Technical Update & Future Jaskaran Kalsi Assoc. Technical Manager - Europe & CEE jkalsi@cisco.com
Agenda Current Course Portfolio CCNA Security Overview Positioning CCNA Security Overview Packet Tracer v5.1 Multi-User IPC Equipment Promotions Existing bundles CCNA Security Academy Connection New features
Cisco Networking Academy Curricula Portfolio Building Scalable Internetworks Implementing Secured Converged Wide-Area Networks Building Multilayer Switched Networks Optimizing Converged Networks Networking for Home and Small Businesses Working at a Small-to-Medium Business or ISP Introducing Routing and Switching in the Enterprise Designing and Supporting Computer Networks CCNA Security Network Fundamentals Routing Protocols and Concepts LAN Switching and Wireless Accessing the WAN Network Professional IT Essentials: PC Hardware and Software CCNP Security CCNA Discovery CCNA Exploration NOTE: this is a build slide Our current portfolio consists of 13 courses, plus a new course will be added to the portfolio in 2009 IT Essentials: PC Hardware and Software —the IT Essentials curriculum provides an overview of how the internal components of a computer work The course covers laptops and portable devices, assembling/disassembling PC components, wireless connectivity, security, safety and environmental issues associated with installing, configuring and troubleshooting and a PC. CCNA Discovery (4 courses) —the CCNA Discovery curriculum provides an introduction to networking. It teaches networking based on application and helps students develop foundational routing, switching, and WAN knowledge and experience, which can be applied toward entry-level careers in networking for small and medium-sized businesses. CCNA Exploration (4 courses) —the CCNA Exploration curriculum provides an introduction to networking. It teaches networking based on technology. It covers routing, switching, and WAN protocols and theory at deeper levels to help students succeed in networking-related degree programs and a range of professions. CCNA Security - We are developing an entirely new security course that aligns with the new Cisco CCNA Security certification. This new course, named CCNA Security, is being designed to help Networking Academy students develop a comprehensive understanding of network security concepts, gain knowledge and skills needed to earn the CCNA Security certification and become entry-level security specialists. The global, generally available (GA) release of CCNA Security is scheduled for July 2009 CCNP (4 courses) —the CCNP curriculum focuses on the advanced routing, secure wide area access, multilayer switching, and networking management skills required to implement and maintain converged enterprise networks. Packet Tracer — Provides a realistic simulation and visualization learning environment that supplements classroom equipment. Packet Tracer is a foundational teaching tool for CCNA Discovery and CCNA Exploration, and Packet Tracer activities are embedded in the course content. Both curricula include embedded e-doing, which applies the principle that people learn best by interacting with computer-based activities. Interactive learning promotes the exploration of networking concepts and experimentation with tools such as Packet Tracer and Flash-based activities to help students develop a greater understanding of networking technologies. IT Essentials IT Technician Packet Tracer Student Networking Knowledge and Skills
CCNA Security
CCNA Security: Overview A new course that provides students with in-depth network security education and a comprehensive understanding of network security concepts. Provides students with hands-on knowledge and skills, emphasizing practical experience, needed for entry-level job roles in network security. Teaches installation, troubleshooting and monitoring of network devices to maintain integrity, confidentiality and availability of data and devices. Prepares students for CCNA Security certification (IINS 640-553 exam). CCNA Security course IS NOT a replacement for the current Network Security 1 and Network Security 2 (NS1 and NS2) courses 5
Security Certifications Professional-level Associate-level Cisco Certified Security Profession (CCSP) Certification Revised CCSP Certification CCNA Security Certification CCNA Security Course SND IINS (640-553) Network Security 1 & 2 (NS1/NS2) Courses SNRS SNRS Key Points: Current NS1/NS2 courses prepared students for 2 of the 5 exams at the professional level certification. The new CCNA Security course will prepare students for the new associate level certification of CCNA Security. As shown, the exam for CCNA Security is fundamentally different then what NS1/NS2 courses prepared for. Background Info: The arrow showing “pre-req” mean that CCNA Security certification is a requirement to achieve CCSP professional certification Exams for CCSP (Cisco Certified Security Professional) certification