Cisco Secure PIX Firewall Exam (CSPFA 642-521)
Exam Number:
642-521
Associated Certifications:
CCSP, Cisco Firewall Specialist
Duration:
75 minutes (55-65 questions)
Available Languages:
English
Click Here to Register:
Pearson VUE or Prometric

Exam Description
Exam Topics
Recommended Training
Additional Resources
Exam Description

The Cisco Secure PIX Firewall Advanced exam (CSPFA 642-521) is one of the exams associated with the Cisco Certified Security Professional and the Cisco Firewall Specialist certifications. Candidates can prepare for this exam by taking the CSPFA v3.2 course. This exam includes simulations and tests a candidate's knowledge and ability to describe, configure, verify and manage the PIX Firewall product family. CCNA or CCDA recertification candidates who pass the 642-521 CSPFA exam will be considered recertified at the CCNA or CCDA level.
Exam Topics

The following information provides general guidelines for the content likely to be included on this exam. However, other related topics may also appear on any specific delivery of the exam.
Cisco PIX Firewall Technology and Features

Firewalls

PIX Firewall models
Cisco PIX Firewall Family

PIX Firewall models

PIX services module

PIX Firewall licensing
Getting Started with the Cisco PIX Firewall

User interface

Examining the PIX Firewall status

ASA security levels

Basic PIX Firewall configuration

Syslog configuration

DHCP server configuration

PPPoE and the PIX Firewall
Translations and Connections

Transport Protocols

Network Address Translation

Configuring DNS Support

Port Address Translations
Access Control Lists and Content Filtering

ACLS

Converting Conduits to ACLS

Using ACLS
Object Grouping

Overview of object grouping

Getting started with object groups

Configuring object groups

Nested object groups
Advanced Protocol Handling

Advanced protocols

Multimedia support
Attack Guards, Intrusion Detection, and Shunning

Attack guards

Intrusion detection
Authentication, Authorization, and Accounting

Introduction

Installation of CSACS for Windows NT

Authentication configuration

Downloadable ACLS
Failover

Understanding failover

Serial failover configuration

LAN-based failover configuration
Virtual Private Networks

PIX Firewall enables a secure VPN

Prepare to configure VPN support

Configure IKE parameter

Configure IPSec parameters

Test and verify VPN configuration

Cisco VPN Client

Scale PIX Firewall VPNs
System Maintenance

Remote access

Command authorization
Cisco PIX Device Manager

PDM overview

Prepare for PDM

Using PDM to configure the PIX Firewall

Using PDM to create a site-to-site VPN

Using PDM to create a remote access VPN
Enterprise PIX Firewall Management

Configuring access and translation rules

Reporting, tools, and administration
Enterprise PIX Firewall Maintenance

Introduction to the auto update server

PIX Firewall and AUS communication settings

Devices, images, and assignments

Reports and administration
Firewall Services Module

FWSM overview

Using PDM with the FWSM
Recommended Training

Cisco Secure PIX Firewall Advanced ( CSPFA ) v3.2 is the recommended training for the Cisco Secure PIX Firewall Advanced Exam.
Courses listed are offered by Cisco Learning Partners—the only authorized source for Cisco IT training delivered exclusively by Certified Cisco Instructors. Check the List of Learning Partners for a Cisco Learning Partner nearest you.
Additional Resources

A variety of Cisco Press Self-Study titles are available for this exam. These titles can be purchased at the Cisco Marketplace , directly from Cisco Press, or wherever you purchase technical books.