<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>TacAck - My security journey!</title>
	<atom:link href="http://tacack.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://tacack.com</link>
	<description></description>
	<lastBuildDate>Mon, 06 Sep 2010 04:04:46 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Back from the dead</title>
		<link>http://tacack.com/2010/09/06/back-from-the-dead/</link>
		<comments>http://tacack.com/2010/09/06/back-from-the-dead/#comments</comments>
		<pubDate>Mon, 06 Sep 2010 04:04:46 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=696</guid>
		<description><![CDATA[Hello All! My apologies for not blogging actively for the last couple of weeks. I really missed blogging and talking to all of you As you might(not)? know  i had my CCIE-security lab last week and i regret to inform you all that i did not clear it this time. The lab was tougher than [...]]]></description>
			<content:encoded><![CDATA[<p>Hello All!</p>
<p>My apologies for not blogging actively for the last couple of weeks. I really missed blogging and talking to all of you <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>As you might(not)? know  i had my CCIE-security lab last week and i regret to inform you all that i did not clear it this time. The lab was tougher than my expectations and although i knew i would be flunking it right at the beginning ( thanks to the OEQs) , i was feeling good after the lab because i felt i did the lab portion of it correctly. But, sadly, i later found out that i did&#8217;nt clear both the lab and the OEQ sections. This was a little suprising because i thought i had fared well in atleast the configuration section of the lab.</p>
<p>Well, if life has taught us all one lesson , it is to never look back and to work harder to achieve our goals. That&#8217;s exactly what i&#8217;m going to do.</p>
<p>It&#8217;s very overwhelming to receive the amount of support that i&#8217;ve received after i announced my results on twitter and OSL. I&#8217;m very very thankful to each and every one of you for believing in me and for motivating me to keep the hard-work going. Thank you!</p>
<p>I will be more active and i will post a lot more videos on complex topics which i hope to master too <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> .</p>
<p>Cheers and Happy studying!</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/09/06/back-from-the-dead/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>INE Lab 8 today!</title>
		<link>http://tacack.com/2010/08/03/ine-lab-8-today/</link>
		<comments>http://tacack.com/2010/08/03/ine-lab-8-today/#comments</comments>
		<pubDate>Tue, 03 Aug 2010 03:27:59 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=689</guid>
		<description><![CDATA[Hello Hello! I&#8217;ve been busy for the last couple of days doing some ccie-sec stuff and also getting some work done. I did INE lab 5 first and i found it REALLY REALLY hard! I don&#8217;t think there&#8217;s anyway the real exam is going be this hard. After that, i did INE Lab 7 and [...]]]></description>
			<content:encoded><![CDATA[<p>Hello Hello!</p>
<p>I&#8217;ve been busy for the last couple of days doing some ccie-sec stuff and also getting some work done. I did INE lab 5 first and i found it REALLY REALLY hard! I don&#8217;t think there&#8217;s anyway the real exam is going be this hard.</p>
<p>After that, i did INE Lab 7 and i found it pretty fair. Some sections were tough, but most sections were doable. I found some confidence after doing them and i think i need to work a little bit more on my speed.</p>
<p>Later tonight, i&#8217;ll be posting a video about how i actually start the lab. This will include how i draw the diagram, how i take down notes ,etc. If you feel i should do anything differently, please feel free to let me know! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Yesterday, i did  a lot of Doc-CD study. I studied/did-some labs on IOS NAT, went through the great <a href="http://www.ine.com/resources/#papers">free whitepapers</a> available on the INE website! I also did some VPN configurations but i just couldn&#8217;t get EZVPN to work. :/ I wanted to debug this but couldn&#8217;t find the time yesterday.</p>
