Showing posts with label certification. Show all posts
Showing posts with label certification. Show all posts

Friday, August 25, 2017

Red Hat Certified Engineer (RHCE)

Today I earned the Red Hat Certified Engineer certification.  It was the result of about six months of study, many set backs, and hours of lab work.

If you read my previous post about the RHCSA exam, most of it holds true for the RHCE exam.  I used the same resources as before along with LiseNet, and CertDepot.

The exam was pretty difficult and I ran in several problems that took a lot of time to troubleshoot and resolve.  At one point I thought I was going to fail but ended up passing with a 243 out of 300.  I got the results two hours after completing the exam while it had taken around two days to get the results for the RHCSA.  I wrote the kiosk version of the exam (EX300K) rather than the classroom exam, so I was in a room by myself with someone watching me via camera.

My advise for this exam is to learn how to do everything from the command-line.  You should still install the GUI to make things easier for testing and cut and pasting from terminals.  However you should know how to configure everything using the command-line tools and not have to rely upon the GUI or TUI tools as they do not always work.  Make sure you know the major topics well and go through multiple practice tests and labs (LiseNet has a very good practice test which will help a lot). 

Like I mentioned in the RHCSA post, use more than one source for study, this is even more important for the RHCE exam.  If you rely upon one source you will not cover all of the material that's required.  Every source covers all of the topics but do not cover every configuration scenario that is presented on the exam.  I was asked to do things that I've never covered specifically even though I'd done labs based on the topic.

Another tip is to know every topic in depth and don't just gloss over something and just learn the basics or solely what the study material you are using covers.  I fell into this trap and it cost me a lot of time and marks on the exam.

It took me the full 3.5 hours to complete the exam even though I didn't get everything working.  It's the only exam I've ever broken a sweat writing.  I'm glad it's over though.

Sunday, February 5, 2017

Red Hat Certified System Administrator (RHCSA)

After a long time I've finally earned my first Linux certification, the Red Hat Certified System Administrator (RHCSA).

I began formally preparing in October 2016, wrote the exam February 3 2017 and received my results today.  283/300.

I've been viewed as mostly a Windows guy, however I've been working with Linux for almost as long as I've been working with Windows.  My goal has always been to get my Linux skills on-par or better than my Windows skills.

The RHCSA covers Linux administration skills at a basic level and is a prerequisite to the Red Hat Certified Engineer (RHCE) certification.

The materials I used to prepare for the exam were; Red Hat RHCSA/RHCE 7 Cert Guide: Red Hat Enterprise Linux 7 (EX200 and EX300) and LinuxAcademy.com.  I recommend using at least two resources as some things are covered differently depending on the resources and it's good to know multiple ways to do things.

The key to passing this exam is doing labs over and over again until you can configure everything from memory only relying upon the resources that come with a Red Hat installation.  This means you have to be able to configure everything using only the man pages, info pages and included documentation.  There is no Internet access during the exam.

Other tips are be sure that all your configuration survives reboots.  So reboot your machine at least once during the exam.  

When working with the /etc/fstab file you can use the mount -a command to mount everything in the file to ensure that you don't get dumped to a emergency shell upon reboot if there are errors.

Learn how to configure everything using both the command line and the GUI and TUI interfaces.  Use the fastest method to configure what you're asked to do.  In the real world you'd be using the command line but this is about passing the exam and time is of the essence.

Be sure to read the questions carefully as I had to redo some things from scratch after re-reading some questions.

The exam isn't overly difficult as I was able to complete all questions but two in 45 minutes.  If you have previous experience it shouldn't be too difficult, just be sure you cover the topics that you're not familiar with.

The RHCSA doesn't carry as much weight as the RHCE, but it's a required stepping stone to it and I learned a lot while preparing for it.

Up next is the RHCE.

Tuesday, July 7, 2015

Beginning Penetration Testing With Kali Linux

Over the past weekend I began Offensive Security's Penetration Testing With Kali Linux course.

Anyone who follows the security field, specifically Penetration Testing, is familiar with Kali Linux and it's forefather BackTrack Linux.

For those who are unfamiliar with Kali and BackTrack.  They are Linux distributions that focus on providing the tools needed for various types of Penetration Testing.  You can find out more about them here and here.

The course is delivered via videos accompanied with a lab manual and live labs with real systems for one to practice on.  The course ends with a penetration test on a fictitious company.  The final exam consists of a Penetration Test in Offensive Security's lab environment where the student is required to break into as many systems as possible and submit a report at the end detail the Penetration Test.

