Implementing Advanced Cisco Unified Wireless Security
Exam Number 642-737 IAUWS
Associated Certifications CCNP Wireless
Duration 90 minutes (50 - 60 questions)
Available Languages English, Japanese
The Implementing Advanced Cisco Unified Wireless Security exam is the exam associated with the CCNP Wireless certification. This exam assesses a candidate's capability to secure the wireless network from security threats via appropriate security policies and best practices, to properly implement security standards, and to properly configure wireless security components. Candidates can prepare for this exam by taking the IAUWS Implementing Advanced Cisco Unified Wireless Security course.
The Implementing Advanced Cisco Unified Wireless Security (IAUWS) version 2.0 642-737 exam is a 90-minute test with 55−75 questions that are associated with the Cisco CCNP® Wireless certification. This exam assesses a candidate's ability to secure the wireless network from security threats via appropriate security policies and best practices, properly implement security standards, and properly configure wireless security components. The exam is closed book and no outside reference materials are allowed.
The following topics are general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. In order to better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.
1.0 Integrate Client Device Security 22%
1.1 Describe the EAP authentication process
1.2 Configure client for secure EAP authentication
1.3 Configure the Cisco any connect client
1.4 Describe the impact of security configurations on application and client roaming
1.5 Troubleshoot client wireless authentication issues
1.5.a Packet analyzers
1.5.d Cisco WCS
1.6 Identify client security risks
1.6.a Driver update
1.6.b MS hot fixes
2.0 Design and Integrate Wireless Network with NAC 11%
2.1 Describe the architectures
2.1.c Agent versus agentless
2.1.d Cisco NAC appliance
2.2 Describe the high-level authentication process flow
2.2.e External authentication sources
2.3 Configure the WLC for the NAC
2.4 Verify wireless authentication with NAC
3.0 Implement Secure Wireless Connectivity Services 22%
3.1 Configure authentication
3.1.a Controller local EAP with or without external
3.1.b LDAP database
3.1.c Client authentication on H-REAP APs
3.1.d 802.1X authentication for AP authentication to the switch
3.2 Configure autonomous AP for RADIUS authentication
3.3 Configure management frame protection on clients, APs, and controllers
3.4 Configure IBN
3.4.a RADIUS-based VLAN and ACLs
3.4.b AAA override
3.5 Define ACS parameters for integration with wireless network
3.6 Define client and server-side digital certificate requirements
3.7 Implement ACLs on controller
3.7.a CPU ACLs
3.7.b WLAN, interface, and client identity ACL
3.8 Troubleshoot secure wireless connectivity services
3.8.a Packet analyzers, debugs, logs, WCS, and ACS
3.8.b Verify firewall ports
3.8.c ACS and controller authorization and authentication for clients
4.0 Design and Implement Guest Access Services 12%
4.1 Describe the architectures for guest access services
4.1.b Anchor, DMZ, redundancy, and scaling
4.1.c NAC guest server
4.1.d Wired guest access
4.1.e Bandwidth limiting
4.2 Configure guest access accounts
4.2.a Lobby ambassador (controller and WCS-based)
4.2.b Guest roles
4.3 Configure controller web authentication
4.3.b Internal and external
4.3.c Authentication (local/RADIUS)
4.3.d Custom splash page (internal, external, and per WLAN)
4.3.e Understand design considerations (DNS, proxy)
4.3.f Pre-authentication ACL
4.3.g Wired guest access
4.3.h Install third-party certificate on controller
4.4 Configure the anchor and internal controllers
4.5 Troubleshoot guest access issues
4.5.a Packet analyzers, debugs, logs, WCS, and ACS
4.5.b Verify firewall ports
4.5.c Mping and eping
5.0 Translate Organizational and Regulatory Security Policies and Enforce Security Compliance 11%
5.1 Describe regulatory compliance considerations
