This document describes the Cisco technologies, tools, and tested solutions for providing security in the
enterprise data center. This document is intended for network design engineers, network architects, and network support engineers who are responsible for planning, designing, implementing, and operating enterprise data center networks.
The information in this guide applies to the following ASA 5500 series adaptive security appliance
models: ASA 5505, ASA 5510, ASA 5520, ASA 5540, and ASA 5550. In this guide, references to
“Cisco ASA 5500 series adaptive security appliance” and “adaptive security appliance” apply to all models
unless specifically noted otherwise.
This book is designed to provide information about the Cisco CCNP Switching Exam #640-504. Every effort has been
made to make this book as complete and as accurate as possible, but no warranty or ﬁtness is implied.
The information is provided on an “as is” basis. The author, Cisco Press, and Cisco Systems, Inc. shall have neither lia-
bility nor responsibility to any person or entity with respect to any loss or damages arising from the information con-
tained in this book or from the use of the discs or programs that may accompany it.
I would like to express my gratitude to all those who gave me the possibility to complete this industry
practice. I want to thank the Faculty of Information Technology of Hanoi University for giving me permission
to commence this industry practice. I have furthermore to thank the Dr Tran Quan Anh- the instructor
of this course -who gave and confirmed this permission and encouraged me to go ahead with my
Welcome to the exciting world of Cisco certification! You have picked up this book because
you want something better; namely, a better job with more satisfaction. Rest assured that you
have made a good decision. Cisco certification can help you get your first networking job, or
more money and a promotion if you are already in the field.
Cisco certification can also improve your understanding of the internetworking of more
than just Cisco products: You will develop a complete understanding of networking and how
different network topologies work together to form a network.
Use the following table to find the installation and configuration steps that are
required for your implementation of the Cisco ASA 5500 series adaptive security
The adaptive security appliance implementations included in this document are as
The Cisco ASA 5550 adaptive security appliance is designed to deliver maximum
throughput when configured according to the guidelines described in this chapter.
The Cisco® Networking Academy® course on CCNA® Security provides a next step for students who
want to expand their CCNA-level skill set to prepare for a career in network security. The CCNA
Security course also prepares students for the Implementing Cisco IOS® Network Security (IINS)
certification exam (640-553), which leads to the CCNA Security certification.
The CCNA Security Lab Manual provides you with all 11 labs from the course designed as hands-on
practice to master the knowledge and skills needed to prepare for entry-level security specialist careers....
This software configuration guide provides instructions for using the Cisco command-line interface (CLI) to configure features of the following Cisco 1800 series integrated services fixed-configuration routers: •Cisco 1801, Cisco 1802, and Cisco 1803 DSL Access Routers •Cisco 1811 and Cisco 1812 Ethernet Access Routers
This preface describes the intended audience, the organization of this guide, and the text and command conventions used throughout the guide. The preface includes the following topics:...
This preface describes the purpose, intended audience, organization, and notational
conventions for the Cisco IP Telephony QoS Design Guide. This document serves as an implementation guide for Voice over IP (VoIP)
networks based on Cisco AVVID (Architecture for Voice, Video and Integrated
Data). The goal of this document is to provide a blueprint for implementing the
end-to-end Quality of Service (QoS) that is required for successful deployment of
Cisco AVVID solutions in today’s enterprise environment....
ATM is a packet-switched technology based on a 53-byte packet called a cell. Each
cell is divided into a 5-byte header and a 48-byte payload. The short, fixed length
cell reduces delay and jitter, allowing time sensitive information such as voice and
video to be transported along with data. There are various transmission media and
rates available with bandwidth measured in megabits to gigabits.
This preface describes the purpose, intended audience, organization, and conventions
for the Cisco IP Telephony Network Design Guide. This document serves as an implementation guide for Cisco AVVID (Architecture
for Voice, Video and Integrated Data) networks based on Cisco CallManager
Release 3.0(5). With such a high level of industry interest regarding IP telephony,
customers are aggressively pursuing Cisco solutions for both large and small
networks. Solutions based on Cisco CallManager Release 3.0(5) allow Cisco to
deliver large-scale IP telephony systems with many capabilities....
What is Included in this DG Release?
This design guide (DG) provides guidelines for designing and building the data center switching
Table 1 lists the technologies used in the data center infrastructure design documented in version 2 of
this design guide. This table provides a quick glance of the topics and lists the timeframe (current or
future) of documentation availability for each technology.
This document provides system-level best practices and design guidance for the Cisco Unified Contact
Center Express (Unified CCX), Release 6.0. With proper planning, design, and implementation, Unified
CCX provides a reliable and flexible voice processing and contact center solution for the enterprise. This design guide is intended for the system architects, designers, engineers, and Cisco channel partners who want to apply best design practices for Unified CCX.
Deploy the required Cisco products and servieces that enable connectivity and traffic transport, given a network design that include multilayer switching over various Ethernet technologies. Implement the necessary services at each layer of the network to allow user to obtain service in a working multilayer switched network