Contents
The notes
All 49 lessons, in order. High-yield first if time is short. PUP and TTP stay out of the default quiz path.
- L01Ports, protocols, clients and serversyield
- L02TLS, SSL and cipher suitesyield
- L03Certificates, public/private keys and trustyield
- L04NTP and why clocks affect authenticationyield
- L05Web, file, print and storage servicesyield
- L06FTP, SFTP and FTPS without the confusionyield
- L07Database services and their portsyield
- L08VoIP: call setup, speech and qualityyield
- L09Disaster recovery planning and testing
- L10Recovery metrics and hot/warm/cold sites
- L11Load balancing, redundancy and clusters
- L12CDN compared with a load balancerscope
- L13Nmap and interpreting port scansyield
- L14SNMP: manager, agent, MIB, OID and securityyield
- L15Syslog, event severity and SIEM
- L16Wireshark and packet analysis from zeroyield
- L17Capture placement, tcpdump and flow tools
- L18Common performance problems: pages 71-74
- L19QoS, shaping and policing
- L20CIA triad, vulnerability, threat, exploit and riskyield
- L21Compliance: PII, GDPR, locality and PCI DSS
- L22PHI and PUE: scope additions, not located slidesscope
- L23Encryption, hashing and data statesyield
- L24Honeypots and internal/external threats
- L25DoS, DDoS, reflection and amplification
- L26Botnets, C2 and malware categories
- L27Spoofing, on-path attacks and ARP
- L28DHCP, rogue DHCP, starvation and snoopingyield
- L29VLANs, VLAN hopping and MAC flooding
- L30Social engineering and password attacks
- L31Authentication, authorization, accounting and factorsyield
- L32SSO and Kerberos step by step
- L33Federated identity and SAML
- L34RBAC, least privilege and privileged accounts
- L35LDAP, directories and secure binds
- L36Defense in depth and hardening
- L37802.1X, EAP and switch access
- L38Access-control rules and stateful firewallsyield
- L39Forward proxies, reverse proxies and filtering
- L40Zone-based security and screened subnets
- L41IDS versus IPS and detection mistakes
- L42IoT and industrial systems: ICS, DCS and SCADA
- L43Physical security, cameras and geofencing
- L44Wireless controllers: the limited wireless scope
- L45FTTC, FTTP, OLT and ONT
- L46VPNs, tunneling and remote-access policyyield
- L47IPsec, ESP, AH, modes and IKEyield
- L48Client-to-site, site-to-site and split/full tunnels
- L49SSH versus Telnet and server identityyield