Cisco Security

2001-01-15 Thread tl5footer

I am wanting to get into Security. Has anyone taken any of the following
test:CSPFA ,MCNS,CSVPNor, CSIDS)? If so what study material did you use and
books besides Cisco press. Thanks



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security

2001-01-17 Thread tl5footer

Is anyone persuing cisco new track for ccnp specialization? If so beside
MCNS, does anyone know about the test format for CSPFF,CSPFA,CSIDS? Cisco
web site does not say much about those three.  Is it to my understanding
that they will just test you and what u should know. Thanks


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Exam

2001-01-25 Thread tl5footer

Has anyone taken any of the new cisco exams for the CCNP specialization for
security/.


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Certification

2001-01-29 Thread kz


does anybody already have Managing Cisco Network Security (ISBN: 1578701031)
from Cisco press?

Are there any other books you recommend for the security certfication?

Thanx
kz

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Security

2001-01-15 Thread J Roysdon

I passed the MCNS before 2001 for my Security cert, so that's all I can
advise on.  I basically had hands on CBACS (IOS Firewall) & PIX experience.
Try reading through some sample configs at CCO if you don't have access to
equipment:
http://www.cisco.com/warp/public/700/configsec.html

--
Jason Roysdon, CCNP/CCDP, MCSE, CNA, Network+, A+
List email: [EMAIL PROTECTED]
Homepage: http://jason.artoo.net/
Cisco resources: http://r2cisco.artoo.net/


<[EMAIL PROTECTED]> wrote in message 940208$1ak$[EMAIL PROTECTED]">news:940208$1ak$[EMAIL PROTECTED]...
> I am wanting to get into Security. Has anyone taken any of the following
> test:CSPFA ,MCNS,CSVPNor, CSIDS)? If so what study material did you use
and
> books besides Cisco press. Thanks
>
>
>
> _
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Security

2001-01-18 Thread Tommy

I took the Pix exam and I felt the format was more difficult than any of the
CCNP 2.0 exams or the MCNS exam.  There were a lot of type in questions,
some of which were particularly vague.  There were serveral drag-and-drop
task questions which were pretty easy.  If there were four slots to fill,
you only had four options.  All multiple choice questions told you how many
selections to make.  Some of the multiple choice questions were of the
"choose the best answer" variety which can be tough.  If you look at the
course outline from global knowledge, you'll see what they want you to know
for the exam.  All in all, it's not terribly difficult if you know the
material, but I still didn't find it particularly easy.

Tommy

<[EMAIL PROTECTED]> wrote in message 9458vu$ru8$[EMAIL PROTECTED]">news:9458vu$ru8$[EMAIL PROTECTED]...
> Is anyone persuing cisco new track for ccnp specialization? If so beside
> MCNS, does anyone know about the test format for CSPFF,CSPFA,CSIDS? Cisco
> web site does not say much about those three.  Is it to my understanding
> that they will just test you and what u should know. Thanks
>
>
> _
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Manager

2000-06-09 Thread lee

Hi all, i have downloaded the cisco security manager v1.1 & 2.1. when i
tried to install the v1.1, it asked me to provide the key, so i select the
"license.dsk" which is bundled together with the program. And it gives me
the error which is saying the key cannot be import. I'm using windows98
operating system. can both version be install on windows 98 

regards,
lee


___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Certification

2001-01-30 Thread Ricardo Ciganda

Hi,
 
I have MCNS and I think that is enough with the Cisco's oficial
traininig. If you want to deepen you can find a lot of information from
many webs.

Ricardo Ciganda


CCNA, CCDA, Security 

Systems Engineer and Network Consultant
BYTEMASTER, S.A.
C/ Gran Capitan 2-4 4ยช Planta
Barcelona, SPAIN 08034
[EMAIL PROTECTED]
Phone:  (+34) 93-2520540
Fax:(+34) 93-2520541


Ask me I won't say no, how could I?
The Smiths




-Mensaje original-
De: kz [mailto:[EMAIL PROTECTED]]
Enviado el: martes, 30 de enero de 2001 5:47
Para: [EMAIL PROTECTED]
Asunto: Cisco Security Certification



does anybody already have Managing Cisco Network Security (ISBN:
1578701031)
from Cisco press?

Are there any other books you recommend for the security certfication?

Thanx
kz

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco security books [7:31393]

2002-01-09 Thread Doug Korell

Does anyone have input on good overall Cisco security books? I saw two books
on Cisco's website called "Designing Network Security" and "Managing Cisco
Network Security". Anyone have an opinion on these? Thanks.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31393&t=31393
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Exam [7:19249]

2001-09-10 Thread Quek, Steven

Hi,

This has been a great Cisco study site and enjoy most of it for the abundant
of info that is shared
on the discussion.

Currently I am preparing for the Cisco Security Track and seeking some
advise.
I had been to Cisco site and there seems to have 4 exams to pass:

1) MCNS
2) Cisco Secure PIX Firewall Advanced (CSPFA)
3) Cisco Secure Intrusion Detention System (CSIDS)
4) Cisco Secure VPN (CSVPN)

Question is that must I pass the above exams? Need some confirmation on this

Next I would appreciate greatly if anyone can recommend me the books to read
up for each of
the exam.

Thank you very much & have a nice day.

With regards
Steven Quek
Compaq Computer Asia Pte Ltd
Professional Service
Main: 65-786 2288
DID: 65-580 5176
Mobile: 65-9797 4526




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=19249&t=19249
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Specialist [7:56675]

2002-11-01 Thread Madl, Michael (CAP, AFS)
Can anyone recommend prep reading for the Cisco Security Specialist 1 track
???  I can go through the blueprint for it but any ideas on books other than
the standard Cisco Press
stuff ??

thanks

Michael Madl 
CCIE #10062




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=56675&t=56675
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



CISCO SECURITY BOOK LOOKING [7:14068]

2001-07-28 Thread PHIMHONGKONG

Hello any one
i am looking for
CISCO security Electronic Book



any one have them

Please share to me

Thanks




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=14068&t=14068
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Specialist 1 [7:14178]

2001-07-30 Thread jorge

Hi ,

  I will do the CSVPN, CSPFA and CSIDS test.
  
  Anybody do tests ?

thanks,
Jorge




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=14178&t=14178
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Specialist 1 [7:14184]

2001-07-30 Thread Jorge Luis Pingitore

Hi ,
   I will do the CSVPN, CSPFA and CSIDS test.
   Anybody did the tests ?

 thanks,
 Jorge



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=14184&t=14184
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco security books [7:31393]

2002-01-09 Thread Bill Carter

"Managing Cisco
Network Security" is good and worth the money.  Haven't read the other book
yet.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, January 09, 2002 9:39 AM
To: [EMAIL PROTECTED]
Subject: Cisco security books [7:31393]


Does anyone have input on good overall Cisco security books? I saw two books
on Cisco's website called "Designing Network Security" and "Managing Cisco
Network Security". Anyone have an opinion on these? Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31406&t=31393
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco security books [7:31393]

2002-01-09 Thread Keyur Shah

Also, Andrew Mason's Cisco Secure Internet Security Solutions is very very
good reference book for MCNS and CCIE Security.

-Keyur Shah-
CCIE# 4799 (Security; Routing and Switching)
css1,ccna,ccda,scsa,scna,mct,mcse,mcp+i,mcp,cni,mcne,cne,cna
Hello Computers
"Say Hello to Your Future!"
http://www.hellocomputers.com
Toll-Free: 1.877.794.3556 
Fremont: 510.795.6815 
Santa Clara: 408.496.0801 
Europe: +(44)20 7900 3011 
Fax: 510.291.2250
 

-Original Message-
From: Ole Drews Jensen [mailto:[EMAIL PROTECTED]] 
Sent: Wednesday, January 09, 2002 8:11 AM
To: [EMAIL PROTECTED]
Subject: RE: Cisco security books [7:31393]


The MCNS book should cover everything, and is considered by many to be a
book that must be read several times from cover to cover when going for the
MCNS exam.

I am currently about halfways through it on my first read, and it has so far
been good and detailed.