<p>In about 30 mins time, my rack-rental session starts and i intend to do INE Lab 8 today. Hopefully, it&#8217;ll be fun! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>P.S : I&#8217;m sorry if my blogs don&#8217;t have much techy stuff these days, it&#8217;s just because there&#8217;s so much going on and i&#8217;m finding it a little hard to collect it all and blog it. But i promise, after my 1st attempt, i will start blogging in depth about the technologies ( and a little less about my feelings <img src='http://tacack.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  )</p>
<p>Cheers and have fun!</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/08/03/ine-lab-8-today/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>INE &#8211; 2 , TacACK &#8211; 1</title>
		<link>http://tacack.com/2010/07/29/ine-2-tacack-1/</link>
		<comments>http://tacack.com/2010/07/29/ine-2-tacack-1/#comments</comments>
		<pubDate>Thu, 29 Jul 2010 04:16:18 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=686</guid>
		<description><![CDATA[Hell All, To sum it up in one sentence, INE vol 2 Lab 4 was HELL( http://en.wikipedia.org/wiki/Hell ) ! The configuration sections were just too long and very very tough. I had a 5.5 hour time period in which i had to finish the lab, but i only managed to finish 4 sections , and half [...]]]></description>
			<content:encoded><![CDATA[<p>Hell All,</p>
<p>To sum it up in one sentence, INE vol 2 Lab 4 was HELL( <a href="http://en.wikipedia.org/wiki/Hell">http://en.wikipedia.org/wiki/Hell</a> ) ! The configuration sections were just too long and very very tough. I had a 5.5 hour time period in which i had to finish the lab, but i only managed to finish 4 sections , and half of one other section.</p>
<p>The sections i finished were :</p>
<ul>
<li><span style="color: #00ff00;">ASA</span>
<ul>
<li>Very long</li>
<li>I wouldn&#8217;t call this tough , but it wasn&#8217;t easy either. Required a lot of thinking</li>
</ul>
</li>
<li><span style="color: #00ff00;">IOS F/w</span>
<ul>
<li>This section was relatively easy, but it took a long time ( considering that there were only 2 tasks  ).</li>
<li>The ZBPF section was a little tricky, because i had to keep revisiting this, because a lot of the later configs had to be accounted for when doing the configuration.</li>
</ul>
</li>
<li><span style="color: #ff0000;">VPN</span>
<ul>
<li>There was an IPSec HA section. To be honest, i&#8217;d like to think i&#8217;m good with IPSec HA ( because i&#8217;ve practiced it many times ) , but i just didn&#8217;t understand the question.</li>
<li>I don&#8217;t know if  my understanding was flawed or if the question was worded badly. Either way, i couldn&#8217;t configure it.</li>
<li>There was a troubleshooting question here , which was pretty simple. Again, this got a little more complicated because, the router which had the issue was also running ZBPF. So , had to account for that. ( More time spent )</li>
</ul>
</li>
<li><span style="color: #ff0000;">ID MGMT</span>
<ul>
<li>They had 2 , i repeat 2 NAC sections. Since i didn&#8217;t know NAC , i just skipped these and moved on</li>
<li>Even the command authorization section was tough.</li>
</ul>
</li>
<li><span style="color: #00ff00;">CONTROL PLANE SECURITY</span>
<ul>
<li>2/3 tasks were easy.</li>
<li>One task was tough. ( required a lot of thinking , digging up the doc-cd ). However i&#8217;m still not convinced about the answer. I must ask some folks on OSL.</li>
</ul>
</li>
<li><span style="color: #00ff00;">IPS</span>
<ul>
<li>The only section which was simple.</li>
<li>The penultimate task threw me off slightly, but i somehow figured out what to do. (Took some time)</li>
</ul>
</li>
<li><span style="color: #ff9900;">ADVANCED SECURITY</span>
<ul>
<li>Again, not very difficult configurations, but they were very detailed and i took a lot of time configuring and testing them. I&#8217;d like to think they&#8217;re correct, but i&#8217;ll only know once i tally them with the answers.</li>
<li>I skipped the last task because i felt i was running out of time.</li>
</ul>
</li>
<li><span style="color: #ff0000;">NETWORK ATTACKS</span>
<ul>
<li>Didn&#8217;t have time to do this.</li>
</ul>
</li>
</ul>
<p>As you can see, i couldn&#8217;t finish the lab in the 5.5 hours. So i managed to save the configs and i&#8217;m going to try it again sometime soon ( maybe tomorrow ).</p>
<p>I&#8217;d love to hear from you about how your studies are going! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Please feel free to buzz me on twitter ( @tacack ) , or by e-mail ( tacack at tacack dot com ) , or by just commenting to this post.</p>