IINS = Implementing Cisco IOS Network Security – This is the exam that is taken to earn CCNA Security certification SND (Exam 642-522) = Securing Network Devices – This exam was revised and evolved to the IINS exam SNRS (642-503) = Securing Networks with Cisco Routers and Switches – This exam is being revised as 642-504 SNPA (642-523) = Securing Networks with PIX and ASA – This exam is being replaced by 642-524, Securing Networks with ASA Foundation IPS (642-533) = Implementing Cisco Intrusion Prevention Systems – no changes to this exam HIPS (642-513) = Securing Hosts Using Cisco Security Agent – This is 1 of 4 elective exam, being EOL’ed CCNA Security certification represents the first certification step for individuals interested in a career in security technologies and serves as a pre-requisite for professional level certifications. CCNA certification is a pre-requisite for CCNA Security certification CCNA certification is a pre-requisite for CCNA Security certification SNPA SNAF IPS IPS IINS = Implementing Cisco IOS Network Security HIPS - Securing Hosts Using Cisco Security Agent EOL - Nov 17, 2009 HIPS
CCNA Security: Target Audience Students: College and University-level students in advanced degree programs or seeking career-oriented, entry-level Security specialist skills. Career starters, Career enhancers, Career changers. Academies: Vocational and University Sector 7
CCNA Security: Course Design One 70 hour course format Delivered in the same Graphical User Interface (GUI) as the CCNA Discovery and CCNA Exploration curricula Enabled for both ILT and Blended Distance Learning (BDL) delivery 9 Chapters 1 complex hands-on lab per chapter and Packet Tracer activities Provided as separate .zip files downloaded from AC; not packaged within the GUI 9 end of chapter exams; 1 final exam Available in English only, no translated versions are planned 8
Equipment Requirements Goal is to minimize equipment costs - Uses CCNA Discovery/Exploration equipment bundle and topology - NetLab compatible topology - enabled for remote operation Additional investment required for memory upgrade and Advanced IOS images Description Mfr. Part Number Qty. Modular Router w/2xFE, 2 WAN slots, 32 FL/128 DR Cisco CISCO1841 3 128 to 192MB SODIMM DRAM factory upgrade for the Cisco 1841 MEM1841-64D 2 64MB Cisco 1800 Compact Flash Memory MEM1800-64CF 2-Port Async/Sync Serial WAN Interface Card WIC-2A/S or WIC-2T V.35 Cable, DTE Male to Smart Serial, 10 Feet CAB-SS-V35MT V.35 Cable, DCE Female to Smart Serial, 10 Feet CAB-SS-V35FC Catalyst 2960 24 10/100 + 2 1000BT LAN Base Image WS-C2960-24TT-L (Optional) Rackmount Kit for the 1841 ACS-1841-RM-19 Cisco IOS Release 12.4(20)T1 Advanced IP Services c1841-advipservicesk9-mz.124-20.T1.bin 9
CCNA Security: Course Outline Course Chapter Titles Ch. 1 Modern Network Security Threats Goal: Explain network threats, mitigation techniques, and the basics of securing a network. Ch. 2 Securing Network Devices Goal: Securing administrative access on Cisco routers. Ch. 3 Authentication, Authorization and Accounting Goal: Securing administrative access with AAA. Ch. 4 Implementing Firewall Technologies Goal: Implement firewall technologies to secure the network perimeter. Ch. 5 Implementing Intrusion Prevention Goal: Configure IPS to mitigate attacks on the network. Ch. 6 Securing the Local Area Network Goal: Describe LAN security considerations and implement endpoint and Layer 2 security features. Ch. 7 Cryptographic Systems Goal: Describe methods for implementing data confidentiality and integrity. Ch. 8 Implementing Virtual Private Networks Goal: Implement secure virtual private networks. Ch. 9 Managing A Secure Network Goal: Given the security needs of an enterprise, create and implement a comprehensive security policy. CCNA Security includes instruction in the installation, troubleshooting and monitoring of network devices to maintain integrity, confidentiality and availability of data and devices and develops competency in the technologies that Cisco uses in its security structure. CCNA Security provides a next step for individuals who want to enhance their skill set and prepare for new roles managing converged networks. 10
Enrollment & Training Student enrollment pre-requisite: CCNA-level knowledge required Instructor Training guidelines: CCNA-level knowledge required Required for new CCNA Security instructors Fast track possible with evidence of CCNA Security or higher certification Existing NS1, NS2 or CCNP: ISCW instructors permitted to teach CCNA Security Instructor Training BDL format with 3-day in-person preferred; Can also be delivered 100% remote BDL Best Practices guide developed to provide guidelines on how to deliver course in a BDL environment 11
