Sign-up to receive a free Intro to Virtualization training course.
Cisco CCNA Security Training
Industry Recognized Training: 2010, 2009 Editor's Best and Community Choice Award from Windows IT Pro

Cisco CCNA Security Training

In as Little as 13 Hours, You'll Learn How To Identify, Lockdown, & Secure Vulnerabilities in a Small to Medium Enterprise Branch Network...And Have the Knowledge Necessary to Pass the Cisco CCNA Security/IINS 640-553 Exam...Guaranteed!

This Course Includes All of the Following:

  • Instant Online Access to Your TrainingInstant Online Access Begin Streaming Your Training Immediately
  • Physical Media Shipped Directly to Your DoorstepPhysical Media Shipped Directly to Your Doorstep For Free, Worldwide
  • Free Award-Winning Practice Exam Transcender Practice Exam Practice For Your Exam With This Award-Winning Exam Preparation
  • $297
  • Paying with Purchase Order?
  • View Outline
  • TrainSignal Exclusive 90 Day Total Experience Guarantee

    Our Total Experience Guarantee is Very Simple

    If you are not satisfied with our training, our service, or our support FOR ANY REASON, return your course within 90 days for a FULL REFUND (up to $397). You have my word.

    Scott Skinger Founder & President of TrainSignal, Inc.

Overview

  • Train Anywhere You Want Mobile On-Demand Training Train Where You Want, When You Want
  • Additional Training Formats Additional Training Formats High Resolution Video, MP3 Audio and PDF of Instructor Notes
  • Watch a Demo

By Chris Bryant
CCIE #12933, CCNA, CCNP

You cannot be a Cisco Network Administrator without knowing Cisco Security. Today, security knowledge is no longer a luxury, it is a necessity in nearly any IT position. Any job applicant, from the most experienced network admin to the entry level junior admin will be required to demonstrate a substantial amount of knowledge concerning security elements. Passing the CCNA Security exam and proving your security knowledge is difficult. That's why I have created this comprehensive course that shows you how to tackle the diverse security issues that you will face on the exam and in the real world.

As with all Train Signal courses, this CCNA Security course presents the same combination of clearly explained theory and an abundance of "real world" lab examples using the new Security Device Manager (SDM) and the Command Line. This exciting course contains over 13 hours of video instruction where I break down network security theory as you work hands on with real Cisco routers & switches... and secure your own network!

Professional Training

  • Over 13 Hours (13 Hours, 2 Minutes, 17 Seconds) of Cisco CCNA Security Training Videos Jam Packed on 2 DVDs!
  • Multiple File Formats Make it convenient for you to learn anywhere you go! iPod Video, Mp3 Audio, .WMV & high quality .AVI video
  • PDF of Instructor Notes allow you to follow along with the videos and take more organized notes
  • Instant Access Online to the entire training course

Exam Preparation

  • Exam Coverage This course covers exam objectives required for you to pass:
    • 640-553 - Cisco Certified Network Associate Security Exam
  • FREE, FULL VERSION of Transcender's Practice Exam for:
    • 640-553 - Cisco Certified Network Associate Security Exam
    We've partnered with Transcender®, the leading exam simulation provider in the world! Purchased separately, you would pay $139! But you get it FREE as the perfect training companion to our Cisco CCNA Security Training!

Course Outline

Cisco CCNA Security Training - Course Outline

Lesson 1 - Introduction - Welcome to Your CCNA Security Video Course!

Meet your instructor Chris Bryant and get started right way with exam preparation tips.

  • About Your Instructor
  • Exam Prep Tips
Lesson 2 - Hackers - Their Motives and Methods

Learn about Hacker Roles and why they hack. Discover what your Network Security Goals should be, and how to implement Network Security Best Practices to achieve those goals to keep from suffering the consequences of ineffective network security.

  • Why Do Hackers Hack?
  • General Network Security Goals
  • The Consequences of Ineffective Network Security
  • Where Network Attacks Originate From
  • Social Engineering Attacks
  • Trojan Horses and Privilege Escalation Attacks
  • Using Ping Sweeps and Port Scans on Your Own Network
  • Best Practices
Lesson 3 - Introduction to SDM (Security Device Manager)

Improve productivity, simplify router deployments, and troubleshoot complex connectivity issues using the Security Device Manager. Plus, launch, login, and tour SDM and discover some Real World SDM issues as you learn to manage your router away from the Command Line.

