Exam profile: Cisco 642-522 (Securing Networks with PIX and ASA)
The vendor of the Cisco 642-522 SNPA (Securing Networks with PIX and ASA) exam is Cisco.
Cisco 642-522 Certification credit: When you pass the Cisco 642-522 SNPA (Securing Networks with PIX and ASA ) exam you earn credit towards Cisco CCNP (Cisco Certified Network Professional), Cisco CCDP (Cisco Certified Design Professional) and Cisco CCIP (Cisco Certified Internetwork Professional).
Cisco 642-522 Description of exam: The 642-522 SNPA (Securing Networks with PIX and ASA) exam shows a higher level of knowledge on troubleshoot sub-optimal performance in a converged network environment. Once a student has successfully passed the Cisco 642-522 CIT exam you will be more than able to describe and implement effective troubleshooting strategies, troubleshooting IP unicast and multicast routing, troubleshooting multi-layer switched networks, and troubleshooting WANs and remote access connections.
Cisco 642-522 Available time: You have more or less 75-90 minutes to complete the exam and is available in English and Japanese in Japan only.
Cisco 642-522 Questions to answer: The Cisco 642-522 SNPA (Securing Networks with PIX and ASA ) exam consists of approximately 60-70 questions and the exam has a difficulty of 3/5 using a scale of 1-5.
Cisco 642-522 Cost of exam: The exam prices can fluctuate so contact your nearest exam testing centre and acquire the prices from them.
TestKing -
Cisco 642-522 Offers Industry's Best Cisco 642-522 Certification and Study Guides Cisco 642-522 Skills considered
Exam Subject 1 Install and configure a security appliance for basic network connectivity
Describe the Security Appliance hardware and software architecture
Determine the Security Appliance hardware and software configuration and verify if it is correct
Use setup or the CLI to configure basic network settings, including interface configurations
Use appropriate show commands to verify initial configurations
Configure NAT and global addressing to meet user requirements
Configure DHCP client option
Set default route
Configure logging options
Describe the firewall technology
Explain the information contained in syslog files
Configure static address translations
Configure Network Address Translations: PAT
Configure static port redirection
Configure a net static
Set embryonic and connection limits on the security appliance
Verify network address translation operation
Exam Subject 2 Configure a security appliance to restrict inbound traffic from untrusted sources
Configure access-lists to filter traffic based on address, time, and protocols
Configure object-groups to optimize access-list processing
Configure Network Address Translations: Nat0
Configure Network Address Translations: Policy NAT
Configure java/activeX filtering
Configure URL filtering
Verify inbound traffic restrictions
Exam Subject 3 Configure a security appliance to provide secure connectivity using site-to-site VPNs
Explain certificates, certificate authorities and how they are used
Explain the basic functionality of IPSec
Configure IKE with preshared keys
Configure IKE to use certificates
Differentiate between the types of encryption
Configure IPSec parameters
Configure crypto-maps and ACLs
Exam Subject 4 Configure a security appliance to provide secure connectivity using remote access VPNs
Explain the functions of EasyVPN
Configure IPSec using EasyVPN Server/Client
Configure the Cisco Secure VPN client
Explain the purpose of WebVPN
Configure WebVPN services: Server/Client
Verify VPN operations
Exam Subject 5 Configure transparent firewall, virtual firewall, and high availability firewall features on a security appliance
Explain differences between L2 and L3 operating modes
Configure security appliance for transparent mode (L2)
Explain purpose of virtual firewalls
Configure security appliance to support virtual firewall
Monitor and maintain virtual firewall
Explain the types, purpose and operation of fail-over
Install appropriate topology to support cable-based or LAN-based fail-over
Explain the hardware, software and licensing requirements for high-availability
Configure the SA for active/standby fail-over
Configure the SA for stateful fail-over
Configure the SA for active-active fail-over
Verify fail-over operation
Recover from a fail-over
Exam Subject 6 Configure AAA services for access through a security appliance
Configure ACS for security appliance support
Configure security appliance to use AAA feature
Configure authentication using both local and external databases
Configure authorization using an external database
Configure the ACS server for downloadable ACLs
Configure accounting of connection start/stop
Verify AAA operation
Exam Subject 7 Configure routing and switching on a security appliance
Enable DHCP server and relay functionality
Configure VLANs on a security appliance interface
Configure routing functionality of security appliance including OSPF, RIP
Configure security appliance to pass multi-cast traffic
Configure ICMP on the security appliance
Exam Subject 8 Configure a modular policy on a security appliance
Configure a class-map
Configure a policy-map
Configure a service-policy
Configure a ftp-map
Configure a http-map
Configure an inspection protocol
Explain the function of protocol inspection
Explain DNS guard feature
Describe the AIP-SSM HW and SW
Load IPS SW on the AIP-SSM
Verify AIP-SSM
Configure an IPS modular policy
Exam Subject 9 Monitor and manage an installed security appliance
Obtain and apply OS updates
Backup and restore configurations and software
Explain the security appliance file management system
Perform password/lockout recovery procedures
Obtain and upgrade license keys
Configure passwords for various access methods: Telnet, serial, enable, SSH
Configure various access methods: Telnet, SSH, PDM
Configure command authorization and privilege levels
Configure local username database
Verify access control methods
Enable ASDM functionality
Verify a security appliance configuration via ASDM
Verify the licensing available on a security appliance
Cisco 642-522 Preparation and Study Tips: You can obtain a high quality Cisco 642-522 SNPA (Securing Networks with PIX and ASA) study guide from TestKing. Testking also provides you with 642-522 practice exams, 642-522 training, 642-522 practice tests and 642-522 exam questions. There are other resources available like free braindumps and study notes which can be located at mcsebraindumps.com.
You can familiarize yourself with the question format for the 642-522 SNPA exam by doing the online SNPA practice questions such as for those offered by Testking. Any other 642-522 practice exam, 642-522 practice test, and 642-522 Braindumps can also be useful. |