Introduction |
|
xxiii | |
|
|
|
Chapter 1 Understanding Layer 2 |
|
|
1 | (58) |
|
|
3 | (1) |
|
|
4 | (3) |
|
|
7 | (2) |
|
Dynamic Trunking Protocol (DTP) |
|
|
9 | (2) |
|
VLAN Trunking Protocol (VTP) |
|
|
11 | (5) |
|
|
16 | (3) |
|
Spanning Tree Protocol Overview |
|
|
19 | (1) |
|
Root Bridge, Root Port, and Designated Port Elections |
|
|
20 | (5) |
|
Rapid Spanning Tree Protocol (RSTP) |
|
|
25 | (3) |
|
Spanning Tree Protocol Tuning and Protection Mechanisms |
|
|
28 | (1) |
|
Switch Priorities Overview |
|
|
28 | (12) |
|
Multiple Spanning Tree Protocol (MST) |
|
|
40 | (7) |
|
|
47 | (10) |
|
|
57 | (1) |
|
Answers to Review Questions |
|
|
58 | (1) |
|
|
58 | (1) |
|
|
58 | (1) |
|
Chapter 2 Understanding Layer 3: IGPs |
|
|
59 | (44) |
|
|
60 | (1) |
|
|
61 | (1) |
|
|
62 | (3) |
|
|
65 | (3) |
|
Enhanced Interior Gateway Routing Protocol (EIGRP) |
|
|
68 | (2) |
|
|
70 | (2) |
|
|
72 | (3) |
|
|
75 | (1) |
|
|
76 | (1) |
|
|
76 | (2) |
|
|
78 | (2) |
|
Open Shortest Path First (OSPF) |
|
|
80 | (1) |
|
|
81 | (1) |
|
|
82 | (1) |
|
|
83 | (2) |
|
Neighbors and Adjacencies |
|
|
85 | (2) |
|
|
87 | (1) |
|
|
87 | (4) |
|
|
91 | (1) |
|
|
91 | (1) |
|
Default Route Advertisements |
|
|
91 | (1) |
|
|
92 | (1) |
|
Link-State Advertisements (LSAs) |
|
|
92 | (1) |
|
|
93 | (2) |
|
|
95 | (1) |
|
|
95 | (5) |
|
|
100 | (1) |
|
Answers to Review Questions |
|
|
101 | (1) |
|
|
101 | (1) |
|
|
101 | (2) |
|
Chapter 3 Understanding Layer 3: BGP |
|
|
103 | (20) |
|
|
104 | (8) |
|
BGP Configuration and Verification |
|
|
112 | (8) |
|
|
120 | (1) |
|
Answers to Review Questions |
|
|
120 | (1) |
|
|
121 | (1) |
|
|
121 | (2) |
|
|
123 | (44) |
|
Network Time Protocol (NTP) |
|
|
124 | (10) |
|
Network Address Translation (NAT) |
|
|
134 | (2) |
|
|
136 | (1) |
|
|
137 | (1) |
|
Port Address Translation (PAT) |
|
|
138 | (5) |
|
First-Hop Redundancy Protocols (FHRPs) |
|
|
143 | (4) |
|
Virtual Router Redundancy Protocol (VRRP) |
|
|
147 | (3) |
|
Gateway Load Balancing Protocol (GLBP) |
|
|
150 | (4) |
|
Object Tracking with FHRPs |
|
|
154 | (2) |
|
|
156 | (1) |
|
|
156 | (1) |
|
Multicast Group Addressing |
|
|
157 | (1) |
|
Internet Group Management Protocol (IGMP) |
|
|
157 | (4) |
|
Protocol Independent Multicast (PIM) |
|
|
161 | (4) |
|
|
165 | (1) |
|
Answers to Review Questions |
|
|
165 | (1) |
|
|
166 | (1) |
|
|
166 | (1) |
|
Chapter 5 Enterprise Wireless |
|
|
167 | (26) |
|
|
168 | (1) |
|
|
168 | (3) |
|
|
171 | (1) |
|
Received Signal Strength Indicator (RSSI) |