Hth,

Ole

~~~
 Ole Drews Jensen
 Systems Network Manager
 CCNP, MCSE, MCP+I
 RWR Enterprises, Inc.
 [EMAIL PROTECTED]
~~~ 
 http://www.RouterChief.com
~~~
 NEED A JOB ???
 http://www.oledrews.com/job ~~~


-Original Message-
From: Doug Korell [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, January 09, 2002 9:39 AM
To: [EMAIL PROTECTED]
Subject: Cisco security books [7:31393]


Does anyone have input on good overall Cisco security books? I saw two books
on Cisco's website called "Designing Network Security" and "Managing Cisco
Network Security". Anyone have an opinion on these? Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31410&t=31393
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco security books [7:31393]

2002-01-09 Thread John Kaberna

The MCNS book is very good for introducing Cisco security.  The Designing
Network Security book is ok, but it will put you to sleep if you have a
security background.  I definitely would say it's not imperative that you
have it.  If you plan on pursuing the CSS1 certification the IDS book from
Cisco Press is pretty good too.

John Kaberna
CCIE #7146
NETCG Inc.
www.netcginc.com
(415) 750-3800

Instructor for CCBootcamp 5-day class www.ccbootcamp.com
__
CCIE Security Training
www.netcginc.com/training.htm


""Doug Korell""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Does anyone have input on good overall Cisco security books? I saw two
books
> on Cisco's website called "Designing Network Security" and "Managing Cisco
> Network Security". Anyone have an opinion on these? Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31434&t=31393
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Specialist Prerequisites [7:32668]

2002-01-20 Thread ko haag

If you have your CCNP, what tests are needed for the Cisco security
cert?

Thx,
Ko




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=32668&t=32668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Exam [7:19249]

2001-09-10 Thread Matthew Crane

Hi Steven

To do the full Cisco Security thing you must take 5 exams as follows and
preferably in this order
MCNS
Pix Firewall Fundamentals
Pix Firewall Advanced
Cisco Secure VPN
Cisco Intrusion Detection

The reason for this approach as I always tell my staff & students is that
the MCNS is comprehensive and gives you a great deal of material in the
other exams, especially the area of IKE, IPsec, ISAKMP etc.

Books Cisco Press 
Managing Cisco Network Security
Designing Network Security
Cisco IOS 12.0 Network Security
Cisco Secure Internet Security Solutions

There is also the McGraw Hill Implementing Cisco Secure VPN's but that is so
full of holes and errors I would not bother. There is a book from cisco
Press on VPN's due late 2001 written by Andrew Mason & Terri Smith and if it
is half as good as Terri is as a VPN course instructor then it will be well
worth the money.

The odd one out is CSIDS which requires a deal of Unix knowledge especially
Solaris, plus some Openview stuff.

The key to all the exams is understand fully IKE, ISAkmp and the security
process of why & how.

If you have not done CCNP or the BCRAN part of CCNPO then i wopuld recommend
you take a look at it as background to the IOS side of security.

Good luck and if you need any further specific info email me direct.

Quek, Steven wrote:
> 
> Hi,
> 
> This has been a great Cisco study site and enjoy most of it for
> the abundant
> of info that is shared
> on the discussion.
> 
> Currently I am preparing for the Cisco Security Track and
> seeking some
> advise.
> I had been to Cisco site and there seems to have 4 exams to
> pass:
> 
> 1) MCNS
> 2) Cisco Secure PIX Firewall Advanced (CSPFA)
> 3) Cisco Secure Intrusion Detention System (CSIDS)
> 4) Cisco Secure VPN (CSVPN)
> 
> Question is that must I pass the above exams? Need some
> confirmation on this
> 
> Next I would appreciate greatly if anyone can recommend me the
> books to read
> up for each of
> the exam.
> 
> Thank you very much & have a nice day.
> 
> With regards
> Steven Quek
> Compaq Computer Asia Pte Ltd
> Professional Service
> Main: 65-786 2288
> DID: 65-580 5176
> Mobile: 65-9797 4526
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=19250&t=19249
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Security Exam [7:19249]

2001-09-10 Thread NKP

Exam for PIX firewall Fundamentals has expired as on July 2nd 2001 ,ie test
no : 9EO-559 , do check it up ,the training courseis still there from Cisco
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Exam [7:19249]

2001-09-10 Thread Paul Jin

Last year, passing MCNS gave you a specialization in security if
you had your CCNP or CCDP but since has changed and you must pass
all the exams..

Last year I belive only the MCNS book was available to buy but
since the exam format has changed, they are releasing more books..
I guess they found out that not everyone can go take all those classes...



http://www.ciscopress.com/book.cfm?book=196

http://www.ciscopress.com/book.cfm?series=1&book=82

http://www.ciscopress.com/book.cfm?series=1&book=170

http://www.ciscopress.com/book.cfm?series=1&book=79


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=19259&t=19249
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Exam [7:19249]

2001-09-10 Thread Quek, Steven

Hi Matthew,

Thank you very much for your clear & precise advise.
It is really a comfort feeling to have such prompt response.

With regards
Steven Quek
Compaq Computer Asia Pte Ltd
Professional Service
Main: 65-786 2288
DID: 65-580 5176
Mobile: 65-9797 4526


-Original Message-
From: Matthew Crane [mailto:[EMAIL PROTECTED]]
Sent: Monday, September 10, 2001 7:22 PM
To: [EMAIL PROTECTED]
Subject: RE: Cisco Security Exam [7:19249]


Hi Steven

To do the full Cisco Security thing you must take 5 exams as follows and
preferably in this order
MCNS
Pix Firewall Fundamentals
Pix Firewall Advanced
Cisco Secure VPN
Cisco Intrusion Detection

The reason for this approach as I always tell my staff & students is that
the MCNS is comprehensive and gives you a great deal of material in the
other exams, especially the area of IKE, IPsec, ISAKMP etc.

Books Cisco Press 
Managing Cisco Network Security
Designing Network Security
Cisco IOS 12.0 Network Security
Cisco Secure Internet Security Solutions

There is also the McGraw Hill Implementing Cisco Secure VPN's but that is so
full of holes and errors I would not bother. There is a book from cisco
Press on VPN's due late 2001 written by Andrew Mason & Terri Smith and if it
is half as good as Terri is as a VPN course instructor then it will be well
worth the money.

The odd one out is CSIDS which requires a deal of Unix knowledge especially
Solaris, plus some Openview stuff.

The key to all the exams is understand fully IKE, ISAkmp and the security
process of why & how.

If you have not done CCNP or the BCRAN part of CCNPO then i wopuld recommend
you take a look at it as background to the IOS side of security.

Good luck and if you need any further specific info email me direct.

Quek, Steven wrote:
> 
> Hi,
> 
> This has been a great Cisco study site and enjoy most of it for
> the abundant
> of info that is shared
> on the discussion.
> 
> Currently I am preparing for the Cisco Security Track and
> seeking some
> advise.
> I had been to Cisco site and there seems to have 4 exams to
> pass:
> 
> 1) MCNS
> 2) Cisco Secure PIX Firewall Advanced (CSPFA)
> 3) Cisco Secure Intrusion Detention System (CSIDS)
> 4) Cisco Secure VPN (CSVPN)
> 
> Question is that must I pass the above exams? Need some
> confirmation on this
> 
> Next I would appreciate greatly if anyone can recommend me the
> books to read
> up for each of
> the exam.
> 
> Thank you very much & have a nice day.
> 
> With regards
> Steven Quek
> Compaq Computer Asia Pte Ltd
> Professional Service
> Main: 65-786 2288
> DID: 65-580 5176
> Mobile: 65-9797 4526




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=19347&t=19249
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Exam [7:19249]

2001-09-11 Thread Art

I am also planning to start Cisco Security certification and would
appreciate if some one can recommend good practice tests.

Thank you
Art



|-Original Message-
|From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
|Quek, Steven
|Sent: Tue, September 11, 2001 5:14 AM
|To: [EMAIL PROTECTED]
|Subject: RE: Cisco Security Exam [7:19249]
|
|
|Hi Matthew,
|
|Thank you very much for your clear & precise advise.
|It is really a comfort feeling to have such prompt response.
|
|With regards
|Steven Quek
|Compaq Computer Asia Pte Ltd
|Professional Service
|Main: 65-786 2288
|DID: 65-580 5176
|Mobile: 65-9797 4526
|
|
|-Original Message-
|From: Matthew Crane [mailto:[EMAIL PROTECTED]]
|Sent: Monday, September 10, 2001 7:22 PM
