<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Trehb101.com - Got Geek? &#187; CISSP Exam</title>
	<atom:link href="http://www.trehb101.com/index.php/tag/cissp-exam/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.trehb101.com</link>
	<description>Information Security : Technology : Project Management : Life</description>
	<lastBuildDate>Thu, 31 Mar 2011 22:23:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>CISSP Exam Note (Telecommunications and Networking Security Domain) – LAN/WAN Devices, Types and Speeds of Leased Lines, etc.</title>
		<link>http://www.trehb101.com/index.php/2010/04/26/cissp-exam-note-telecommunications-and-networking-security-domain-%e2%80%93-lanwan-devices-types-and-speeds-of-leased-lines-etc/</link>
		<comments>http://www.trehb101.com/index.php/2010/04/26/cissp-exam-note-telecommunications-and-networking-security-domain-%e2%80%93-lanwan-devices-types-and-speeds-of-leased-lines-etc/#comments</comments>
		<pubDate>Tue, 27 Apr 2010 00:32:03 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Don's eBook Report]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[Information Technology]]></category>
		<category><![CDATA[eBooks, etc...]]></category>
		<category><![CDATA[ATM]]></category>
		<category><![CDATA[bridges]]></category>
		<category><![CDATA[Circuit]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[gateways]]></category>
		<category><![CDATA[hubs]]></category>
		<category><![CDATA[ISDN]]></category>
		<category><![CDATA[LAN]]></category>
		<category><![CDATA[PPP]]></category>
		<category><![CDATA[repeaters]]></category>
		<category><![CDATA[routers]]></category>
		<category><![CDATA[SLIP]]></category>
		<category><![CDATA[swtiches]]></category>
		<category><![CDATA[WAN]]></category>
		<category><![CDATA[xDSL]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=730</guid>
		<description><![CDATA[    * Amplifies signal and adds some intelligence
    * Forwards the data to all network segments if the Media Access Control (MAC) or hardware address of the destination computer is not on the local network segment
    * Automatically forwards all broadcast traffic
]]></description>
			<content:encoded><![CDATA[<p style="text-align: left;"><strong>LAN Devices</strong></p>
<p><strong>Repeaters </strong>(Layer 1) – amplify signal, no added intelligence, no filtering</p>
<p><strong>Hubs </strong>(Layer 1) – used to connect multiple LAN devices, no added intelligence</p>
<p><strong>Bridges </strong>(Layer 2)</p>
<ul>
<li>Amplifies signal and adds some intelligence</li>
<li>Forwards the data to all network segments if the      Media Access Control (MAC) or hardware address of the destination computer      is not on the local network segment</li>
<li>Automatically forwards all broadcast traffic</li>
</ul>
<p><span id="more-730"></span></p>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td style="text-align: center;" bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
<p style="text-align: center;"><strong>You  may also want to consider these CISSP resources from Amazon.com</strong></p>
<p><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p><strong>Switches </strong>(Layer 2) &#8211; Will only send data to the port where the destination MAC address is, not to all ports</p>
<p><strong>Routers</strong> (Layer 3) – opens packet and looks at either MAC or IP address and forwards the packet to the destination network</p>
<p><strong>Gateways </strong>– primarily software, can be multi-protocol and can examine the entire packet</p>
<p><strong>Asynchronous Transfer Mode (ATM) Switches </strong>– use relay technology and typically used in WANs and CANs.</p>
<p><strong>LAN Extenders </strong></p>
<ul>
<li>Remote access multi-layer switch connected to a      host router</li>
<li>Filters based on MAC address, but not capable of      firewalling</li>
</ul>
<p><strong>WAN Technologies</strong></p>
<ul>
<li>Rules for communicating between computers on a      WAN</li>
<li>Communications between large disparate networks</li>
</ul>
<p><strong>Private Circuit Technologies</strong></p>
<ul>
<li>Evolved before packet switching networks</li>
<li>Dedicated analog or digital point-to-point      connection</li>
<li>Serial Line Internet Protocol (SLIP), Point-to-Pont      Protocol (PPP), ISDN and xDSL</li>
<li><strong>Dedicated      Line </strong>– indefinitely and      continuously reserved for transmissions</li>
<li><strong>Leased      Line </strong>– type of dedicated line      leased from a carrier</li>
</ul>
<p><strong>Types and Speeds of Leased Lines</strong></p>
<p><strong>Digital Signal Level 0 </strong>(DS0) – single channel at 64KBps on a T1</p>
<p><strong>Digital Signal Level 1 </strong>(DS1) – 1.544 MBps in US on a T1 and 2.108 MBps in Europe on an E1</p>
<p><strong>Digital Signal Level 3 </strong>(DS3) – 44.736 MBps on a T3</p>
<p><strong>T1 – </strong>transmits DS-1 data at 1.544 MBps on telephone switching network</p>
<p><strong>T3 – </strong>transmits DS-3 data at 44.736 MBps on telephone switching network</p>
<p><strong>E1 – </strong>predominantly used in Europe and carries data at 2.108 MBps</p>
<p><strong>E3 – </strong>predominantly used in Europe and carries data at 34.368 MBps</p>
<p><strong>SLIP </strong>(Serial Line Internet Protocol)</p>
<ul>
<li>Developed in 1984 to support TCP/IP over low      speed serial interfaces</li>
<li>Using Windows NT RAS, NT computers can use TCP/IP      and SLIP to communicate to remote hosts</li>
</ul>
<p><strong>PPP </strong>(Point to Point Protocol)</p>
<ul>
<li>Used over dial-up and dedicated links</li>
<li>Includes login, password and error correction</li>
<li>Operates at Layer 2 and uses CHAP and PAP</li>
</ul>
<p><strong>ISDN </strong>(Integrated Services Digital Network)</p>
<ul>
<li>Integration of digital telephony and data      transport</li>
<li>Digitization of the telephone network, allowing      voice, data, etc.</li>
<li>Overtaken by DSL</li>
</ul>
<p><strong>xDSL </strong>(Digital Subscriber Line)</p>
<ul>
<li>Uses existing twisted pair telephone lines</li>
<li>ADSL (Asymmetric DSL)
<ul>
<li>More bandwidth downstream (1.5 to 9 MBps) than       upstream (16 to 640 KBps)</li>
<li>Works at 18000 ft theoretical lengths and 14400       ft practical lengths over copper twisted pair</li>
</ul>
</li>
<li>SDSL (Single-line DSL)
<ul>
<li>Provides from 144 KBps up to 1.544 MBps in both       downstream and upstream traffic, depending on the distance from the       carriers point of presence (POP) over copper twisted pair</li>
<li>Works at 10000 ft lengths</li>
</ul>
</li>
<li>HDSL (High-rate DSL)
<ul>
<li>1.544 MBps both up and down over two copper       twisted pair (T1 speed)</li>
<li>Can do 2.048 MBps on three copper twisted pair</li>
</ul>
</li>
<li>VDSL – (Very High-rate DSL)
<ul>
<li>13-52 MBps down and 1.5 MB to 2.3 MBps upstream       over single copper twisted pair operating range 1,000 – 4,500 feet</li>
</ul>
</li>
</ul>
<p style="text-align: center;"><strong>You        may also want to consider these CISSP resources from Amazon.com</strong></p>
<p style="text-align: center;"><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2010/04/26/cissp-exam-note-telecommunications-and-networking-security-domain-%e2%80%93-lanwan-devices-types-and-speeds-of-leased-lines-etc/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Telecommunications and Networking Security Domain) &#8211; Common Data Network Services</title>
		<link>http://www.trehb101.com/index.php/2010/03/26/cissp-exam-note-telecommunications-and-networking-security-domain-common-data-network-services/</link>
		<comments>http://www.trehb101.com/index.php/2010/03/26/cissp-exam-note-telecommunications-and-networking-security-domain-common-data-network-services/#comments</comments>
		<pubDate>Fri, 26 Mar 2010 16:05:07 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Don's eBook Report]]></category>
		<category><![CDATA[IT Docs]]></category>
		<category><![CDATA[InfoSec Docs]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[Information Technology]]></category>
		<category><![CDATA[eBooks, etc...]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[CISSP reviewer]]></category>
		<category><![CDATA[client/server]]></category>
		<category><![CDATA[client/server services]]></category>
		<category><![CDATA[data network services]]></category>
		<category><![CDATA[DNS]]></category>
		<category><![CDATA[domain name service]]></category>
		<category><![CDATA[file services]]></category>
		<category><![CDATA[mail services]]></category>
		<category><![CDATA[print services]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=554</guid>
		<description><![CDATA[Domain Name Service
    * Matches Internet Uniform Resource Locator (URL) with the actual IP address of the server providing the URL
    * Maps host names to IP addresses
    * Domain Name System (DNS) – global network of servers that provide this service]]></description>
			<content:encoded><![CDATA[<p><strong>File Services – </strong>Share data files and subdirectories on the file server</p>
<p><strong> </strong></p>
<p><strong>Mail Services – </strong>Send and receive e-mail internally and externally</p>
<p><strong>Print Services </strong>– Print documents to shared printers</p>
<p><strong>Client/Server Services – </strong>Allocate computing resources among workstations<span id="more-554"></span></p>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td style="text-align: center;" bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
<p style="text-align: center;"><strong>You  may also want to consider these CISSP resources from Amazon.com</strong></p>
<p><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p><strong>Domain Name Service</strong></p>
<ul>
<li>Matches Internet Uniform Resource Locator (URL)      with the actual IP address of the server providing the URL</li>
<li>Maps host names to IP addresses</li>
<li>Domain Name System (DNS) – global network of      servers that provide this service</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2010/03/26/cissp-exam-note-telecommunications-and-networking-security-domain-common-data-network-services/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Domains: Who&#8217;s on first?</title>
		<link>http://www.trehb101.com/index.php/2010/03/19/cissp-domains-whos-on-first/</link>
		<comments>http://www.trehb101.com/index.php/2010/03/19/cissp-domains-whos-on-first/#comments</comments>
		<pubDate>Fri, 19 Mar 2010 18:34:19 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Don's eBook Report]]></category>
		<category><![CDATA[InfoSec Docs]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Application Development Security]]></category>
		<category><![CDATA[Business Continuity and Disaster Recovery Planning]]></category>
		<category><![CDATA[CISSP Domains]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[Common Body of Knowledge]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[Information Security Governance and Risk Management]]></category>
		<category><![CDATA[Investigations and Compliance]]></category>
		<category><![CDATA[ISC2]]></category>
		<category><![CDATA[Legal]]></category>
		<category><![CDATA[Official CISSP Book]]></category>
		<category><![CDATA[Operations Security]]></category>
		<category><![CDATA[Physical (Environmental) Security]]></category>
		<category><![CDATA[Regulations]]></category>
		<category><![CDATA[Security Architecture and Design]]></category>
		<category><![CDATA[Shon Harris]]></category>
		<category><![CDATA[Telecommunications and Network Security]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=527</guid>
		<description><![CDATA[I just realized something today that I found a tad bit annoying. The numbering of the domains of the CISSP Common Body of Knowledge (CBK) is actually trivial (can’t think of a better word at the moment). I am reviewing some items on my CISSP notes today and was looking at Domain 2: Telecommunications and Network Security. I wanted to compare some of my notes (written in 2006) to whatever else I can find in the web.
So I Googled, “CISSP Domain 2”.  The result was TechTarget’s SearchSecurity.com listed at number 1. And it says “CISSP Domain 2 quiz: Access Control.” Access Control? What do you mean Access Control? I thought “Telecommunications and Network Security” is the CBK”s Domain 2?]]></description>
			<content:encoded><![CDATA[<p>I just realized something today that I found a tad bit annoying. The numbering of the domains of the CISSP Common Body of Knowledge (CBK) is actually trivial (can’t think of a better word at the moment). I am reviewing some items on my CISSP notes today and was looking at Domain 2: Telecommunications and Network Security. I wanted to compare some of my notes (written in 2006) to whatever else I can find in the web.</p>
<p>So I Googled, “CISSP Domain 2”.  The result was TechTarget’s SearchSecurity.com listed at number 1. And it says “<em>CISSP Domain 2</em> quiz: Access Control.” Access Control? What do you mean Access Control? I thought “Telecommunications and Network Security” is the CBK”s Domain 2?<span id="more-527"></span></p>
<p><a href="http://www.google.com/#hl=en&amp;source=hp&amp;q=CISSP+Domain+2&amp;btnG=Google+Search&amp;aq=f&amp;aqi=&amp;aql=&amp;oq=CISSP+Domain+2&amp;gs_rfai=&amp;fp=ae8f9588018abe0f" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.google.com/_hl=en_amp_source=hp_amp_q=CISSP+Domain+2_amp_btnG=Google+Search_amp_aq=f_amp_aqi=_amp_aql=_amp_oq=CISSP+Domain+2_amp_gs_rfai=_amp_fp=ae8f9588018abe0f?referer=');"><img class="aligncenter" title="Google Search Result for CISSP Domain 2" src="http://www.trehb101.com/images/entries/domain2-google.png" alt="" width="450" height="349" /></a></p>
<p>At first I thought it was a mistake by TechTarget, but as I go down the Google search result they all say Access Control. Was I smoking something when I was typing my notes 4 years ago? You are probably saying, &#8220;well Don, what is the big deal?&#8221; It sort of kinda a big deal, since if you have been following my entries in this blog, I have Access Control listed as Domain 1 and Telecommunications and Network Security is Domain 2. Don’t want to end up losing street cred here <img src='http://www.trehb101.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> . Plus really it bugs me not being able to figure out how I could have done such a mistake.</p>
<p>So I visited the <a href="http://www.isc2.org/cissp/default.aspx" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.isc2.org/cissp/default.aspx?referer=');">original source</a>, I went to ISC2.org and looked up how they listed the domains. And this is what I found:</p>
<ul>
<li>Access Control</li>
<li>Application Development Security</li>
<li>Business Continuity and Disaster Recovery Planning</li>
<li>Cryptography</li>
<li>Information Security Governance and Risk Management</li>
<li>Legal, Regulations, Investigations and Compliance</li>
<li>Operations Security</li>
<li>Physical (Environmental) Security</li>
<li>Security Architecture and Design</li>
<li>Telecommunications and Network Security</li>
</ul>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td style="text-align: center;" bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
<p style="text-align: center;"><strong>You  may also want to consider these CISSP resources from Amazon.com</strong></p>
<p><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p>If you notice the list is in alphabetical order. There is no direct number designation for each domain. I also used the Shon Harris All-in-One book (<a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img class="alignnone" src="http://ecx.images-amazon.com/images/I/41rfJC1tZ%2BL._SL75_.jpg" alt="" width="56" height="75" /></a>) primarily to do my review. Since I don’t have the book handy (it is stuck somewhere in storage), I went to Amazon and looked up the book and see if I can view the table of contents inside. The book is now on its fifth edition (<a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');">CISSP All-in-One Exam Guide, Fifth Edition</a>) and I know I have an older version. The oldest version I can find that has the Amazon Look Inside feature is the <a href="http://www.amazon.com/CISSP-All-One-Guide-Third/dp/0072257121/ref=sr_1_17?ie=UTF8&amp;s=books&amp;qid=1269017446&amp;sr=8-17" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Third/dp/0072257121/ref=sr_1_17?ie=UTF8_amp_s=books_amp_qid=1269017446_amp_sr=8-17&amp;referer=');">Third Edition</a>. And voila! There it is the first domain discussed is Access Control and therefore making it Domain 1, right?</p>
<p style="text-align: center;"><img class="alignnone" title="CISSP All-in-One Third Edition" src="http://www.trehb101.com/images/entries/cissp-shon-at-a-glance.png" alt="" width="450" height="436" /></p>
<p>But wait, it also lists Telecommunications &amp; Network Security fourth in the list, which means I am still up in smoke <img src='http://www.trehb101.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> . I looked up the publication date of the third edition and it shows as September 15, 2005. I bought my book in 2003 and this means I have the older edition, which may have a different way of listing the domains. I can’t prove that since I don’t have the book and I don’t feel like diving into the abyss otherwise known as my storage, I just continued Googling for answers.</p>
<p>I looked up the Official CISSP book (<a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a>) that I have (<a href="http://www.amazon.com/Official-ISC-Guide-CISSP-Press/dp/0849382319%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0849382319" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-ISC-Guide-CISSP-Press/dp/0849382319_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0849382319?referer=');">Official (ISC)2 Guide to the CISSP CBK ((ISC)2 Press)</a>) and it lists “Information Security Governance and Risk Management” as Domain 1, while “Access Control” is Domain 2. I really could care less, I already passed the exam, I already have 120 CPEs and I am on time on my membership payments to ISC2, so I am set to get my CISSP cert to be renewed by September this year. But this difference in numbering does bug me. Now I think about it, I did notice the numbering difference when I bought the Official CISSP book in 2006, I didn’t pay much attention to it for some reason since I was already deep into my studying of the Shon Harris book. What was I smoking? What was Ms. Harris smoking? Well to be quite sure, nothing.</p>
<p style="text-align: center;"><img class="alignnone" title="Official CISSP Book Domain 1 TOC" src="http://www.trehb101.com/images/entries/official-cissp-domain1.png" alt="" width="522" height="335" /></p>
<p style="text-align: center;"><img class="aligncenter" title="TOC Domain 2 Official CISSP Book" src="http://www.trehb101.com/images/entries/official-cissp-domain2.png" alt="" width="533" height="322" /></p>