<p>Cheers and Happy studying!</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/07/29/ine-2-tacack-1/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>INE vol 2 &#8211; Lab 4 revision today</title>
		<link>http://tacack.com/2010/07/28/ine-vol-2-lab-4-revision-today/</link>
		<comments>http://tacack.com/2010/07/28/ine-vol-2-lab-4-revision-today/#comments</comments>
		<pubDate>Wed, 28 Jul 2010 04:31:05 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=683</guid>
		<description><![CDATA[Hello All! I had an interesting day yesterday! I didn&#8217;t have any rack-rentals scheduled as i was scheduled to be spending most of my day doing some work-related stuff. I did that till about 3 PM and then i fired up good &#8216;ol GNS3 and started doing some small labs. I had forgotten how much [...]]]></description>
			<content:encoded><![CDATA[<p>Hello All!</p>
<p>I had an interesting day yesterday! I didn&#8217;t have any rack-rentals scheduled as i was scheduled to be spending most of my day doing some work-related stuff. I did that till about 3 PM and then i fired up good &#8216;ol GNS3 and started doing some small labs. I had forgotten how much FUN this was! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Here are a couple of things that i labbed yesterday :</p>
<ul>
<li>DNS rewrite on the ASAs
<ul>
<li>This was a simple topic but i have issues getting this to work 100% of the time, so i decided to spend some time labbing this. Only then did i figure out how complex this actually is. I was referring to the Doc-cd page for &#8220;Application inspection&#8221; on the ASA and i found some very interesting scenarios(one in particular) which i wanted to share with you.</li>
<li>It&#8217;s called DNS rewrite with  3 NAT zones
<ul>
<li>We all know how DNS rewrite works. Most of the times, out of habit, we generally configure only 2 NAT zones when we have to test this (ex : inside,outside) . So what happens is , the &#8220;A-record&#8221; in the DNS response gets translated according to the static nat entry.</li>
<li>Now, add another zone. It gets interesting now. What happens if, the user is on the inside, the web-server is on the dmz  and the DNS server is on the outside. How does rewrite actually work. For this i found an awesome section -&gt; <a href="http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/inspect.html#wp1336066">http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/inspect.html#wp1336066</a> , which gives us a clear picture on how this happens. I also labbed this up and i was happy to see it working as expected.</li>
</ul>
</li>
<li>I also tried the &#8220;alias&#8221; command and that worked too.</li>
</ul>
</li>
<li>Local IOS command authorization
<ul>
<li>I was revising IPX Vol 2 &#8211; Lab 11 , and i found that i was n0t too confident about the local command authorization section. So , i fired up a small lab and proceeded to do it. I&#8217;m now confident about how this works and i&#8217;m sure i could work my way through this task , if i face it again.</li>
</ul>
</li>
<li>AAA Cut-through-proxy on the ASA
<ul>
<li>I had configured regular CTP on the ASA before ( <strong><em>aaa authentication match <span style="font-weight: normal;"><span style="font-style: normal;">&lt;ACL&gt;</span></span> inside <span style="font-weight: normal;"><span style="font-style: normal;">&lt;method&gt;</span></span></em></strong>) . But i was wondering what the &#8220;aaa authentication listener&#8221; command did. So i read up on some documentation ( which , i must say , i&#8217;m not very impressed with ) and i started configuring this.</li>
<li>I learnt that, by entering the &#8220;aaa authentication listener&#8221; command with the &#8220;redirect&#8221; , we are redirected to a fancy new page where we have to enter our credentials , instead of the usual pop-up box that we usually get.</li>
<li>But, without the <strong>redirect</strong> keyword, it performs CTP just the usual way . I don&#8217;t see any difference in adding the <strong>aaa authentication listener</strong> command. If someone knows the difference, i&#8217;d love to know what it is?!</li>
</ul>
</li>
</ul>
<p>One thing which i do regularly is to revisit the doc-cd to read about the order of processing of the classes/actions in policy-maps on the ASAs.  I find this VERY helpful <a href="http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/mpc.html#wp1083060">http://www.cisco.com/en/US/docs/security/asa/asa80/configuration/guide/mpc.html#wp1083060</a> as i go about labbing. This can definitely make/break a configuration and i would suggest you are well versed with it.</p>
