
CCNP and CCIE Enterprise Core ENCOR 350-401 Official Cert Guide, 2nd edition
BRAND: PEARSON
eBook edition. 1 Year Subscription. Dành cho Cá nhân | Trường ĐH, Nhóm, Thư Viện: Gọi 0915920514 để báo giá Pearson, Vital Source eBook hoặc mua Sách In
Tổng quan sách
Hãy tin tưởng vào loạt Hướng dẫn Chứng chỉ Chính thức bán chạy nhất của Cisco Press để giúp bạn học, chuẩn bị và thực hành cho kỳ thi CCNP và CCIE ENCOR 350-401 được cập nhật. Được đánh giá cao về mức độ chi tiết, kế hoạch học tập, tính năng đánh giá cũng như các câu hỏi và bài tập ôn tập đầy thách thức, Hướng dẫn chứng chỉ chính thức CCNP và CCIE Enterprise Core ENCOR 350-401, Phiên bản thứ hai giúp bạn nắm vững các khái niệm và kỹ thuật đảm bảo thành công cho kỳ thi của bạn và tài nguyên tự học duy nhất được Cisco phê duyệt. Các tác giả chuyên gia Brad Edgeworth, Ramiro Garza Rios, Jason Gooley và Dave Hucaby chia sẻ các gợi ý chuẩn bị và mẹo làm bài kiểm tra, giúp bạn xác định những điểm yếu và cải thiện cả kiến thức khái niệm lẫn kỹ năng thực hành của mình.Gói nghiên cứu hoàn chỉnh này bao gồmMột thói quen chuẩn bị bài kiểm tra đã được chứng minh là giúp bạn vượt qua kỳ thiTôi đã biết điều này chưa? câu đố, cho phép bạn quyết định bạn cần dành bao nhiêu thời gian cho mỗi phầnDanh sách chủ đề bài thi giúp việc tham khảo dễ dàngBài tập cuối chương, giúp bạn ôn tập các khái niệm chính bạn phải biết kỹPhần mềm Kiểm tra Thực hành Pearson Test Prep mạnh mẽ, hoàn chỉnh với hàng trăm câu hỏi được đánh giá kỹ lưỡng, sát với bài kiểm tra, các tùy chọn tùy chỉnh và báo cáo hiệu suất chi tiếtHơn 90 phút video hướng dẫn của tác giảChương chuẩn bị cuối cùng, hướng dẫn bạn các công cụ và tài nguyên để giúp bạn xây dựng chiến lược ôn tập và làm bài kiểm traCác gợi ý và mẫu kế hoạch học tập giúp bạn sắp xếp và tối ưu hóa thời gian học tậpChương trình cập nhật nội dung:Phiên bản thứ hai được cập nhật đầy đủ này bao gồm các chủ đề mới nhất và thông tin bổ sung bao gồm các thay đổi đối với kỳ thi ENCOR 350-401 mới nhất. Hãy truy cập ciscopress.com/newcerts để biết thông tin về các bản cập nhật kỹ thuật số hàng năm cho cuốn sách này phù hợp với những thay đổi trong phiên bản kế hoạch chi tiết kỳ thi của Cisco.Hướng dẫn ôn tập chính thức này giúp bạn nắm vững tất cả các chủ đề trong kỳ thi CCNP và CCIE Enterprise Core ENCOR, bao gồmKiến trúc và thiết kế mạng doanh nghiệpKhái niệm và công nghệ ảo hóaĐảm bảo mạngCác thành phần cơ sở hạ tầng (Chuyển tiếp lớp 2/3, Dịch vụ không dây và IP)Bảo vệTự động hóaTrang web đồng hành:Trang web đồng hành chứa hơn 200 câu hỏi thực hành độc đáo, bài tập thực hành, kế hoạch học tập và 90 phút đào tạo qua video.
