Google Links

Follow the links below to find material targeted to the unit's elements, performance criteria, required skills and knowledge

Elements and Performance Criteria

  1. Assess the security threats facing network Infrastructure
  2. Secure edge devices (routers)
  3. Implement authentication, authorisation and accounting (AAA) and secure access control system (ACS)
  4. Mitigate threats to routers and networks using access control lists (ACLs)
  5. Implement secure network management and reporting
  6. Mitigate common layer 2 attacks
  7. Implement the router OS firewall-feature set
  8. Implement the intrusion detection and prevention system (IDPS) feature set in the router OS using secure device manager (SDM)
  9. Implement site-to-site virtual private networks (VPNs) using SDM

Knowledge Evidence

To complete the unit requirements safely and effectively, the individual must:

summarise access control lists, configuration and troubleshooting

outline authentication protocols

explain encryption techniques

explain intrusion detection system (IDS) and intrusion prevention system (IPS)

clarify internet protocol (IP) and networking models

explain current wireless regulations, standards and certifications

describe local area network (LAN) or wide area network (WAN) implementations

summarise malicious attacks and prevention techniques

outline network management tools

explain network security prevention methods

explain procedures to configure, verify and troubleshoot:

switch with virtual local area networks (VLANs) and inter-switching communications

router

outline procedures to set up virtual private networks (VPNs)

explain routing protocols

explain threat and attack mitigation techniques

outline the use of command line interface to configure and test network elements

describe the common features of Terminal Access Controller Access-Control System Plus(TACACS+) and Remote Authentication Dial In User Service (RADIUS) authentication, authorisation and accounting (AAA) protocols.