatIsAvailability?TalkingAboutAvailability,WhatIsaDenial-of-Service(DoS)Attack?AccessControlManagementCloudSecurityThreatsCloudComputingIssuesandConcernsCloudComputingAttacksCloudComputingSecurityIoTSecurityThreatsIoTProtocolsHackingIoTImplementationsAnIntroductiontoDigitalForensicsandIncidentResponse
Page 18 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 18 preview imageISO/IEC27002:2013andNISTIncidentResponseGuidanceWhatIsanIncident?FalsePositives,FalseNegatives,TruePositives,andTrueNegativesIncidentSeverityLevelsHowAreIncidentsReported?WhatIsanIncidentResponseProgram?TheIncidentResponsePlanTheIncidentResponseProcessTabletopExercisesandPlaybooksInformationSharingandCoordinationComputerSecurityIncidentResponseTeamsProductSecurityIncidentResponseTeams(PSIRTSs)TheCommonVulnerabilityScoringSystem(CVSS)NationalCSIRTsandComputerEmergencyResponseTeams(CERTS)CoordinationCenters
Page 19 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 19 preview imageIncidentResponseProvidersandManagedSecurityServiceProviders(MSSPs)KeyIncidentManagementPersonnelSummaryExamPreparationTasksReviewAllKeyTopicsDefineKeyTermsReviewQuestionsChapter2.Cryptography“DoIKnowThisAlready?”QuizFoundationTopicsIntroductiontoCryptographyCiphersKeysBlockandStreamCiphersSymmetricandAsymmetricAlgorithmsHashesHashedMessageAuthenticationCodeDigitalSignatures
Page 20 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 20 preview imageKeyManagementNext-GenerationEncryptionProtocolsIPsecSSLandTLSFundamentalsofPKIPublicandPrivateKeyPairsMoreAboutKeysandDigitalCertificatesCertificateAuthoritiesRootCertificatesIdentityCertificatesX.500andX.509v3AuthenticatingandEnrollingwiththeCAPublicKeyCryptographyStandardsSimpleCertificateEnrollmentProtocolRevokingDigitalCertificatesDigitalCertificatesinPracticePKITopologiesExamPreparationTasksReviewAllKeyTopics
Page 21 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 21 preview imageDefineKeyTermsReviewQuestionsChapter3.Software-DefinedNetworkingSecurityandNetworkProgrammability“DoIKnowThisAlready?”QuizFoundationTopicsIntroductiontoSoftware-DefinedNetworkingTraditionalNetworkingPlanesSoWhat'sDifferentwithSDN?IntroductiontotheCiscoACISolutionVXLANandNetworkOverlaysMicro-SegmentationOpenSourceInitiativesMoreAboutNetworkFunctionVirtualizationNFVMANOContivCiscoDigitalNetworkArchitecture(DNA)CiscoDNAPolicies
Page 22 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 22 preview imageCiscoDNAGroup-BasedAccessControlPolicyCiscoDNAIP-BasedAccessControlPolicyCiscoDNAApplicationPoliciesCiscoDNATrafficCopyPolicyCiscoDNACenterAssuranceSolutionCiscoDNACenterAPIsCiscoDNASecuritySolutionCiscoDNAMultivendorSupportIntroductiontoNetworkProgrammabilityModernProgrammingLanguagesandToolsDevNetGettingStartedwithAPIsRESTAPIsUsingNetworkDeviceAPIsYANGModelsNETCONFRESTCONFOpenConfigandgNMI
Page 23 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 23 preview imageExamPreparationTasksReviewAllKeyTopicsDefineKeyTermsReviewQuestionsChapter4.Authentication,Authorization,Accounting(AAA)andIdentityManagement“DoIKnowThisAlready?”QuizFoundationTopicsIntroductiontoAuthentication,Authorization,andAccountingThePrincipleofLeastPrivilegeandSeparationofDutiesAuthenticationAuthenticationbyKnowledgeAuthenticationbyOwnershiporPossessionAuthenticationbyCharacteristicMultifactorAuthenticationDuoSecurityZeroTrustandBeyondCorpSingleSign-On
Page 24 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 24 preview imageAuthorizationMandatoryAccessControl(MAC)DiscretionaryAccessControl(DAC)Role-BasedAccessControl(RBAC)Rule-BasedAccessControlAttribute-BasedAccessControlAccountingInfrastructureAccessControlsAccessControlMechanismsAAAProtocolsRADIUSTACACS+Diameter802.1xNetworkAccessControlListandFirewallingVLANACLsSecurityGroup—BasedACLDownloadableACLCiscoIdentityServicesEngine(ISE)CiscoPlatformExchangeGrid(pxGrid)