|To: [EMAIL PROTECTED]
|Subject: RE: Cisco Security Exam [7:19249]
|
|
|Hi Steven
|
|To do the full Cisco Security thing you must take 5 exams as
|follows and
|preferably in this order
|MCNS
|Pix Firewall Fundamentals
|Pix Firewall Advanced
|Cisco Secure VPN
|Cisco Intrusion Detection
|
|The reason for this approach as I always tell my staff &
|students is that
|the MCNS is comprehensive and gives you a great deal of material in the
|other exams, especially the area of IKE, IPsec, ISAKMP etc.
|
|Books Cisco Press
|Managing Cisco Network Security
|Designing Network Security
|Cisco IOS 12.0 Network Security
|Cisco Secure Internet Security Solutions
|
|There is also the McGraw Hill Implementing Cisco Secure VPN's
|but that is so
|full of holes and errors I would not bother. There is a book from cisco
|Press on VPN's due late 2001 written by Andrew Mason & Terri
|Smith and if it
|is half as good as Terri is as a VPN course instructor then it
|will be well
|worth the money.
|
|The odd one out is CSIDS which requires a deal of Unix
|knowledge especially
|Solaris, plus some Openview stuff.
|
|The key to all the exams is understand fully IKE, ISAkmp and
|the security
|process of why & how.
|
|If you have not done CCNP or the BCRAN part of CCNPO then i
|wopuld recommend
|you take a look at it as background to the IOS side of security.
|
|Good luck and if you need any further specific info email me direct.
|
|Quek, Steven wrote:
|>
|> Hi,
|>
|> This has been a great Cisco study site and enjoy most of it for
|> the abundant
|> of info that is shared
|> on the discussion.
|>
|> Currently I am preparing for the Cisco Security Track and
|> seeking some
|> advise.
|> I had been to Cisco site and there seems to have 4 exams to
|> pass:
|>
|> 1) MCNS
|> 2) Cisco Secure PIX Firewall Advanced (CSPFA)
|> 3) Cisco Secure Intrusion Detention System (CSIDS)
|> 4) Cisco Secure VPN (CSVPN)
|>
|> Question is that must I pass the above exams? Need some
|> confirmation on this
|>
|> Next I would appreciate greatly if anyone can recommend me the
|> books to read
|> up for each of
|> the exam.
|>
|> Thank you very much & have a nice day.
|>
|> With regards
|> Steven Quek
|> Compaq Computer Asia Pte Ltd
|> Professional Service
|> Main: 65-786 2288
|> DID: 65-580 5176
|> Mobile: 65-9797 4526
|
|
|
|
|Report misconduct
|and Nondisclosure violations to [EMAIL PROTECTED]
|


_
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=19395&t=19249
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Specialist [7:56675]

2002-11-01 Thread Doug Oh
The Cisco Press CQS books were sufficient for me.  I did try to set up as
many various configurations as I could in my own lab, and the PIX 501 was
good to have for that piece of the tests.  Good luck!


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=56716&t=56675
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Specialist 1 [7:51643]

2002-08-19 Thread Juan Blanco

Does the following is still available:

For a limited time, candidates holding an active CCNP Security
Specialization may obtain a Cisco Security Specialist 1 certification by
passing the 9E0-571 CSPFA and 9E0-570 CSVPN exams.

Thanks,




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=51643&t=51643
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Bootcamp (4 days) [7:3240]

2001-05-04 Thread Cooper, David

Anyone attended this course? I am scheduled in a couple of weeks and
wondered if it was worth it and what all is covered.  Thanks

Dave Cooper - CCNP, CCDP, NNCSS




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=3240&t=3240
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Books for Cisco Security Specialist [7:4668]

2001-05-16 Thread Shoaib Waqar

Can anyone plz tell me how many books we need for
fulfilling the course of Cisco Security Specialist,
which contain four exams. There is no book of PIX
Firewall available. I m waiting for your suggestions.

Shoaib
CCNP,MCSE

__
Do You Yahoo!?
Yahoo! Auctions - buy the things you want at great prices
http://auctions.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=4668&t=4668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



cisco security certification equipment list [7:35213]

2002-02-12 Thread Tony Chen

What kind of equipments do I need for the following security exams?

Router:  

IOS:

PIX firewall:

Tacacs+ server:



640-442 MCNS: Managing Cisco Network Security (MCNS)
 
9E0-571 CSPFA: Cisco Secure PIX Firewall Advanced (CSPFA)

9E0-572 IDSPM: Cisco Secure Intrusion Detection System Version 2.1 (CSIDS
2.1)
 
9E0-570 CSVPN:  Cisco Secure VPN (CSVPN)
 
Tony


***
This message is a private communication.  If you are not the intended
recipient, please do not read, copy, or use it, and do not disclose it
to others.  Please notify the sender of the delivery error by replying
to this message, and then delete it from your system.  Thank you.


-
Visit http://www.ballfoundation.org for our latest news.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35213&t=35213
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



ENC: Cisco Security Specialist 1 [7:14180]

2001-07-30 Thread jorge

> Hi ,
> 
>   I will do the CSVPN, CSPFA and CSIDS test.
>   
>   Anybody did the tests ?
> 
> thanks,
> Jorge




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=14180&t=14180
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Specialist Prerequisites [7:32668]

2002-01-20 Thread Keyur Shah

MCNS + PIX Advanced + VPN + IDS.

Good luck.

-Keyur Shah-
CCIE# 4799 (Security; Routing and Switching)
css1,ccna,ccda,scsa,scna,mct,mcse,mcp+i,mcp,cni,mcne,cne,cna
Hello Computers
"Say Hello to Your Future!"
http://www.hellocomputers.com
Toll-Free: 1.877.794.3556 


-Original Message-
From: ko haag [mailto:[EMAIL PROTECTED]] 
Sent: Sunday, January 20, 2002 10:25 PM
To: [EMAIL PROTECTED]
Subject: Cisco Security Specialist Prerequisites [7:32668]


If you have your CCNP, what tests are needed for the Cisco security cert?

Thx,
Ko




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=32669&t=32668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Security Specialist Prerequisites [7:32668]

2002-01-21 Thread Brian

Doesn't look like ccnp gets you much here, see
http://www.cisco.com/warp/public/10/wwtraining/certprog/cqs/security/

Bri

- Original Message -
From: "ko haag" 
To: 
Sent: Sunday, January 20, 2002 10:24 PM
Subject: Cisco Security Specialist Prerequisites [7:32668]


> If you have your CCNP, what tests are needed for the Cisco security
> cert?
>
> Thx,
> Ko




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=32714&t=32668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Security Specialist Prerequisites [7:32668]

2002-01-21 Thread George Murphy CCNP/DP

Just the CCNA its more of a lone cert specialty these days.

Brian wrote:

>Doesn't look like ccnp gets you much here, see
>http://www.cisco.com/warp/public/10/wwtraining/certprog/cqs/security/
>
>Bri
>
>- Original Message -
>From: "ko haag" 
>To: 
>Sent: Sunday, January 20, 2002 10:24 PM
>Subject: Cisco Security Specialist Prerequisites [7:32668]
>
>
>>If you have your CCNP, what tests are needed for the Cisco security
>>cert?
>>
>>Thx,
>>Ko




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=32727&t=32668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Security Specialist 1 [7:51643]

2002-08-19 Thread Richard Lee

No, it is expired.

""Juan Blanco""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Does the following is still available:
>
> For a limited time, candidates holding an active CCNP Security
> Specialization may obtain a Cisco Security Specialist 1 certification by
> passing the 9E0-571 CSPFA and 9E0-570 CSVPN exams.
>
> Thanks,




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=51685&t=51643
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Books for Cisco Security Specialist [7:4668]

2001-05-16 Thread ccnawan

You can find the requirements at the the Cisco web site under training &
certs, also I found the below that might help.

=>NETWORK SECURITY TRAINING ON CD-ROM
The Learning Store carries three new CDs to help students
prepare for the Cisco Security Specialist 1 designation. CDs
are available for the following courses:
-Cisco Secure PIX Firewall Fundamentals (CSPFF)
-Cisco Secure PIX Firewall Advanced (CSPFA)
-Cisco Secure Virtual Private Networks (CSVPN)

Computer-based training modules that include graphics,
interactive syntax labs, and written labs, these CDs allow you
to complete practice lab situations without having access to
the equipment.

How to order:
Go to http://www.cisco.com/marketplace (be sure to log in)
Click on the Learning Store button on the left
Click on the Shop All Items section within the store
Search for CD by title

Dan Evensen CCNAWS CNS