<p>Today, i have a rack-rental scheduled where i&#8217;m going to revisit INE vol2 &#8211; lab 4 . I&#8217;ll be keeping notes on how it went and i&#8217;ll definitely share it with you tomorrow.</p>
<p>Have a great day!</p>
<p>Cheers,</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/07/28/ine-vol-2-lab-4-revision-today/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>After a long time!</title>
		<link>http://tacack.com/2010/07/27/after-a-long-time/</link>
		<comments>http://tacack.com/2010/07/27/after-a-long-time/#comments</comments>
		<pubDate>Mon, 26 Jul 2010 19:32:04 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=678</guid>
		<description><![CDATA[Hello All, It&#8217;s been a while since i posted about my study , partly because i&#8217;ve been held up doing a lot of miscellaneous jobs. Work ( Coding in ADA ) is really hectic these days and i&#8217;m unable to allocate the amount of the time that i would like to allocate to studies and [...]]]></description>
			<content:encoded><![CDATA[<p>Hello All,</p>
<p>It&#8217;s been a while since i posted about my study , partly because i&#8217;ve been held up doing a lot of miscellaneous jobs. Work ( Coding in ADA ) is really hectic these days and i&#8217;m unable to allocate the amount of the time that i would like to allocate to studies and labbing. However i have been studying and labbing whenever i can and here&#8217;s a list of things that i&#8217;ve done / things i need to do.</p>
<p>DONE</p>
<ul>
<li>INE Vol 2 &#8211; Lab 1</li>
<li>INE Vol 2 &#8211; Lab 2</li>
<li>INE Vol 2 &#8211; Lab 3</li>
<li>INE Vol 2 &#8211; Lab 10</li>
<li>IPX Vol 2 &#8211; Lab 11</li>
<li>IPX Vol 2 &#8211; Lab 12 ( In progress )</li>
</ul>
<p>Although, i have done all of these labs, i&#8217;m not sure i&#8217;ll be able to nail them again because i havent revised the topics that i had difficulties configuring. I must do that sometime this week and ensure that i know the contents of these labs inside out.</p>
<p>Today, i was doing IPX Vol 2 &#8211; Lab 12. I always have difficulties with IPX (and some INE) labs. That&#8217;s because they&#8217;re really hard, elaborate and take a whole lotta time . For me, it&#8217;s nearly impossible finishing it in the 8 hour period. I had about 7 hours of quality lab time today, out of which , i  spent an hour re-drawing the diagram and going through the configuration items at the beginning. In the remaining time i could configure 5/8 sections. I have saved the configs and will continue the next time i have a rack-rental. I was a little worried this morning regarding my speed. I thought i was the only one with the slow speed and i was trying to analyze if there was something i was doing/missing, which was causing the slow speed.</p>
<p>But then, later today , i had the good fortune to talk to Kingsley and Toyos about the IPX labs and i found out that both of them were taking a little more time than the allotted 8 hours to finish the lab. This put my mind to ease, because i knew everyone was finding these labs hard and it was not only me.</p>
<p>I hope to get some office work done tomorrow and also study some stuff about NAC , practice some ACS configurations. I also hope to do the first lab in &#8220;Yusuf&#8217;s workbook&#8221; the day-after-tomorrow. Let&#8217;s see how that goes. Very excited! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>See you tomorrow!</p>
<p>Cheers and Good night!</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/07/27/after-a-long-time/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>This just in : Toyos Yooyen is a Double CCIE!</title>
		<link>http://tacack.com/2010/07/24/this-just-in-toyos-yooyen-is-a-double-ccie/</link>
		<comments>http://tacack.com/2010/07/24/this-just-in-toyos-yooyen-is-a-double-ccie/#comments</comments>
		<pubDate>Sat, 24 Jul 2010 01:12:06 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=675</guid>
		<description><![CDATA[Hello All, I received some GREAT news yesterday night on twitter. Toyos Yooyen (@tawtoyos , @tyooyen) had just cleared his CCIE-security lab in Tokyo. Congratulations Toyos! He&#8217;s a double CCIE at the age of 24. What a phenomenal acheivement!  He&#8217;s been working very hard, knocking out practice lab after practice lab and it&#8217;s absolutely inspiring [...]]]></description>
			<content:encoded><![CDATA[<p>Hello All,</p>