- IntroductionPart I Forwarding
- Chapter 1Packet Forwarding 2“Do I Know This Already?” Quiz 2Foundation Topics 3Network Device Communication 3Layer 2 Forwarding 4Layer 3 Forwarding 19Forwarding Architectures 26Process Switching 26Software CEF 29Hardware CEF 30SDM Templates 30Exam Preparation Tasks 32Use the Command Reference to Check Your Memory 33References in This
- Chapter 34Part II Layer 2
- Chapter 2Spanning Tree Protocol 36“Do I Know This Already?” Quiz 36Foundation Topics 38Spanning Tree Protocol Fundamentals 38IEEE 802.1D STP 38Building the STP Topology 41STP Topology Changes 49Rapid Spanning Tree Protocol 53RSTP (802.1W) Port States 54RSTP (802.1W) Port Roles 54RSTP (802.1W) Port Types 54Building the RSTP Topology 55RSTP Convergence 55Exam Preparation Tasks 56Use the Command Reference to Check Your Memory 56
- Chapter 3Advanced STP Tuning 58“Do I Know This Already?” Quiz 58Foundation Topics 59STP Topology Tuning 59Placing the Root Bridge 60Modifying STP Root Port and Blocked Switch Port Locations 63Modifying STP Port Priority 66Additional STP Protection Mechanisms 67Root Guard 68STP Portfast 68BPDU Guard 70BPDU Filter 72Problems with Unidirectional Links 73Exam Preparation Tasks 76Use the Command Reference to Check Your Memory 77
- Chapter 4Multiple Spanning Tree Protocol 80“Do I Know This Already?” Quiz 80Foundation Topics 81Multiple Spanning Tree Protocol 81MST Instances (MSTIs) 83MST Configuration 84MST Verification 85MST Tuning 87Common MST Misconfigurations 89MST Region Boundary 90Exam Preparation Tasks 92Use the Command Reference to Check Your Memory 92
- Chapter 5VLAN Trunks and EtherChannel Bundles 94“Do I Know This Already?” Quiz 94Foundation Topics 96VLAN Trunking Protocol 96VTP Communication 97VTP Configuration 98VTP Verification 99Dynamic Trunking Protocol 101EtherChannel Bundle 104Dynamic Link Aggregation Protocols 106Verifying EtherChannel Status 108Viewing EtherChannel Neighbors 110Verifying EtherChannel Packets 113Advanced LACP Configuration Options 114Troubleshooting EtherChannel Bundles 118Load Balancing Traffic with EtherChannel Bundles 119Exam Preparation Tasks 121Use the Command Reference to Check Your Memory 121Part III Routing
- Chapter 6IP Routing Essentials 124“Do I Know This Already?” Quiz 124Foundation Topics 126Routing Protocol Overview 126Distance Vector Algorithms 128Enhanced Distance Vector Algorithms 129Link-State Algorithms 130Path Vector Algorithm 131Path Selection 132Prefix Length 133Administrative Distance 133Metrics 135Static Routing 137Static Route Types 138Floating Static Routing 141Static Routes to Null Interfaces 143IPv6 Static Routes 145Policy-based Routing 146Virtual Routing and Forwarding 149Exam Preparation Tasks 151Use the Command Reference to Check Your Memory 153
- Chapter 7EIGRP 154“Do I Know This Already?” Quiz 154Foundation Topics 156EIGRP Fundamentals 156Autonomous Systems 157EIGRP Terminology 157Topology Table 159EIGRP Neighbors 160Path Metric Calculation 160Wide Metrics 162Metric Backward Compatibility 163Load Balancing 163Failure Detection and Timers 164Convergence 164Route Summarization 166Exam Preparation Tasks 167References in This
- Chapter 168
- Chapter 8OSPF 170“Do I Know This Already?” Quiz 170Foundation Topics 172OSPF Fundamentals 172Inter-Router Communication 174OSPF Hello Packets 175Router ID 175Neighbors 175Designated Router and Backup Designated Router 176OSPF Configuration 178OSPF Network Statement 178Interface-Specific Configuration 180Statically Setting the Router ID 180Passive Interfaces 181Requirements for Neighbor Adjacency 181Sample Topology and Configuration 181Confirmation of Interfaces 184Verification of OSPF Neighbor Adjacencies 185Verification of OSPF Routes 186Default Route Advertisement 187Common OSPF Optimizations 188Link Costs 189Failure Detection 189DR Placement 190OSPF Network Types 194Exam Preparation Tasks 198Use the Command Reference to Check Your Memory 199References in This