<p>As I did further Googling I landed into another SearchSecurity.com site. The site that started this little hubbub. And guess what I found?</p>
<p style="text-align: center;"><a href="http://searchsecuritychannel.techtarget.com/generic/0,295582,sid97_gci1293048,00.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/searchsecuritychannel.techtarget.com/generic/0_295582_sid97_gci1293048_00.html?referer=');"><img class="alignnone" title="SearchSecurity.com Different CISSP Domain Listing" src="http://www.trehb101.com/images/entries/search-security-other-list.png" alt="" width="480" height="714" /></a></p>
<p>Domain 1 is “Telecommunications &amp; Network Security”, Domain 2 “Physical Security”…</p>
<p>Whut!?!</p>
<p>Yep, the site contradicted itself.</p>
<p>So a quick conclusion after all this little exercise in WTF, I concluded that OFFICIALLY there are 10 Domains in the CISSP Common Body of Knowledge. Which domain comes first, next and last, is NOT AN OFFICIAL RANKING OR NUMBERING. Don’t get too hung up on this while you are studying, you will not encounter a question in the exam that says, “In Domain 2 of the CBK…”, it will instead more than likely say, “In the Access Control Domain of the CBK…”</p>
<p>All that said, I wish you goodluck on the exam. If you are not taking the exam, thank you for reading <img src='http://www.trehb101.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> . Happy weekend.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2010/03/19/cissp-domains-whos-on-first/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Virtual Private Networks</title>
		<link>http://www.trehb101.com/index.php/2010/03/16/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-virtual-private-networks/</link>
		<comments>http://www.trehb101.com/index.php/2010/03/16/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-virtual-private-networks/#comments</comments>
		<pubDate>Tue, 16 Mar 2010 18:23:47 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Don's eBook Report]]></category>
		<category><![CDATA[InfoSec Docs]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Technology]]></category>
		<category><![CDATA[CISSP]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[Firewall-based VPNs]]></category>
		<category><![CDATA[IPSec]]></category>
		<category><![CDATA[IPSec Compatible]]></category>
		<category><![CDATA[L2TP]]></category>
		<category><![CDATA[Layer 2 Tunneling Protocol]]></category>
		<category><![CDATA[Non-IPSec Compatible]]></category>
		<category><![CDATA[Point-to-Point Tunneling Protocol]]></category>
		<category><![CDATA[PPTP]]></category>
		<category><![CDATA[Virtual Private Networks]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[VPN Devices]]></category>
		<category><![CDATA[VPN Protocal Standards]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=450</guid>
		<description><![CDATA[Virtual Private Networks

    * Secure connection between two nodes using secret encapsulation method
    * Secure Encrypted Tunnel – encapsulated tunnel (encryption may or may not be used)
    * Tunnel can be created by the following three methods:]]></description>
			<content:encoded><![CDATA[<p><strong>Virtual Private Networks</strong></p>
<ul>
<li>Secure connection between two nodes using secret      encapsulation method</li>
<li>Secure Encrypted Tunnel – encapsulated tunnel      (encryption may or may not be used)</li>
<li>Tunnel can be created by the following three      methods:
<ul>
<li>Installing software or agents on the client or       network gateway</li>
<li>Implementing user or node authentication systems</li>
<li>Implementing key and certificate exchange       systems</li>
</ul>
</li>
</ul>
<p><span id="more-450"></span></p>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td style="text-align: center;" bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
<p style="text-align: center;"><strong>You  may also want to consider these CISSP resources from Amazon.com</strong></p>
<p><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p><strong>VPN Protocol Standards</strong></p>
<p><strong>PPTP – Point-to-Point Tunneling Protocol</strong></p>
<ul>
<li>Works at the data link layer</li>
<li>Single point to point connection from client to      server</li>
<li>Common with asynchronous connections with NT and      Win 95</li>
</ul>
<p><strong>L2TP – Layer 2 Tunneling Protocol</strong></p>
<ul>
<li>Combination of PPTP and earlier Layer 2      Forwarding Protocol (L2F)</li>
<li>Multiple protocols can be encapsulated within the      L2TP</li>
<li>Single point to point connection from client to      server</li>
<li>Common with Dial-up VPNs</li>
</ul>
<p><strong>IPSec</strong></p>
<ul>
<li>Operates at the network layer</li>
<li>Allows multiple and simultaneous tunnels</li>
<li>Encrypt and authenticate IP data</li>
<li>Focuses more on Network to Network Connectivity</li>
</ul>
<p><strong>VPN Devices</strong></p>
<ul>
<li>Hardware and Software devices that utilize VPN      standards</li>
<li>Two types:
<ul>
<li>IPSec Compatible</li>
<li>Non-IPSec Compatible</li>
</ul>
</li>
</ul>
<p><strong>IPSec Compatible</strong></p>
<ul>
<li>Installed on a network perimeter and encrypt      traffic between two networks</li>
<li>Only works with IP</li>
<li>Operates at the Network Layer</li>
<li>Two modes:
<ul>
<li>Tunnel Mode – entire packet is encrypted and       encased in the IPSec packet</li>
<li>Transport Mode – only datagram is encrypted       leaving IP address visible</li>
</ul>
</li>
<li>Datagram – self-contained, independent entity of      data carrying sufficient information to be routed from the source to the      destination</li>
</ul>
<p><strong>Non-IPSec Compatible</strong></p>
<ul>
<li>Common non-IPSec compatible includes: SOCKS, PPTP      and SSH</li>
<li>SOCKS is not a traditional VPN protocol, but is      robust and operates at the application layer</li>
<li>PPTP was implemented in Win95 and NT
<ul>
<li>Multiprotocol and uses PAP and CHAP user       authentication</li>
<li>Compresses data</li>
<li>End-to-End encryption</li>
</ul>
</li>
<li>Secure Shell SSH-2 – Not strictly VPN but can be      used as one with terminal session</li>
</ul>
<p><strong>Firewall-based VPNs</strong></p>
<ul>
<li>Frequently available with 3<sup>rd</sup> Generation (Stateful Inspection) Firewalls</li>
<li>Operates at the application layer</li>
<li>Performance degradation is often a problem</li>
</ul>
<p style="text-align: center;"><strong>You   may also want to consider these CISSP resources from Amazon.com</strong></p>
<p style="text-align: center;"><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2010/03/16/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-virtual-private-networks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Network Address Translation</title>
