ISCW and ONT

Implementing Secure Converged Wide Area Networks

 

Duration: 5 days

 

Description: The Implementing Secure Converged Wide Area Networks (ISCW) is an advanced instructor-led course that introduces techniques and features enabling or enhancing WAN and remote access solutions. This five-day course focuses on using one or more of the available WAN connection technologies for remote access between enterprise sites. As converged networks and mobility are getting more and more important in the daily business, these technologies need to be optimized in order to support the business requirements. Students will learn about the new Cisco Intelligent Information Network model (IIN) and the Cisco Service-Oriented Network Architecture (SONA) as architectural frameworks for converged networks.

 

Course Outline

 

1. Network Requirements

  • The IIN and the SONA framework
  • Cisco conceptual network models, such as Cisco Enterprise Architecture and Cisco hierarchical network model
  • Requirements for establishing secure remote connections in a converged network

2. Describe Cisco VoIP Implementations

  • Introducing VoIP Networks
  • Digitizing and Packetizing Voice
  • Encapsulating Voice Packets for Transport
  • Calculating Bandwidth Requirements
  • Implementing Voice Support in an Enterprise Network

3. Introduction to IP QoS

  • Introducing QoS
  • Identifying Models for Implementing QoS
  • Methods for Implementing QoS

4. Implement the DiffServ QoS Model

  • Introducing Classification and Marking
  • Using NBAR for Classification
  • Introducing Queuing Implementations
  • Configuring WFQ
  • Configuring CBWFQ and LLQ
  • Introducing Congestion Avoidance
  • Introducing Traffic Policing and Shaping
  • WAN Link Efficiency Mechanisms
  • Implementing QoS Pre-Classify
  • Deploying End-to-End QoS

5. Implement AutoQoS

  • Introducing AutoQoS
  • Mitigating Common AutoQoS Problems

6. Implement Frame-Mode MPLS

  • Introducing MPLS Networks
  • Assigning MPLS Labels to Packets
  • Implementing Frame-Mode MPLS
  • MPLS VPN Technology

7. IPsec VPNs

  • IPsec Components and IPsec VPN Features
  • Site-to-Site IPsec VPN Operations
  • Configuring IPsec Site-to-Site VPN Using SDM
  • Configuring GRE Tunnels over IPsec
  • High Availability Options
  • Configuring Cisco Easy VPN and Easy VPN Server Using SDM
  • Implementing the Cisco VPN Client

8. Cisco Device Hardening

  • Mitigating Network Attacks
  • Disabling Unused Cisco Router Network Services and Interfaces
  • Securing Cisco Router Installations and Administrative Access