- Chapter 200
- Chapter 9Advanced OSPF 202“Do I Know This Already?” Quiz 202Foundation Topics 204Areas 204Area ID 207OSPF Route Types 207Link-State Advertisements 209LSA Sequences 210LSA Age and Flooding 210LSA Types 210Discontiguous Networks 217OSPF Path Selection 218Intra-Area Routes 218Inter-Area Routes 219Equal-Cost Multipathing 220Summarization of Routes 220Summarization Fundamentals 221Inter-Area Summarization 222Summarization Metrics 222Configuration of Inter-Area Summarization 223Route Filtering 224Filtering with Summarization 225Area Filtering 225Exam Preparation Tasks 228Use the Command Reference to Check Your Memory 229References in This
- Chapter 229
- Chapter 10OSPFv3 230“Do I Know This Already?” Quiz 230Foundation Topics 231OSPFv3 Fundamentals 231OSPFv3 Link-State Advertisement 232OSPFv3 Communication 232OSPFv3 Configuration 233OSPFv3 Verification 235Passive Interface 237Summarization 238Network Type 239IPv4 Support in OSPFv3 240Exam Preparation Tasks 242Use the Command Reference to Check Your Memory 242References in This
- Chapter 243
- Chapter 11BGP 244“Do I Know This Already?” Quiz 244Foundation Topics 246BGP Fundamentals 246Autonomous System Numbers 246Path Attributes 247Loop Prevention 247Address Families 248Inter-Router Communication 248BGP Neighbor States 253Basic BGP Configuration 255Verification of BGP Sessions 257Route Advertisement 260Receiving and Viewing Routes 262BGP Route Advertisements from Indirect Sources 265IPv4 Route Summarization 268Aggregate Address 269Atomic Aggregate 274Route Aggregation with AS_SET 276Multiprotocol BGP for IPv6 278IPv6 Configuration 279IPv6 Route Summarization 284Exam Preparation Tasks 285Use the Command Reference to Check Your Memory 286References in This
- Chapter 287
- Chapter 12Advanced BGP 288“Do I Know This Already?” Quiz 288Foundation Topics 290BGP Multihoming 291Resiliency in Service Providers 291Internet Transit Routing 292Branch Transit Routing 293Conditional Matching 295Access Control Lists 295Prefix Matching 297Regular Expressions (regex) 300Route Maps 301Conditional Matching 302Optional Actions 304The continue Keyword 305BGP Route Filtering and Manipulation 306Distribute List Filtering 307Prefix List Filtering 308AS_Path ACL Filtering 309Route Maps 311Clearing BGP Connections 313BGP Communities 313Well-Known Communities 314Enabling BGP Community Support 314Conditionally Matching BGP Communities 315Setting Private BGP Communities 317Understanding BGP Path Selection 318Routing Path Selection Using Longest Match 319BGP Best Path Overview 320Exam Preparation Tasks 329Use the Command Reference to Check Your Memory 331References in This
- Chapter 332
- Chapter 13Multicast 334“Do I Know This Already?” Quiz 334Foundation Topics 337Multicast Fundamentals 337Multicast Addressing 340Layer 2 Multicast Addresses 342Internet Group Management Protocol 343IGMPv2 344IGMPv3 346IGMP Snooping 346Protocol Independent Multicast 349PIM Distribution Trees 349PIM Terminology 352PIM Dense Mode 354PIM Sparse Mode 357Reverse Path Forwarding 360PIM Forwarder 361Rendezvous Points 363Static RP 364Auto-RP 364PIM Bootstrap Router 366Exam Preparation Tasks 367References in This
