CONTACT CSU

No offerings have been identified for this subject in 2016

ITI524 Building Remote Access Networks (8)

Abstract

This subject provides students with the knowledge and skills necessary to secure and expand the reach of an enterprise network to teleworkers and remote sites with focus on securing remote access and VPN client configuration. The subject covers topics on Cisco hierarchical network model as it pertains to the WAN, teleworker configuration and access, frame mode MPLS, site-to-site IPSEC VPN, Cisco EZVPN, strategies used to mitigate network attacks, Cisco device hardening and IOS firewall features.

+ Subject Availability Modes and Location

Continuing students should consult the SAL for current offering details prior to contacting their course coordinator: ITI524
Where differences exist between the handbook and the SAL, the SAL should be taken as containing the correct subject offering details.

Subject information

Duration Grading System School:
One sessionSY/USSchool of Computing and Mathematics

Enrolment restrictions

Available to students enrolled in Master of Networking and System Administration and Master of Management (Information Technology) only
Prerequisite(s)
ITI500

Learning Outcomes

Upon successful completion of this subject, students should:
- be able to implement basic teleworker services;
- be able to describe Cable (HFC) technologies;
- be able to describe xDSL technologies;
- be able to verify basic teleworker configurations;
- be able to implement Frame-Mode MPLS;
- be able to describe the components and operation of Frame-Mode MPLS (e.g., packet-based MPLS VPNs);
- be able to configure and verify Frame-Mode MPLS;
- be able to implement a site-to-site IPSec VPN;
- be able to describe the components and operations of IPSec VPNs and GRE Tunnels;
- be able to configure a site-to-site IPSec VPN/GRE Tunnel with SDM (i.e., preshared key);
- be able to verify IPSec/GRE Tunnel configurations (i.e., IOS CLI configurations);
- be able to describe, configure, and verify VPN backup interfaces;
- be able to describe and configure Cisco Easy VPN solutions using SDM;
- be able to describe network security strategies;
- be able to describe and mitigate common network attacks (i.e., reconnaissance, access, and Denial of Service);
- be able to describe, configure, and verify AAA for Cisco Routers;
- be able to describe and configure threat and attack mitigation using ACLs;
- be able to describe and configure IOS secure management features (e.g., SSH, SNMP, SYSLOG, NTP, Role-Based CLI, etc.);
- be able to implement Cisco IOS firewall;
- be able to verify Cisco IOS Firewall configurations (i.e., IOS CLI configurations, SDM Monitor). Describe and configure Cisco IOS IPS;
- be able to describe the functions and operations of IDS and IPS systems (e.g., IDS/IPS signatures, IPS Alarms, etc.);
- be able to configure Cisco IOS IPS using SDM.

Syllabus

The subject will cover the following topics:
Based on CCNP subject : Building Remote Access Networks

Back

The information contained in the 2016 CSU Handbook was accurate at the date of publication: 06 September 2016. The University reserves the right to vary the information at any time without notice.