Exam Number:
642-511
Associated Certifications:
CCSP, Cisco VPN Specialist
Duration:
75 minutes (55-65 questions)
Available Languages:
English
Click Here to Register:
Pearson VUE or Prometric

Exam Description
Exam Topics
Recommended Training
Additional Resources
Exam Description

The Cisco Secure Virtual Private Networks exam (CSVPN 642-511) is one of the exams associated with the Cisco Certified Security Professional and the Cisco VPN Specialist certifications. Candidates can prepare for this exam by taking the CSVPN v4.0 course. This exam includes simulations and tests a candidate's knowledge and ability to describe, configure, verify, and manage the Cisco VPN 3000 Concentrator, Cisco VPN Software Client, and Cisco VPN 3002 Hardware Client feature set. CCNA or CCDA recertification candidates who pass the 642-511 CSVPN exam will be considered recertified at the CCNA or CCDA level.
Exam Topics

The following information provides general guidelines for the content likely to be included on this exam. However, other related topics may also appear on any specific delivery of the exam.
Overview of Virtual Private Networks and IPSec Technologies

Cisco products enable a secure VPN

IPSec overview

IPSec protocol framework

How IPSec works
Cisco Virtual Private Network 3000 Concentrator Series Hardware

Overview of the Cisco VPN 3000 Concentrator Series

Cisco VPN 3000 Concentrator

Cisco VPN 3000 Concentrator Series Client support
Configuring the Cisco VPN 3000 Series Concentrator for Remote Access Using Pre-shared Keys

Overview of remote access using pre-shared keys

Initial configuration of the Cisco VPN 3000 Concentrator Series for remote access

Browser configuration of the Cisco VPN 3000 Series Concentrator

Configure users and groups

More in-depth configuration information

Configure the Cisco Windows VPN Software Client
Configure Cisco Virtual Private Network 3000 Series Concentrator for Remote Access Using Digital Certificates

CA support overview

Certificate generation

Validating certificates

Configuring the Cisco VPN 3000 Concentrator Series for CA support
Configure the Cisco Virtual Private Network Firewall Feature for IPSec Software Client

Overview of software client's firewall feature

Software Client's Are You There feature

Software Client's Central Policy Protection feature

Software Client's firewall statistics

Customizing firewall policy
Configure the Cisco Virtual Private Network Client Auto-Initiation Feature

Overview of the Cisco VPN Software Client auto-initiation

Configure the Cisco VPN Software Client auto-initiation
Monitor and Administer Cisco VPN 3000 Remote Access Networks

Monitoring

Administration

Bandwidth Management
Configure the Cisco VPN 3002 Hardware Client for Remote Access

Cisco VPN 3002 Hardware client remote access with pre-shared keys
Configure the Cisco Virtual Private Network 3002 Hardware Client

Overview of the Hardware Client interactive unit and user authentication features

Configuring the Hardware Client interactive unit authentication feature

Configuring the Hardware Client user authentication feature

Monitoring the Hardware Client user statistics
Configure the Cisco Virtual Private Network Client Backup Server and Load Balancing

Configuring the Cisco VPN Client backup server feature

Configuring the Cisco VPN Client load balancing feature

Overview of the Cisco VPN Client Reverse Route Injection feature
Configure the Virtual Private Network 3002 Hardware Client for Software Auto-Update

Overview and configuration of the VPN 3002 Hardware Client software auto-update feature

Monitoring the Cisco VPN 3002 Hardware Client software auto-update feature
Configure the Cisco Virtual Private Network 3000 Series Concentrator for the IPSec Over UDP and IPSec Over TCP

Overview of Port Address Translation

Configuring IPSec over UDP

Configuring NAT-Transversal

Configuring IPSec over TCP
Cisco Virtual Private Network 3000 Series Concentrator LAN-to-LAN with Pre-Shared Keys

Cisco VPN 3000 Series Concentrator IPSec LAN-to-LAN

LAN-to-LAN configuration
Cisco Virtual Private Network 3000 Series Concentrator LAN-to-LAN with NAT

LAN-to-LAN overview

Configuring the Concentrator LAN-LAN NAT feature
Cisco Virtual Private Network 3000 Series Concentrator LAN-to-LAN using Digital Certificates

Root certificate installation

Identify certificate installation
Recommended Training

Cisco Secure Virtual Private Networks ( CSVPN ) v4.0 is the recommended training for the Cisco Secure Virtual Private Networks Exam.
Additional Resources

A variety of Cisco Press Self-Study titles are available for this exam. These titles can be purchased at the Cisco Marketplace , directly from Cisco Press, or wherever you purchase technical books.