|
|
171 | (1) |
|
Signal-to-Noise Ratio (SNR) |
|
|
171 | (1) |
|
|
172 | (1) |
|
|
173 | (3) |
|
WLC and AP Operation and Pairing |
|
|
176 | (2) |
|
|
178 | (7) |
|
|
185 | (3) |
|
Troubleshooting WLAN Configuration and Client Connectivity Issues |
|
|
188 | (3) |
|
|
191 | (1) |
|
Answers to Review Questions |
|
|
192 | (1) |
|
|
192 | (1) |
|
|
192 | (1) |
|
|
|
Chapter 6 Device Access Control |
|
|
193 | (26) |
|
Cisco IOS CLI Session Overview |
|
|
194 | (3) |
|
Protection of Access to Cisco IOS EXEC Modes |
|
|
197 | (6) |
|
|
203 | (3) |
|
Privilege Levels and Role-Based Access Control (RBAC) |
|
|
206 | (4) |
|
Authentication, Authorization, and Accounting (AAA) Overview |
|
|
210 | (1) |
|
|
211 | (1) |
|
|
211 | (1) |
|
AAA Configuration for Network Devices |
|
|
212 | (5) |
|
|
217 | (1) |
|
Answers to Review Questions |
|
|
217 | (1) |
|
|
218 | (1) |
|
|
218 | (1) |
|
Chapter 7 Infrastructure Security |
|
|
219 | (20) |
|
Access Control Lists (ACLs) Overview |
|
|
220 | (4) |
|
|
224 | (5) |
|
Port ACLs (PACLs) and VLAN ACLs (VACLs) |
|
|
229 | (4) |
|
Control Plane Policing (CoPP) |
|
|
233 | (3) |
|
|
236 | (1) |
|
Answers to Review Questions |
|
|
236 | (1) |
|
|
237 | (1) |
|
|
237 | (2) |
|
Chapter 8 Securing REST APIs |
|
|
239 | (8) |
|
|
240 | (5) |
|
|
245 | (1) |
|
Answers to Review Questions |
|
|
245 | (1) |
|
|
245 | (1) |
|
|
245 | (2) |
|
Chapter 9 Wireless Security |
|
|
247 | (18) |
|
Wireless Authentication Overview |
|
|
248 | (1) |
|
|
249 | (2) |
|
Pre-Shared Key (PSK) Authentication |
|
|
251 | (3) |
|
Extensible Authentication Protocol (EAP) Authentication |
|
|
254 | (3) |
|
|
257 | (5) |
|
|
262 | (1) |
|
Answers to Review Questions |
|
|
262 | (1) |
|
|
262 | (1) |
|
|
263 | (2) |
|
Chapter 10 Network Security Design |
|
|
265 | (22) |
|
|
266 | (4) |
|
Network Security Components |
|
|
270 | (9) |
|
|
279 | (1) |
|
|
279 | (2) |
|
|
281 | (3) |
|
|
284 | (1) |
|
Answers to Review Questions |
|
|
284 | (1) |
|
|
285 | (1) |
|
|
285 | (2) |
|
Chapter 11 Network Access Control |
|
|
287 | (12) |
|
Cisco Identity Services Engine (ISE) |
|
|
288 | (2) |
|
Network Access Control (NAC) |
|
|
290 | (6) |
|
|
296 | (1) |
|
Answers to Review Questions |
|
|
296 | (1) |
|
|
296 | (1) |
|
|
297 | (2) |
|
|
|
Chapter 12 Anatomy of Python |
|
|
299 | (16) |
|
Interpreting Python Components and Scripts |
|
|
300 | (1) |
|
|
300 | (1) |
|
|
301 | (1) |
|
|
301 | (1) |
|
|
302 | (7) |
|
|
309 | (1) |
|
Parsing Python Output to JSON |
|
|
310 | (1) |
