From the course: Cisco CCNP Security SCOR v1.1 (350-701) Cert Prep
Unlock this course with a free trial
Join today to access over 24,800 courses taught by industry experts.
Device hardening
From the course: Cisco CCNP Security SCOR v1.1 (350-701) Cert Prep
Device hardening
- [Instructor] We need to take a survey of some common security device hardening practices as well for S-Corp, starting with physical security. Physical security is one of the most basic ways for protecting our network, and it's sometimes also one of the most overlooked. It's ideal to keep our infrastructure that's housed on site in a locked area where we can control access. There should also be a system to log any access to the physical room, such as a key card system. Keeping these rooms temperature and humidity regulated is, of course, important, and some redundancy measures apply here as well. Specifically, redundant power systems are a best practice in the form of UPS systems, uninterruptible power supplies, which provide battery power in the case of an outage, and they have the ability to shut down a device in a proper manner in the event that the outage outlasts the battery backup capacity. As for the hardening of our actual devices, Cisco provides a really thorough document…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
(Locked)
IPS and firewall solutions4m 36s
-
(Locked)
Deployment models and architectures8m 21s
-
(Locked)
Device hardening5m 9s
-
(Locked)
Device management security5m 59s
-
(Locked)
NetFlow7m 15s
-
SNMPv316m 14s
-
(Locked)
Role-based CLI access7m 57s
-
(Locked)
NTP with authentication5m 32s
-
(Locked)
VLANs13m 6s
-
(Locked)
VRF-lite22m 5s
-
(Locked)
Port security5m 40s
-
DHCP snooping8m 4s
-
(Locked)
Dynamic ARP inspection4m 6s
-
(Locked)
Storm control7m 5s
-
(Locked)
PVLANs8m 55s
-
(Locked)
TACACS+ and RADIUS12m 33s
-
(Locked)
Downloadable ACL (dACL)5m 8s
-
(Locked)
-
-
-
-
-