Advanced Network Security

Expert Training:

Duration: 3 days

Requirements: Basic knowlege of networks and TCP/IP

Description:

This course is about the realisation of IT Security in the level of network-infrastructure. Usually Security is implemented at single points of a network (eg. at firewalls or on important servers). The perspective from an network-infrastructure often is uncared-for. The growing complexity of network-structures brings along many risks for secure traffic and high availability. You will learn what kind of dangers there are on a network level and how efficient security-measures can be implemented.
Our trainers have many years of experience in different provider-environments and in managing big enterprise networks – run them secure.

Content:

  • Security-problems on a topology-level
  • Typical security-problems of Ethernet: Sniffing, ARP Interception, Man-in-the-Middle Attacks
  • Wireless LANs: Attacks and Countermeasures, Uptodate technology
  • ATM-Security
  • Security in Enterprise Networking
  • VLANs and Security-aspects, VLAN-Hopping, VLANs with authentification
  • Control Plane Protocols: Spanning Tree, CDP, HSRP, VTP, DTP
  • Security of routing protocols: RIP, OSPF, EIGRP
  • WAN/Remote Access: GRE, IPsec, Attacks against VPNs, secure configuration of BGP
  • Security of network-devices: services, functions, modules, access control (RADIUS, TACACS+, Kerberos), port security
  • Secure Management: security problems of SNMP, alternatives?(SNMPv3, SNMP via IPsec), Logging & Log-Analyse, NTP
  • New Technologies:
  • MPLS: basics & security functions, VPNs with MPLS
  • Voice over IP: security aspects and attacks, isolating VoIP using MPLS
  • Multicast: securing Multicast-Traffic, Multicast vs. IPsec, new approaches (SRTP et.al.)

Maximum number of participants: 8

Current workshops
06. - 08.09.2010
20. - 22.10.2010
29.11. - 01.12.2010

Please contact us if you have further questions.


TROOPERS11 takes place from 14-18. March 2011 at Heidelberg. Mark your calendars now and sign up for the official TROOPERS newsletter to stay up-to-date. [More]
Testing IT security is one of the core competences of ERNW. Many of our customers get their IT infrastructure and (Web) applications checked on a regular basis. This may either be done on a very technical level in terms of penetration testing or in a more formal way in terms of general security audits, during which we verify the IT Security Compliance of your company compared to best practices according to ISO17799/ISO27001 ... [More]
Research is the foundation of our Know-How leadership. The objections of this work is to unveil security flaws and vulnerabilities in protocols, technologies and products. Some findings derive from design-flaws, some from poor implementation on a technical level.... [More]