- Original Message -
From: "Shoaib Waqar" 
To: 
Sent: Wednesday, May 16, 2001 5:24 AM
Subject: Books for Cisco Security Specialist [7:4668]


> Can anyone plz tell me how many books we need for
> fulfilling the course of Cisco Security Specialist,
> which contain four exams. There is no book of PIX
> Firewall available. I m waiting for your suggestions.
>
> Shoaib
> CCNP,MCSE
>
> __
> Do You Yahoo!?
> Yahoo! Auctions - buy the things you want at great prices
> http://auctions.yahoo.com/
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=4682&t=4668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Books for Cisco Security Specialist [7:4668]

2001-05-16 Thread Allen May

I haven't found one either.  There's tons of information in the manuals
though.  It covers IPSec, VPN, encryption, NAT, PAT, etc.  If you hear of a
good one that is test oriented, please let me know.

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/

Allen May
Network Security Administrator II

- Original Message -
From: "Shoaib Waqar" 
To: 
Sent: Wednesday, May 16, 2001 7:24 AM
Subject: Books for Cisco Security Specialist [7:4668]


> Can anyone plz tell me how many books we need for
> fulfilling the course of Cisco Security Specialist,
> which contain four exams. There is no book of PIX
> Firewall available. I m waiting for your suggestions.
>
> Shoaib
> CCNP,MCSE
>
> __
> Do You Yahoo!?
> Yahoo! Auctions - buy the things you want at great prices
> http://auctions.yahoo.com/
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=4689&t=4668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Books for Cisco Security Specialist [7:4668]

2001-05-16 Thread Brad McConnell

MCNS gets you most of the way, even on the PIX topics.  At that point, if
you have a copy of the main PIX configuration guide, and the IPSec
configuration guide, that's all you need (both of which can be read through
straight off of cisco.com).  We got a 515 in the other day that had both
books with it.  They were even current version documentation, which is
rare.. heh.

-Brad McConnell.


""Shoaib Waqar""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Can anyone plz tell me how many books we need for
> fulfilling the course of Cisco Security Specialist,
> which contain four exams. There is no book of PIX
> Firewall available. I m waiting for your suggestions.
>
> Shoaib
> CCNP,MCSE
>
> __
> Do You Yahoo!?
> Yahoo! Auctions - buy the things you want at great prices
> http://auctions.yahoo.com/
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=4720&t=4668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: cisco security certification equipment list [7:35213]

2002-02-12 Thread Ocsic

Intrusion Detection System

Concentrator 3000 Series

Cisco Pix Secure Management Software

Ken

""Tony Chen""   What kind of equipments do I need for the following security
exams?
>
> Router:
>
> IOS:
>
> PIX firewall:
>
> Tacacs+ server:
>
>
>
> 640-442 MCNS: Managing Cisco Network Security (MCNS)
>
> 9E0-571 CSPFA: Cisco Secure PIX Firewall Advanced (CSPFA)
>
> 9E0-572 IDSPM: Cisco Secure Intrusion Detection System Version 2.1 (CSIDS
> 2.1)
>
> 9E0-570 CSVPN:  Cisco Secure VPN (CSVPN)
>
> Tony
>
>
> ***
> This message is a private communication.  If you are not the intended
> recipient, please do not read, copy, or use it, and do not disclose it
> to others.  Please notify the sender of the delivery error by replying
> to this message, and then delete it from your system.  Thank you.
>
>
> -
> Visit http://www.ballfoundation.org for our latest news.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35250&t=35213
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: cisco security certification equipment list [7:35213]

2002-02-17 Thread Ozzie Sutcliffe

Oz


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35710&t=35213
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



FYI - From the SANS / Cisco Security Tool [7:35960]

2002-02-20 Thread Rogers Eric

Note for users of Cisco routers concerned about security: A router
security audit tool will be announced today, the result of cooperative
efforts by experts at the US National Security Agency, UUNET, and
Cable & Wireless, and tested and validated by many of the 170 member
organizations of the Center for Internet Security. The Router Audit
Tool performs an impressively comprehensive check of Cisco router
security, gives an overall score, and points the user to the specific
corrections for problems found.  The tool's authors will conduct a web
briefing today at 1:00 PM (1800 UTC). Both the tool and the briefing
are free.  Register in advance at: http://www.sans.org/webcasts


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35960&t=35960
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Boson Security Tests? (Cisco Security Specialist 1) [7:41256]

2002-04-11 Thread Sean Knox

I am thinking of purchasing one of the MCNS Boson tests as well as a Boson
CSPFA test... anyone purchased/used these? Recommendations?

- Sean




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41256&t=41256
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Advisory: Cisco VPN Client Multiple [7:51353]

2002-08-14 Thread Evans, TJ

In case you use the VPN Client, and missed the bulletin ... 


Thanks!
TJ


-Original Message-
From: CCO Field Notice [mailto:[EMAIL PROTECTED]] 
Sent: Tuesday, August 13, 2002 1:48 PM
To: [EMAIL PROTECTED]
Subject: Cisco Security Advisory: Cisco VPN Client Multiple Vulnerabilities

This e-mail is coming to you courtesy of the Cisco.com 
Field Notice tool. Thank you for indicating through your 
interest profile that you wish to receive these alerts.

Want to change your Alert Profile or create a new one?
Please go to:
http://www.cisco.com/cgi-bin/Support/FieldNoticeTool/field-notice

Title:   Cisco Security Advisory: Cisco VPN Client Multiple Vulnerabilities
URL: 
http://www.cisco.com/warp/customer/707/vpnclient-multiple-vuln-pub.shtml 
 (available to registered users)
http://www.cisco.com/warp/public/707/vpnclient-multiple-vuln-pub.shtml 
 (available to non-registered users)
Posted:  August 12, 2002

Summary: Multiple vulnerabilities exist in the Cisco Virtual Private Network
(VPN)
Client software. Exploitation of these vulnerabilities prevents the Cisco 
VPN Client software program from functioning correctly.
*
The information in this email is confidential and may be legally privileged.
It is intended solely for the addressee. Access to this email by anyone else
is unauthorized. 

If you are not the intended recipient, any disclosure, copying, distribution
or any action taken or omitted to be taken in reliance on it, is prohibited
and may be unlawful. When addressed to our clients any opinions or advice
contained in this email are subject to the terms and conditions expressed in
the governing KPMG client engagement letter. 
*




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=51353&t=51353
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re : Cisco security exams in great demand [7:72087]

2003-07-09 Thread Mr piyush shah
Hi all
I am planning to appear for CCSP EXAMS .May I request
people from Mumbai ,India to have off-line discussion
to have joint efforts.This will help us in sharing
idea ,study material etc.Interested people can email
me offline on [EMAIL PROTECTED] . 
Thanks in davance .
Piyush



Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72087&t=72087
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re : Cisco security exams in great demand [7:72086]

2003-07-09 Thread Mr piyush shah
Hi all
I am planning to appear for CCSP EXAMS .May I request
people from Mumbai ,India to have off-line discussion
to have joint efforts.This will help us in sharing
idea ,study material etc.Interested people can email
me offline on [EMAIL PROTECTED] . 
Thanks in davance .
Piyush



Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72086&t=72086
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Fw: Cisco Security Advisory: Cisco VPN3000 Concentrator IP [7:364]

2001-04-12 Thread EA Louie

FYI if you're using the former Altiga VPN concentrator...

- Original Message -
From: "Cisco Systems Product Security Incident Response Team"

To: 
Sent: Thursday, April 12, 2001 9:45 AM
Subject: Cisco Security Advisory: Cisco VPN3000 Concentrator IP Options
Vulnerability


>
> -BEGIN PGP SIGNED MESSAGE-----
>
> Cisco Security Advisory: VPN 3000 Concentrator IP Options Vulnerability
>

=
> Revision 1.0
>
> For Public Release 2001 April 12 at 1500 UTC
>
>   
>
> Summary
> ===
> If a crafted IP packet, with an invalid IP Option setting is transmitted
to
> a VPN 3000 series concentrator on the same network segment (no routers in
> between), it can cause the VPN 3000 series concentrator to hang with a
100%