5.2 Segment traffic into different VLANs, based upon these functions:
5.3 Configure administration security on controller and WCS
5.3.a TACACS+ and ACS integration
5.3.c RADIUS and AAA server integration
5.3.d Access point administration credential
5.3.e Admin roles
5.4 Manage WLC and WCS alarms
5.4.a SNMP and trap receivers
5.4.d ACS log
5.4 e Modify WCS alarm levels
5.5 Utilize security audit tools
5.5.a Packet captures
5.5.b Penetration testing
5.5.c Third-party software (air magnet, air wise)
5.5.d PCI audit tool in WCS
6.0 Configure Native WLC Security Feature Sets: IPS/IDS 11%
6.1 Utilize WCS or controller for IDS and threat mitigation strategies
6.1.b Custom signature
6.1.c Rogue classification management and (auto) containment
6.1.d Rogue reporting and location (WCS only)
6.1.e Switch port tracing (WCS only)
6.1.f Integrate Cisco spectrum expert with WCS
6.1.g Client exclusion
6.1.h Clean air
6.2 Identify and mitigate wireless vulnerabilities
6.2.a Wireless packet injection (can't be mitigated)
6.2.b Client misconfiguration
6.2.c DoS (RF jamming)
6.2.d Anomalous behavior attacks (association and authentication attacks)
6.2.e Signature attacks (net stumbler and undetectable at this time)
6.2.f Eavesdropping (wild packets and honeypot)
6.2.g Hijacking and mimicry (evil twin and honey potting)
6.2.h Social engineering (human attack)
7.0 Integrate Wireless Network with Advanced Security Platforms 11%
7.1 Describe Cisco end-to-end security solutions and how they integrate with Cisco wireless solutions
7.1.a any connect 3.0 and above
7.1.b NAC appliance
7.1.c NAC guest server
7.1.d Wired IPS
7.2 Describe the Cisco unified wireless network firewall port configuration requirements
7.2.b IP port pass-through
7.3 Configure the controller for wired IPS and IDS
7.4 Configure wireless intrusion prevention system (MSE)
Make The Best Choice Chose - Certkingdom
Make yourself more valuable in today's competitive computer industry Certkingdom's preparation material includes the most excellent features, prepared by the same dedicated experts who have come together to offer an integrated solution. We provide the most excellent and simple method to pass your Cisco CCNP 642-737 exam on the first attempt "GUARANTEED".
Unlimited Access Package
will prepare you for your exam with guaranteed results, 642-737 Study Guide. Your exam will download as a single 642-737 PDF or complete 642-737 testing engine as well as over +4000 other technical exam PDF and exam engine downloads. Forget buying your prep materials separately at three time the price of our unlimited access plan - skip the 642-737 audio exams and select the one package that gives it all to you at your discretion: 642-737 Study Materials featuring the exam engine.
Certkingdom 642-737 Exam Prepration Tools
Certkingdom Cisco CCNP preparation begins and ends with your accomplishing this credential goal. Although you will take each Cisco CCNP online test one at a time - each one builds upon the previous. Remember that each Cisco CCNP exam paper is built from a common certification foundation.
642-737 Exam Testing Engines
Beyond knowing the answer, and actually understanding the 642-737 test questions puts you one step ahead of the test. Completely understanding a concept and reasoning behind how something works, makes your task second nature. Your 642-737 quiz will melt in your hands if you know the logic behind the concepts. Any legitimate Cisco CCNP prep materials should enforce this style of learning - but you will be hard pressed to find more than a Cisco CCNP practice test anywhere other than Certkingdom.
642-737 Exam Questions and Answers with Explanation
This is where your Cisco CCNP 642-737 exam prep really takes off, in the testing your knowledge and ability to quickly come up with answers in the 642-737 online tests. Using CCNP 642-737 practice exams is an excellent way to increase response time and queue certain answers to common issues.
