Get in Touch

Course Outline

Objectives

  • Review TCP/IP fundamentals and the fields within the IP Header.
  • Detail the fields and headers utilized in the ISAKMP Protocol.
  • Explain Main Mode negotiation for establishing Phase 1 of a VPN.
  • Explain Aggressive Mode negotiation for establishing Phase 1 of a VPN.
  • Explain Quick Mode negotiation for establishing Phase 2 of a VPN.
  • Compare IKEv1 and IKEv2 protocols.
  • Explain symmetric and public/private key encryption methods.
  • Describe ISAKMP Security Associations.
  • Describe IPSec Security Associations.
  • Describe the IPSec AH Protocol.
  • Describe the IPSec ESP Protocol.
  • Explain and describe the Diffie-Hellman Key Exchange process.
  • Define prime numbers and primitive roots of prime numbers.
  • Describe, explain, and configure site-to-site VPNs using Cisco Routers and/or ASA Firewalls.
  • Describe Remote Access VPNs utilizing ADSL and Dial-up connections.
  • Utilize debug commands in the Cisco CLI and Wireshark to demonstrate and troubleshoot VPN negotiations.

Practical Exercises:

  • Lab Exercise 1: IPSec implementation using manual symmetric encryption keys.
  • Lab Exercise 2: IPSec implementation using IKE and shared secrets.
  • Lab Exercise 3: IPSec implementation using IKE and certificate authentication.

Requirements

Proficiency with TCP/IP and Cisco IOS is advantageous.

 14 Hours

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories