Networking Guides

Comprehensive references for working network engineers and CCNP/CCIE candidates. 23 deep-dive guides on Cisco routing, switching, wireless, WAN, VPN, QoS, and access control.

Comprehensive references for working network engineers and CCNP/CCIE candidates. Each guide covers fundamentals, configuration, troubleshooting, and real Cisco IOS XE and NX-OS lab output. The kind of depth you can keep open during change windows.

📡
Now spanning both CCIE Enterprise and CCIE Security tiers - 700+ in-depth articles across 31 guide hubs, every one built on real lab captures. Pick a topic below. Most guides are deep enough to live as a bookmark for daily reference.

Fundamentals

The foundation everything else stands on.

Routing Protocols

How packets find their way across networks of every scale.

Switching & VLANs

Layer 2 fundamentals and the protocols that keep a campus stable.

WAN & Tunneling

Wide-area technologies, from labels to overlays to tunnels.

Data Center

Spine-leaf fabrics, NX-OS, and the overlay that runs the modern data center.

Wireless & Access Control

Who and what gets onto the network, wired and wireless.

Service Quality & Resilience

Keeping traffic flowing predictably and the network up.

Network Services

The day-2 services every production network depends on.

Security & Firewall

Perimeter security, stateful inspection, and the platforms that gate the trust boundary.

Network Tools & Analysis

Command-line tools for scanning, capturing, and tracing what is really on the wire.

Ping

ICMP echo end to end: how ping works, reading TTL and RTT, decoding every failure message, Cisco extended ping, DF-bit MTU testing, and subnet sweeps, built on real Cisco IOS XE and Linux lab captures.

Read the guide →

iPerf

Throughput testing end to end: TCP and UDP tests, jitter and packet loss, window tuning and parallel streams, server daemons, and slow-path troubleshooting, built on real Cisco IOS XE lab captures.

Read the guide →

Nmap

Network scanning end to end: host discovery, port scans, version and OS detection, NSE scripts, firewall evasion, and output parsing, built on real Cisco and Linux lab captures.

Read the guide →

Packet Analysis

Capture and read the packets themselves: tcpdump and BPF filters, where to tap, embedded capture on IOS XE, crafting frames with Scapy against live Layer 2 defenses, and reading a port scan from the defender's side, built on real Cisco and Linux lab captures.

Read the guide →

Linux Networking Commands

The Linux side of the network, end to end: the ip command and its objects, the routing and neighbor tables, ethtool and NIC offloads, the net-tools to iproute2 migration, path testing with traceroute, mtr and tracepath, socket state with ss, the DNS client toolset (dig, host, nslookup and how Linux actually resolves a name), the transfer and swiss-army tools (curl, wget, netcat, socat and SSH tunneling), watching the wire with tcpdump, tshark, ngrep, the live bandwidth monitors and the /proc/net counters underneath them all, and host firewalling with iptables, nftables and ufw, built on real Debian and Cisco IOS XE lab captures. Twenty nine articles, a single-page field reference and a free ten-page printable PDF.

Read the guide →

Monitoring & Observability

Standing up the platforms that watch the network, on real hardware you can rebuild.

Automation & Programmability

Controllers, APIs, and the tooling that configures networks at scale.

CCIE Enterprise Infrastructure

Expert-tier depth across every EI v1.1 blueprint domain - 58 articles, all on real Cisco output, plus four integration Super Labs.

CCIE Security

Expert-tier security depth mapped to the CCIE Security v6.1 blueprint, all on real Cisco IOS XE output. Firepower Threat Defense coverage is on the way.

More coming

New guides land regularly. Want to know when the next one drops? Subscribe to the newsletter. One email per guide, no fluff, unsubscribe whenever.