		<link>http://www.trehb101.com/index.php/2010/03/15/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-network-address-translation/</link>
		<comments>http://www.trehb101.com/index.php/2010/03/15/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-network-address-translation/#comments</comments>
		<pubDate>Mon, 15 Mar 2010 20:06:34 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Don's eBook Report]]></category>
		<category><![CDATA[IT Docs]]></category>
		<category><![CDATA[InfoSec Docs]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Technology]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[CISSP Exam Review]]></category>
		<category><![CDATA[Global Nonroutable addresses]]></category>
		<category><![CDATA[multicast]]></category>
		<category><![CDATA[NAT]]></category>
		<category><![CDATA[Network Address Translation]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=411</guid>
		<description><![CDATA[# Global Non-routable Addresses
# Class A - 10.0.0.0 to 10.255.255.255
# Class B - 172.16.0.0 to 172.31.255.255
# Class C - 192.168.0.0 to 192.168.255.255]]></description>
			<content:encoded><![CDATA[<p><strong>NAT – Network Address Translation</strong></p>
<ul>
<li>3 Private       IP Address       Ranges</li>
</ul>
<ul>
<li>Global Non-routable Addresses</li>
<li>Class A &#8211; 10.0.0.0 to 10.255.255.255</li>
<li>Class B &#8211; 172.16.0.0 to 172.31.255.255</li>
<li>Class C &#8211; 192.168.0.0 to 192.168.255.255<span id="more-411"></span></li>
<li>Class A addresses are for large networks (1 –      127)</li>
<li>Class B addresses are for medium size networks      (128-191)</li>
<li>Class C address are for small networks &#8211; fewer      than 256 devices (192-223</li>
<li>Class D are for multicast addresses</li>
</ul>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td style="text-align: center;" bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
<p style="text-align: center;"><strong>You  may also want to consider these CISSP resources from Amazon.com</strong></p>
<p><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2010/03/15/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-network-address-translation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Security Protocols</title>
		<link>http://www.trehb101.com/index.php/2010/03/11/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-security-protocols/</link>
		<comments>http://www.trehb101.com/index.php/2010/03/11/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-security-protocols/#comments</comments>
		<pubDate>Thu, 11 Mar 2010 16:58:10 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Don's eBook Report]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[Information Technology]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[CISSP Review]]></category>
		<category><![CDATA[OSI application layer]]></category>
		<category><![CDATA[OSI Transport Layer]]></category>
		<category><![CDATA[Secure Electronic Transaction]]></category>
		<category><![CDATA[Secure HTTP]]></category>
		<category><![CDATA[Secure Socket Layer]]></category>
		<category><![CDATA[security protocols]]></category>
		<category><![CDATA[SET]]></category>
		<category><![CDATA[SHTTP]]></category>
		<category><![CDATA[Simple Key Management for Internet Protocol]]></category>
		<category><![CDATA[SKIP]]></category>
		<category><![CDATA[SSH-2]]></category>
		<category><![CDATA[SSL]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=354</guid>
		<description><![CDATA[SSL – Secure Socket Layer

    * Contains SSL record protocol and SSL Handshake Protocol
    * Uses symmetric encryption and public key authentication
    * MAC – Message Authentication Code for Integrity]]></description>
			<content:encoded><![CDATA[<p><strong>Security Protocols</strong></p>
<p><strong>At the OSI Application Layer</strong></p>
<p><strong> </strong></p>
<p><strong>SET – Secure Electronic Transaction</strong></p>
<ul>
<li>Originated by Visa and Mastercard<strong> </strong></li>
<li>Being overtaken by SSL<strong> </strong></li>
</ul>
<p><strong>SHTTP – Secure HTTP</strong></p>
<ul>
<li>Early standard for encrypting HTTP documents</li>
<li>Also being overtaken by SSL</li>
</ul>
<p><span id="more-354"></span><strong> </strong></p>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
</td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p><strong>At the OSI Transport Layer</strong></p>
<p><strong> </strong></p>
<p><strong>SSH-2</strong></p>
<ul>
<li>SSH has RSA certificates</li>
<li>Supports authentication, compression, confidentiality      and integrity</li>
<li>DES encryption</li>
<li>Because Secure Shell (SSH-2) supports      authentication, compressions, confidentiality and integrity, SSH is used      frequently for Encrypted File Transfer</li>
</ul>
<p><strong>SSL – Secure Socket Layer</strong></p>
<ul>
<li>Contains SSL record protocol and SSL Handshake      Protocol</li>
<li>Uses symmetric encryption and public key      authentication</li>
<li>MAC – Message Authentication Code for Integrity</li>
</ul>
<p><strong>SKIP – Simple Key Management for Internet Protocol  - </strong>Similar to SSL with no prior communication required</p>
<p style="text-align: center;"><strong>You may also want to consider these CISSP resources from Amazon.com</strong></p>
<p style="text-align: center;"><a href="http://www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000VAUVRG" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Video-Seminar/dp/B000VAUVRG_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000VAUVRG?referer=');"><img src="http://ecx.images-amazon.com/images/I/51IKv2zbVuL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB000AYWNWY" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Shon-Harris-CISSP-Solution/dp/B000AYWNWY_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB000AYWNWY?referer=');"><img src="http://ecx.images-amazon.com/images/I/5128347HN8L._SL75_.jpg" alt="" /> </a><a href="http://www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3DB001W8U2ZM" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-Certification-Practice-Study-Bundle/dp/B001W8U2ZM_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3DB001W8U2ZM?referer=');"><img src="http://ecx.images-amazon.com/images/I/51ci8WP45uL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D0071602178" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/CISSP-All-One-Guide-Fifth/dp/0071602178_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D0071602178?referer=');"><img src="http://ecx.images-amazon.com/images/I/51OQJcG0itL._SL75_.jpg" alt="" /></a><a href="http://www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593%3FSubscriptionId%3DAKIAIEOUDPPDBC477XGA%26tag%3Dgutomorg-20%26linkCode%3Dxm2%26camp%3D2025%26creative%3D165953%26creativeASIN%3D1439809593" onclick="pageTracker._trackPageview('/outgoing/www.amazon.com/Official-Guide-CISSP-Second-Press/dp/1439809593_3FSubscriptionId_3DAKIAIEOUDPPDBC477XGA_26tag_3Dgutomorg-20_26linkCode_3Dxm2_26camp_3D2025_26creative_3D165953_26creativeASIN_3D1439809593?referer=');"><img src="http://ecx.images-amazon.com/images/I/414%2BZSmZO6L._SL75_.jpg" alt="" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2010/03/11/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-security-protocols/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Protocols</title>