<p>I received some GREAT news yesterday night on twitter. Toyos Yooyen (@tawtoyos , @tyooyen) had just <strong>cleared </strong>his CCIE-security lab in Tokyo. Congratulations Toyos! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>He&#8217;s a double CCIE at the age of 24. What a phenomenal acheivement!  He&#8217;s been working very hard, knocking out practice lab after practice lab and it&#8217;s absolutely inspiring to see such dedication from an individual.Well done Toyos! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>I know he&#8217;ll do very well in his career , so here&#8217;s wishing Toyos the best for his next CCIE! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Cheers,<br />
TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/07/24/this-just-in-toyos-yooyen-is-a-double-ccie/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CCIE-sec (ex-candidate) Interviews : Paul Stewart</title>
		<link>http://tacack.com/2010/07/21/ccie-sec-ex-candidate-interviews-paul-stewart/</link>
		<comments>http://tacack.com/2010/07/21/ccie-sec-ex-candidate-interviews-paul-stewart/#comments</comments>
		<pubDate>Wed, 21 Jul 2010 10:49:53 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-sec candidate Interviews]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=671</guid>
		<description><![CDATA[Have i got a treat for you! I know i&#8217;ve been quiet for sometime , but now i&#8217;m back! And i&#8217;ve got an awesome article here for you. It&#8217;s really special and inspiring because it&#8217;s an interview with &#8220;Paul Stewart&#8221; ( or @packetu , as we tweeps know him ). Paul has been one of [...]]]></description>
			<content:encoded><![CDATA[<p>Have i got a treat for you! I know i&#8217;ve been quiet for sometime , but now i&#8217;m back! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  And i&#8217;ve got an awesome article here for you. It&#8217;s really special and inspiring because it&#8217;s an interview with &#8220;Paul Stewart&#8221; ( or @packetu , as we tweeps know him ).</p>
<p><a href="http://tacack.com/wp-content/uploads/2010/07/102_0920.jpg"><img class="aligncenter size-medium wp-image-672" title="102_0920" src="http://tacack.com/wp-content/uploads/2010/07/102_0920-300x225.jpg" alt="" width="300" height="225" /></a></p>
<p>Paul has been one of the first few guys i met on twitter and i&#8217;ve been interacting with him for sometime now. He&#8217;s very very helpful and knowledgeable and most importantly an exceptional person. His ability to take the most complex scenarios , break it down and explain it to someone has won him accolades everywhere. Recently, CLND recognized <a href="https://learningnetwork.cisco.com/people/PacketU">Paul </a>as one of it&#8217;s top contributers. He&#8217;s rated #3 among all the people in CLND and #1 in the CCIE-security group in contributions.</p>
<p>As a testament to all his knowledge and hard-work, Paul <strong>cleared </strong>the CCIE-sec lab recently! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  He&#8217;s one of the few guys i look up to , admire and try and emulate. He&#8217;s a CCIE , a friend and a great person. This is why i was really excited when he agreed to answer my questions!</p>
<p>I hope this motivates you and helps you in your quest for the elusive digits.</p>
<p><strong><em><span style="color: #ff0000;">TacACK </span></em></strong>: Hello Paul! How are you doing today?</p>
<blockquote><p>I am doing great.  The weather is nice, and its not Monday.  I am actually working on a few off-the-wall projects that will be interesting.  One includes a Cisco UCS-C, which from what I can tell is the small business version of the UCS.</p></blockquote>
<p><span style="color: #ff6600;"><strong><em><span style="color: #ff0000;">TacACK</span></em></strong><span style="color: #ff0000;"> </span>:</span> To the few people who don&#8217;t know who you are, could you please tell us where are you from?</p>
<blockquote><p>I am from London, Kentucky.  For those who are familiar with the geography of the US, that is about 150 miles south of Cincinnati, Ohio and about 300 miles north of Atlanta, Georgia.  I actually work primarily in Lexington, Ky, about an hour commute from my home.</p></blockquote>
<p><span style="color: #ff6600;"><strong><em><span style="color: #ff0000;">TacACK </span></em></strong></span>: First of all, congrats on passing the CCIE-security lab! I always knew you&#8217;d kill the lab and you did it!</p>
