Archive for the ‘Security’ Category

IE releases Security Section of IEWB-RS Vol 1 Ver 5

I just looked at their blog and it appears that the IEWB-RS Vol 1 Ver 5 security section is now complete and available. As of now the fully completed and posted sections are Bridging & Switching, Frame Relay, IP Routing, RIP, EIGRP, OSPF, QoS, Security, System Management, and IP Services.  According...
February 12th, 2009 | Security | Read More

Finished working through Security

I have not been able to update my progress as quickly as I would have liked. Work has been busy along with personal commitments So I think I have covered security for right now and have a few things to review. Standard Access-Lists Extended Access-Lists Time Based Access-Lists Access-List Logging Reflexive...
December 7th, 2008 | Security | Read More

Still working through Security

I have been humming along through the security section on the blueprint and IE's workbooks. My goal is to be very fluent with the common security configurations like reflexive ACLs, Dynamic ACLs etc before my lab. My plan so far has been to work through each task from IE's Vol 1 security WB and then...
November 27th, 2008 | Security | Read More

Common Security Configurations

I am working through IE's Vol 1 security section and it has been great so far. I have done this before but never went through it in such detail. Very first task is related to permitting certain types of traffic while denying and logging the rest. I will try to collect all the common security related...
November 16th, 2008 | Security | Read More

Zooming in on Security

After attempting 4 IE Mock labs and various IE Vol 2 labs, I have a good understanding of my weaknesses. During the next month or so I plan on isolating these sections and will be labbing them up day and night. First in line is the security section and after talking to a few successful CCIEs, I have...
November 16th, 2008 | Security | Read More

How to re-enable an Errdisable port?

So you have configured port-security on one of your ports and we all know that by default if the violation occurs, the port will be put in shutdown-errdisable mode. One way to get the port back up is to do a manual shut-noshut on it. In today's world, this might become an administrative nightmare. What...
September 25th, 2008 | Bridging & Switching, Security | Read More

Configuring IEEE 802.1x Port-Based Authentication

The IEEE 802.1x standard defines a client-server-based access control and authentication protocol that prevents unauthorized clients from connecting to a LAN through publicly accessible ports unless they are properly authenticated. The authentication server authenticates each client connected to a switch...
May 27th, 2008 | Security | Read More

Port-Based Traffic Control

Catalyst 3550/3560 offers port-based traffic control that can be implemented in various ways. Storm Control Protected Ports Port Blocking Port Security Storm Control : Storm control prevents traffic on a LAN from being disrupted by a broadcast, a multicast, or a unicast storm on one of the physical...
May 27th, 2008 | Security | Read More