Blueprint v1.1 — Les 5 domaines
30%
Domaine 1.0 — Le plus lourd
Network Infrastructure
Switched campus — STP, VLANs, EtherChannel, L2 protocols
Routing — AD, static, PBR, VRF-Lite, route leaking
EIGRP — adjacences, DUAL, convergence, stub, named mode
OSPF v2/v3 — network types, LSA, SPF tuning
BGP — path selection, policies, communities, route reflectors
Multicast — PIM sparse, RP, SSM, MSDP, IGMPv2/v3
Routing — AD, static, PBR, VRF-Lite, route leaking
EIGRP — adjacences, DUAL, convergence, stub, named mode
OSPF v2/v3 — network types, LSA, SPF tuning
BGP — path selection, policies, communities, route reflectors
Multicast — PIM sparse, RP, SSM, MSDP, IGMPv2/v3
→
25%
Domaine 2.0
Software-Defined Infrastructure
Cisco SD-Access — underlay (manual, LAN automation), overlay
LISP/BGP control plane, VXLAN data plane, TrustSec SGT
Fabric design — single-site, multisite, fabric in a box
Cisco SD-WAN — vManage, vBond, vSmart, OMP
Templates CLI/feature/device, policies centralisées/locales
Segmentation — virtual networks, SGT/SGACL
LISP/BGP control plane, VXLAN data plane, TrustSec SGT
Fabric design — single-site, multisite, fabric in a box
Cisco SD-WAN — vManage, vBond, vSmart, OMP
Templates CLI/feature/device, policies centralisées/locales
Segmentation — virtual networks, SGT/SGACL
→
15%
Domaine 3.0
Transport Technologies & Solutions
GRE — tunnels point-to-point statiques
MPLS — LDP, label stack, LSR/LSP, ping/traceroute
L3VPN — PE-CE BGP, MP-BGP VPNv4/VPNv6
DMVPN Phase 3 — dual hub, NHRP
IPsec/IKEv2 avec preshared key
MPLS — LDP, label stack, LSR/LSP, ping/traceroute
L3VPN — PE-CE BGP, MP-BGP VPNv4/VPNv6
DMVPN Phase 3 — dual hub, NHRP
IPsec/IKEv2 avec preshared key
→
15%
Domaine 4.0
Infrastructure Security & Services
CoPP, AAA, L2 security (DAI, DHCP snooping, port security)
IPv6 security — RA Guard, DHCP Guard, ND Inspection
SNMP v2c/v3, Syslog, RESTCONF/NETCONF
QoS — DSCP, NBAR, MQC, policing, shaping, WRED, HQoS
FHRP (HSRP/VRRP), NTP/PTP, DHCP, NAT/PAT
IP SLA, NetFlow, SPAN/RSPAN/ERSPAN
IPv6 security — RA Guard, DHCP Guard, ND Inspection
SNMP v2c/v3, Syslog, RESTCONF/NETCONF
QoS — DSCP, NBAR, MQC, policing, shaping, WRED, HQoS
FHRP (HSRP/VRRP), NTP/PTP, DHCP, NAT/PAT
IP SLA, NetFlow, SPAN/RSPAN/ERSPAN
→
15%
Domaine 5.0
Infrastructure Automation & Programmability
Data encoding — JSON, XML, YAML, Jinja2
EEM applets, Guest Shell (Linux, CLI Python, EEM Python)
vManage API — Python requests, Postman, monitoring/config endpoints
Catalyst Center API — GET/PUT/POST via requests/Postman
Model-driven telemetry — gRPC, on-change subscription
EEM applets, Guest Shell (Linux, CLI Python, EEM Python)
vManage API — Python requests, Postman, monitoring/config endpoints
Catalyst Center API — GET/PUT/POST via requests/Postman
Model-driven telemetry — gRPC, on-change subscription
→
Fondamentaux réseau
Services & Protocoles
Architecture moderne
Sécurité réseau
Écosystème & Carrière