Contents
Ironshield introduction
Network security, security planning, levels of security defined by Foundry, common attacks, IronShield, identifying which Foundry devices to protect, network intrusions, how to recognize network intrusion.
Warning banners
Why warning banners are used, setting up warning banners, proper warning banner text.
Passwords
Strong passwords, implementing passwords, the different login password formats for Foundry devices, TACAS+/RADIUS, configuring TACACS+/RADIUS on Foundry devices, setting up authorization with TACACS+ / RADIUS, configuring VLANs for management, excluding VLANs from management.
Secure Shell (SSH)
What is SSH? Why use SSH? implementing SSH, configuring SSH on Foundry devices, defining and using keys, transferring files from a Foundry device using Secure Copy
SNMP V1, V2, V3
The different SNMP versions, configuring SNMP version 1, 2 and 3, advantages and disadvantages of the different versions of SNMP, blocking SNMP access from/to the Internet, SNMP views.
Unnecessary protocols
Potentially unnecessary components, denying access to potentially unused protocols.
DoS
What is a DoS attack? How to recognize a DoS attack, TCP Syn attack prevention, Smurf attacks and preventions, TCP SYN attack preventions, limiting broadcast packets, DoS attack protection, spoofing, defending against spoofing with ACLs, creating and applying inbound and outbound Anti-Spoofing ACLs.
Time and logging
The value of having synchronized time, SNTP on Foundry devices, Foundry logging methods, setting up logging features, setting up Foundry devices to send to external Syslog servers.
802.1x port security
802.1x uses, configuring and deploying 802.1x.
Worms
What is a worm? How worms work, possible worm defences.
Special issues
System performance issues when implementing security pros and cons of implementing security, administration duties.
|