As of now, I've completed the first few modules and even though they are introducing elementary topics I have learned many things that will not only aid in Penetration Testing, but in IT in general.

I will document my progress through the course here.

Sunday, October 26, 2014

JNCIS-SEC

Recently I passed the Juniper Networks Certified Specialist - Security exam, JNCIS-SEC.

I spent several months studying off and on for the exam and finally bit the bullet and wrote it.

The exam was straight forward with only multiple choice questions.  The exam solely covers the SRX series of security gateways.  If you study the Fast Track guides provided by Juniper you should be able to pass with little issue.

Fortunately for me, the company I am employed by is under going a significant infrastructure upgrade which involved implementing Juniper SRX550 firewalls in a chassis cluster configuration.  This allowed me to get significant hands on experience with the SRX and all of it's security features.

The major plus about Juniper certifications is that only one exam is required to obtain a certification unlike other vendors who require multiple exams.

For prepartion I used the Fast Track study guides available for free on Juniper's website and the SRX Series book by O'Reilly along with hands on experience.

Juniper provides a pre-assement test on their website.  If you pass it, you receive a 50% discount voucher for the exam.

Juniper doesn't have the market share that Cisco and other vendors may have.  However, their devices offer significant advantages and features that other vendor's don't.  Also, Juniper is well known in the service provider sector.

Having knowledge and experience with Juniper and/or other vendors will give you a niche advantage that others won't have.

Coming from a Cisco background myself, I prefer Juniper due to the bang for your buck that you get.  Juniper offers features on their low-end to mid-range products that other vendor reserve for their higher end products.  Also, Junos offers several advantages over Cisco IOS such as batch configuration, automatic archiving of configurations and the ability to rollback to a previous configuration to name a few.

Networking isn't my career focus but it's an area that I do enjoy working in and you can't get really far in the IT field without having at least some basic networking knowledge.

Monday, February 17, 2014

VMware Certified Professional - Data Center Virtualization

Recently I began the VMware vSphere : Install, Configuration, Manage course which is one of prerequisite courses required in order to take the VCP5-DCV exam.

The VCP5-DCV certification covers installing, configuring and managing a vSphere 5 environment with vCenter. 

Anyone with any experience with VMware or virtualization in general knows that the VCP5 is a very sought after and respected certification.

I had the opportunity to take the course at an extremely discounted rate so I took advantage of it right away.  The course covers the majority of the exam content, but not all.  So significant self-study and lab work is required in order to pass the exam.

The study materials I am using to supplement the course are as follows:
 In order to fully cover the topics on the exam and gain hands on experience a lab is required.

There are two main options for building home lab.  First, build a physical lab consisting of physical ESXi hosts, shared storage and then virtualize the rest of the infrastructure.  Second, build a nested lab consisting of a fully virtualized infrastructure.  I chose the latter.

Since I already had a physical host running ESXi 5.1, I chose to virtualize my vCenter, iSCSI SAN, and domain controller.

I utilized FreeNAS for the iSCSI SAN.  It is simple and straight forward to setup and does the job very well.

Due to the limitation of the CPU in my ESXi 5.1 server, I had to elect to run the ESXi 5.5 hosts in VMware Workstation on my desktop which is capable of nested virtualization.  With this setup I am able to run a full vCenter environment along with virtual machines.

Here are some sample screen shots and a simple network diagram:


Sunday, February 16, 2014

Juniper Networks Certified Associate (JNCIA) - Junos

Today after a long period of study I passed the JN0-102 exam and earned the JNCIA - Junos certification.  This is my first Juniper certification and will surely not be my last.

The JNCIA - Junos the first in the Junos certification track from Juniper.  It is the precursor to the JNCIS, JNCIP and JNCIE certifications in the Enterprise, Security and Service Provider certification tracks.

During my preparation for the exam, Juniper updated the JN0-101 exam to the JN0-102, removing some topics and introducing others.  I chose to take the JN0-102, which I shouldn't have since I hadn't studied the new topics thoroughly enough. 

I made the decision to take the JN0-102 based on the fact that Juniper had said the study materials for the old and new exams were the same and the exams were very similar.  However, once reading the detailed exam topics the night before the exam I learned otherwise.

I managed to pass the exam, but I know I would have done better on the JN0-101 exam.

Some topics the exam covers are routing, Junos operation, and subnetting.

Some of the resources I used for preparation are as follows;
The exam was straight forward with no real trick questions.