<blockquote><p>I wouldn&#8217;t necessarily say that I killed it, but I was certainly glad that I passed</p></blockquote>
<p><span style="color: #ff6600;"><strong><em><span style="color: #ff0000;">TacACK</span></em></strong></span><strong><em> </em></strong>: How did you celebrate when you saw the e-mail!?</p>
<blockquote><p>I was actually in my hotel room in San Jose, California with my family.  Everyone was sleeping because of the 3 hour time difference. I kept getting up to see if I had received an email yet.  Finally at about midnight, I received an email with a link asking me to log in. When I did so, there was a &#8220;congratulations on becoming a CCIE&#8221;.  I was nearly moved to tears.  This was such a journey for me.  As far as celebration, I told my wife the good news and spent some time on twitter.  Finally I went back to bed, but found that I was too excited to sleep.</p></blockquote>
<p><span style="color: #ff6600;"><strong><em><span style="text-decoration: underline;"><span style="color: #ff0000;">TacACK </span></span></em></strong></span>:  When and how did your journey into cisco networks start?</p>
<blockquote><p>I started working with Cisco Network equipment in early 1999 at the consulting company I am still with.  My employment began just as a senior engineer was leaving, so I had the opportunity to do practically anything I could educate myself to do.  During the first couple of years, I found myself in many of those &#8220;trial by fire&#8221; situations.  Nonetheless, I came through the ranks quickly.  I obtained MCSE, CCNA, CCDA, CCNP and CCDP in a couple of years.  After that I went on a certification hiatus, not seeing the need for the paper.  Eventually I jumped back on board and obtained my CCSP and decided I wanted to go to the next level, the CCIE Security.</p></blockquote>
<p><span style="color: #ff6600;"><strong><em><span style="color: #ff0000;">TacACK</span></em></strong></span><strong><em><span style="color: #ff0000;"> </span></em></strong>: Why did you opt for CCIE-security?</p>
<blockquote><p>I opted for CCIE Security after quite a bit of thought.  Before actually choosing security, I made the decision to pursue the CCIE.  I wanted to push my knowledge to the next level and I really enjoy networking.  Most engineers choose Routing and Switching as their first CCIE.  My company has always dealt with a lot of small and medium sized businesses.  As a result, the Security track matched my day to day work much more closely than the Routing and Switching.  I do enjoy security, but the reason I chose it was because it was a better fit for me.  I may pursue a second CCIE in the future.  If so,<br />
that will probably be Routing and Switching.</p></blockquote>
<p><span style="color: #ff6600;"><strong><em><span style="color: #ff0000;">TacACK </span></em></strong></span>: What materials did you use for your study?</p>
<blockquote><p>I primarily used the IPExpert materials.  This included the AoD, VoD and most importantly the practice labs.  I used Proctor Labs for access to Cisco equipment.  I also attended the IPExpert one week bootcamp.  Another item that I found extremely useful was Yusuf Bhaiji&#8217;s new practice labs.</p></blockquote>
<p><strong><em><span style="color: #ff0000;">TacACK </span></em></strong>: On a scale of 1..10 , how close are the ccie material to the actual lab ?</p>
<blockquote><p>That&#8217;s a little difficult to answer.  I think Yusuf&#8217;s labs quite similar, so I&#8217;d say an 8 or 9 for that.  IPExperts materials were a little more different than the real lab.  The good news is that I think the lab is a bit easier.  In my opinion someone can do very well on these practice materials, I think they&#8217;ll do okay on the lab. While working through the practice materials, it is important to understand the details.  When taking the real lab, time management is very important.</p></blockquote>
<p><strong><em><span style="color: #ff0000;">TacACK </span></em></strong>: What was your daily study plan like?</p>
<blockquote><p>In the beginning, I went through the labs in volume one.  As time progressed, I began assessing myself against the blueprint.  Most Saturdays I leased 16 hours of rack time, but sometimes I couldn&#8217;t concentrate for the full amount of time.  During the week, I read and done &#8220;mini-labs&#8221; on my own equipment.  These mini-labs weren&#8217;t formal in the sense that someone wrote them.  I simply went through the blueprint and messed with configurations that encompassed the features I&#8217;d be tested on.</p></blockquote>
