Get in Touch

Course Outline

Objectives

  • Review TCP/IP and the fields within the IP Header.
  • Describe the fields and headers used in the ISAKMP Protocol.
  • Explain Main Mode negotiation for establishing Phase 1 of a VPN.
  • Explain Aggressive Mode negotiation for establishing Phase 1 of a VPN.
  • Explain Quick Mode negotiation for establishing Phase 2 of a VPN.
  • Compare the IKEv1 and IKEv2 protocols.
  • Describe symmetric encryption and public/private key encryption.
  • Describe ISAKMP Security Associations.
  • Describe IPSec Security Associations.
  • Describe the IPSec AH Protocol.
  • Describe the IPSec ESP Protocol.
  • Explain and describe the Diffie-Hellman Key Exchange.
  • Describe the concept of prime numbers and primitive roots.
  • Describe, explain, and configure site-to-site VPNs using Cisco Routers and/or ASA Firewalls.
  • Describe Remote Access VPNs using ADSL and Dial-up.
  • Utilize debug commands in the Cisco CLI and Wireshark to demonstrate and troubleshoot VPN negotiations.

Practical Exercises:

  • Lab Exercise 1: IPSec using manual symmetric encryption keys.
  • Lab Exercise 2: IPSec using IKE and shared secret.
  • Lab Exercise 3: IPSec using IKE and certificate authentication.

Requirements

Knowledge of TCP/IP and Cisco IOS is advantageous.

 14 Hours

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories