Cisco SECURE 1.0: Site-to-Site VPN Architectures and Technologies


Overview/Description
Target Audience
Expected Duration
Lesson Objectives
Course Number



Overview/Description
An IP Security (IPSec) virtual private network (VPN) is a VPN that you deploy on a shared infrastructure using IPSec transmission protection technology. You can use site-to-site IPSec VPNs as an alternative to a WAN infrastructure to replace or augment existing private networks that interconnect enterprise sites and use leased-line or enterprise-owned Frame Relay and ATM networks. IPSec VPNs do not inherently change WAN requirements, such as support for multiple WAN Layer 2 protocols, high reliability, and extensive scalability, but instead meet these requirements more cost-effectively and with greater flexibility. This course provides you with configuration, verification, troubleshooting and general deployment guidelines for site-to-site IPSec VPN technologies available in Cisco IOS Software-based routers.

Target Audience
Network professionals responsible for securing and managing their network infrastructures who have CCNA certification, CCNA security certification and a working knowledge of Microsoft Windows operating systems.

Expected Duration (hours)
2.0

Lesson Objectives

Cisco SECURE 1.0: Site-to-Site VPN Architectures and Technologies

  • recognize how to choose an appropriate site-to-site VPN topology
  • recognize how to choose an appropriate IPSec VPN technology
  • recognize how to implement IKE for an IPSec configuration
  • choose appropriate VPN cryptographic controls for a particular scenario
  • recognize how to plan the deployment of a VTI-based site-to-site IPSec VPN
  • configure basic IKE peering for a particular scenario using PSKs
  • recognize how to verify basic IKE peering
  • recognize how to troubleshoot basic IKE peering
  • configure static point-to-point IPSec VTI tunnels
  • configure a VTI-based point-to-point IPSec VPN tunnel
  • verify static point-to-point IPSec VTI tunnels
  • sequence the recommended flow to troubleshoot static point-to-point IPSec VTI tunnels
  • configure dynamic point-to-point IPSec VTI tunnels
  • verify dynamic point-to-point IPSec VTI tunnels
  • Course Number:
    cc_cure_a11_it_enus