SIMOS 0001 Course Introduction v001
SIMOS 0001 Course Introduction v001
Copyright © www.ine.com
Live Online Classroom Overview
» Adjusting your bandwidth
• HD button on bottom right of player adjusts stream
» Using the Q&A section
• All questions are submitted to me privately
• Questions relevant to everyone will be posted publicly
» Course Files
• Slides, diagrams, posted in link above Q&A session
» Course is recorded
• Recordings will be available in Course Library after post-
processing
Copyright © www.ine.com
Course Schedule
» Course length is 4 days
» Daily schedule
• Starts at 07:00 AM PDT
• Runs about 4-8 hours
• Breaks
• ~ 10 minutes hourly
• ~ 30 minutes at half
Copyright © www.ine.com
Course Format
» Course is a mix of…
• Technology discussion
• Hands-on examples with troubleshooting
» Technology Discussion
• Slides, whiteboards, online references
» Hands-on examples
• Live examples on real equipment
• Not pre-tested, so troubleshooting may be required
Copyright © www.ine.com
Course Pre-Requisites
» Technical Knowledge
• Basic knowledge of networking technologies
• Ideally CCNA R&S certified or equivalent knowledge
• What is OSI, TCP/IP, Ethernet, etc.
• What are switches, routers, servers, etc.
• Basic knowledge of security and VPN technologies
• Ideally CCNA Security certified or equivalent knowledge
• Working knowledge of Cisco IOS and ASA operating system
• Working knowledge of Windows operating system
Copyright © www.ine.com
Course Intended Audience
» CCNP Security Certification candidates
• Obviously J
» Everyday entry/intermediate level engineers
• Getting your feet wet in the world of security, apply
knowledge in real-world implementations
» Class focus is understanding technologies
• For CCNP Security candidates, get certified as a
byproduct of understanding the technologies
Copyright © www.ine.com
Course Scope
» Prepare you for SIMOS exam
• One of the four exams required to get CCNP Security
certified
» What is CCNP Security?
• CCNP Security is Cisco’s intermediate-level certification
on Security track
Copyright © www.ine.com
Course Description
» Course is based on SIMOS v1.0 Blueprint
• Implementing Cisco Secure Mobility Solutions (300-209)
• More specifics at http://www.cisco.com/go/ccnpsecurity
» Course Outline
• IPsec and SSL VPN Fundamentals
• IKEv1 Site-to-Site IPsec VPN
• DMVPN and GETVPN
• IKEv2 Site-to-Site IPsec VPN (FlexVPN)
• Remote Access VPN (IPsec and SSL VPN)
Copyright © www.ine.com
Course Outline
» IPsec and SSL VPN Fundamentals
• What is a VPN and why do we need it ?
• Secure VPN Types
• Cryptography and integrity algorithms
• Authentication options
• Nonrepudiation
• Next-Generation encryption
• Public Key Infrastructure
• IPsec (IKEv1 and IKEv2) and SSL
Copyright © www.ine.com
Course Outline
» IKEv1 Site-to-Site IPsec VPN
• IKEv1 Fundamentals
• IKEv1 Crypto-map IPsec VPN on ASA and IOS routers
• IKEv1 SVTI IPsec VPN on IOS routers
• IKEv1 NAT-T (NAT Traversal)
Copyright © www.ine.com
Course Outline
» DMVPN and GETVPN
• What is DMVPN ?
• DMVPN Fundamentals
• IPsec with DMVPN on IOS routers
• What is GETVPN ?
• GETVPN Fundamentals
• IPsec with GETVPN on IOS routers
Copyright © www.ine.com
Course Outline
» IKEv2 Site-to-Site IPsec VPN (FlexVPN)
• IKEv2 Fundamentals
• What is FlexVPN ?
• IKEv2 SVTI IPsec VPN on IOS routers (FlexVPN)
• IKEv2 Hub-and-Spoke IPsec VPN on IOS routers
(FlexVPN)
• IKEv2 Spoke-to-Spoke IPsec VPN on IOS routers
(FlexVPN)
Copyright © www.ine.com
Course Outline
» Remote Access VPN (IPsec and SSL VPN)
• IKEv2 IPsec VPN on ASA firewall
• IKEv2 IPsec VPN on IOS routers (FlexVPN)
• Client-based SSL VPN (AnyConnect) on ASA firewall
• Client-based SSL VPN (AnyConnect) on IOS routers
• Clientless SSL VPN (browser) on ASA firewall
• Clientless SSL VPN (browser) on IOS router
Copyright © www.ine.com
Course Outline
» Design VPN solutions
• From a high-level why would you choose one VPN type
over another?
• What are the requirements for each VPN type?
Copyright © www.ine.com
Course Outline
» SIMOS requirements for all VPN types
• Design
• Implement
• Verify
• Troubleshoot
Copyright © www.ine.com
Course Attached Files
» Course Topology Diagrams
• PDF format
» Rack initial Configuration
• TXT format
» Course Theory Presentations
• PDF format
» Configuration Examples
• PDF format
Copyright © www.ine.com
Q&A