Windows 2003 Certification Training
3 Certification - MCSA Windows 2003 Training Course
| Course Length: |
10 days |
| Certifications: |
MCP MCSA CompTIA Security + |
| Number of Exams: |
4 |
|
|
- Includes roundtrip airfare and lodging (for boot camps held in Georgia and Florida only)
- Hands-on instruction by a certified instructor
- Includes all course materials and practice exams
- Includes all certification exams
- Onsite Testing
- Breakfast and Lunch provided each day
|
The MCSA exams support the release of Windows Server 2003 by identifying systems administrators who can successfully implement a given design on the Windows 2003 platform and manage and maintain a medium-to-large Windows 2003 environment.
The MCSA on Windows Server 2003 credential offers IT professionals a competitive edge in today's constantly changing business environment by validating the specific experience required by the network and systems administrator job role. The certification provides employers with a means to identify those qualified individuals who have the appropriate skills set to do the job successfully.
Exam 70-270
Installing, Configuring, and Administering Microsoft Windows XP Professional
Installing Windows XP Professional
- Perform an attended installation of Windows XP Professional.
- Perform an unattended installation of Windows XP Professional.
- Upgrade from a previous version of Windows to Windows XP Professional.
- Perform post-installation updates and product activation.
- Troubleshoot failed installations.
Implementing and Conducting Administration of Resources
- Monitor, manage, and troubleshoot access to files and folders.
- Manage and troubleshoot access to shared folders.
- Connect to local and network print devices.
- Configure and manage file systems.
- Manage and troubleshoot access to and synchronization of offline files.
Implementing, Managing, Monitoring, and Troubleshooting Hardware Devices and Drivers
- Implement, manage, and troubleshoot disk devices.
- Implement, manage, and troubleshoot display devices.
- Configure Advanced Configuration Power Interface (ACPI).
- Implement, manage, and troubleshoot input and output (I/O) devices.
- Manage and troubleshoot drivers and driver signing.
- Monitor and configure multiprocessor computers.
Monitoring and Optimizing System Performance and Reliability
- Monitor, optimize, and troubleshoot performance of the Windows XP Professional desktop.
- Manage, monitor, and optimize system performance for mobile users.
- Restore and back up the operating system, System State data, and user data.
Configuring and Troubleshooting the Desktop Environment
- Configure and manage user profiles and desktop settings.
- Configure support for multiple languages or multiple locations.
- Manage applications by using Windows Installer packages.
Implementing, Managing, and Troubleshooting Network Protocols and Services
- Configure and troubleshoot the TCP/IP protocol.
- Connect to computers by using dial-up networking.
- Connect to resources using Internet Explorer.
- Configure, manage, and implement Internet Information Services (IIS).
- Configure, manage, and troubleshoot Remote Desktop and Remote Assistance.
- Configure, manage, and troubleshoot an Internet Connection Firewall (ICF).
Configuring, Managing, and Troubleshooting Security
- Configure, manage, and troubleshoot Encrypting File System (EFS).
- Configure, manage, and troubleshoot a security configuration and local security policy.
- Configure, manage, and troubleshoot local user and group accounts.
- Configure, manage, and troubleshoot Internet Explorer security settings.
[ back to top ]
Exam 70-290
Managing and Maintaining a Microsoft Windows Server 2003 Environment
Managing and Maintaining Physical and Logical Devices
- Manage basic disks and dynamic disks.
- Monitor server hardware. Tools might include Device Manager, the Hardware Troubleshooting Wizard, and appropriate Control Panel items.
- Optimize server disk performance.
- Install and configure server hardware devices.
Managing Users, Computers, and Groups
- Manage local, roaming, and mandatory user profiles.
- Create and manage computer accounts in an Active Directory environment.
- Create and manage groups.
- Create and manage user accounts.
- Troubleshoot computer accounts.
- Troubleshoot user accounts.
- Troubleshoot user authentication issues.
Managing and Maintaining Access to Resources
- Configure access to shared folders.
- Troubleshoot Terminal Services.
- Configure file system permissions.
- Troubleshoot access to files and shared folders.
Managing and Maintaining a Server Environment
- Monitor and analyze events. Tools might include Event Viewer and System Monitor.
- Manage software update infrastructure.
- Manage software site licensing.
- Manage servers remotely.
- Troubleshoot print queues.
- Monitor system performance.
- Monitor file and print servers. Tools might include Task Manager, Event Viewer, and System Monitor.
- Monitor and optimize a server environment for application performance.
- Manage a Web server.
Managing and Implementing Disaster Recovery
- Perform system recovery for a server.
- Manage backup procedures.
- Recover from server hardware failure.
- Restore backup data.
- Schedule backup jobs.
[ back to top ]
Exam 70-291
Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure
Implementing, Managing, and Maintaining IP Addressing
- Configure TCP/IP addressing on a server computer.
- Manage DHCP.
- Troubleshoot TCP/IP addressing.
- Troubleshoot DHCP.
Implementing, Managing, and Maintaining Name Resolution
- Install and configure the DNS Server service.
- Manage DNS.
- Monitor DNS. Tools might include System Monitor, Event Viewer, Replication Monitor, and DNS debug logs.
Implementing, Managing, and Maintaining Network Security
- Implement secure network administration procedures.
- Monitor network protocol security. Tools might include the IP Security Monitor Microsoft Management Console (MMC) snap-in and Kerberos support tools.
- Troubleshoot network protocol security. Tools might include the IP Security Monitor MMC snap-in, Event Viewer, and Network Monitor.
Implementing, Managing, and Maintaining Routing and Remote Access
- Configure Routing and Remote Access user authentication.
- Manage remote access.
- Manage TCP/IP routing.
- Implement secure access between private networks.
- Troubleshoot user access to remote access services.
- Troubleshoot Routing and Remote Access routing.
Maintaining a Network Infrastructure
- Monitor network traffic. Tools might include Network Monitor and System Monitor.
- Troubleshoot connectivity to the Internet.
- Troubleshoot server services.
[ back to top ]
CompTIA Security+
The CompTIA Security+ Certification (SY0-301 exam) is a vendor neutral credential. The CompTIA Security+ exam is an internationally recognized validation of foundation-level security skills and knowledge, and is used by organizations and security professionals around the globe.
CompTIA Security+ demonstrates competency in:
- Network security
- Compliance and operational security
- Threats and vulnerabilities
- Application, data and host security
- Access control and identity management
- Cryptography
CompTIA Security+ not only ensures that candidates will apply knowledge of security concepts, tools, and procedures to react to security incidents, it ensures that security personnel are anticipating security risks and guarding against them.
The CompTIA Security+ exam (SY0-301) will certify that the successful candidate has the knowledge and skills required to identify risk and participate in risk mitigation activities, provide infrastructure, application, operational and information security, apply security controls to maintain confidentiality, integrity and availability, identify appropriate technologies and products, and operate with an awareness of applicable policies, laws and regulations.
Target Student: This course is targeted toward an Information Technology (IT) professional who has networking and administrative skills in Windows-based TCP/IP networks and familiarity with other operating systems and to those who want to further a career in IT by acquiring a foundational knowledge of security topics; prepare for the CompTIA Security+ Certification examination; or use Security+ as the foundation for advanced security certifications.
Prerequisites: CompTIA A+ and Network+ certifications, or equivalent knowledge. Experience in networking, including experience configuring and managing TCP/IP is helpful.
