Z+

Contents

The notes

All 49 lessons, in order. High-yield first if time is short. PUP and TTP stay out of the default quiz path.

  1. L01Ports, protocols, clients and serversyield
  2. L02TLS, SSL and cipher suitesyield
  3. L03Certificates, public/private keys and trustyield
  4. L04NTP and why clocks affect authenticationyield
  5. L05Web, file, print and storage servicesyield
  6. L06FTP, SFTP and FTPS without the confusionyield
  7. L07Database services and their portsyield
  8. L08VoIP: call setup, speech and qualityyield
  9. L09Disaster recovery planning and testing
  10. L10Recovery metrics and hot/warm/cold sites
  11. L11Load balancing, redundancy and clusters
  12. L12CDN compared with a load balancerscope
  13. L13Nmap and interpreting port scansyield
  14. L14SNMP: manager, agent, MIB, OID and securityyield
  15. L15Syslog, event severity and SIEM
  16. L16Wireshark and packet analysis from zeroyield
  17. L17Capture placement, tcpdump and flow tools
  18. L18Common performance problems: pages 71-74
  19. L19QoS, shaping and policing
  20. L20CIA triad, vulnerability, threat, exploit and riskyield
  21. L21Compliance: PII, GDPR, locality and PCI DSS
  22. L22PHI and PUE: scope additions, not located slidesscope
  23. L23Encryption, hashing and data statesyield
  24. L24Honeypots and internal/external threats
  25. L25DoS, DDoS, reflection and amplification
  26. L26Botnets, C2 and malware categories
  27. L27Spoofing, on-path attacks and ARP
  28. L28DHCP, rogue DHCP, starvation and snoopingyield
  29. L29VLANs, VLAN hopping and MAC flooding
  30. L30Social engineering and password attacks
  31. L31Authentication, authorization, accounting and factorsyield
  32. L32SSO and Kerberos step by step
  33. L33Federated identity and SAML
  34. L34RBAC, least privilege and privileged accounts
  35. L35LDAP, directories and secure binds
  36. L36Defense in depth and hardening
  37. L37802.1X, EAP and switch access
  38. L38Access-control rules and stateful firewallsyield
  39. L39Forward proxies, reverse proxies and filtering
  40. L40Zone-based security and screened subnets
  41. L41IDS versus IPS and detection mistakes
  42. L42IoT and industrial systems: ICS, DCS and SCADA
  43. L43Physical security, cameras and geofencing
  44. L44Wireless controllers: the limited wireless scope
  45. L45FTTC, FTTP, OLT and ONT
  46. L46VPNs, tunneling and remote-access policyyield
  47. L47IPsec, ESP, AH, modes and IKEyield
  48. L48Client-to-site, site-to-site and split/full tunnels
  49. L49SSH versus Telnet and server identityyield
Z+ · the last-lap desk · N10-009

Search

Lessons, ports, glossary