The Junos platform is more powerful and flexible to Cisco IOS in my opinion.  Features such as automatic archiving of configurations to a remote server, scheduled committing of configuration and the ability to rollback configurations to prevent locking one's self out of a device are some key features that I like.  The configuration syntax and methodology takes sometime to get used to if you're coming from a Cisco background and the Juniper equivalent to a Cisco configuration is usually longer.  But once you get used to it, you'll appreciate the power of Junos. 

For those thinking of taking the exam, be sure to take and pass the Pre-Assesment test on Juniper's website.  Once doing so you'll be given a 50% discount voucher code for the exam.

Sunday, September 15, 2013

MCITP: Enterprise Messaging Administrator on Exchange 2010

Today I passed the 70-663 Designing and Deploying Messaging Solutions with Microsoft Exchange Server 2010 and thus obtained the MCITP: Enterprise Messaging Administrator on Exchange 2010, my second MCITP certification.

This was not an easy exam.  The exam covers everything having to do with Exchange Server 2010 SP1 except Unified Messaging.  While the focus of the 70-662 exam is configuring Exchange,  the focus of 70-663 is Designing and Deploying Exchange.  Do not think that this exam is not technical as it has a good amount of technical content so do not forget what you learned from 70-662.

The majority of my preparation was done by reading the TechNet Library for Exchange 2010 and taking two Microsoft courses that came with my TechNet Professional subscription.  My recommendation is to utilize TechNet and the Exchange team blogs to cover the material as well setup a lab environment.

This certification took almost a year for me to complete due to many set backs, but I am glad it is over with.

Next in line is the CompTIA Linux+ and LPIC-1 combination and possibly a SQL Server 2008 certification or VMware VCA.

Wednesday, May 22, 2013

Exam 70-662 MCTS: Microsoft Exchange Server 2010, Configuring

70-662 is the first of two exams required to obtain the MCITP: Enterprise Messaging on Exchange 2010.

As the title states, the focus of the exam is configuring Exchange 2010.  The exam topics cover all aspects from installation to granular configuration scenarios.  One noted absence is Unified Messaging.

The exam itself was quite challenging and one needs to know all covered topic very well since they are all equally weighted for the most part.

Trainsignal videos and TechNet were my primary sources of study.  I also setup a lab environment with multiple Exchange servers to get hands on experience.

My recommendations for this exam is to read through TechNet documentation, spend significant time in the Exchange Management Console and Exchange Control Panel and finally know the PowerShell command-lets very well.

On to 70-663.

Wednesday, July 11, 2012

Cisco CCNA

I recently passed the ICND2 exam thus completing the Cisco Certified Network Associate (CCNA) certification.

I chose the two exam route since I am relatively new to networking and I wanted to be able to focus on each exam's topic separately.

It took about three months of preparation for the ICND1 exam and another six months for the ICND2 exam.  This is a relatively long time,  but I had other material I was working on and I wanted to make sure that I passed the exams.

As my goal is to obtain a position in IT security, a base knowledge of networking is required.  The CCNA is a recognized certification that will give you a base knowledge in routing ,switching, TCP/IP and UDP.  Be forewarned that it covers networking from a Cisco perspective, so the emphasis is on configuring Cisco devices and not networking in general.

A solid understanding of the OSI model, TCP/IP, and UDP is required for security professionals.  Good sources for this material are Wireshark Network Analysis, NMAP Network Scanning, and TCP/IP Guide.  All of these titles I plan on reading myself.

Below are the following resources that I used to prepare for the exam:

From Cisco Press :
CCNA 640-802 Official Cert Library 
CCNA Flash Cards and Exam Practice Pack  
31 Days Before Your CCNA Exam 
CCNA Portable Command Guide
CCNA 640-802 Network Simulator


Cisco Packet Tracer 5.3 (do a google search to find it and various labs)
CBT Nuggets CCNA 

The Official Certification library and the CCNA Flash Cards titles come with practice tests from Boson.  I found these tests to be actually harder than the actual exam.  This combined with the 200+ labs that came with the Network Simulator should be more than enough to pass the exams.  The other titles I used as insurance.

My advise for test takers is to read the books cover to cover and go through the practice material in the Appendices on the CDs.  Also learn how to subnet very quickly.  You should be able to subnet in 20 seconds or less.  Many of the problems on the exam require subnetting, even those that aren't specific to subnetting.  Keep doing the Boson exams until you can pass them consistently.  Finally, make sure you spend a significant amount of time doing labs.  Whether you build a physical lab or use the simulators.  There are questions that aren't simulator questions but ask you about various IOS commands.  So make sure you're familiar with them.