|
The Paquet book ("Implementing Cisco IOS Network Security") does a much better job on all the topics related to firewalls. One needs good resources (and a good lab). Hope my experience doesn't hinder my success. I previously had a CCNP and CCSP (with firewall, VPN, and IDS specializations).
Not thrilling, but not exceptionally bad either. I'll sit this exam in about two weeks. Network Security is a very broad topic. Any book that attempts so cover its many aspects is certainly taking on a very difficult task. On many of the topics, this book does a reasonable job. I've decided to do a little consulting work and figured I'd refresh my Cisco certifications to insure I was current.
Read both books and the supporting Cisco documentation on selected topics (like Zone Based Firewalls and CBAC) if you expect to pass this exam. I've worked on PIX, ASA, Checkpoint, Netscreen, Sonicwall and Fortinet firewalls. I've taught Information Systems Security at the university level. However, after reading the firewall chapter in this book, I felt totally lost and confused. My biggest complaint is that its firewall coverage is just terrible. Needless to say, I felt my background qualifies me to deal with a basic, entry level exam. That being said, how does this book fair.
I've also worked on F5 and IBM application layer gateways (proxies). I retired a year ago as a network engineer with 30 years experience, the last 10 as a network security specialist. Let's face it, Cisco exams have become very difficult, and its nearly impossible to pass their exams without arduous effort. That chapter is confusing, uneven, disorganized, lacking in proper examples and should be completely redone.
The key topics are clearly marked throughout the chapters so you can easily flip through the book and review them, this helps keep from having to highlight and mark things on your own. But I'd suggest studying from at least one other book just to get a different taste of it.
This was a tough exam, I was lucky to have SDM and a router at home to practice the stuff on and passed the exam, not a great score, but still. You may be able to answer all the questions in this book, but fail miserably at the questions from another book because they're different.
I read this book, as well as the Exam Cram book for this exam, and studied a little bit from the other CCNA Security book by Richard Deal. So yeah, best single study source.Some final advice:I think this book was better than the other two I studied.
I honestly don't think studying ONLY this book will enable you to pass, I don't think studying any ONE book will enable you to pass, at the least you should have some way to practice everything hands-on, or "simulate" it however you can, because Cisco has questions on the exams that require you to know how to do some of the stuff hands on. Overall I think the Cisco Press book was the best as far as what it covers and how it words things.
The many screen shots of SDM where helpful and the configuration examples where easy to understand.
It contains good introductory-level information but was nowhere near the level of depth of information required on the actual exam. Sorry to disappoint, but either they changed the exam to make it harder, or whoever advertised the book over-reached on their claims for how the book would prepare you. ABSOLUTELY WORTHLESS FOR THE EXAM.
This book in no way, shape, or form prepares you for the exam. In any case, if it ever was good, it is NOT good for this exam any longer. Like I said, good as an intro to the subject but definitely NOT good for exam preparation.
DON'T BUY. I passed all practice exams with ease, but on the actual exam, the level of granularity on the questions was much more in-depth than anything covered in the book. DON'T BUY.
This book should be billed as a primer only. The cover says it has "realistic exam questions." Not so.
If you miss a question on the test their is a link that will take directly to that section of the book that covers that material. The included CD has the boson test on it, which is integrally tied to the book. I can't imagine being able to pass this exam without this book. topics are well organized and very well covered.
Whether you plan to take the exam or not, I highly recommend it for the knowledge you can obtain from it. This was a very informative text that provides a nice entry into the security realm after obtaining your CCNA.
|