Only 2 left in stock (more on the way).
Ships from and sold by Gift-wrap available.
Network Security Fundamen... has been added to your Cart
+ CDN$ 6.49 shipping
Used: Good | Details
Condition: Used: Good
Comment: **SHIPPED FROM UK** We believe you will be completely satisfied with our quick and reliable service. All orders are dispatched as swiftly as possible! Buy with confidence!
Have one to sell?
Flip to back Flip to front
Listen Playing... Paused   You're listening to a sample of the Audible audio edition.
Learn more
See all 2 images

Network Security Fundamentals Paperback – Sep 8 2004

See all 3 formats and editions Hide other formats and editions
Amazon Price
New from Used from
Kindle Edition
"Please retry"
"Please retry"
CDN$ 71.50
CDN$ 40.45 CDN$ 13.24

Harry Potter and the Cursed Child
click to open popover

No Kindle device required. Download one of the Free Kindle apps to start reading Kindle books on your smartphone, tablet, and computer.
Getting the download link through email is temporarily not available. Please check back later.

  • Apple
  • Android
  • Windows Phone
  • Android

To get the free app, enter your mobile phone number.

Product Details

  • Paperback: 480 pages
  • Publisher: Cisco Press; 1 edition (Sept. 8 2004)
  • Language: English
  • ISBN-10: 1587051672
  • ISBN-13: 978-1587051678
  • Product Dimensions: 18.5 x 3 x 23.1 cm
  • Shipping Weight: 771 g
  • Average Customer Review: Be the first to review this item
  • Amazon Bestsellers Rank: #820,615 in Books (See Top 100 in Books)
  •  Would you like to update product info, give feedback on images, or tell us about a lower price?

  • See Complete Table of Contents

Product Description

From the Back Cover

An introduction to the key tools and technologies used to secure network access Examine common security vulnerabilities and the defenses used to protect network resources Learn about cryptography, including modern-day techniques like 3DES, RSA, hashing, and the use of certificates Learn how to design, adopt, and enforce security policies Evaluate the nuances of secure network design Secure HTTP traffic by hardening operating systems, servers, and browsers Protect routers through administrative access policies and services Understand what firewalls do and how to implement them to maximum effect Inspect and monitor network activity with IDS Utilize VPNs for secure remote access Learn about PKI technologies Examine secure wireless design techniques Use logging and auditing tools, such as syslog, SNMP, RMON, and SAA, to manage network traffic

Companies have long been struggling with threats from the hacking community. Keeping pace with the rapid evolution of security technology and the growing complexity of threats is a challenge even in the best of times. The increased focus on security has sent IT managers and engineers scrambling to acquire the proper expertise to implement complex, multilayered solutions.

"Network Security Fundamentals" introduces the topic of network security in an easy-to-understand and comprehensive manner. This book is designed to provide a fundamental understanding of the various components of a network security architecture and to demonstrate how each component can be implemented to achieve best results. The book uses straightforward language to introduce topics and to show the features, mechanics, and functionality of various network security devices. A series of case studies helps illuminate concepts and shows how you can apply the concepts to solve real-world problems.

Divided into four parts, "Network Security Fundamentals" takes you on a tour of all the essential technologies and modern defenses at your disposal to help you maintain network uptime and data integrity. Part I covers the basics, introducing terms and concepts and laying the foundation of a solid security structure. The discussion focuses on weaknesses and vulnerabilities along with an overview of the traditional defenses used to thwart attacks. Part II examines two components of security-cryptography and security policies. Part III looks at the various security components. Separate chapters cover web security, router security, firewalls, intrusion detection systems (IDS), remote access security, virtual private networks (VPN), Public Key Infrastructure (PKI), wireless security, and logging and auditing. Each chapter in this section is a self-contained tutorial, allowing you to skip to those topics of greatest interest or primary concern. Part IV includes several reference appendixes, including the Cisco SAFE Blueprint, NSA guidelines, and SANS policies.

Whether you are looking for an introduction to network security principles and practices or a security configuration reference, this book provides you with the invaluable insight you need to protect valuable company resources.

About the Author

Gert De Laet, CCIE No. 2657, is a CCIE in both Routing and Switching and Security. Gert has more than 10 years of experience in internetworking and works in Brussels, Belgium, for the worldwide CCIE team as a product manager at Cisco Systems.

Gert Schauwers, CCIE No. 6942, has CCIE certifications in Security, Routing and Switching, and Communication and Services. He has six years of experience in internetworking. He is currently working for the CCIE team at Cisco in Brussels, Belgium, as a CCIE content engineer.

Customer Reviews

There are no customer reviews yet on
5 star
4 star
3 star
2 star
1 star

Most Helpful Customer Reviews on (beta) HASH(0x9c7b312c) out of 5 stars 7 reviews
5 of 5 people found the following review helpful
HASH(0x9c8f3bac) out of 5 stars Picks up where "Network Security First-Step" left off! Dec 9 2005
By Mark G. Reyero - Published on
Format: Paperback
I picked up a copy of "Network Security Fundamentals" (ISBN 1587051672) by Gert De Laet and Gert Schauwers to add to my CCIE Security reading list. Network Security Fundamentals more or less picks up with Tom Thomas's "Network Security First-Step" (ISBN 1587200996). Whereas the Thomas book serves as an excellent introduction to securing your network, "Network Security Fundamentals" is an intermediate level network security book. It delves it more details not only network design essentials, but many other security topics such as Router Security, Firewalls, Intrusion Detection, VPNs, Remote Access, and Wireless.

I found the detailed coverage on Cryptography as well as securing Web Servers especially helpful and insightful. The book includes many device configuration examples, show commands, and debug outputs. I highly recommend this book to any Network Admin interested in securing his/her network as well as any potential CCIE Security candidates out there!

Mark Reyero

CCIE 12932
6 of 7 people found the following review helpful
HASH(0x9d710dec) out of 5 stars A good start, but weak on Layer-2 defenses June 7 2007
By Jeremy NeeDLE - Published on
Format: Paperback Verified Purchase
First of all, let me state that this review is primarily in context of Cisco's 642-552 exam, since as of this writing, this is really the only book on their Recommended Reading for this particular exam. There are no Exam Certification series from Cisco for this specific exam, which is the foundation of their CCSP and Security Specialization certifications.

What is good about this title is coverage of security policy, vpn's, ids, firewalls, wireless, and PKI. Good introduction, and decent configuration examples. Certainly enough to get even a neophyte up and running.

So what is this title missing?

#1 SDM [Security Device Manager] configuration examples & exercises. Chances are if you're a newbie, you're going to be much more comfortable using the Browser-based GUI rather than the IOS Command Line. Additionally ALL the simulations for the 552 exam are based around SDM configuration. I would recommend you download SDM documentation from Cisco's website if you're planning on taking the 642-552 exam.

#2 There is inadequate coverage of common Layer 2 attacks, and the defense mechanisms to subvert them. For example, no explanation or examples are given on configuring Port Security which protects against MAC Spoofing, MAC Flooding, ARP Spoofing, and flooding the CAM table. And that is BASIC SWITCH SECURITY that is relatively easy to implement. Furthermore, there should also be discussions of IP Source Guard, VLAN Hopping, and Dynamic ARP Inspection. I HIGHLY recommend you search on Cisco's site about these features & configuring them.

#3 CBAC explanation is fairly unclear. Students will be confused by the fact that they named the ip inspect rules as "BLOCK" and "ALLOW" and associate each one w/ a traffic direction [ingress/egress respectively], when really these names do not accurately describe the behavior of CBAC

#4 Pg 174 "A software based firewall is only as secure as the operating system it relies on...Appliance based firewalls, such as NetScreen or PIX, do not have that vulnerability" ARE YOU KIDDING ME? IOS is still SOFTWARE. can be exploited. See Hacking Cisco. Certainly it is harder, yes, but it is STILL susceptible application-layer attacks and buffer overflows.
6 of 7 people found the following review helpful
HASH(0x9c971c0c) out of 5 stars Finally, a thorough overview of the topic Sept. 6 2004
By Stephen Kalman - Published on
Format: Paperback
I was privileged to be one of the tech editors for this book.

This is a great book for two audiences.

1. The network engineer who wants to explore the world of network security before selecting a niche to focus on

2. The CIO who wants to understand what the CISO and other security folks are talking about.

The coverage is wide and just deep enough. The book is a job well done.

By the way, my security certifications are CISSP, CEH and CHFI.
3 of 3 people found the following review helpful
HASH(0x9c97e060) out of 5 stars Spot on - Great security book Sept. 19 2004
By Guitarman - Published on
Format: Paperback
Ciscopress have released yet another jem of a book, really great read and easy to understand, the two authors known in the introduction as the Two Gert's do a splendid job of describing all the major security concerns you should be fully aware of, this book is highly recommnded and is authored by some very experienced engineers at Cisco -- you will not be dissappointed


Sydney Australia
3 of 3 people found the following review helpful
HASH(0x9c98a63c) out of 5 stars Nice............. June 2 2005
By love to order - Published on
Format: Paperback
Excellant book for and new comer to this complexed field in Network Security. For me thought having a few certs (CCNA, CCDA, CCSA, JNCIA, CWSP, CWNA) the book is too entry level. The parts in encryption/VPN just didn't teach me anything I didn't know before opening this book.

BUT please buy this book if you are a new comer to this field. I promise; you will learn alot from this text.