Page 25 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 25 preview imageCiscoISEContextandIdentityServicesCiscoISEProfilingServicesCiscoISEIdentityServicesCiscoISEAuthorizationRulesCiscoTrustSecPostureAssessmentChangeofAuthorization(CoA)ConfiguringTACACS+AccessConfiguringRADIUSAuthenticationConfiguring802.1XAuthenticationAdditionalCiscoISEDesignTipsAdviceonSizingaCiscoISEDistributedDeploymentExamPreparationTasksReviewAllKeyTopicsDefineKeyTermsReviewQuestionsChapter5.NetworkVisibilityandSegmentation“DoIKnowThisAlready?”QuizFoundationTopics
Page 26 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 26 preview imageIntroductiontoNetworkVisibilityNetFlowTheNetworkasaSensorandasanEnforcerWhatIsaFlow?NetFlowforNetworkSecurityandVisibilityNetFlowforAnomalyDetectionandDDoSAttackMitigationDataLeakDetectionandPreventionIncidentResponse,ThreatHunting,andNetworkSecurityForensicsTrafficEngineeringandNetworkPlanningNetFlowVersionsIPFlowInformationExport(IPFIX)IPFIXArchitectureUnderstandingIPFIXMediatorsIPFIXTemplatesOptionTemplatesUnderstandingtheStreamControlTransmissionProtocol(SCTP)
Page 27 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 27 preview imageExploringApplicationVisibilityandControlandNetFlowApplicationRecognitionMetricsCollectionandExportingNetFlowDeploymentScenariosNetFlowDeploymentScenario:UserAccessLayerNetFlowDeploymentScenario:WirelessLANNetFlowDeploymentScenario:InternetEdgeNetFlowDeploymentScenario:DataCenterNetFlowDeploymentScenario:NetFlowinSite-to-SiteandRemoteVPNsCiscoStealthwatchStealthwatchCloudOn-PremisesMonitoringwithCiscoStealthwatchCloudCiscoStealthwatchCloudIntegrationwithMerakiandCiscoUmbrella
Page 28 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 28 preview imageExploringtheCiscoStealthwatchOn-PremisesAppliancesThreatHuntingwithCiscoStealthwatchCiscoCognitiveThreatAnalytics(CTA)andEncryptedTrafficAnalytics(ETA)WhatIsCiscoETA?WhatIsCiscoCognitiveThreatAnalytics?NetFlowCollectionConsiderationsandBestPracticesDeterminingtheFlowsperSecondandScalabilityConfiguringNetFlowinCiscoIOSandCiscoI0S-XESimultaneousApplicationTrackingFlexibleNetFlowRecordsFlexibleNetFlowKeyFieldsFlexibleNetFlowNon-KeyFieldsNetFlowPredefinedRecordsUser-DefinedRecordsFlowMonitors
Page 29 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 29 preview imageFlowExportersFlowSamplersFlexibleNetFlowConfigurationConfigureaFlowRecordConfigureaFlowMonitorforIPv4orIPv6ConfigureaFlowExporterfortheFlowMonitorApplyaFlowMonitortoanInterfaceFlexibleNetFlowIPFIXExportFormatConfiguringNetFlowinNX-OSIntroductiontoNetworkSegmentationData-DrivenSegmentationApplication-BasedSegmentationMicro-SegmentationwithCiscoACISegmentationwithCiscoISETheScalableGroupTagExchangeProtocol(SXP)SGTAssignmentandDeploymentInitiallyDeploying802.1xand/orTrustSecinMonitorMode
Page 30 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 30 preview imageActivePolicyEnforcementCiscoISETrustSecandCiscoACIIntegrationExamPreparationTasksReviewAllKeyTopicsDefineKeyTermsReviewQuestionsChapter6.InfrastructureSecurity“DoIKnowThisAlready?”QuizFoundationTopicsSecuringLayer2TechnologiesVLANandTrunkingFundamentalsWhatIsaVLAN?Trunkingwith802.1QLet’sFollowtheFrame,StepbyStepWhatIstheNativeVLANonaTrunk?So,WhatDoYouWanttoBe?(AsksthePort)UnderstandingInter-VLANRoutingWhatIstheChallengeofOnlyUsingPhysicalInterfaces?
Page 31 of 31
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide (2020) - Page 31 preview imageUsingVirtual“Sub”InterfacesSpanningTreeFundamentalsTheSolutiontotheLayer2LoopSTPIsWaryofNewPortsImprovingtheTimeUntilForwardingCommonLayer2ThreatsandHowtoMitigateThemDoNotAllowNegotiationsLayer2SecurityToolkitBPDUGuardRootGuardPortSecurityCDPandLLDPDHCPSnoopingDynamicARPInspectionNetworkFoundationProtectionTheImportanceoftheNetworkInfrastructureTheNetworkFoundationProtectionFrameworkInterdependence
Preview Mode

This document has 1635 pages. Sign in to access the full document!