  • Cisco’s Security Device Manager (SDM)
  • Pre-installation Configuration
  • Installing SDM
  • Launching and Loading SDM
  • SDM Settings - User Preferences
  • SDM Configure Window
  • Additional Tasks Tab
  • SDM Monitor Window
  • SDM in Internet Explorer Problem
Lesson 4 - Authentication, Authorization, and Accounting (AAA)

Learn how Authentication works in AAA, what happens when you specify different devices used for Authentication, and discover commands used in Authentication, Authorization, and Accounting that will be useful in the real world and on the exam. Plus, configure TACAS+ and RADIUS security protocols.

  • What is AAA?
  • TACAS+ vs. RADIUS
  • TACAS+ and RADIUS Configuration
  • Authentication Configuration
  • No Authentication Option
  • Telnet Login Problem
  • Real World Not About AAA Lists
  • Using AAA for Privileged EXEC Mode and PPP
  • Accounting
  • Authorization
  • Configuring AAA with SDM
Lesson 5 - Layer 2 Security

Learn how to prevent security threats like CAM Overflow attacks by configuring and implementing Port Security, Sticky Addresses, Lightweight Extensible Authentication Protocol (LEAP), and SPAN. Plus, discover the relationship between DHCP Snooping, Dynamic ARP Inspection, and IP Source Guard and learn to configure and operate Root Guard and BPDU Guard.

  • Basic L2 Security Features
  • Cisco Password Rules Review
  • Preventing CAM Overflow Attacks with Port Security
  • Port Security
  • Configuring Port Security
  • Misconfiguring Port Security
  • Aging Time for Secure Addresses
  • Sticky Addresses
  • Configuring MAC Table Event Notification
  • Dot1x Port-Based Authentication
  • Cisco Lightweight Extensible Authentication Protocol (LEAP)
  • Extensible Authentiaction Protocol-Flexible Authentication via Secure Tunneling (EAP-FAST)
  • Local SPAN Configuration
  • Remote SPAN Configuration
  • Filtering Intra-VLAN Traffic
  • VLAN Access List (VACL)
  • Private VLAN
  • DHCP Snooping
  • Dynamic ARP Inspection
  • IP Source Guard
  • MAC Address Flooding Attacks
  • VLAN Hopping
  • Root Guard
  • BPDU Guard
Lesson 6 - Layer 3 Security

This is one of the most important Videos in the course because of the volume of detailed information that you will use on the exam and in the real world. Learn about “Salting” your MD5 to make an encrypted password even stronger and discover how Network Time Protocol (NTP) will be important in your security deployment. Plus, learn to configure and use Superviews, Autosecure, Security Audits, and One-Step Lockdown via SDM to thwart ICMP based attacks, IP Spoofing, and Recon Attacks.

  • Configuring Enable Password
  • Privileged Level Password vs. Privleged Level Secret
  • Encrypting Passwords
  • Strong Passwords vs. Weak Passwords
  • Creating and Testing Minimum Length Password Policy
  • “Salting” your MD5
  • Network Time Protocol (NTP)
  • Configuring NTP Master Time Source
  • Synchronizing System Clocks
  • Configuring Peering with NTP Peers Command
  • Other Clock Commands
  • Telnet and SSH
  • Creating Banners
  • Different Types of Network Attacks
  • Denial of Services (DoS) Attack and SYN Flooding Attack
  • TCP Intercept Defense
  • ICMP (Ping) Sweep, Port Scan and Port Sweep
  • Ping of Death vs. Invite of Death and Ping Floods
  • Smurf Attacks
  • Availability Attacks: Don’t Forget the Physical Layer!
  • IP Spoofing
  • IP Source Routing
  • Packet Sniffers and Queries
  • Other Confidentiality Attacks
  • Password Attacks
  • Salami Attack
  • Other Network Attacks Types - Trust Exploitation
  • Superviews - Role-Based CLI Views
  • AutoSecure
  • One-Step Lockdown
  • Security Audit
  • NTP and SSH in SDM
  • Differences Between SDM and AutoSecure
  • SNMP
  • Logging
  • Viruses and Worms
  • Cisco IOS Logging Enhancements
  • Buffer Overflow
  • Cisco IOS Resilient Conofiguration and Login Enhancements
  • exec-timeout Command
Lesson 7 - The Intrusion Prevention System (IPS)

Learn the differences between Intrusion Detection (IDS) and Intrusion Prevention (IPS) and how they operate. Plus, discover the different approaches to identifying malicious traffic and learn to use NIPS, HIPS and Honeypots to stop it. We’ll also configure your Intrusion Prevention System using the Security Device Manager (SDM) and we’ll use the Command Line to verify this IPS configuration.