|
|
311 | (2) |
|
|
313 | (1) |
|
Answers to Review Questions |
|
|
313 | (1) |
|
|
314 | (1) |
|
|
314 | (1) |
|
Chapter 13 Building JSON Files |
|
|
315 | (10) |
|
Data Formats (XML and JSON) |
|
|
316 | (1) |
|
Extensible Markup Language (XML) |
|
|
317 | (2) |
|
JavaScript Object Notation GSON) |
|
|
319 | (2) |
|
|
321 | (2) |
|
|
323 | (1) |
|
Answers to Review Questions |
|
|
323 | (1) |
|
|
324 | (1) |
|
|
324 | (1) |
|
Chapter 14 YANG Data Modeling |
|
|
325 | (8) |
|
|
326 | (1) |
|
|
327 | (5) |
|
|
332 | (1) |
|
Answers to Review Questions |
|
|
332 | (1) |
|
|
332 | (1) |
|
|
332 | (1) |
|
Chapter 15 DNA Center and vManage APIs |
|
|
333 | (12) |
|
APIs for Cisco DNA Center and vManage |
|
|
334 | (1) |
|
DNA Center API Integrations |
|
|
334 | (4) |
|
|
338 | (6) |
|
|
344 | (1) |
|
Answers to Review Questions |
|
|
344 | (1) |
|
|
344 | (1) |
|
|
344 | (1) |
|
Chapter 16 Interpreting REST API Codes |
|
|
345 | (6) |
|
Interpreting REST API Response Codes |
|
|
346 | (1) |
|
|
347 | (2) |
|
|
349 | (1) |
|
Answers to Review Questions |
|
|
349 | (1) |
|
|
349 | (1) |
|
|
349 | (2) |
|
|
351 | (12) |
|
Embedded Event Manager (EEM) |
|
|
352 | (2) |
|
|
354 | (1) |
|
|
355 | (7) |
|
|
362 | (1) |
|
Answers to Review Questions |
|
|
362 | (1) |
|
|
362 | (1) |
|
|
362 | (1) |
|
Chapter 18 Configuration Management and Orchestration |
|
|
363 | (16) |
|
Agent-Based Orchestration Tools |
|
|
365 | (1) |
|
|
365 | (2) |
|
|
367 | (2) |
|
|
369 | (3) |
|
Agentless Orchestration Tools |
|
|
372 | (1) |
|
|
372 | (3) |
|
|
375 | (1) |
|
Configuration Management and Orchestration Tools Comparison |
|
|
376 | (2) |
|
|
378 | (1) |
|
Answers to Review Questions |
|
|
378 | (1) |
|
|
378 | (1) |
|
|
378 | (1) |
|
|
|
Chapter 19 Enterprise Network Design Principles |
|
|
379 | (30) |
|
Hierarchical LAN Design Model |
|
|
380 | (1) |
|
|
381 | (1) |
|
|
382 | (1) |
|
|
382 | (1) |
|
Enterprise Network Architecture Options |
|
|
383 | (9) |
|
First-Hop Redundancy Protocols (FHRPs) |
|
|
392 | (1) |
|
Host Standby Router Protocol (HSRP) |
|
|
392 | (4) |
|
Virtual Router Redundancy Protocol (VRRP) |
|
|
396 | (1) |
|
Gateway Load Balancing Protocol (GLBP) |
|
|
397 | (3) |
|
Hardware Redundancy Mechanisms |
|
|
400 | (1) |
|
Stateful Switchover (SSO) |
|
|
400 | (5) |
|
|
405 | (2) |
|
|
407 | (1) |
|
Answers to Review Questions |
|
|
408 | (1) |
|
|
408 | (1) |
|
|
408 | (1) |
|
Chapter 20 Wireless LAN Deployments |
|
|
409 | (24) |
|
Wireless Deployment Models |
|
|
410 | (1) |