642-737 Exam Study Guides
All Cisco CCNP online tests begin somewhere, and that is what the Cisco CCNP training course will do for you: create a foundation to build on. Study guides are essentially a detailed Cisco CCNP 642-737 tutorial and are great introductions to new Cisco CCNP training courses as you advance. The content is always relevant, and compound again to make you pass your 642-737 exams on the first attempt. You will frequently find these 642-737 PDF files downloadable and can then archive or print them for extra reading or studying on-the-go.
642-737 Exam Video Training
For some, this is the best way to get the latest Cisco CCNP 642-737 training. However you decide to learn 642-737 exam topics is up to you and your learning style. The Certkingdom Cisco CCNP products and tools are designed to work well with every learning style. Give us a try and sample our work. You'll be glad you did.
642-737 Other Features
* Realistic practice questions just like the ones found on certification exams.
* Each guide is composed from industry leading professionals real Cisco CCNPnotes, certifying 100% brain dump free.
* Study guides and exam papers are guaranteed to help you pass on your first attempt or your money back.
* Designed to help you complete your certificate using only
* Delivered in PDF format for easy reading and printing Certkingdom unique CBT 642-737 will have you dancing the Cisco CCNP jig before you know it
* CCNP 642-737 prep files are frequently updated to maintain accuracy. Your courses will always be up to date.
Get CCNP ebooks from Certkingdom which contain real 642-737 exam questions and answers. You WILL pass your CCNP exam on the first attempt using only Certkingdom's CCNP excellent preparation tools and tutorials.
||This is what our customers are saying about CertKingdom.com.
These are real testimonials.
Hi friends! CertKingdom.com is No1 in sites coz in $50 I cant believe this but when I purchased the $50 package it was amazing I Cisco passed 10 Exams using CertKingdom guides in one Month So many thanks to CertKingdom Team , Please continue this offer for next year also. So many Thanks
Thank You! I would just like to thank CertKingdom.com for the Cisco CCNP 642-737 test guide that I bought a couple months ago and I took my test and pass overwhelmingly. I completed the test of 165 questions in about 90 minutes I must say that their Q & A with Explanation are very amazing and easy to learn.
After my co-workers found out what I used to pass Cisco CCNP 642-737 the test, that many are thinking about purchasing CertKingdom.com for their CCNP exams, I know I will again
I passed the Cisco CCNP 642-737 exam yesterday, and now it's on to security exam. Couldn't have done it with out you. Thanks very much.
I Just Passed The Cisco CCNP 642-737 Took 80 to 90 Minutes max to understand and easy to learn. Thanks For Everything Now On To 642-737
Hi CertKingdom.com thanks so much for your assistance in Cisco CCNP i passed today it was a breeze and i couldn't have done it without you. Thanks again
I have used your Exam Study Guides for preparation for Cisco CCNP 642-737. I also passed all those on the first round. I'm currently preparing for the Microsoft and theCCNP. exams
I just wanted to thank you for helping me get myCCNP $50 package for all guides is awesome you made the journey a lot easier. I passed every test the first time using your
I take this opportunity to express my appreciation to the authors of CertKingdom.com Cisco CCNP test guide. I purchased the 642-737 soon after my formal hands on training and honestly, my success in the test came out of nowhere but CertKingdom.com. Once again I say thanks
Dear CertKingdom.com team the test no. 642-737 that i took was very good, I received 880 and could have gain more just by learning your exams
Hi and Thanks I have just passed the CCNP Directory Services Design exam with a score of 928 thanks to you! The guide was excellent
Great stuff so far....I love this site....!! I am also on the Cisco CCNP I decided to start from certkingdom and start learning study CCNP from home... It has been really difficult but so far I have managed to get through 4 exams....., now currently studying for the more exams.... Have a good day.................................................. Cheers
Thanks for your Help, But I have finally downloaded Cisco CCNP 642-737 exam preparation from certkingdom.com they are provided me complete information about the exam, lets hope I get success for the 642-737 exam, I found there exams very very realistic and useful. thanks again