  • Intrusion Detection (IDS) vs. Intrusion Prevention (IPS)
  • Signatures and Signature Types
  • NIPS and HIPS
  • Honeypots
  • Configuring IPS in SDM
  • Editing IPS Rules
  • Editing Global Settings
  • SDEE Message Logs
  • Viewing Signatures
  • Editing and Deleting Signatures
  • Verifying Your IPS Configuration
Lesson 8 - Firewalls

Learn to enable a Cisco router to act as a firewall using the Cisco IOS Firewall Set. Plus, discover concepts relatively new to Cisco like Zone-based Firewalls that are meant to phase out CBAC and the “ip inspect” command. We’ll also configure and edit a firewall using the Security Device Manager’s (SDM) Basic Firewall Wizard and we’ll draw distinctions between the Basic Firewall Wizard and SDM’s Advanced Firewall Wizard.

  • Firewall Basics
  • Stateless and Stateful Firewalls
  • Application Layer Gateway (ALG)
  • The Cisco IOS Firewall Feature Set Components
  • Authentication Proxy
  • Plan for Firewall Success Then Succeed!
  • ACL Review
  • Extended ACL Review
  • Extended Access Control Lists
  • Real-World ACL Success Tips
  • Introduction to Turbo ACLs
  • CBAC and “ip inspect” command
  • Real-World Tips and Best Practices
  • TCP and UDP Generic Inspection
  • Deep Pocket Inspection (DPI)
  • Zone-Based Firewall Configuration
  • Class Maps and Policy Maps
  • Basic Zone Commands
  • Configuring Zone Pairs
  • Configuring Firewall with SDM’s Basic Firewall Wizard
  • Editing Firewall with SDM
  • SDM’s Advanced Firewall Wizard
  • Watch Your Directions - More Tips
  • ICMP Inspection
  • Final Note
Lesson 9 - Cryptography and Virtual Private Networks (VPNs)

Learn how Asymetric and Symetric Algorithms can be used to implement Cryptography Techniques that help encrypt clear text passwords. Plus, configure your own IKE policy using the Command Line and get your hands dirty by using the Security Device Manager (SDM) to configure Site-to-Site VPN and Generic Routing Encapsulation (GRE) over IPsec.

  • Cryptography Techniques
  • Asymmetric and Symmetric Algorithms
  • RSA Algorithm
  • Diffie-Hellman (DH)
  • A Word or Two About SHA
  • What is VPN?
  • VPN Terminology and Theory
  • Introduction to PKI and the Certificate of Authority
  • Public Key Cryptography Standards (PKCS)
  • Internet Key Exchange (IKE)
  • Steps to Configure Site-to-Site VPN
  • Configuring IKE Policy Using Command Line
  • Policy Match Criteria
  • Crypto ACLs
  • Mirror Configuration
  • Creating Crypto Map
  • Using SDM to Configure Site-to-Site VPN
  • Generating Mirror in SDM
  • Testing Our Configuration
  • Verifying SDM Configuration Using Command Line
  • The Return of Generic Routing Encapsulation (GRE) Over IPSec
  • Using SDM to Configure GRE over IPSec
Lesson 10 - Introduction to Voice and SAN Security

You do not need to be an expert in Voice Networking or Storage Area Networking (SAN) to learn how to keep these types of networks secure. Learn the differences between FCAP and FCPAP, discover the details of LUN and LUN Masking, and delve deeper into VoIP (Voice Over IP). Whatever your experience level may be, this detailed overview of Voice and SAN Networking will provide you the insight you need to get into one of the fastest growing areas in the IT field.

  • Voice Over IP Overview
  • Gateways and Gatekeepers
  • VoIP Protocols
  • Typical VoIP Attacks and Precautions
  • Introduction to Storage Area Networking (SAN)
  • SAN Transport Technologies and Protocols
  • SAN Security - LUNS and LUN Masking
  • SAN Zones
  • Virtual SANs (VSANs)
  • FCAP and FCPAP
Lesson 11 - Introduction to Cisco Network Solutions

This video will introduce you to Cisco Network Solutions including: ASA 5500, Cisco Self-Defending Network, Cisco Security Management Suite, and Cisco Security Agent. Plus, learn about the five phases of the Cisco SDLC (System Development Life Cycle) and discover the differences between Quantitative Risk Analysis and Qualitative Risk Analysis.

  • System Development Life Cycle
  • Cisco SDLC Phase 1 - Initiation
  • Cisco SDLC Phase 2 - Acquisition and Development
  • Cisco SDLC Phase 3 - Implementation
  • Cisco SDLC Phase 4 - Operation and Maintenance
  • Cisco SDLC Final Phase - Disposition
  • Disaster Recover - Hot, Warm and Cold Sites
  • Risk Analysis - Quantitative and Qualitative
  • Cisco Self-Defending Network
  • Cisco Security Management Suite
  • IronPort
  • Cisco Security Agent
  • Cisco Security Agent Interceptors
  • Cisco ACS
  • “in-band” and “out of band”

Certified Instruction

Certified Instructor Chris Bryant

Chris Bryant (CCIE #12933,CCNA,CCNP)

Chris Bryant has extensive experience in both the practical and theoretical sides of Cisco and Networking technologies. You will benefit greatly from his detailed instruction and passion for helping others, especially since Chris has recently been "down the Cisco road", passing his CCNA, CCNP and his CCIE!

Take advantage of Chris Bryant's vast experience, wealth of knowledge and all-around good advice that will help you pass your certification exams and develop the hands-on skills that the market demands.

FAQ

Cisco CCNA Security Training - FAQ

Am I qualified to take this course?
YES! If you are a network administrator, an aspiring network administrator, or have on-the-job security experience, this course will build a stronger foundation of advanced security concepts.
YES! If you have Cisco CCNA Certification or a basic understanding of Cisco Routers and Switches (without certification), this course is for you.

NOTE: The prerequisite to take the Cisco CCNA Security exam is Cisco CCNA certification.

NOTE: If you plan to continue on to the CCSP certification, the Cisco CCNA Security certification is the prerequisite.

Do I need Cisco equipment to complete this training course?
NO You do not need any Cisco equipment to watch the videos or to pass the Cisco CCNA Security/IINS 640-553 exam; however, working hands-on with Cisco equipment may enhance your training experience.
I already have my CCNA. Do I need my Cisco CCNA Security certification?
YES! The ability to secure a Cisco network is one of the most marketable skills for any Cisco professional and network security has never been more important.
"I just passed my CCNA 640-802 primarily by studying your Cisco CCNA course. (Chris Bryant is awesome!)"

First off, I want to say that I have a library of your products and I absolutely love all of them.  I just passed my CCNA 640-802 primarily by studying your Cisco CCNA course. (Chris Bryant is awesome!).

I cannot say enough good things about the quality of your products. Thank you again.

Tom SmithUSA
"Buying your product has helped me understand more about Cisco products. I am more comfortable dealing with routers more than ever..."

I bought your Cisco CCNA course to expand my I.T. skills and to get certified. I'm also a repeat customer.

Buying your product has helped me understand more about Cisco products. I am more comfortable dealing with routers more than ever. Buying your CCNA product has greatly enhanced my overall  I.T. skills.

Before buying your product, my skills were limited to Microsoft Products. After taking your CCNA course, It gave me hands-on experience that I could not have received elsewhere. I can now say my I.T. skills not only covered Microsoft products, it also covers Cisco products which means better jobs and better salary.

Taking your CCNA course has also greatly enhanced my computer networking skills. I am now highly skilled in setting up LANS, VLANS and WANS.

I higly recommend your CCNA course to anyone. In fact, any TrainSignal product I highly recommend. I have bought 5 or 6 courses from TrainSignal already and I will continue to buy more products.

Hank Loftin
"I recently took the 640-802 exam and passed. I feel more confident working on Cisco network devices..."

I purchased the CCNA course because I wanted to study to pass the exam, and also to improve hands on skills. The instructions from Chris Bryant are excellent - I have been able to answer any subnetting or VLSM questions right the first time.

The material was presented in such as way as to provide real life scenarios of what happens in networks, and sometimes even the slightest omissions could result in problems.