|
Autonomous Wireless Deployments |
|
|
411 | (1) |
|
Centralized Wireless Deployments |
|
|
412 | (3) |
|
Cisco FlexConnect Wireless Deployments |
|
|
415 | (3) |
|
Cloud-Based Wireless Deployments |
|
|
418 | (4) |
|
Embedded Wireless Deployments |
|
|
422 | (5) |
|
Wreless Location Services |
|
|
427 | (3) |
|
|
430 | (1) |
|
Answers to Review Questions |
|
|
431 | (1) |
|
|
431 | (1) |
|
|
431 | (2) |
|
Chapter 21 On-Premises vs. Cloud Infrastructure |
|
|
433 | (18) |
|
Cloud Infrastructure Basics |
|
|
434 | (4) |
|
|
438 | (1) |
|
Infrastructure as a Service (IaaS) |
|
|
438 | (2) |
|
Platform as a Service (PaaS) |
|
|
440 | (1) |
|
Software as a Service (SaaS) |
|
|
441 | (1) |
|
Anything as a Service (XaaS) |
|
|
442 | (2) |
|
|
444 | (3) |
|
On-Premises or Cloud Infrastructure |
|
|
447 | (2) |
|
|
449 | (1) |
|
Answers to Review Questions |
|
|
449 | (1) |
|
|
450 | (1) |
|
|
450 | (1) |
|
|
451 | (16) |
|
|
452 | (1) |
|
|
453 | (1) |
|
|
454 | (1) |
|
Application Performance Optimization |
|
|
455 | (1) |
|
Secure Direct Internet Access (DIA) |
|
|
456 | (1) |
|
|
456 | (3) |
|
SD-WAN Architecture Components |
|
|
459 | (1) |
|
|
459 | (1) |
|
|
460 | (1) |
|
|
461 | (1) |
|
|
461 | (2) |
|
|
463 | (2) |
|
|
465 | (1) |
|
Answers to Review Questions |
|
|
465 | (1) |
|
|
466 | (1) |
|
|
466 | (1) |
|
|
467 | (20) |
|
|
468 | (3) |
|
|
471 | (3) |
|
SD-Access Operational Planes |
|
|
474 | (3) |
|
SD-Access Fabric Roles and Components |
|
|
477 | (1) |
|
|
478 | (1) |
|
|
479 | (1) |
|
|
480 | (1) |
|
|
480 | (1) |
|
Fabric Wireless LAN Controllers (WLCs) |
|
|
481 | (1) |
|
Fabric-Mode Access Points |
|
|
481 | (1) |
|
SD-Access Embedded Wreless |
|
|
481 | (1) |
|
|
482 | (1) |
|
|
482 | (2) |
|
|
484 | (1) |
|
Answers to Review Questions |
|
|
484 | (1) |
|
|
484 | (1) |
|
|
485 | (2) |
|
|
487 | (18) |
|
|
488 | (1) |
|
|
489 | (1) |
|
|
490 | (1) |
|
|
491 | (1) |
|
|
491 | (2) |
|
QoS Models and Components |
|
|
493 | (2) |
|
Classification and Marking |
|
|
495 | (2) |
|
DSCPs and Per-Hop Behaviors (PHBs) |
|
|
497 | (1) |
|
|
497 | (2) |
|
Congestion Management and Congestion Avoidance |
|
|
499 | (1) |
|
Congestion Management (Queuing) |
|
|
499 | (1) |
|
|
500 | (1) |
|
|
500 | (3) |
|
|
503 | (1) |
|
Answers to Review Questions |
|
|
503 | (1) |
|
|
503 | (1) |
|
|
504 | (1) |
|
|
505 | (20) |
|
Traffic Forwarding Basics |
|
|
506 | (5) |
|
|
511 | (1) |
|
|
511 | (1) |
|
|
512 | (1) |
|
Cisco Express Forwarding (CEF) |
|
|
512 | (3) |
|
|
515 | (7) |
|
|