CCNA Security: Release Dates and Availability Early January 2009 Draft Scope and Sequence Mid-April 2009 Beta Release of student course: For instructor training and preview purposes End of July 2009 General Availability (GA) Release—student and instructor materials: Released at same time with Packet Tracer v5.2 GA Use for teaching student classes Mar 2009 Virtual SMT for Beta Release End of Jun 2009 Virtual SMT for GA Release Jan Mar Apr Jun Jul 2009
Packet Tracer v5.1 Collaboration Inter-Process Communications
Case Study: Multi-User Functionality PT 5.0 is a network-capable (peer to peer) application. (PT 4.11 is a standalone application) If PT 5.0 on MY computer can communicate with PT 5.0 on YOUR computer, we can have Collaborative and Competitive Network building, using the real network to carry the Packet Tracer virtual packets This connectivity between multiple instances of PT will support teamwork, classroom games, instructor consoles, and remote instructor-student and student-student interactions
Packet Tracer v5.1: What’s New? Maintenance updated - Bug Fixes x2 P1 Bug Fixes Route Redistribution Dragging an AP in Physical Mode of Packet Tracer Support internally developed applications: Includes the activation of the IPC Controls As mentioned earlier v5.1 is a maintenance release that includes two main changes. Just so you are aware maintenance releases are software upgrades that fix bugs that were identified in a previous version – so in this case v5.0. In particular, this v5.1 release fixes two P1 (priority 1) bugs which were identified. One of the P1 bugs was related to Route redistribution and the other was to do with dragging an Access Point in the physical mode of Packet Tracer. The impact of these two bugs was that they caused the application to crash. The second major change is the activation of the IPC Controls, this option which is now available to users allows them to register and launch external applications using the communication processes of the API built within Packet Tracer. I will clarify this process in a short while when I demonstrate how this functionality works. Firstly, lets have a look in more detail at the IPC Controls now built within Packet Tracer.
IPC Theory Packet Tracer Application API External App Using IPC Controls
Packet Tracer v5.1: IPC Controls
Packet Tracer: v5.0 EOL Remove Packet Tracer v5.0 from download site PT v5.0 has been removed when PT v5.1 was deployed PT web page will reference PT v5.1 All PT activities created with PT 4.x, 5.x were verified to be compatible with v5.1. Migration strategy from previous versions to PT v5.1 Recommendation to all users to download PT v5.1 Communications via IMN announcement, PT webpage, and PT v5.1 FAQs Recommended to users of earlier PT versions who encounter a problem to download PT v5.1 as first course of action. We do not really have an End of Life plan for Packet Tracer, the tradition has been that whenever we have a new version, the previous release is completely removed and replaced with the new release, this is because that backward compatibility is completely guaranteed. There have also been extensive tests completed that will ensure that any activities created with the previous version 5.0 will be compatible and run on the new version 5.1. With regard to a migration strategy, everyone is recommended to move across and start using v5.1; however we understand that there is no compelling reason to do this given the fact that the curriculum does not mandate that the new version is used and nor do the embedded activities state that the new version be used. The need for this new version only arises when there is the need to use external applications using the IPC. In saying this, communication has been clear and our recommendation is that we ask everybody when they have the opportunity, to go into Academy Connection and download the new version 5.1.
Quiz Questions Approximately which month and year will the CCNA Security course be released? Answer: July 2009 Approximately which month and year is Packet Tracer v5.2 scheduled to be released? How many chapters are in the new CCNA Security course? Answer: 9
Equipment Bundles
Current EUP-341 Promotion EUP-341 promotion renewed 25th April - 26th July, 2009 Current contents: CCNA CCNP NetLab IP Telephony Bundles no longer available: Wireless Network Security 1 & 2 Remember: 75% discount on all equipment bundles 22
CCNA Security CCNA Security recommended lab (CCNA Security Scope & Sequence): x1 Cisco 1841 Router - IP Base IOS x2 Cisco 1841 Router - Adv IP Serv IOS x3 Cisco Catalyst 2960 Switches Cables 23
CCNA Security Bundle Availability
CCNA Security Bundle Availability
Academy Connection
Academy Connection
CCNA Security - Availability
New Academy Locator
Additional Improvements & Offerings April 2009 Introduction of Academy URL option May 2009 Reintroducing ‘Search by Keyword’ option within Academy Locator New ‘User Interface” for Membership Directory Important - Exam Fee Waiver Program Availability of x6 vouchers for Active Academy Instructors Offering 100% discount CCNA 640-802 or (ICND1 + ICND2) CCNP 1-4