Course Content:1.0 Network Security
1.1 Explain the security function and purpose of network devices and technologies
- Firewalls
- Routers
- Switches
- Load Balancers
- Proxies
- Web security gateways
- VPN concentrators
- NIDS and NIPS (Behavior based, signature based, anomaly based, heuristic)
- Protocol analyzers
- Sniffers
- Spam filter, all-in-one security appliances
- Web application firewall vs. network firewall
- URL filtering, content inspection, malware inspection
1.2 Apply and implement secure network administration principles
- Rule-based management
- Firewall rules
- VLAN management
- Secure router configuration
- Access control lists
- Port Security
- 802.1x
- Flood guards
- Loop protection
- Implicit deny
- Prevent network bridging by network separation
- Log analysis
1.3 Distinguish and differentiate network design elements and compounds
- DMZ
- Subnetting
- VLAN
- NAT
- Remote Access
- Telephony
- NAC
- Virtualization
- Cloud Computing
1.4 Implement and use common protocols
- IPSec
- SNMP
- SSH
- DNS
- TLS
- SSL
- TCP/IP
- FTPS
- HTTPS
- SFTP
- SCP
- ICMP
- IPv4 vs. IPv6
1.5 Identify commonly used default network ports
- FTP
- SFTP
- FTPS
- TFTP
- TELNET
- HTTP
- HTTPS
- SCP
- SSH
- NetBIOS
1.6 Implement wireless network in a secure manner
- WPA
- WPA2
- WEP
- EAP
- PEAP
- LEAP
- MAC filter
- SSID broadcast
- TKIP
- CCMP
- Antenna Placement
- Power level controls
2.0 Compliance and Operational Security
2.1 Explain risk related concepts
- Control types
- False positives
- Importance of policies in reducing risk
- Quantitative vs. qualitative
- Risk-avoidance, transference, acceptance, mitigation, deterrence
- Risks associated to Cloud Computing and Virtualization
2.2 Carry out appropriate risk mitigation strategies
- Implement security controls based on risk
- Change management
- Incident management
- User rights and permissions reviews
- Perform routine audits
- Implement policies and procedures to prevent data loss or theft
2.3 Execute appropriate incident response procedures
- Basic forensic procedures
- Damage and loss control
- Chain of custody
- Incident response: first responder
2.4 Explain the importance of security related awareness and training
- Security policy training and procedures
- Personally identifiable information
- Information classification: Sensitivity of data (hard or soft)
- Data labeling, handling and disposal
- Compliance with laws, best practices and standards
- User habits
- Threat awareness
- Use of social networking and P2P
2.5 Compare and contrast aspects of business continuity
- Business impact analysis
- Removing single points of failure
- Business continuity planning and testing
- Continuity of operations
- Disaster recovery
- IT contingency planning
- Succession planning
2.6 Explain the impact and proper use of environmental controls
- HVAC
- Fire suppression
- EMI shielding
- Hot and cold aisles
- Environmental monitoring
- Temperature and humidity controls
- Video monitoring
2.7 Execute disaster recovery plans and procedures
- Backup / backout contingency plans or policies
- Backups, execution and frequency
- Redundancy and fault tolerance
- High availability
- Cold site, hot site, warm site
- Mean time to restore, mean time between failures, recovery time objectives and recovery point objectives
2.8 Exemplify the concepts of confidentiality, integrity and availability (CIA)
3.0 Threats and Vulnerabilities
3.1 Analyze and differentiate among types of malware
- Adware
- Virus
- Worms
- Spyware
- Trojan
- Rootkits
- Backdoors
- Logic bomb
- Botnets
3.2 Analyze and differentiate among types of attacks
- Man-in-the-middle
- DDoS
- DoS
- Replay
- Smurf attack
- Spoofing
- Spam
- Phishing
- Spim
- Vishing
- Spear phishing
- Xmas attack
- Pharming
- Privilege escalation
- Malicious insider threat
- DNS poisoning and ARP poisoning
- Transitive access
- Client-side attacks
3.3 Analyze and differentiate among types of social engineering attacks
- Shoulder surfing
- Dumpster diving
- Tailgating
- Impersonation
- Hoaxes
- Whaling
- Vishing
3.4 Analyze and differentiate among types of wireless attacks
- Rogue access points
- Interference
- Evil twin
- War driving
- Bluejacking
- Bluesnarfing
- War chalking
- IV attack
- Packet sniffing