I recently took the 640-802 exam and passed. I feel more confident working on Cisco network devices.  I received a bonus for passing the exam. I look forward to starting on 642-901 soon, and plan on trying Chris Bryant's video training.

Also, as I look forward to a Professional certification, particularly for CCVP I have yet to find sources that offer CD training. I would like to be notified when course material becomes available. Worth every penny.

Victor Kimaro
"I'm confident that I will pass my CCNA exam with your CCNA Training..."

I like your delivery methods in that you can see straight away the output from the routers and switches. And I also like Chris's teaching method. Clear and concise and covers everything you need for Job, Exam success.

Regards

Eamonn Kiely
"...Chris Bryant’s style of teaching is so good that I have decided to seek my CCIE in the not too distant future..."

My boss is impressed with my desire to master networking at a high level. Even before passing my exam my boss is giving me network tasks to perform that will serve to solidify my CCNA training.

My confidence level handling network related issues at the desktop has improved profoundly. Lastly, Chris Bryant’s style of teaching is so good that I have decided to seek my CCIE in the not too distant future.

Tom Walke
"Everyone has a different method/style of learning best. If learning via self-paced method, then I would highly recommend TrainSignal’s Cisco CCNA material..."

The main reason I purchased the Cisco CCNA was for gaining/improving hands-on skills but also for preparing for certification for  the Cisco CCNA. I find your trainers and method of teaching to be effective in style and approach. I particularly like the fact that I can go back to individual modules to either brush up on something or learn something I may not have quite gotten the first time through.

I am currently studying for my CWNA exam of which I am using your TrainSignal material. I have not yet scheduled an exam time for the CCNA, however I have already benefited from this material. I found the section on IP Addressing to be good refresher. His method of explaining the ISO model I found to be well done as well. I am confident that it will help me achieve my goal towards the CCNA because it looks to have good coverage of the exam requirements, plus the trainer really does appear to know his stuff and explains it in an understandable way.

Everyone has a different method/style of learning best. If learning via self-paced method, then I would highly recommend TrainSignal’s Cisco CCNA material.

Regards,

Marlon Deerr
"I passed the CCNA test on the first shot..."

Your courses are very good and I wanted to learn networking. I am not a good reader and would much rather watch videos.

I am 60 years old and have a dead end job. At least I may have new networking skills that I may be able to market some day. I am taking the BSCI course from you and will go all the way to CCNP. I passed the CCNA test on the first shot. And will be taking the BSCI exam soon.

James Brochu
There is absolutely no doubt in my mind that TrainSignal is the best IT training in the world (are you kidding me?). I cannot emphasize enough how valuable your training videos have been to me (and my family).

About four years ago I stumbled into the field of IT (with no prior experience whatsoever). Up until this point, I have basically trained myself by reading hundreds and hundreds of pages from books and documentation. Needless to say, this method takes a lot of time and committment. But the more I read, is the more I fell in love with the concepts of networking.

What's my point? You guys make the learning process (as it relates to networking) almost too damn easy! And for that I am freaking ectstatic. Just think about how much farther along I could have been, had I only known about TrainSignal from the beginning.

Chris Bryant: (I LOVE HIM). Not only is he a master of what he does, but also a master at teaching.

Whoever put this company and team together, is a genius. And whoever you are, kudos to you my friend. It will be interesting to read a profile about you.

TrainSignal is the networking enthusiast's best keep secret! Boot camps, and all of the other competition is garbage.

Sheldon Sharpe

Looking For Volume User Licensing For Cisco CCNA Security Training?

24/7 Instant Access to Individual Courses from TrainSignal

24/7 Access to Training

Online access to all training through My Online Training, with an option for physical media.

Volume Discounts on Individual Courses from TrainSignal

Volume Discounts

Discounts start at quantities as low as 2 licenses per training course.

Scalable Licensing Model from TrainSignal

Scalable Licensing Model

License your team for specific courses that meet their needs to build a custom package of TrainSignal Training.

Call 1.888.229.5055 or Email sales@trainsignal.com

Contact us for a free volume license quote or tell us how many licenses you need and we'll show you the volume license discount immediately in your cart.

Volume Discount Pricing For Cisco CCNA Security Training

# of Users% DiscountCost Per User
10%$297.00
220%$237.60
3-425%$222.75
5-930%$207.90
10-1935%$193.05
20-4940%$178.20
50+Call 1.888.229.5055