> CPU Utilization. The concentrator would then have to be reset. After
> rebooting, the equipment would function normally until the crafted IP
> packet is received again. The defect can be exploited to produce a denial
> of service (DoS) attack.
>
> The vulnerability is described in Cisco bug id CSCds92460.
>
> This notice will be posted at
> http://www.cisco.com/warp/public/707/vpn3k-ipoptions-vuln-pub.shtml
>
> Affected Products
> =
> Cisco VPN 3000 series concentrators running software releases up to but
not
> including revision 2.5.2 (F) are affected by this vulnerability. This
> series includes models 3005, 3015, 3030, 3060, and 3080.
>
> Any VPN 3000 series concentrators running revision 2.5.2 (F) or later are
> unaffected by this vulnerability.
>
> This vulnerability does not affect the VPN 5000 series concentrators. No
> other Cisco product is known to be affected by this vulnerability.
>
> To determine if a Cisco VPN 3000 series concentrator is running affected
> software, check the revision via the web interface or the console menu.
>
> Details
> ===
> If a crafted IP packet, with an invalid IP Option setting, is transmitted
> to a VPN 3000 series concentrator on the same network segment (no routers
> in between), on either the Inside or the Outside interface, it can cause
> the VPN 3000 series concentrator to hang with a 100 % CPU Utilization. The
> concentrator would then have to be reset via the console port as no SNMP
or
> HTTP remote management control would be possible. After rebooting, the
> equipment would function normally until the crafted IP packet is received
> again.
>
> In order to exploit this vulnerability the attacker must be on the same
> network segment as the concentrator without any routers in between. A
> crafted IP packet traversing a router would typically get its invalid IP
> Options dropped and would not be able to affect the VPN 3000 series
> concentrator.
>
> The vulnerability is documented as Cisco bug id CSCds92460.
>
> Impact
> ==
> When this crafted IP packet is received by the VPN 3000 series
> concentrator, the concentrator will stop passing traffic and will not
> respond to any management inquiries via SNMP, Telnet or HTTP. However
> management via the console port is possible.
>
> For VPN 3000 series concentrator models 3015, 3030, 3060, and 3080 the CPU
> Utilization bar graph indicator on the front panel will go to 100%.
>
> Software Versions and Fixes
> ===
> The vulnerability has been fixed in revision 2.5.2 (E) code. The fix will
> be carried forward into all future releases.
>
> However due to the advisory at
> http://www.cisco.com/warp/public/707/vpn3k-telnet-vuln-pub.shtml the
> recommended revision to upgrade to is 2.5.2 (F)
>
> Upgrade can be done via the remote software upgrade feature using the VPN
> 3000 series concentrator's web based management interface.
>
> Obtaining Fixed Software
> 
> Cisco is offering free software upgrades to remedy this vulnerability for
> all affected customers. Customers with service contracts may upgrade to
any
> software release. Customers may install only the feature sets they have
> purchased.
>
> Fixed software is currently available.
>
> Customers with contracts should obtain upgraded software through their
> regular update channels. For most customers, this means that upgrades
> should be obtained via Cisco's Software Center at http://www.cisco.com/.
>
> Customers without contracts or warranty should get their upgrades by
> contacting the Cisco Technical Assistance Center (TAC) as shown below:
>
>* (800) 553-2447 (toll-free in North America)
>* +1 408 526 7209 (toll call from anywhere in the world)
>* e-mail: [EMAIL PROTECTED]
>
> See http:

Fw: Cisco Security Advisory: Cisco VPN3000 Concentrator IP [7:12003]

2001-07-11 Thread Allen May

FYI for those I've seen posting lately about the 3000 series Concentrators.


- Original Message -
From: "Cisco Systems Product Security Incident Response Team"

To: 
Sent: Thursday, April 12, 2001 11:45 AM
Subject: Cisco Security Advisory: Cisco VPN3000 Concentrator IP Options
Vulnerability


>
> -BEGIN PGP SIGNED MESSAGE-----
>
> Cisco Security Advisory: VPN 3000 Concentrator IP Options Vulnerability
>

=
> Revision 1.0
>
> For Public Release 2001 April 12 at 1500 UTC
>
>   
>
> Summary
> ===
> If a crafted IP packet, with an invalid IP Option setting is transmitted
to
> a VPN 3000 series concentrator on the same network segment (no routers in
> between), it can cause the VPN 3000 series concentrator to hang with a
100%
> CPU Utilization. The concentrator would then have to be reset. After
> rebooting, the equipment would function normally until the crafted IP
> packet is received again. The defect can be exploited to produce a denial
> of service (DoS) attack.
>
> The vulnerability is described in Cisco bug id CSCds92460.
>
> This notice will be posted at
> http://www.cisco.com/warp/public/707/vpn3k-ipoptions-vuln-pub.shtml
>
> Affected Products
> =
> Cisco VPN 3000 series concentrators running software releases up to but
not
> including revision 2.5.2 (F) are affected by this vulnerability. This
> series includes models 3005, 3015, 3030, 3060, and 3080.
>
> Any VPN 3000 series concentrators running revision 2.5.2 (F) or later are
> unaffected by this vulnerability.
>
> This vulnerability does not affect the VPN 5000 series concentrators. No
> other Cisco product is known to be affected by this vulnerability.
>
> To determine if a Cisco VPN 3000 series concentrator is running affected
> software, check the revision via the web interface or the console menu.
>
> Details
> ===
> If a crafted IP packet, with an invalid IP Option setting, is transmitted
> to a VPN 3000 series concentrator on the same network segment (no routers
> in between), on either the Inside or the Outside interface, it can cause
> the VPN 3000 series concentrator to hang with a 100 % CPU Utilization. The
> concentrator would then have to be reset via the console port as no SNMP
or
> HTTP remote management control would be possible. After rebooting, the
> equipment would function normally until the crafted IP packet is received
> again.
>
> In order to exploit this vulnerability the attacker must be on the same
> network segment as the concentrator without any routers in between. A
> crafted IP packet traversing a router would typically get its invalid IP
> Options dropped and would not be able to affect the VPN 3000 series
> concentrator.
>
> The vulnerability is documented as Cisco bug id CSCds92460.
>
> Impact
> ==
> When this crafted IP packet is received by the VPN 3000 series
> concentrator, the concentrator will stop passing traffic and will not
> respond to any management inquiries via SNMP, Telnet or HTTP. However
> management via the console port is possible.
>
> For VPN 3000 series concentrator models 3015, 3030, 3060, and 3080 the CPU
> Utilization bar graph indicator on the front panel will go to 100%.
>
> Software Versions and Fixes
> ===
> The vulnerability has been fixed in revision 2.5.2 (E) code. The fix will
> be carried forward into all future releases.
>
> However due to the advisory at
> http://www.cisco.com/warp/public/707/vpn3k-telnet-vuln-pub.shtml the
> recommended revision to upgrade to is 2.5.2 (F)
>
> Upgrade can be done via the remote software upgrade feature using the VPN
> 3000 series concentrator's web based management interface.
>
> Obtaining Fixed Software
> 
> Cisco is offering free software upgrades to remedy this vulnerability for
> all affected customers. Customers with service contracts may upgrade to
any
> software release. Customers may install only the feature sets they have
> purchased.
>
> Fixed software is currently available.
>
> Customers with contracts should obtain upgraded software through their
> regular update channels. For most customers, this means that upgrades
> should be obtained via Cisco's Software Center at http://www.cisco.com/.
>
> Customers without contracts or warranty should get their upgrades by
> contacting the Cisco Technical Assistance Center (TAC) as shown below:
>
>* (800) 553-2447 (toll-free in North America)
>* +1 408 526 7209 (toll call from anywhere in the world)
>* e-mail: [EMAIL PROTECTED]
&

RE: Boson Security Tests? (Cisco Security Specialist 1 [7:41256]

2002-04-13 Thread Tim Potier

I just finished passing all 4 exams.  Saying that, I would suggest that the
Cisco Press MCNS book is enough to pass 3 of the 4 exams (not the CSIDS).  I
also purchased Boson tests for all the exams minus the CSIDS (it was not
available).  I used the Cisco Website info for this exam,,, and with a lot
of luck, I Passed!


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41397&t=41256
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Advisory:Cisco IOS Interface Blocked by IPv4 [7:73458]

2003-08-04 Thread Mr piyush shah
Recently there was an article on Cisco Security
Advisory which stated that all Cisco routers/switches
having IOS as their operating system,their Interfaces
will be blocked by IPv4 Packets.In this regard,i have
a querry.
Is it that all the router having IOS will be blocked
or certain specific IOS ?
Also they have given fixes at the bottom of that
article which states about access-list,do one need to
go ahead with implementation of these Acess-lists?
Kindly help.
Thanks in advance.

 Piyush



Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73458&t=73458
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Security Advisory: Cisco IOS Interface Block [7:73471]

2003-08-04 Thread alaerte Vidali
Hi,

As stated on Cisco page, specific IP packet could block the interface. 

You can use access-lists to block those packets or upgrade the IOS.


All vulnerable IOS are in the list:

http://www.cisco.com/warp/public/707/cisco-sa-20030717-blocked.shtml

Regards


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73472&t=73471
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Security Advisory: Cisco IOS Interface B [7:73738]

2003-08-14 Thread Charles Church
Check out:

http://www.cisco.com/warp/public/707/cisco-sa-20030717-blocked.shtml

Everything you need to know about it on one page.  It lists the versions
vulnerable and what version for the same train that it's fixed in.  If you
stay in the same train (12.1.5 and 12.1.19 are the same train, as are
12.1.5T and 12.1.15T5), you shouldn't have any problems with hardware
compatibility.  Always check the hardware compatibility matrix before
choosing a URL.  I couldn't find it on CCO, but it's there somewhere.  It's
a tool where you put a check mark next to all the parts of your router -
chassis itself, NMs, PAs, WICs, VICs, etc.  Then it'll tell you what
software is compatible with everything.  I might add that the vulnerability
is easy to do, using Linux or even Windows.  Locked up my home router last
night using NMAP.

Chuck Church
CCIE #8776, MCNE, MCSE
Wam!Net Government Services
13665 Dulles Technology Dr. Ste 250
Herndon, VA 20171
Office: 703-480-2569
Cell: 703-819-3495
[EMAIL PROTECTED]
PGP key: http://pgp.mit.edu:11371/pks/lookup?search=chuck+church&op=index


- -Original Message-
From: Mr piyush shah [mailto:[EMAIL PROTECTED]
Sent: Monday, August 04, 2003 2:51 PM
To: [EMAIL PROTECTED]
Subject: Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4
[7:73471]

Dear all
Recently there was an article on Cisco Security
Advisory which stated that all Cisco routers/switches
having IOS as their operating system,their Interfaces
will be blocked by IPv4 Packets.In this regard,i have
a querry.
Is it that all the router having IOS will be blocked
or certain specific IOS ?
Also they have given fixes at the bottom of that
article which states about access-list,do one need to
go ahead with implementation of these Acess-lists?
Kindly help.
Thanks in advance.

 Piyush




Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html

--

Date: Fri, 8 Aug 2003 07:36:33 GMT
From: "LINSEN Jurgen (BMB)" 
Subject: RE: cisco back to back cable [7:71992]

Sure you're using a cross cable?

- -Original Message-
From: KW S [mailto:[EMAIL PROTECTED]
Sent: Monday, July 07, 2003 6:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2
routers come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This is wat that is label on the cable. Anyway, I try to
connect this cable to the serial interface of the 2 routers...and both
the routers are showing serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out
something.

Please comment..

Regards, kws
 DISCLAIMER 

"This e-mail and any attachment thereto may contain information which is
confidential and/or protected by intellectual property rights and are
intended for the sole use of the recipient(s) named above.
Any use of the information contained herein (including, but not limited to,
total or partial reproduction, communication or distribution in any form) by
other persons than the designated recipient(s) is prohibited.
If you have received this e-mail in error, please notify the sender either
by telephone or by e-mail and delete the material from any computer".

Thank you for your cooperation.

For further information about Proximus mobile phone services please see our
website at http://www.proximus.be or refer to any Proximus agent.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html

--

End of Cisco Certification Digest V2 #2646
**

-
You are currently subscribed to the Cisco Certification Digest.  This
digest contains a companion website at http://www.groupstudy.com.  To
unsubscribe from this list send a message to [EMAIL PROTECTED]
with the body containing:

unsubscribe cisco-digest [EMAIL PROTECTED]

If that does not work, follow the instructions at:
http://www.groupstudy.com/list/help.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73738&t=73738
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Fw: Cisco Security Advisory: Cisco Content Services Switch User Account Vulnerability

2001-04-04 Thread EA Louie

FYI for anyone using the Arrowpoint content delivery switches

- Original Message -
From: "Cisco Systems Product Security Incident Response Team"
<[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Cc: <[EMAIL PROTECTED]>
Sent: Wednesday, April 04, 2001 10:30 AM
Subject: Cisco Security Advisory: Cisco Content Services Switch User Account
Vulnerability


>
>
> -----BEGIN PGP SIGNED MESSAGE-
>
> Cisco Security Advisory: Cisco Content Services Switch User Account
> Vulnerability
> ==
>
> Revision 1.0
>
> For Public Release 2001 April 04 08:00 (UTC -0700)
>
>   
>
> Summary
> ===
>
> The Cisco Content Services (CSS) switch product, also known as Arrowpoint,
> has a security vulnerability in a previous release that allows
> non-privileged users to escalate their privilege level, permitting them
> configuration ability on affected units. This vulnerability can only be
> exercised from a valid user account.
>
> To remove the vulnerability, Cisco is offering free software upgrades to
> revision 4.01B19s for all affected platforms. This defect is documented as
> Cisco bug ID CSCdt32570.
>
> This advisory is available at
> http://www.cisco.com/warp/public/707/arrowpoint-useraccnt-debug-pub.shtml.
>
> Affected Products
> =
>
> The CSS switch is also known as the Arrowpoint product, and runs the Cisco
> WebNS Software.
>
> Cisco CSS 11050, CSS 11150, and CSS 11800 hardware platforms are affected
> by this vulnerability. No other Cisco products are affected by this
> vulnerability.
>
> If the switch is running a version prior to 4.01B19s, then it is affected
> and should be upgraded as soon as possible. You may type version at the
> command line to find out software version number.
>
> Details
> ===
>
> A non-privileged user can issue a series of keystrokes to enter the debug
> mode, and from that mode can gain administrative access.
>
> Impact
> ==
>
> This vulnerability allows a non-privileged user to become a super-user,
> allowing unauthorized access to important files such as the configuration
> files, and directory structure information. If access to the command line
> interface is well protected and restricted, these vulnerabilities are
> minimized.
>
> Cisco Bug ID CSCdt32570 describes this vulnerability.
>
> Software Versions and Fixes
> ===
>
> CSCdt32570 is resolved in version 4.01B19s of Cisco WebNS software.
> Non-privileged users can no longer enter debug mode.
>
> Obtaining Fixed Software
> 
>
> Cisco is offering free software upgrades to eliminate this vulnerability
> for all affected customers.
>
> Customers with contracts should obtain upgraded software through their
> regular update channels. For most customers, this means that upgrades
> should be obtained through the Software Center on Cisco's Worldwide Web
> site at http://www.cisco.com. Specifically, this fix can be found at
> http://www.cisco.com/cgi-bin/tablebuild.pl/webns. Customers whose Cisco
> products are provided or maintained through prior or existing agreement
> with third-party support organizations such as Cisco Partners, authorized
> resellers, or service providers should contact that support organization
> for assistance with the upgrade, which should be free of charge.
>
> Customers without contracts should get their upgrades by contacting the
> Cisco Technical Assistance Center (TAC). TAC contacts are as follows:
>
>* +1 800 553 2447 (toll-free from within North America)
>* +1 408 526 7209 (toll call from anywhere in the world)
>* e-mail: [EMAIL PROTECTED]
>
> See http://www.cisco.com/warp/public/687/Directory/DirTAC.shtml for
> additional TAC contact information, including instructions and e-mail
> addresses for use in various languages.
>
> Give the URL of this notice as evidence of your entitlement to a free
> upgrade. Free upgrades for non-contract customers must be requested
through
> the TAC. Please do not contact either "[EMAIL PROTECTED]" or
> "[EMAIL PROTECTED]" for software upgrades.
>
> Workarounds
> ===
>
> Access control lists can be applied to restrict access to the Cisco CSS
> device, as well as additional firewall or access lists to restrict
> connection to the management interface. Access control lists also affect
> traffic to the Virtual interface of the Cisco CSS device, so must be
> applied with care. For further details on configuring access lists, please
> refer to the product documentation:
>
&

Re: Cisco Security Advisory: Cisco IOS BGP Attribute Corruption [7:4409]

2001-05-14 Thread MIRSKY Carl

Have any of you seen this or run into it?  

http://www.cisco.com/warp/public/707/ios-bgp-attr-corruption-pub.shtml

"Put yer seat belt on, I wanna try somethin'. I saw it in a cartoon once and
I'm pretty sure it'll work !" 
   , 
  /'^ ^'\
 ((o)-(o))
--oOOO--(_)--OOOo-
Carl Mirsky CCNP,CCDP,MCSE,SCSA
Technical Solutions Architect
Covansys ( www.covansys.com )
1750 E. Golf Rd. #1100
Schaumburg, IL  60173
E-mail: [EMAIL PROTECTED]
Ph: 847-969-3054
Fax: 847-969-6999
  .oooO  
(   )  Oooo. 
-\ (---(   )---
  \_)   ) / 
   (_/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=4409&t=4409
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



FW: Cisco Security Advisory: Cisco Secure Access Control Server [7:34813]

2002-02-07 Thread Daniel Cotts

For those not on the security mailing list.

-Original Message-
From: Cisco Systems Product Security Incident Response Team
[mailto:[EMAIL PROTECTED]] 
Sent: Thursday, February 07, 2002 10:30 AM
To: [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: Cisco Security Advisory: Cisco Secure Access Control Server
Novell Directory Service Expired/Disabled User Authentication
Vulnerability


-BEGIN PGP SIGNED MESSAGE-

Cisco Security Advisory:  Cisco Secure Access Control Server Novell
Directory Service Expired/Disabled User Authentication Vulnerability
==

Revision 1.0

For Public Release 2002 February 07 08:00 (UTC -0800)

  

Summary
===

Specific versions of Cisco Secure Authentication Control Server (ACS)
allows authentication of users that have been explicitly disabled or
expired in the Novell Directory Services (NDS).  There is a software patch
that may be applied, and software upgrades will also address this problem.

The complete notice will be available at
http://www.cisco.com/warp/public/707/ciscosecure-acs-nds-authentication-vuln
-pub
.shtml
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Specialist 1: To self-study or [7:54767]

2002-10-03 Thread Doug Oh

Clearly, you cannot do DMZ scenarios, or get a real feel for multiple
security levels.  Also hot standby is not allowed.  However, that said, it
is completely compatible with the larger units' IOS, allowing you to use the
current version and get hands-on feel for how it differs from the
conventional IOS (and how it is evolving to minimize those differences, for
that matter).  It also supports VPN, the standard gui config tool and other
goodies.  It was enough for me.

Another option might be the FrankenPIX, although I have never personally
attempted that.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=54785&t=54767
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Security Specialist 1: To self-study or [7:54767]

2002-10-06 Thread MikeS

The frankenpix is very doable and easy to set up.. once you have the flash
:)  I have a 501 and a FP in my lab.

Go to www.packetattack.com/tutorials.html and choose frankenpix tutorial

MikeS


""Doug Oh""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Clearly, you cannot do DMZ scenarios, or get a real feel for multiple
> security levels.  Also hot standby is not allowed.  However, that said, it
> is completely compatible with the larger units' IOS, allowing you to use
the
> current version and get hands-on feel for how it differs from the
> conventional IOS (and how it is evolving to minimize those differences,
for
> that matter).  It also supports VPN, the standard gui config tool and
other
> goodies.  It was enough for me.
>
> Another option might be the FrankenPIX, although I have never personally
> attempted that.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=54971&t=54767
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 [7:73471]

2003-08-04 Thread Mr piyush shah
Dear all
Recently there was an article on Cisco Security
Advisory which stated that all Cisco routers/switches
having IOS as their operating system,their Interfaces
will be blocked by IPv4 Packets.In this regard,i have
a querry.
Is it that all the router having IOS will be blocked
or certain specific IOS ?
Also they have given fixes at the bottom of that
article which states about access-list,do one need to
go ahead with implementation of these Acess-lists?
Kindly help.
Thanks in advance.

 Piyush




Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73471&t=73471
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 [7:73470]

2003-08-04 Thread Mr piyush shah
Dear all
Recently there was an article on Cisco Security
Advisory which stated that all Cisco routers/switches
having IOS as their operating system,their Interfaces
will be blocked by IPv4 Packets.In this regard,i have
a querry.
Is it that all the router having IOS will be blocked
or certain specific IOS ?
Also they have given fixes at the bottom of that
article which states about access-list,do one need to
go ahead with implementation of these Acess-lists?
Kindly help.
Thanks in advance.

 Piyush




Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73470&t=73470
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Security Advisory: Cisco IOS Interface Blocked by [7:73474]

2003-08-04 Thread Eyabane Patasse
Piyush,
the answer to your question is YES. you better implement this fix before 
your router gets attacked. the access list implementation consists in 
blocking protocols 53(swipe), 55 (IP Mobility), 77 (Sun ND), and 103 (PIM) 
from cloging up you interface queues. the advisory was pretty straight 
forward.


>From: "Mr piyush shah" 
>Reply-To: "Mr piyush shah" 
>To: [EMAIL PROTECTED]
>Subject: Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 
>[7:73470]
>Date: Mon, 4 Aug 2003 11:50:57 GMT
>
>Dear all
>Recently there was an article on Cisco Security
>Advisory which stated that all Cisco routers/switches
>having IOS as their operating system,their Interfaces
>will be blocked by IPv4 Packets.In this regard,i have
>a querry.
>Is it that all the router having IOS will be blocked
>or certain specific IOS ?
>Also they have given fixes at the bottom of that
>article which states about access-list,do one need to
>go ahead with implementation of these Acess-lists?
>Kindly help.
>Thanks in advance.
>
>  Piyush
>
>
>
>
>Send free SMS using the Yahoo! Messenger. Go to
>http://in.mobile.yahoo.com/new/pc/
>**Please support GroupStudy by purchasing from the GroupStudy Store:
>http://shop.groupstudy.com
>FAQ, list archives, and subscription info: 
>http://www.groupstudy.com/list/cisco.html

_
The new MSN 8: advanced junk mail protection and 2 months FREE*  
http://join.msn.com/?page=features/junkmail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73474&t=73474
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Security Advisory: Cisco IOS Interface Blocked by [7:73707]

2003-08-14 Thread George Murage
The Advisory affects *ALL* routers and switches running IOS versions below
12.3

The access-lists are a work-around / stop-gap measure until you upgrade your
IOS to a release that has a fix for the vulnerability. However, with what I
have seen and heard over the last few weeks, use the access-lists and
*don't* upgrade your IOS without proper planning. I have seen some
overzealous network engineers crash their routers by loading the wrong IOS
for the hardware(DRAM/Flash) they currently have.

HTH
George Murage


-Original Message-
From: Mr piyush shah [mailto:[EMAIL PROTECTED] 
Sent: Monday, August 04, 2003 2:51 PM
To: [EMAIL PROTECTED]
Subject: Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4
[7:73471]

Dear all
Recently there was an article on Cisco Security
Advisory which stated that all Cisco routers/switches
having IOS as their operating system,their Interfaces
will be blocked by IPv4 Packets.In this regard,i have
a querry.
Is it that all the router having IOS will be blocked
or certain specific IOS ?
Also they have given fixes at the bottom of that
article which states about access-list,do one need to
go ahead with implementation of these Acess-lists?
Kindly help.
Thanks in advance.