522 | (1) |
|
Answers to Review Questions |
|
|
522 | (1) |
|
|
523 | (1) |
|
|
523 | (2) |
|
|
|
Chapter 26 Basic Virtualization |
|
|
525 | (20) |
|
|
526 | (1) |
|
|
527 | (5) |
|
|
532 | (3) |
|
|
535 | (2) |
|
|
537 | (1) |
|
Cisco Enterprise Network Function Virtualization (NFV) |
|
|
537 | (1) |
|
Cisco Enterprise NFV Architecture |
|
|
538 | (1) |
|
VNFs Supported in Cisco Enterprise NFV |
|
|
539 | (1) |
|
Cisco NFV Hardware Options |
|
|
539 | (3) |
|
|
542 | (1) |
|
Answers to Review Questions |
|
|
543 | (1) |
|
|
543 | (1) |
|
|
543 | (2) |
|
Chapter 27 VRF Instances, GRE, and IPsec |
|
|
545 | (28) |
|
Virtual Routing and Forwarding (VRF) |
|
|
546 | (1) |
|
|
547 | (5) |
|
Generic Routing Encapsulation (GRE) |
|
|
552 | (6) |
|
|
558 | (1) |
|
|
558 | (1) |
|
Dynamic Multipoint VPN (DMVPN) |
|
|
559 | (1) |
|
Cisco IOS Virtual Tunnel Interfaces (VTIs) |
|
|
560 | (1) |
|
|
561 | (1) |
|
|
562 | (5) |
|
|
567 | (3) |
|
|
570 | (1) |
|
Answers to Review Questions |
|
|
570 | (1) |
|
|
571 | (1) |
|
|
571 | (2) |
|
Chapter 28 Extending the Network Virtually |
|
|
573 | (14) |
|
Locator ID/Separation Protocol (LISP) |
|
|
574 | (3) |
|
|
577 | (3) |
|
Virtual Extensible LAN (VXLAN) |
|
|
580 | (5) |
|
|
585 | (1) |
|
Answers to Review Questions |
|
|
585 | (1) |
|
|
586 | (1) |
|
|
586 | (1) |
|
Part VI Network Assurance |
|
|
|
Chapter 29 Troubleshooting |
|
|
587 | (26) |
|
|
588 | (1) |
|
Using debug to Analyze Traffic |
|
|
589 | (4) |
|
Troubleshooting with traceroute |
|
|
593 | (4) |
|
Troubleshooting with ping |
|
|
597 | (7) |
|
Simple Network Management Protocol (SNMP) |
|
|
604 | (6) |
|
|
610 | (1) |
|
Answers to Review Questions |
|
|
610 | (1) |
|
|
611 | (1) |
|
|
611 | (2) |
|
|
613 | (28) |
|
|
614 | (6) |
|
NetFlow and Flexible NetFlow |
|
|
620 | (12) |
|
Switch Port Analyzer (SPAN), Remote SPAN (RSPAN), and Encapsulated Remote SPAN (ERSPAN) |
|
|
632 | (2) |
|
|
634 | (1) |
|
Encapsulated Remote SPAN (ERSPAN) |
|
|
635 | (4) |
|
|
639 | (1) |
|
Answers to Review Questions |
|
|
640 | (1) |
|
|
640 | (1) |
|
|
640 | (1) |
|
Chapter 31 IP SLA and DNA Center |
|
|
641 | (20) |
|
|
642 | (10) |
|
Cisco DNA Center Assurance |
|
|
652 | (8) |
|
|
660 | (1) |
|
Answers to Review Questions |
|
|
660 | (1) |
|
|
660 | (1) |
|
|
660 | (1) |
|
Chapter 32 NETCONF and RESTCONF |
|
|
661 | (12) |
|
|
662 | (6) |
|
|
668 | (3) |
|
|
671 | (1) |
|
Answers to Review Questions |
|
|
671 | (1) |
|
|
671 | (1) |
|
|
671 | (2) |
Glossary |
|
673 | (22) |
Index |
|
695 | |