- Chapter 369Part IV Services
- Chapter 14Quality of Service (QoS) 370“Do I Know This Already?” Quiz 371Foundation Topics 374The Need for QoS 374Lack of Bandwidth 374Latency and Jitter 374Packet Loss 376QoS Models 377Modular QoS CLI 379Classification and Marking 381Classification 381MQC Classification Configuration 382Marking 385DSCP Per-Hop Behaviors 387Scavenger Class 391Trust Boundary 391Class-Based Marking Configuration 392A Practical Example: Wireless QoS 393Policing and Shaping 394Placing Policers and Shapers in the Network 395Markdown 395Token Bucket Algorithms 395Class-Based Policing Configuration 398Types of Policers 399Congestion Management and Avoidance 406Congestion Management 406Congestion-Avoidance Tools 408CBWFQ Configuration 410Exam Preparation Tasks 414Use the Command Reference to Check Your Memory 416References in This
- Chapter 417
- Chapter 15IP Services 418“Do I Know This Already?” Quiz 418Foundation Topics 420Time Synchronization 420Network Time Protocol 420NTP Configuration 421Stratum Preference 424NTP Peers 424Precision Time Protocol (PTP) 425PTP Configuration 427First-Hop Redundancy Protocol 429Object Tracking 430Hot Standby Router Protocol 432Virtual Router Redundancy Protocol 438Gateway Load Balancing Protocol 441Network Address Translation 446NAT Topology 447Static NAT 449Pooled NAT 455Port Address Translation 458Exam Preparation Tasks 461Use the Command Reference to Check Your Memory 462Part V Overlay
- Chapter 16Overlay Tunnels 466“Do I Know This Already?” Quiz 467Foundation Topics 469Generic Routing Encapsulation (GRE) Tunnels 469GRE Tunnel Configuration 470GRE Configuration Example 472Problems with Overlay Networks: Recursive Routing 474IPsec Fundamentals 475Authentication Header 476Encapsulating Security Payload 477Transform Sets 478Internet Key Exchange 480IKEv1 480IPsec VPNs 484Site-to-Site IPsec Configuration 486Cisco Locator/ID Separation Protocol (LISP) 495LISP Architecture and Protocols 497LISP Operation 499Virtual Extensible Local Area Network (VXLAN) 504Exam Preparation Tasks 507Use the Command Reference to Check Your Memory 509Part VI Wireless
- Chapter 17Wireless Signals and Modulation 510“Do I Know This Already?” Quiz 510Foundation Topics 512Understanding Basic Wireless Theory 512Understanding Frequency 514Understanding Phase 519Measuring Wavelength 519Understanding RF Power and dB 520Carrying Data Over an RF Signal 531Maintaining AP–Client Compatibility 533Using Multiple Radios to Scale Performance 535Maximizing the AP–Client Throughput 538Exam Preparation Tasks 540
- Chapter 18Wireless Infrastructure 542“Do I Know This Already?” Quiz 542Foundation Topics 545Wireless Deployment Models 545Autonomous Deployment 545Cisco AP Operation 547Cisco Wireless Deployments 548Pairing Lightweight APs and WLCs 552AP States 552Discovering a WLC 554Selecting a WLC 555Maintaining WLC Availability 556Segmenting Wireless Configurations 557Leveraging Antennas for Wireless Coverage 559Radiation Patterns 560Gain 562Beamwidth 563Polarization 563Omnidirectional Antennas 564Directional Antennas 567Exam Preparation Tasks 570
- Chapter 19Understanding Wireless Roaming and Location Services 572“Do I Know This Already?” Quiz 572Foundation Topics 574Roaming Overview 574Roaming Between Autonomous APs 574Intracontroller Roaming 577Intercontroller Roaming 579Layer 2 Roaming 579Layer 3 Roaming 581Scaling Mobility with Mobility Groups 583Locating Devices in a Wireless Network 584Exam Preparation Tasks 587
- Chapter 20Authenticating Wireless Clients 590“Do I Know This Already?” Quiz 590Foundation Topics 592Open Authentication 593Authenticating with Pre-Shared Key 595Authenticating with EAP 597Configuring EAP-Based Authentication with External RADIUS Servers 600Verifying EAP-Based Authentication Configuration 602Authenticating with WebAuth 603Exam Preparation Tasks 606
- Chapter 21Troubleshooting Wireless Connectivity 608“Do I Know This Already?” Quiz 608Foundation Topics 610Troubleshooting Client Connectivity from the WLC 611Checking the Client's Association and Signal Status 613Checking the Client Properties 614Checking the AP Properties 614Checking the Client Security 615Troubleshooting the Client 615Troubleshooting Connectivity Problems at the AP 617Exam Preparation Tasks 620Part VII Architecture
- Chapter 22Enterprise Network Architecture 622“Do I Know This Already?” Quiz 622Foundation Topics 624Hierarchical LAN Design Model 624Access Layer 625Distribution Layer 627Core Layer 628High Availability Network Design 629High Availability Technologies 630Enterprise Network Architecture Options 632Two-Tier Design (Collapsed Core) 632Three-Tier Design 634Layer 2 Access Layer (STP Based) 634Layer 3 Access Layer (Routed Access) 636Simplified Campus Design 637Software-Defined Access (SD-Access) Design 640Exam Preparation Tasks 640
- Chapter 23Fabric Technologies 642“Do I Know This Already?” Quiz 643Foundation Topics 645Software-Defined Access (SD-Access) 645What Is SD-Access? 646SD-Access Architecture 646Physical Layer 647Controller Layer 656Management Layer 657Software-Defined WAN (SD-WAN) 661Cisco SD-WAN Architecture 661vBond Orchestrator 662vManage NMS 663vSmart Controller 663Cisco SD-WAN Edge Devices 663vAnalytics 664Cisco SD-WAN Cloud OnRamp 664SD-WAN Policy 665Application-Aware Routing 665Cloud OnRamp for SaaS 666Cloud OnRamp for IaaS 668Exam Preparation Tasks 669
- Chapter 24Network Assurance 672Do I Know This Already? 672Foundation Topics 674Network Diagnostic Tools 675ping 675traceroute 680Debugging 685Conditional Debugging 692Simple Network Management Protocol (SNMP) 695syslog 701NetFlow and Flexible NetFlow 706Switched Port Analyzer (SPAN) Technologies 716Local SPAN 717Specifying the Source Ports 717Remote SPAN (RSPAN) 720Encapsulated Remote SPAN (ERSPAN) 722IP SLA 724Cisco DNA Center Assurance 728Exam Preparation Tasks 734Part VIII Security
- Chapter 25Secure Network Access Control 736“Do I Know This Already?” Quiz 736Foundation Topics 738Network Security Design for Threat Defense 738Next-Generation Endpoint Security 741Cisco Talos 741Cisco Secure Malware Analytics (Threat Grid) 742Cisco Advanced Malware Protection (AMP) 742Cisco Secure Client (AnyConnect) 744Cisco Umbrella 744Cisco Secure Web Appliance (WSA) 746Cisco Secure Email (ESA) 748Cisco Secure IPS (FirePOWER NGIPS) 749Cisco Secure Firewall (NGFW) 751Cisco Secure Firewall Management Center (FMC) 753Cisco Secure Network Analytics (Stealthwatch Enterprise) 753Cisco Secure Cloud Analytics (Stealthwatch Cloud) 755Cisco Identity Services Engine (ISE) 756Network Access Control (NAC) 758802.1x 758MAC Authentication Bypass (MAB) 762Web Authentication (WebAuth) 764Enhanced Flexible Authentication (FlexAuth) 766Cisco Identity-Based Networking Services (IBNS) 2.0 766Cisco TrustSec 766MACsec 772Exam Preparation Tasks 774
- Chapter 26Network Device Access Control and Infrastructure Security 778“Do I Know This Already?” Quiz 778Foundation Topics 781Access Control Lists (ACLs) 781Numbered Standard ACLs 782Numbered Extended ACLs 783Named ACLs 784Port ACLs (PACLs) and VLAN ACLs (VACLs) 785PACL, VACL, and RACL Interaction 787Terminal Lines and Password Protection 788Password Types 789Password Encryption 789Username and Password Authentication 790Configuring Line Local Password Authentication 790Verifying Line Local Password Authentication 791Configuring Line Local Username and Password Authentication 792Verifying Line Local Username and Password Authentication 792Privilege Levels and Role-Based Access Control (RBAC) 793Verifying Privilege Levels 794Controlling Access to vty Lines with ACLs 796Verifying Access to vty Lines with ACLs 796Controlling Access to vty Lines Using Transport Input 797Verifying Access to vty Lines Using Transport Input 798Enabling SSH vty Access 800Auxiliary Port 802EXEC Timeout 802Absolute Timeout 802Authentication, Authorization, and Accounting (AAA) 803TACACS+ 803RADIUS 804Configuring AAA for Network Device Access Control 805Verifying AAA Configuration 809Zone-Based Firewall (ZBFW) 809The Self Zone 810The Default Zone 810ZBFW Configuration 811Verifying ZBFW 816Control Plane Policing (CoPP) 817Configuring ACLs for CoPP 817Configuring Class Maps for CoPP 818Configuring the Policy Map for CoPP 819Applying the CoPP Policy Map 819Verifying the CoPP Policy 820Device Hardening 822Exam Preparation Tasks 823Use the Command Reference to Check Your Memory 824Part IX SDN
- Chapter 27Virtualization 826“Do I Know This Already?” Quiz 826Foundation Topics 828Server Virtualization 828Virtual Machines 828Containers 830Virtual Switching 831Network Functions Virtualization 833NFV Infrastructure 834Virtual Network Functions 834Virtualized Infrastructure Manager 834Element Managers 835Management and Orchestration 836Operations Support System (OSS)/Business Support System (BSS) 836VNF Performance 836Cisco Enterprise Network Functions Virtualization (ENFV) 842Exam Preparation Tasks 847
- Chapter 28Foundational Network Programmability Concepts 850“Do I Know This Already?” Quiz 850Foundation Topics 854Command-Line Interface 854Application Programming Interface 855Northbound API 855Southbound API 856Representational State Transfer (REST) APIs 856API Tools and Resources 857Introduction to Postman 857Data Formats (XML and JSON) 860Cisco DNA Center APIs 862Cisco vManage APIs 867Data Models and Supporting Protocols 870YANG Data Models 870Cisco DevNet 877Documentation 878Learn 878Technologies 878Community 879Events 879GitHub 880Basic Python Components and Scripts 882Exam Preparation Tasks 889References in This
- Chapter 890
- Chapter 29Introduction to Automation Tools 892“Do I Know This Already?” Quiz 892Foundation Topics 894Embedded Event Manager 894EEM Applets 895EEM and Tcl Scripts 899EEM Summary 901Agent-Based Automation Tools 902Puppet 902Chef 904SaltStack (Agent and Server Mode) 909Agentless Automation Tools 912Ansible 912Puppet Bolt 922SaltStack SSH (Server-Only Mode) 923Comparing Tools 924Exam Preparation Tasks 925
- Chapter 30Final Preparation 926Getting Ready 926Tools for Final Preparation 927Pearson Test Prep Practice Test Software and Questions on the Website 927Customizing Your Exams 928Updating Your Exams 929Premium Edition 929Chapter-Ending Review Tools 930Suggested Plan for Final Review/Study 930Summary 930
- Chapter 31ENCOR 350-401 Exam Updates 932The Purpose of This
- Chapter 932About Possible Exam Updates 932Impact on You and Your Study Plan 933News About the Next Exam Release 934Updated Technical Content 934Appendix AAnswers to the “Do I Know This Already?” Questions 936Glossary956Online ElementsAppendix BMemory TablesAppendix CMemory Tables Answer KeyAppendix DStudy PlannerGlossary9780138216764 TOC 8/17/2023