 Piyush




Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73707&t=73707
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Code Red impact on Cisco products - FW: [I] Cisco Security [7:13162]

2001-07-20 Thread Leigh Anne Chisholm

I received this email from one of the SE's in Cisco's Calgary office.  Code
Red may impact certain Cisco products.

Both Cisco and Microsoft are advertising a fix (details are included below).

-Original Message-
Most of you have probably seen the Code Red worm affecting Microsoft IIS.

As some Cisco software uses Microsoft IIS for the underlying Operating
System, please read the field alert to see if you are running the following
Cisco products listed below.  Please contact your local Cisco SE for help.

http://www.cisco.com/warp/public/707/cisco-code-red-worm-pub.shtml


Cisco Security Advisory: "Code Red" Worm - Customer Impact

Revision 1.0

For Public Release 2001 July 20 12:00

Summary

A malicious self-replicating program known as the "Code Red" worm is
targeted at systems running the Microsoft Internet Information Server
(IIS). Several Cisco products are installed or provided on targeted
systems. Additionally, the behavior of the worm can cause problems for
other network devices.

The following Cisco products are vulnerable because they run affected
versions of Microsoft IIS:

 Cisco CallManager
 Cisco Unity Server
 Cisco uOne
 Cisco ICS7750

Other Cisco products may also be adversely affected by the "Code Red" worm.
Please see the Affected Products section for further details.

The worm and its effects may be remedied by applying the Microsoft patch to
affected servers:
http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/
bulletin/MS01-033.asp.

This advisory is available at
http://www.cisco.com/warp/public/707/cisco-code-red-worm-pub.shtml.

Affected Products

The following Cisco products are directly vulnerable because they run
affected versions of Microsoft IIS:

 Cisco CallManager
 Cisco Unity Server
 Cisco uOne
 Cisco ICS7750
 Cisco Building Broadband Service Manager

Other Cisco products may be indirectly affected by the IIS vulnerability
(this is not an exhaustive list):

 Cisco 600 series of DSL routers that have not been patched per the
Cisco Security Advisory,
http://www.cisco.com/warp/public/707/CBOS-multiple.shtml, will stop
forwarding traffic when scanned by a system infected by the "Code Red"
worm. The power must be cycled to restore normal service.

 Cisco Network Management products are not directly affected, but they
might be installed on a Microsoft platform running a vulnerable version of
IIS.

Details

The "Code Red" worm exploits a known vulnerability in Microsoft IIS by
passing a specially crafted Uniform Resource Identifier (URI) to the
default HTTP service, port 80, on a susceptible system. The URI consists of
binary instructions which cause the infected host to either begin scanning
other random IP addresses and pass the infection on to any other vulnerable
systems it finds, or launch a denial of service attack targeted at the IP
address 198.137.240.91 which, until very recently, was assigned to
www.whitehouse.gov. In both cases, the worm replaces the web server's
default web page with a defaced page at the time of initial infection.

The worm does not check for pre-existing infection, so that any given
system may be executing as many copies of the worm as have scanned it, with
a compounding effect on system and network demand.

As a side-effect, the URI used by the worm to infect other hosts causes
Cisco 600 series DSL routers to stop forwarding traffic by triggering a
previously-published vulnerability. Any 600 series routers scanned by the
"Code Red" worm will not resume normal service until the power to the
router has been cycled.

The nature of the "Code Red" worm's scan of random IP addresses and the
resulting sharp increase in network traffic can noticeably affect Cisco
Content Service Switches and Cisco routers running Cisco IOS software,
depending on the device and its configuration. Unusually high CPU
utilization and memory starvation may occur.

Impact

The "Code Red" worm is causing widespread denial of service on the Internet
and is compromising large numbers of vulnerable systems. Once infected, the
management of a Cisco CallManager product is disabled or severely limited
until the defaced web page is removed and the original management web page
is restored.

Software Versions and Fixes

Microsoft has made a patch available for affected systems at .

Cisco is providing the same patch at
http://www.cisco.com/pcgi-bin/Software/Tablebuild/doftp.pl?ftpfile=cisco/voi
ce/callmgr/win-IIS-SecurityUpdate-2.exe&swtype=FCS&code=&size=246296.

Documentation is available at
http://www.cisco.com/pcgi-bin/Software/Tablebuild/doftp.pl?ftpfile=cisco/voi
ce/callmgr/win-IIS-SecurityUpdate-Readme-2.htm&swtype=FCS&code=&size=4541.

The Cisco Building Broadband Service Manager is documented separately at
http://www.cisco.com/univercd/cc/td/doc/product/aggr/bbsm/bbsm50/urgent.

Cisco Security Specialist 1: To self-study or not to [7:54756]

2002-10-02 Thread Eric Mwambaji

I am interested in pursuing the CSS1 designation. Can
anyone tell me if this cert is a bear without the
necessary training. 

There is a slight chance I may be able to get my
employer to spring for the classes but I need to find
out more before I start 'pulling teeth'.

I have self-studied up to the CCNP level but I'm not
sure I'll be able to get to all gear I need for this
cert. Any input is appreciated.

Thanks
Eric CCNP

__
Do you Yahoo!?
New DSL Internet Access from SBC & Yahoo!
http://sbc.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=54756&t=54756
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Specialist 1: To self-study or not [7:54756]

2002-10-02 Thread Doug Oh

I completed this by self-study, and a moderate lab (3 routers at the time, a
couple of PCs and the PIX 501).  This sufficed for all but the IDS exam. 
For that, I built a FrankenIDS machine and created a Cisco Security Policy
Manager to experiment/practice with.   This allowed me to get a feel for
that technology, although I would not recommend trying that exam without
some sort of lab work.  HTH


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=54761&t=54756
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Specialist 1: To self-study or not to [7:54767]

2002-10-02 Thread Kaminski, Shawn G

I've heard on this list that a PIX 501 should be enough for the CSS1 cert
because all you need are two interfaces to learn what is needed. I believe
this is correct, but double-check the archives to make sure.

Shawn K.

> -Original Message-
> From: Eric Mwambaji [SMTP:[EMAIL PROTECTED]]
> Sent: Wednesday, October 02, 2002 4:35 PM
> To:   [EMAIL PROTECTED]
> Subject:  Cisco Security Specialist 1:  To self-study or not to
> [7:54756]
> 
> I am interested in pursuing the CSS1 designation. Can
> anyone tell me if this cert is a bear without the
> necessary training. 
> 
> There is a slight chance I may be able to get my
> employer to spring for the classes but I need to find
> out more before I start 'pulling teeth'.
> 
> I have self-studied up to the CCNP level but I'm not
> sure I'll be able to get to all gear I need for this
> cert. Any input is appreciated.
> 
> Thanks
> Eric CCNP
> 
> __
> Do you Yahoo!?
> New DSL Internet Access from SBC & Yahoo!
> http://sbc.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=54767&t=54767
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Security Specialist 1: To self-study or not to [7:54780]

2002-10-03 Thread [EMAIL PROTECTED]

Hi,

As usual, if you have chance to practice hand-ons alot, you may pass with
self-study and vice versa.



Regards,
Leonard Ong, CISSP, CSS-1, CCSE, MCSE, 
 MCDBA, CCNP, CCDP, NSA, LCP
Network Security Specialist, APAC
NOKIA

Email.  [EMAIL PROTECTED]
Mobile. +65 9431 6184
Phone.  +65 6723 1724
Fax.+65 6723 1596




-Original Message-
From: ext Eric Mwambaji [mailto:[EMAIL PROTECTED]]
Sent: Thursday, October 03, 2002 4:35 AM
To: [EMAIL PROTECTED]
Subject: Cisco Security Specialist 1: To self-study or not to [7:54756]


I am interested in pursuing the CSS1 designation. Can
anyone tell me if this cert is a bear without the
necessary training. 

There is a slight chance I may be able to get my
employer to spring for the classes but I need to find
out more before I start 'pulling teeth'.

I have self-studied up to the CCNP level but I'm not
sure I'll be able to get to all gear I need for this
cert. Any input is appreciated.

Thanks
Eric CCNP

__
Do you Yahoo!?
New DSL Internet Access from SBC & Yahoo!
http://sbc.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=54780&t=54780
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]