3.5 Analyze and differentiate among types of application attacks
- Cross-site scripting
- SQL injection
- LDAP injection
- XML injection
- Directory traversal/command injection
- Buffer overflow
- Zero day
- Cookies and attachments
- Malicious add-ons
- Session hijacking
- Header manipulation
3.6 Analyze and differentiate among types of mitigation and deterrent techniques
- Manual bypassing of electronic controls
- Monitoring system logs
- Physical security
- Hardening
- Port security
- Security posture
- Reporting
- Detection controls vs. prevention controls
3.7 Implement assessment tools and techniques to discover security threats and vulnerabilities
- Vulnerability scanning and interpret results
- Tools
- Risk calculations
- Assessment types
- Assessment technique
3.8 Within the realm of vulnerability assessments, explain the proper use of penetration testing versus vulnerability scanning
- Penetration testing
- Vulnerability scanning
- Black box
- White box
- Gray box
4.0 Application, Data and Host Security
4.1 Explain the importance of application security
- Fuzzing
- Secure coding concepts
- Cross-site scripting prevention
- Cross-site Request Forgery (XSRF) prevention
- Application configuration baseline (proper settings)
- Application hardening
- Application patch management
4.2 Carry out appropriate procedures to establish host security
- Operating system security and settings
- Anti-malware
- Patch management
- Hardware security
- Host software baselining
- Mobile devices
- Virtualization
4.3 Explain the importance of data security
- Data Loss Prevention (DLP)
- Data encryption
- Hardware based encryption devices
- Cloud computing
5.0 Access Control and Identity Management
5.1 Explain the function and purpose of authentication services
- RADIUS
- TACACS
- TACACS+
- Kerberos
- LDAP
- XTACACS
5.2 Explain the fundamental concepts and best practices related to authentication, authorization and access control
- Identification vs. authentication
- Authentication (single factor) and authorization
- Multifactor authentication
- Biometrics
- Tokens
- Common access card
- Personal identification verification card
- Smart card
- Least privilege
- Separation of duties
- Single sign on
- ACLs
- Access control
- Mandatory access control
- Discretionary access control
- Role/rule-based access control
- Implicit deny
- Time of day restrictions
- Trusted OS
- Mandatory vacations
- Job rotation
5.3 Implement appropriate security controls when performing account management
- Mitigates issues associated with users with multiple account/roles
- Account policy enforcement
- Group based privileges
- User assigned privileges
6.0 Cryptography
6.1 Summarize general cryptography concepts
- Symmetric vs. asymmetric
- Fundamental differences and encryption methods
- Transport encryption
- Non-repudiation
- Hashing
- Key escrow
- Steganography
- Digital signatures
- Use of proven technologies
- Elliptic curve and quantum cryptography
6.2 Use and apply appropriate cryptographic tools and products
- WEP vs. WPA/WPA2 and preshared key
- MD5
- SHA
- RIPEMD
- AES
- DES
- 3DES
- HMAC
- RSA
- RC4
- One-time-pads
- CHAP
- PAP
- NTLM
- NTLMv2
- Blowfish
- PGP/GPG
- Whole disk encryption
- TwoFish
- Comparative strengths of algorithms
- Use of algorithms with transport encryption
6.3 Explain the core concepts of public key infrastructure
- Certificate authorities and digital certificates
- PKI
- Recovery agent
- Public key
- Private key
- Registration
- Key escrow
- Trust models
6.4 Implement PKI, certificate management and associated components
- Certificate authorities and digital certificates
- PKI
- Recovery agent
- Public key
- Private keys
- Registration
- Key escrow
- Trust models
[ back to top ]
MCSEClasses.com is your best choice for Windows 2003,
Windows 2003 training,
Windows 2003 certification,
Windows 2003 certification boot camp,
Windows 2003 boot camp,
Windows 2003 certification training,
Windows 2003 boot camp training,
Windows 2003 boot camp certification,
Windows 2003 certification course,
Windows 2003 course,
training Windows 2003,
certification Windows 2003,
boot camp Windows 2003,
certification Windows 2003 boot camp,
certification Windows 2003 training,
boot camp Windows 2003 training,
certification Windows 2003 course.
|