| Section |
Weight |
Objectives |
| Automation and Programmability |
15% |
– Cisco DNA Center
- 1. Device discovery and provisioning
- 2. DNA Center APIs
- 3. Intent-based networking concepts
– Configuration Management
- 1. DHCP, DNS automation
- 2. Configuration backup and restore
- 3. Python EEM (Embedded Event Manager)
– Automation Concepts
- 1. Ansible, Puppet, Chef basics
- 2. REST API basics
- 3. Python programming (scripts, modules)
- 4. JSON, XML data formats
|
| IP Connectivity |
20% |
– Path Control
- 1. PBR (Policy-Based Routing)
- 2. IP SLA tracking
- 3. Fallback routing
– Switching
- 1. Layer 2 switching fundamentals
- 2. VLAN, VTP, DTP
- 3. EtherChannel (LACP, PAgP)
- 4. SPAN, RSPAN, ERSPAN
- 5. STP (802.1D, RPVST+, MSTP)
– Layer 3 Routing
- 1. Route maps, prefix lists, ACLs
- 2. EIGRP (feasible successors, variance)
- 3. BGP (iBGP, eBGP, route maps, prefix lists)
- 4. Route redistribution
- 5. OSPF (multi-area, stub, NSSA, virtual links)
|
| Architecture |
15% |
– Network Architecture
- 1. WAN architecture (VPN, DMVPN, SD-WAN)
- 2. Campus LAN design (two-tier, three-tier)
- 3. Design principles (hierarchy, modularity, resilience)
- 4. Wireless architecture (controller-based, fabric, SD-Access)
- 5. Data center architecture
– Network Programmability
- 1. NETCONF, YANG
- 2. SDN architectures (APIC-EM, DNA Center)
- 3. REST APIs
– Virtualization
- 1. VRF (Virtual Routing and Forwarding)
- 2. LISP, L2TP, PPPoE
- 3. VXLAN (Virtual Extensible LAN)
- 4. VRF-Lite
|
| IP Services |
15% |
– NAT and DHCP
- 1. DHCP Snooping
- 2. Static NAT, Dynamic NAT, PAT
- 3. DHCP server and relay
– Quality of Service (QoS)
- 1. WRED, DSCP
- 2. Queuing (LLQ, CBWFQ)
- 3. Shaping and policing
- 4. QoS models (IntServ, DiffServ)
- 5. Classification and marking
– Additional Services
- 1. AAA (local, TACACS+, RADIUS)
- 2. FTP, TFTP
- 3. SNMP monitoring
- 4. HTTP, HTTPS
- 5. NTP (time synchronization)
|
| Network Assurance |
15% |
– Network Monitoring
- 1. Syslog
- 2. SPAN, RSPAN, ERSPAN
- 3. IP SLA
- 4. SNMP v2c, v3
- 5. NetFlow, Flexible NetFlow
– Diagnostic Methodology
- 1. 6-step troubleshooting methodology
- 2. Root cause analysis
– Debugging and Troubleshooting
- 1. VLAN, STP, EtherChannel
- 2. Routing protocol verification
- 3. Layer 2/3 troubleshooting
- 4. Debug commands
|
| Security Foundations |
20% |
– Advanced Security
- 1. uRPF (Unicast Reverse Path Forwarding)
- 2. IPv6 First-Hop Security (RA Guard, DHCPv6 Guard)
- 3. CAPWAP, AP join process
- 4. WPA2, WPA3 (Wireless Security)
– Device Security
- 1. Switch security hardening
- 2. Control plane protection
- 3. Layer 2 security (Port Security, DHCP Snooping, DAI)
- 4. Management plane security
– Network Security
- 1. 802.1X (Port-Based NAC)
- 2. MACsec, IPsec
- 3. IPv6 ACLs
- 4. Access Control Lists (ACLs)
- 5. AAA (Authentication, Authorization, Accounting)
|
Leave a Reply