<p><strong><em><span style="color: #ff0000;">TacACK </span></em></strong>: How did you manage to focus on studies/dedicate so much time for study with a family?</p>
<blockquote><p>That is a very tough and delicate balancing act.  To be honest, I&#8217;m not sure that I done a great job at this.  For me, I had a special circumstance in which my 10 year old son had a brain hemorrhage about 3 days after I returned from my first attempt.  So I had some time that I just totally forgot about the CCIE and focused on his situation.  After some scary times, major surgery and a lot of prayers, he has made a full recovery.  He actually made the trip with me to San Jose when I passed on the second attempt.</p></blockquote>
<p><strong><em><span style="color: #ff0000;">TacACK </span></em></strong>: You were featured on CLND for your awesome contribution and as a candidate i&#8217;d like to thank you for all the help that you&#8217;ve extended to the CCIE community. Also on twitter, you&#8217;ve helped me by answering many of my questions and by simply inspiring me. Thank you! Do you lookup to anyone for  inspiration/motivation?</p>
<blockquote><p>I love Cisco Learning Network Discussions.  That site is such a great community of people at all levels.  I really enjoy the discussions and knowledge that I can obtain and share through all channels.  As far as looking up to people, there are many and they are at all levels.  I am really encouraged to see people who are just getting started but are really putting forth effort and getting this stuff.  I also look up to those who are seasoned, but continue to learn.  I am inspired by the learning process and those who continue to push themselves toward more knowledge.</p></blockquote>
<p><strong><em><span style="color: #ff0000;">TacACK </span></em></strong>: 5 tips to any ccie-sec candidate?</p>
<blockquote><p>1. Don&#8217;t underestimate the time required to prepare for the lab.<br />
2. Get very familiar with the CCIE Security Blueprint<br />
3. Pay attention to every detail of every question.<br />
4. Participate in the study groups like OSL, Group Study and Cisco<br />
Learning Network.<br />
5. Time management (have an attack plan in studies and on the lab)</p></blockquote>
<p><strong><em><span style="color: #ff0000;">TacACK </span></em></strong>: What are your future plans like? Consulting? Training?</p>
<blockquote><p>Yes to both!  I will continue consulting, but have a strong desire to start training.  I am currently in the process of becoming a Cisco Instructor.  Once that process is complete, I hope to spend a week or two a month delivering classes and helping students build a strong foundation for knowledge.  This is a completely new and exciting area for me, so I have a lot to learn too.</p></blockquote>
<p>You can reach paul through his website <a href="http://www.packetu.com/">www.packetu.com</a> and through twitter <a href="http://twitter.com/packetu">http://twitter.com/packetu</a>.</p>
<p>That&#8217;s a great interview. Thanks a lot Paul! You&#8217;ve helped me and a lot of people through your efforts on CLND and twitter <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  . Here&#8217;s wishing you all the best for a bright and illustrious career. Hope you all enjoyed this!</p>
<p>Cheers,</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/07/21/ccie-sec-ex-candidate-interviews-paul-stewart/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>INE Vol 2 Labs</title>
		<link>http://tacack.com/2010/07/04/ine-vol-2-labs/</link>
		<comments>http://tacack.com/2010/07/04/ine-vol-2-labs/#comments</comments>
		<pubDate>Sun, 04 Jul 2010 03:38:18 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=667</guid>
		<description><![CDATA[Hello All! I&#8217;ve been busy for the last couple of days doing INE vol 2 labs. I&#8217;ve &#8230;.er.. attempted two so far and i&#8217;m happy with the progress that i&#8217;m making. I know i will not clear the lab if i sit TODAY, but i hope to get there in 2 months time I&#8217;ll definitely [...]]]></description>
			<content:encoded><![CDATA[<p>Hello All!</p>
