Course Outline

Objectives

  • Review TCP/IP and the fields in the IP Header for government networks.
  • Describe the fields and headers in the ISAKMP Protocol.
  • Describe Main Mode negotiation to set up Phase 1 of a VPN.
  • Describe Aggressive Mode negotiation to set up Phase 1 of a VPN.
  • Describe Quick Mode negotiation to set up Phase 2 of a VPN.
  • Compare IKEv1 and IKEv2 protocols for government use.
  • Describe Symmetric and Public/Private Key encryption methods.
  • Describe ISAKMP Security Associations.
  • Describe IPSec Security Associations.
  • Describe the IPSec AH Protocol.
  • Describe the IPSec ESP Protocol.
  • Explain Diffie-Hellman Key Exchange for secure government communications.
  • Describe prime and primitive root of a prime number.
  • Configure site-to-site VPNs using Cisco Routers and/or ASA Firewalls for government networks.
  • Describe Remote Access VPNs using ADSL and Dial-up for government use.
  • Use debug commands in the Cisco CLI and Wireshark to demonstrate and troubleshoot VPN negotiation for government systems.

Practical Exercises:

  • Lab Exercise 1: IPSec using manual, symmetric encryption keys for government networks.
  • Lab Exercise 2: IPSec using IKE and shared secret for government systems.
  • Lab Exercise 3: IPSec using IKE and certificate authentication for government use.

Requirements

A solid understanding of TCP/IP and Cisco IOS would be beneficial for government professionals.

 14 Hours

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories