- About the exam - who, what, when
- About the exam - where and why
- The OSI model and the physical layer
- The data link layer
- LAN protocols and transmission methods
- WAN technologies and protocols
|
- Networking equipment at the data link layer
- The network layer
- The transport layer
- The session layer
- The presentation layer
- The application layer
- The goal of information
|
|
|
Security+: General Security Concepts |
- Access control concepts
- Access control techniques
- Usernames and passwords
- PINs, one-time passwords, tokens, and tickets
|
- Biometrics
- SSO, certificates, and CHAP
- Types of attacks
- Malicious code
|
|
|
Security+: Remote Access and Wireless LANs |
- Remote access security methods and vulnerabilities
- Remote access security technologies
- Virtual private networks
|
- Remote access applications
- Wireless LAN protocols and standards
- SSID and WEP
- EAP and site surveys
|
|
| Security+: E-Mail, Internet, and File Security |
- E-mail security
- E-mail vulnerabilities
- Internet security
- Internet applications
- FTP
|
- S/FTP and TFTP
- File sharing
- File transfer vulnerabilities
- File systems
- DNS
- LDAP
|
|
| Security+: Infrastructure Security |
- Security devices
- Routers and switches
- More networking devices and NAT
- Cable media
- End devices
|
- Data network types
- Firewalls
- Intrusion detection systems
- Honeypots
- Security zones
|
|
| Security+: Security Baselines |
- Hardening basics
- OS/NOS hardening
- Network hardening
|
- Application hardening
- Database and directory service hardening
|
|
- Concepts of using cryptography
- Cryptography basics
- Encryption, decryption, and the cryptosystem
- Symmetric key cryptography
|
- Asymmetric key cryptography
- Message authentication
- Digital certificates
- PKI components
- Trust models and key management
- Key management and certificate lifecycle
|
|
| Security+: Operational Security |
- Define data back-up procedures
- List back-up media
|
- Explain proper storage and safekeeping of back-up media
- Detail disaster recovery planning
|
|
|
Security+: Organizational Security |
- Physical security
- Facility requirements planning
- Physical and technical controls
- Environmental, life safety, and administrative controls
|
- Backup and recovery
- High availability architectures
- BCP and DRP Overview
- Scope of the BCP project and impact assessment
- Developing the business continuity strategy
- Elements of the business continuity strategy
- Disaster recovery
|
|
|
| Security+: Practice Exam |
- Test day tips
- Practice questions
|
|
|
|