		<link>http://www.trehb101.com/index.php/2010/01/11/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-protocols/</link>
		<comments>http://www.trehb101.com/index.php/2010/01/11/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-protocols/#comments</comments>
		<pubDate>Mon, 11 Jan 2010 19:38:22 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[Information Technology]]></category>
		<category><![CDATA[application]]></category>
		<category><![CDATA[CISSP]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[CISSP RE]]></category>
		<category><![CDATA[CISSP Review]]></category>
		<category><![CDATA[data link]]></category>
		<category><![CDATA[ISDN]]></category>
		<category><![CDATA[Layered Architecture]]></category>
		<category><![CDATA[MAC addresses]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[OSI model]]></category>
		<category><![CDATA[physical]]></category>
		<category><![CDATA[presentation]]></category>
		<category><![CDATA[Protocols]]></category>
		<category><![CDATA[session]]></category>
		<category><![CDATA[transport]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=283</guid>
		<description><![CDATA[Protocols – a standard set of rules that determines how computers communicate with each other across networks despite their differences]]></description>
			<content:encoded><![CDATA[<p><strong>Protocols – </strong>a standard set of rules that determines how computers communicate with each other across networks despite their differences</p>
<p><strong>Layered architecture</strong></p>
<ul>
<li>Shows how communication should take place</li>
<li>Clarify the general functions of a communication      process</li>
<li>To break down complex networking processes into      more manageable sub-layers</li>
<li>Using industry standard interfaces enables      interoperability</li>
<li>To change the features of one layer without      changing the code in every layer</li>
<li>Easier troubleshooting<span id="more-283"></span></li>
</ul>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
</td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p><strong>Open Systems Interconnect (OSI) Model</strong></p>
<p><strong>Layer 7 – Application</strong></p>
<ul>
<li>Responsible for all application-to-application      communications</li>
<li>User information maintained at this layer is <strong>user data</strong></li>
<li>Security: Confidentiality, Authentication, Data      Integrity, Non-repudiation</li>
<li>Technology: Gateways</li>
<li>Protocols: FTP, SMB, Telnet, TFTP, SMTP, HTTP,      NNTP, CDP, GOPHER, SNMP, NDS, AFP, SAP, NCP, SET</li>
</ul>
<p><strong>Layer 6 – Presentation</strong></p>
<ul>
<li>Responsible for the formatting of the data so      that it is suitable for presentation</li>
<li>Responsible for character conversion      (ASCII/EBCDIC)</li>
<li>Encryption/Decryption, Compressions and Virtual      Terminal Emulation</li>
<li>User information maintained at this layer is      called <strong>messages</strong></li>
<li>Security: Confidentiality, Authentication,      Encryption</li>
<li>Technology: Gateway</li>
<li>Protocols: ASCII, EBCDIC, Postscript, JPEG, MPEG,      GIF</li>
</ul>
<p><strong>Layer 5 – Session</strong></p>
<ul>
<li>Responsible for the setup of the links,      maintaining of the link and the link tear-down between applications</li>
<li>Security: None</li>
<li>Technology: Gateway</li>
<li>Protocols: Remote Procedure Calls (RPC), SQL,      RADIUS, DNS, ASP</li>
</ul>
<p><strong>Layer 4 – Transport</strong></p>
<ul>
<li>Responsible for the guaranteed delivery of user      information</li>
<li>Also responsible for error detection, correction      and flow control</li>
<li>User information at this layer is called <strong>datagram</strong></li>
<li>Security: Confidentiality, Authentication,      Integrity</li>
<li>Technology: Gateway</li>
<li>Protocols: TCP, UDP, SSL, SSH-2, SPX, NetBIOS,      ATP</li>
</ul>
<p><strong>Layer 3 – Network</strong></p>
<ul>
<li>Responsible for the routing of user data from one      node to another through the network including the path selection</li>
<li>Logical addresses are used at this layer</li>
<li>User information maintained at this layer is      called <strong>packets</strong></li>
<li>Security: Confidentiality, Authentication, Data      Integrity</li>
<li>Technology: Virtual Circuits (ATM), routers</li>
<li>Protocols: IP, IPX, ICMP, OSPF, IGRP, EIGRP, RIP,      BOOTP, DHCP, ISIS, ZIP, DDP, X.25</li>
</ul>
<p><strong>Layer 2 – Data Link</strong></p>
<ul>
<li>Responsible for the physical addressing of the      network via MAC addresses</li>
<li>There are two sublevels: MAC &amp; LLC</li>
<li>Has error detection, frame ordering and flow      control</li>
<li>User information maintained at this layer is      called <strong>frames</strong></li>
<li>Security: Confidentiality</li>
<li>Technology: Bridges, switches</li>
<li>Protocols: L2F, PPTP, L2TP, PPP, SLIP, ARP, RARP,      SLARP, IARP, SNAP, BAP, CHAP, LCP, LZS, MLP, Frame Relay, Annex A, Annex      D, HDLC, BPDU, LAPD, ISL, ,MAC, Ethernet, Token Ring, FDDI</li>
</ul>
<p><strong> </strong></p>
<p><strong>Layer 1 – Physical</strong></p>
<ul>
<li>Responsible for the physical transmission of the      binary digits through the physical medium</li>
<li>Includes things such as the physical cables,      interfaces and data rate specifications</li>
<li>User information maintained at this layer is      called <strong>bits</strong></li>
<li>Security: Confidentiality</li>
<li>Technology: ISDN, Hubs, Repeaters, Cables</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2010/01/11/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-protocols/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Key Concepts and Other Definitions</title>
		<link>http://www.trehb101.com/index.php/2009/12/22/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-key-concepts-and-other-definitions/</link>
		<comments>http://www.trehb101.com/index.php/2009/12/22/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-key-concepts-and-other-definitions/#comments</comments>
		<pubDate>Tue, 22 Dec 2009 14:50:54 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[CISSP Notes]]></category>
		<category><![CDATA[computer security]]></category>
		<category><![CDATA[department of defense]]></category>
		<category><![CDATA[Layered Architecture]]></category>
		<category><![CDATA[Orange Book]]></category>
		<category><![CDATA[OSI model]]></category>
		<category><![CDATA[Protocols]]></category>
		<category><![CDATA[Rainbow Series]]></category>
		<category><![CDATA[Redbook]]></category>
		<category><![CDATA[Salami Attack]]></category>
		<category><![CDATA[TCSEC]]></category>
		<category><![CDATA[TNI]]></category>
		<category><![CDATA[Trusted Computer System Evaluation Criteria]]></category>
		<category><![CDATA[Trusted Network Interpretation]]></category>
		<category><![CDATA[US Government]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=266</guid>
		<description><![CDATA[The Rainbow Series (sometimes known as the Rainbow Books) is a series of computer security standards published by the United States government in the 1980s and 1990s. They were originally published by the U.S. Department of Defense Computer Security Center, and then by the National Computer Security Center.]]></description>
			<content:encoded><![CDATA[<p><strong>Rainbow Series</strong></p>
<p>The Rainbow Series (sometimes known as the Rainbow Books) is a series of computer security standards published by the United States government in the 1980s and 1990s. They were originally published by the U.S. Department of Defense Computer Security Center, and then by the National Computer Security Center.</p>
<p>These standards describe a process of evaluation for trusted systems. In some cases, U.S. government entities (as well as private firms) would require formal validation of computer technology using this process as part of their procurement criteria. Many of these standards have influenced, and have been superseded by, the Common Criteria.<span id="more-266"></span></p>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
</td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p>The books have nicknames based on the color of its cover. For example, the Trusted Computer System Evaluation Criteria was referred to as &#8220;The Orange Book.&#8221; In the book entitled Applied Cryptography, security expert Bruce Schneier states of NCSC-TG-021 that he &#8220;can&#8217;t even begin to describe the color of [the] cover&#8221; and that some of the books in this series have &#8220;hideously colored covers.&#8221; He then goes on to describe how to receive a copy of them, saying &#8220;Don&#8217;t tell them I sent you.&#8221;</p>
<p>(Source: http://en.wikipedia.org/wiki/Rainbow_Series)</p>
<ul>
<li>Redbook – Trusted Network Interpretation (TNI)<strong> </strong></li>
<li>Time and technological changes lessen the      relevancy of the TNI to contemporary networking<strong> </strong></li>
<li>Deals with technical issues outside the scope of      the Orange Book with regards to networks<strong> </strong></li>
<li>Redbook interprets the Orange Book<strong> </strong></li>
</ul>
<p><strong>Orange Book – </strong>Trusted Computer Security Evaluation Criteria</p>
<ul>
<li>A document published by the US Department of Defense which contains criteria used for evaluating the degree of security in a networked system. It characterizes security from D (the minimum) to A1 (very secure). Most OPERATING SYSTEMS and NETWORK OPERATING SYSTEMS are classified at the C2 level. It is also known as the Orange Book and is often abbreviated to TCSEC.</li>
</ul>
<p><strong>TNI Evaluation Classes</strong></p>
<ul>
<li>D – Minimal protection</li>
<li>C – Discretionary protection</li>
<li>C1 – Discretionary Security Protection</li>
<li>C2 – Controlled Access protection</li>
<li>B – Mandatory</li>
<li>B1 – Labeled Security</li>
<li>B2 – Structured</li>
<li>B3 – Security Domains</li>
</ul>
<p><strong>Protocols – </strong>a standard set of rules that determines how computers communicate with each other across networks despite their differences</p>
<p><strong>Layered architecture &#8211; </strong>An architecture in which data moves from one defined level of processing to another. Communications protocols are a primary example (i.e the OSI model)</p>
<ul>
<li>Shows how communication should take place</li>
<li>Clarify the general functions of a communication      process</li>
<li>To break down complex networking processes into      more manageable sub-layers</li>
<li>Using industry standard interfaces enables      interoperability</li>
<li>To change the features of one layer without      changing the code in every layer</li>
<li>Easier troubleshooting</li>
</ul>
<p><strong>Salami Attack – </strong>a series of minor computer crimes that are part of a larger crime</p>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2009/12/22/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-key-concepts-and-other-definitions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Denial of Service Attack</title>
		<link>http://www.trehb101.com/index.php/2009/12/10/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-denial-of-service-attack/</link>
		<comments>http://www.trehb101.com/index.php/2009/12/10/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-denial-of-service-attack/#comments</comments>
		<pubDate>Thu, 10 Dec 2009 17:25:44 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[Buffer Overflow]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[CISSP Notes]]></category>
		<category><![CDATA[CISSP reviewer]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[denial of service]]></category>
		<category><![CDATA[Distributed Denial of Service Attack]]></category>
		<category><![CDATA[DOS]]></category>
		<category><![CDATA[Fraggle]]></category>
		<category><![CDATA[Smurf]]></category>
		<category><![CDATA[SYN Attack]]></category>
		<category><![CDATA[Teardrop]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=249</guid>
		<description><![CDATA[A denial-of-service attack (DoS attack) or distributed denial-of-service attack (DDoS attack) is an attempt to make a computer resource unavailable to its intended users. Although the means to carry out, motives for, and targets of a DoS attack may vary, it generally consists of the concerted efforts of a person or people to prevent an Internet site or service from functioning efficiently or at all, temporarily or indefinitely. Perpetrators of DoS attacks typically target sites or services hosted on high-profile web servers such as banks, credit card payment gateways, and even root nameservers.]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft" title="Stachledraht DDos Attack" src="http://upload.wikimedia.org/wikipedia/commons/thumb/3/3f/Stachledraht_DDos_Attack.svg/424px-Stachledraht_DDos_Attack.svg.png" alt="" width="284" height="403" />A denial-of-service attack (DoS attack) or distributed denial-of-service attack (DDoS attack) is an attempt to make a computer resource unavailable to its intended users. Although the means to carry out, motives for, and targets of a DoS attack may vary, it generally consists of the concerted efforts of a person or people to prevent an Internet site or service from functioning efficiently or at all, temporarily or indefinitely. Perpetrators of DoS attacks typically target sites or services hosted on high-profile web servers such as banks, credit card payment gateways, and even root nameservers.</p>
