Cisco IOS Specifics and Security

This chapter covers the CCIE Cisco IOS specifics topic area. Unfortunately, the blueprint does not detail the exact requirements, and "Cisco IOS" in general could mean the entire range of topics. Thus, this chapter covers topics that are actually possible topics on the written exam and that are common to the routing and switching blueprint. This chapter covers routing and switching blueprint objectives together with the security blueprint objectives. The CCIE technical teams generally gather the test questions from a common pool available to any CCIE track.

This chapter covers the following topics:

■ Cisco Hardware—Covers the hardware components on a Cisco router, namely the System Flash, nonvolatile RAM (NVRAM), and how files are saved to and from a TFTP server.

■ show and debug Commands—Presents the most common show and debug commands used on Cisco routers to manage an IP network.

■ Password Recovery—Describes how password recovery is completed on Cisco IOS routers.

■ Basic Security on Cisco Routers—Reviews some commands used to ensure that Cisco routers are secured with basic passwords.

■ IP Access Lists—Covers both standard and extended IP access lists and their formats.

■ Layer 2 Switching Security—Introduces MAC address controls, port security on Cisco switches, and Dynamic Host Configuration Protocol (DHCP) security options.

■ Security Policy Best Practices: A Cisco View—Takes a brief look at Cisco-recommended best practices for developing a security policy.

