Certified Wireless Security Professional Class
This course targets experienced networking professionals who
wish to gain critical skills in wireless networking security,
including how hackers attack networks and the means for preventing
them from doing so. With the burgeoning growth of wireless LAN
installations, all IT professionals must become knowledgeable
about security, and wireless security in particular. LAN Security,
the preparation course for the CWSPª certification, teaches
students the necessary skills for implementing and managing
wireless security in the enterprise by creating layer2 and layer3
hardware and software solutions with tools from industry leading
manufacturers.
Class Duration: The class consists of 40 hours
of hands on learning using the latest enterprise wireless LAN
security and auditing equipment. This class addresses in detail
Wireless LAN Intrusion, Security Policy, and Security Solutions.
SUMMER SALE! Get the EXAM VOUCHER AND PRACTICE TEST
included in your class fee!
Class Fee: $2,495
Time: 8:30am - 5pm
Learning Level: Advanced
CPE Credits: 40
Prerequisites: You should have TCP/IP and Certified Wireless
Network Administrator (CWNA)
Request
Class Dates or In-House Training of Classes.
Too much information doesn't have to overwhelm your learning
progress. The CWNP Learning Center allows you to quickly and
easily locate the information that is most important to you.
To help you find things fast about wireless, they have organized
over 1000 white papers, webcasts, and case studies into 55 categories.
And best of all, its all free! http://www.cwnp.com/learning_center/index.html
All attendees receive hands-on experience configuring, testing,
and implementing a broad variety of layer2 and layer3 wireless
security solutions using hardware and software from the following
vendors:
* BlueSocket
* Colubris Networks
* Cisco Systems
* Fortress Technologies
* Intermecv
* Roving Planet
* Proxim
* Symbol Technologies
* Funk Software
* Microsoft
* TamoSoft
* Zoom Telephonics
* SafeNet
* System Tools
* Van Dyke Software
* WildPackets
* IPSwitch
* Young Design
The Wireless LAN Security class is 40 hours of instructor-led
study, incorporating both lecture and hands-on labs. The lab
exercises consume more than 80% of the class time, providing
thorough hands-on training and escalating technical workshops
for all attendees.
Certification: This class may be used - and
is the ideal track - for preparing students for the Certified
Wireless Security Professionalª exam (exam # PW0-200), which
is delivered at all Prometric Testing Centers worldwide. The
CWSP certification is the first vendor neutral security certification
that focuses solely on testing the IT professional's knowledge
of securing enterprise wireless LAN solutions.
Hands-on Lab Exercises
These are the actual labs taught in the Wireless LAN Security
Course:
* Packet Analysis & Spoofing
* Rogue Hardware & Default Settings
* RF Jamming & Data Flooding
* Information Theft
* Wireless Hijacking and DoS Attacks
* Access Point VPNs
* Scalable Wireless VPN Solutions
* EAP - Cisco Wireless (LEAP)
* Layered Wireless Security
* Wireless Bridging Security
* 802.1x and EAP-TTLS
* SSH2 Tunneling & Local Port Redirection
Class Outline
The following list contains the materials covered in the lecture
portion of the course.
Risk Assessment
* Assets to protect
* Threats to protect against
* Legal protection
* Costs
* Basic security measures
* Threat analysis
* Impact analysis
Threat Analysis & Hacking Methodology
* Target profiling
* Physical security
* Social engineering
* Wireless bridges
* Packet analysis
* Information theft
* Malicious data insertion
* Denial of Service (DoS)
* Peer-to-peer hacking
* Unauthorized control
Rudimentary Security Measures
* SSID
* MAC filters
* Static WEP
* Default configurations
* Firmware upgrades
* Physical security
* Periodic inventory
Intermediate Security Measures
* Rogue equipment
* Cell sizing
* Protocol filters
* SNMP
* Discovery protocols
* Wireless segment configuration
* Remove vulnerabilities
* Client security
* IP Services
Advanced Security Measures
* Wireless security policy
* Authentication & encryption
* Wireless DMZ and VLANs
* Audits
* Traffic pattern analysis
* Authenticated DHCP
Wireless LAN Auditing Tools
* Discovery tools
* Password crackers
* Share enumerators
* Network management
and control
* Wireless protocol analyzers
* Manufacturer defaults
* Password sniffers
* Antennas and WLAN equipment
* OS fingerprinting and
port scanning
* Application sniffers
* Networking utilities
* Network discovery and management
* Hijacking users
* RF Jamming and
Dataflooding tools
* WEP crackers
Hardware & Software Solutions
* RADIUS with AAA Support
* RADIUS Details
* Kerberos
* Static and Dynamic WEP and TKIP
* 802.1x
* Extensible Authentication Protocol (EAP)
* VPNs
* Encryption Schemes
* Routers
* Switch-Routers
* Firewalls
* MobileIP VPN Solutions
* Enterprise Wireless Gateways
* Switches, VLANs, & Hubs
* SSH2 Tunneling & Port Redirection
* Thin Client Solutions
Prevention & Countermeasures
* 802.1x
* 802.11i
* TKIP
* AES
* Intrusion detection
* US Federal and state laws
Implementation and Management
* Design and implementation
* Equipment configuration and placement
* Interoperability and layering
* Security management
Daily Schedule
When the course is taught over a 5-day period, the below schedule
outlines which topics are covered each day.
Discussion Topics Lab Exercises
Day 1
* Auditing Tools
* Information Gathering
* Unauthorized Access
* Denial of Service
* Packet analysis & spoofing
* Rouge hardware & default settings
* RF jamming & data flooding
Day 2
* Legislation
* General Policy
* Functional Policy
* Information theft
* Wireless hijacking and DoS attacks
Day 3
* Solution Considerations
* Encryption Types
* Layer 2 Solutions
* 802.11i / WPA
* LEAP
* 802.1x & EAP-TTLS
* Wireless bridging security
Day 4
* Layer3 solutions
* Segmentation Devices
* Access point VPNs
* SSH2 tunneling & port redirection
Day 5
* Additional Solutions
* Authentication Types
* Scalable wireless VPNs
* Layered wireless security
*Class fees are subject to change
Request
Class Dates or In-House Training of Classes.