Training Course:A Guide to VPN, IPSec and Cryptogrophy - Version 2.1School/Trainer:Information Management Systems Inc. Atlanta, GA, United States
Course Format: Classroom | E-learning | Virtual Class | Online | On-site | Blended | Self-paced
Course Description:
'' This four day hands-on course will provide IT specialists with the knowledge and skills they need to properly evaluate end-to-end and site-to-site VPN solutions. Students will learn how VPN technologies are integrated to create VPN solutions and how these solutions can be tailored to a variety of business applications. The hands-on portion of this course focuses on building secure, scalable and manageable VPNs, techniques for monitoring and troubleshooting VPNs, security options, and other tools for successful deployment. Students should be prepared for an in-depth analysis of the IPSec Protocol.
Benefits:
Learn how to leverage your existing network with a VPN solution Explore various methods of cryptography Learn the IPSec Protocol in detail Gain hands-on experience in configuring and testing IPSec Develop a personal checklist for evaluating the right solution for a VPN deployment Learn about AAA security over VPNs Who Should Attend:
Information security officers, security analysts, systems engineers, and IT specialists responsible for assessing and implementing VPN technologies.
Prerequisites:
Students should have prior experience in networking and internetwork concepts.
Course Outline
Chapter 1 : VPN Overview : Technical and Business Issues
VPN vs. PDN VPN Architecture VPN Applications: The business case for: Access VPN, Intranet VPN, Extranet VPN IP VPN MPLS Chapter 2: Tunneling Overview
Layer 2: L2TP, L2F, PPTP Layer 3: IPSec, GRE Chapter 3: Cryptogrophy Overview
Security Framework Cryptography Basics Cryptographic Elements: Single Key/Symmetrical Encryption, Public Key/Assymetrical Encryption, Secure Hash Function Key Exchange (Diffie-Hellman) Applications of Cryptogrophy The following are explained in Chapter 3:
Trap door function One-way functions One-time PAD XOR Zero knowledge of proof Birthday Attack Zero Knowledge Cave DES Encryption Electronic Code Book (ECB) Cipher Block Chaining Mode (CBC) Cipher Feedback Mode Stream Ciphers (RC4) Block Ciphers (RC2 & RC5) Difference between Public Key Encryption and Symmetrical Encryption Secure Hash Function (MD5, SHA) Diffie-Hellman Key Exhange and sample proof Authenticated Key Exhange: SPEKE, Diffie-Hellman Encrypted Key Exchange Secure Message Transfer Digital Certificate
Chapter 4: IPSec Overview
TCP/IP Review IPSec Architecture IPSec Framework: Authentication Header(AH), Encapsulating Security Payload(ESP) Security Association (SA) How IPSec is Negotiated: IKE Phase One, IKE Phase Two IPSec Processing: Output Processing, Input Processing Chapter 5: Configuring IPec
Configuraing ISAKMP Policies Configuring ISAKMP Keys-Pre-shared Defining Tranform Sets Creating Crypto Access Lists Creating Crypto Maps Testing and Verifying IPec Testing and Verifying ISAKMP Creating Dynamic Crypto Maps Configuring CA Support in IP Sec Chapter 6: IPSec in Detail
IPSec Framework: IPSec Policy, IPSec Processing, IPSec Implementation Authentification Header (AH) Encapsulating Security Payload ISAKMP IKE: Protection Suites, Modes (Main Mode, Agressive Mode, Quick Mode), Policy Chapter 7: VPN/IPSec Design Issues
IPSec Architecture and end points location Policy and Policy Deployment Architecture Fragmentation Compression Network Address Translation Steps to implement VPN Chapter 8: PKI Digital Certificate
What is a certificate Public Key Infrastructures Concepts of trust Concepts of trust Cross certification Hierarchical PKI Certification Process Chapter 9: Authentification Methods for VPN
Authentifications over VPNs: PPP,PAP,CHAP, Radius, Tacacs Exercises and Labs:
Exer1 - IPSec & Cryptogrophy review questions Exer2 - ISAKMP - packet analysis Exer3 - PSec-packet analysys Lab1 - IPSec-sharedKey Encription Lab2 - IPSec-manualKey-Encryption Lab3 - IPSec-RSA-Encryption Lab4 - IPSec-RSA-Encryption-with Entrust CA Lab5 - IP Sec VPN Client ...''
Please go to the school's official website for training price and schedule: http://cservice@imsinc.com
http://www.imsinc.com/course.asp?IMSID=280
Phone:404 329-6260 or 888 812 9028
School Address:
2470 Cheshire Bridge Road Atlanta, GA United States - 30324 Phone : 404 329-6260 or 888 812 9028 Fax : 404 329-6365 Email : cservice@imsinc.com
Jobs & Resumes: Atlanta Houses & Roommates: Atlanta
Other training courses offered by Information Management Systems Inc.:
IPv6 Architecture
IWLN11: Implementing Wireless Networks 802.11
MLSTE: Multi Protocol Label Switching Technology Essentials
OSPF: Open Shortest Path First Protocol
Promina Fundamentals and Network Configurations Course
TCP/IP Troubleshooting
Voice Over Internet Protocol - CBT
Voice, Data and Video Integration
VOIP: Voice over IP
VOIPE: Voice over IP Essentials
A + and Network + BOOTCAMP
Advanced Services Cisco Call Manager MCS Boot Camp (CCMBC) v1.0
Advanced AVVID Troubleshooting and PBX Integration Bootcamp (AATPI) v1.0
CCDA Certification
CCDP Certification BOOTCAMP
CCIE Communications & Services BOOTCAMP
Cisco CallManager MCS Boot Camp (CMBC) v4.0
Cisco CCIE BOOTCAMP
Cisco CCNA BOOTCAMP
Notice: The course description on this page was captured from the Internet as historical reference or submitted by visitors. It was archived statically and not updated from day to day.
Facts: We provide free training course catalog service since 2003, in English and Chinese. Tens of thousands of visitors search our database from our portal and partners' websites each day. |
|
|