Please review the Lab Exam Overview
for general information about the CCIE Security lab exam. This lab exam blueprint v2.0 is a detailed outline of the
topics likely to appear on the lab exam effective January 2, 2007. Knowledge of troubleshooting is an
important skill and candidates are expected to diagnose and solve issues as part of the
CCIE lab exam. The topics listed are guidelines and other relevant or related topics may
also appear.
Candidates for lab exams scheduled on January 2, 2007 or later
should prepare using the v2.0 blueprints below. In general, new product features become eligible for testing on CCIE lab exams six months after general release.
Network Admission Control (NAC Framework solution)
802.1x
Advanced Features
Advanced Security
Mitigation Techniques
Packet Marking Techniques
Security RFCs (RFC1918, RFC2827, RFC2401)
Service Provider Security
Black Holes, Sink Holes
RTBH Filtering (Remote Triggered Black Hole)
Traffic Filtering using Access-lists
NAT
TCP Intercept
uRPF
CAR
NBAR
NetFlow
Flooding
Spoofing
Policing
Fragmentation
Sniffer Traces
Catalyst Management and Security
Traffic Control and Congestion Management
Catalyst Features and Advanced Configuration
IOS Security Features
Network Attacks
Network Reconnaissance
IP Spoofing Attacks
MAC Spoofing Attacks
ARP Spoofing Attacks
Denial of Service (DoS)
Distributed Denial of Service (DDoS)
Man-in-the-Middle (MiM) Attacks
Port Redirection Attacks
DHCP Attacks
DNS Attacks
Fragment Attacks
Smurf Attacks
SYN Attacks
MAC Attacks
VLAN Hopping Attacks
Other Layer2 and Layer3 Attacks
Preparation Materials
The materials listed below can be helpful in preparing for exams. The list is only suggested,
however, and other books or resources may also cover the same topics.