<p>One common method of attack involves saturating the target (victim) machine with external communications requests, such that it cannot respond to legitimate traffic, or responds so slowly as to be rendered effectively unavailable. In general terms, DoS attacks are implemented by either forcing the targeted computer(s) to reset, or consuming its resources so that it can no longer provide its intended service or obstructing the communication media between the intended users and the victim so that they can no longer communicate adequately.<span id="more-249"></span>Denial-of-service attacks are considered violations of the IAB&#8217;s Internet proper use policy, and also violate the acceptable use policies of virtually all Internet Service Providers. They also commonly constitute violations of the laws of individual nations. (Source: <a href="http://en.wikipedia.org/wiki/Denial-of-service_attack" target="_blank" onclick="pageTracker._trackPageview('/outgoing/en.wikipedia.org/wiki/Denial-of-service_attack?referer=');">http://en.wikipedia.org/wiki/Denial-of-service_attack</a>)</p>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
</td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p><strong>Common DoS Attacks</strong></p>
<ul>
<li>Filling hard drive space with e-mail attachments</li>
<li>Sending a message that resets a targets host      subnet mask causing routing disruption</li>
<li>Using up all the target’s resources to accept      network connections</li>
</ul>
<p><strong>Additional DoS Attacks</strong></p>
<ul>
<li>Buffer Overflow Attack
<ul>
<li>When a process receives much more data that       expected</li>
<li>Since buffers are created to contain a finite       amount of data, the extra information, which has to go somewhere – can       overflow in adjacent buffers, corrupting or overwriting the valid data       held in them</li>
<li>PING – Packet Internet Groper – uses ICMP –       Internet Control Message Protocol</li>
<li>PING of Death – Intruder sends a PING that consists of an illegally modified and       very large IP datagram, thus overfilling the system buffers and causing       the system to reboot or hang</li>
</ul>
</li>
<li>SYN Attack
<ul>
<li>Attacks the buffer space during a TCP handshake</li>
<li>Attacker f;ppds the target system’s “in-process”       queue with connection requests causing the system to timeout</li>
</ul>
</li>
<li>Teardrop Attack
<ul>
<li>Modifying the length of the fragmentation fields       in the IP packet</li>
<li>When a machine receives this attack, it is       unable to handle the data and can exhibit behavior ranging from a lost       Internet connection to the infamous BSOD, the machine becomes confused       and crashes</li>
</ul>
</li>
<li>Smurf Attack
<ul>
<li>Source site sends spoofed network requests to a       large network (bounce site) and all machines responds to a target site</li>
<li>Exploits IP broadcast addressing</li>
</ul>
</li>
<li>Fraggle Attack
<ul>
<li>“Cousin” of the Smurf Attack</li>
<li>uses UDP echo packets in the same fashion as the       ICMP echo packet</li>
</ul>
</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2009/12/10/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-denial-of-service-attack/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Classes of Network Abuse</title>
		<link>http://www.trehb101.com/index.php/2009/12/07/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-classes-of-network-abuse/</link>
		<comments>http://www.trehb101.com/index.php/2009/12/07/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-classes-of-network-abuse/#comments</comments>
		<pubDate>Mon, 07 Dec 2009 20:48:00 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[access controls]]></category>
		<category><![CDATA[back door]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[denial of service]]></category>
		<category><![CDATA[eavesdropping]]></category>
		<category><![CDATA[network intrusion]]></category>
		<category><![CDATA[notes]]></category>
		<category><![CDATA[piggy backing]]></category>
		<category><![CDATA[probing]]></category>
		<category><![CDATA[Reviewer]]></category>
		<category><![CDATA[spoofing]]></category>
		<category><![CDATA[telnet]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=243</guid>
		<description><![CDATA[Class A

    * Unauthorized access through circumvention of security access controls
    * Masquerading, logon abuse (primarily internal attacks)]]></description>
			<content:encoded><![CDATA[<p><strong>Class A</strong></p>
<ul>
<li>Unauthorized access through circumvention of      security access controls</li>
<li>Masquerading, logon abuse (primarily internal attacks)</li>
</ul>
<p><strong>Class B – </strong>non-business use of systems</p>
<p><strong>Class C</strong></p>
<ul>
<li>Eavesdropping</li>
<li>Active: Tampering with a transmission to create a      covert signaling channel or probing the network</li>
<li>Passive – Covertly monitoring or listening to      transmissions that is unauthorized</li>
<li>Covert Channel – using a hidden unauthorized      communication</li>
<li>Tapping – refers to the physical interception of      transmission medium (like splicing of cable)<span id="more-243"></span></li>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
</td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></ul>
<p><strong>Class D – </strong>denial of service saturation of network services</p>
<p><strong>Class E</strong></p>
<ul>
<li>Network Intrusion – external penetration</li>
<li>Spoofing – a spoofing attack involves nothing      more than forging one’s source address; the act of using one machine to      impersonate another</li>
<li>Piggy Backing – attack using another user’s      connection</li>
<li>Back Door – attack via dial-up or external      connection</li>
</ul>
<p><strong>Class F</strong></p>
<ul>
<li>Probing</li>
<li>Gives an intruder a road map of the network for      DoS attach</li>
<li>Gives a list of available services</li>
<li>Traffic analysis via sniffers, which scans the      host for available services
<ul>
<li>Like a telephone wiretap allows the FBI to       listen in to people’s conversation, a “sniffing” program lets someone       listen in on computer conversations</li>
</ul>
</li>
<li>Tools: Telnet (manual), vulnerability scanners      (automatic)</li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2009/12/07/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-classes-of-network-abuse/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