<p>I&#8217;ve been busy for the last couple of days doing INE vol 2 labs. I&#8217;ve &#8230;.er.. attempted <img src='http://tacack.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  two so far and i&#8217;m happy with the progress that i&#8217;m making. I know i will not clear the lab if i sit TODAY, but i hope to get there in 2 months time <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>I&#8217;ll definitely be writing a much more detailed analysis later today of how my labs went, what were the things that i learnt, how i can improve and much.</p>
<p>Please feel free to comment about how your first Vol 2 labs are. Ryan&#8217;s also started the IPX vol 2 labs and he&#8217;s doing an awesome job with them. He&#8217;s well on his way to getting the Digits! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Cheers and have a great weekend!</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/07/04/ine-vol-2-labs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Vol 1 &#8211; DONE!</title>
		<link>http://tacack.com/2010/06/30/vol-1-done/</link>
		<comments>http://tacack.com/2010/06/30/vol-1-done/#comments</comments>
		<pubDate>Wed, 30 Jun 2010 16:47:27 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=664</guid>
		<description><![CDATA[Hello All! Today , for the first time ever , i&#8217;m done with INE and IPX vol 1 labs. I am pretty damn sure i don&#8217;t remember atleast 10% of what i have labbed so far, but it&#8217;s time to move on. Also, i&#8217;ll definitely be revisiting these labs and going through the DSGs in [...]]]></description>
			<content:encoded><![CDATA[<p>Hello All!</p>
<p>Today , for the first time ever , i&#8217;m done with INE and IPX vol 1 labs. I am pretty damn sure i don&#8217;t remember atleast 10% of what i have labbed so far, but it&#8217;s time to move on. Also, i&#8217;ll definitely be revisiting these labs and going through the DSGs in the coming month.</p>
<p>One real COOL feature that i learnt as a result of today&#8217;s labbing was this. I didn&#8217;t know 2 things about traceroute :</p>
<ul>
<li>There&#8217;s a better way to do traceroute . The original algorithm is sorta inefficient for huge networks, so there was a new solution proposed and it involves using the ip option &#8220;traceroute&#8221;. Here&#8217;s the <a href="http://tools.ietf.org/html/rfc1393">RFC</a>. Please go through it if you&#8217;ve the time. It&#8217;s an awesome ( and surprisingly short) read.</li>
<li>Also , i did not know that we could do TCP traceroutes. I always thought , there were only 2 types of traceroutes : ICMP ( windows style ) and UDP (Unix, cisco style ). There&#8217;s also a TCP traceroute which uses SYN packets sent on port-80. You can find some documentation about that <a href="http://blog.ine.com/2007/12/28/understanding-traceroute/">HERE</a>.</li>
</ul>
<p>I also watched one of my favourite movies of all time &#8211; Dazed and Confused <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>So overall it&#8217;s been a good day. Have fun guys!</p>
<p>Cheers,</p>
<p>TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/06/30/vol-1-done/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>This just in.. SIMON BAUMANN is CCIE-26323(security)!</title>
		<link>http://tacack.com/2010/06/30/this-just-in-simon-baumann-is-ccie-26323security/</link>
		<comments>http://tacack.com/2010/06/30/this-just-in-simon-baumann-is-ccie-26323security/#comments</comments>
		<pubDate>Tue, 29 Jun 2010 19:51:18 +0000</pubDate>
		<dc:creator>TacAck</dc:creator>
				<category><![CDATA[CCIE-Security]]></category>

		<guid isPermaLink="false">http://tacack.com/?p=662</guid>
		<description><![CDATA[Whoa! This is awesome.  A friend of mine, Simon Baumann , just passed his CCIE-sec today! He&#8217;s from Germany and he&#8217;d gone to dubai to attempt his lab. Congrats Simon! All the hard work has definitely paid off. Now sit back and relax! You can wish him HERE ! Cheers, TacACK]]></description>
			<content:encoded><![CDATA[<p>Whoa! This is awesome.  A friend of mine, Simon Baumann , just passed his CCIE-sec today! <img src='http://tacack.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  He&#8217;s from Germany and he&#8217;d gone to dubai to attempt his lab.</p>
<p>Congrats Simon! All the hard work has definitely paid off. Now sit back and relax!</p>
<p>You can wish him <a href="http://www.facebook.com/photo.php?pid=271045&amp;op=1&amp;o=global&amp;view=global&amp;subj=661348025&amp;id=1695224626#!/profile.php?id=1003434016">HERE </a>!</p>
<p>Cheers,<br />
TacACK</p>
]]></content:encoded>
			<wfw:commentRss>http://tacack.com/2010/06/30/this-just-in-simon-baumann-is-ccie-26323security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
