300-208 - Implementing Cisco Secure AccessSolutions Exam



Similar documents
Implementing Cisco Intrusion Prevention System 7.0 (IPS)

VPN_2: Deploying Cisco ASA VPN Solutions

Deploying Cisco ASA VPN Solutions

To participate in the hands-on labs in this class, you need to bring a laptop computer with the following:

For Sales Kathy Hall

Securing Networks with Cisco Routers and Switches 1.0 (SECURE)

SSECMGT: CManaging Enterprise Security with Cisco Security Manager v4.x

Implementing Cisco Voice Communications and QoS

Managing Enterprise Security with Cisco Security Manager

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

Implementing Cisco Secure Mobility

Managing Enterprise Security with Cisco Security Manager

Implementing Cisco IOS Network Security

IINS Implementing Cisco Network Security 3.0 (IINS)

Implementing Core Cisco ASA Security (SASAC)

Implementing Cisco IOS Network Security v2.0 (IINS)

Cisco Certified Security Professional (CCSP)

Cisco Security Certifications

Securing Networks with Cisco Routers and Switches ( )

SNRS. Securing Networks with Cisco Routers and Switches. Length 5 days. Format Lecture/lab

CCNA Security 2.0 Scope and Sequence

Implementing Secured Converged Wide Area Networks (ISCW) Version 1.0

IPv6 Fundamentals, Design, and Deployment

CCNA Cisco Associate- Level Certifications

Implementing and Configuring Cisco Identity Services Engine SISE v1.3; 5 Days; Instructor-led

CISCO TECHNICAL TRAINING

Cisco Certified Security Professional (CCSP) 50 Cragwood Rd, Suite 350 South Plainfield, NJ 07080

Cisco Certified Network Associate (CCNA) Cisco Certified Network Associate (CCNA)

Cisco Certified Network Professional - Routing & Switching

ICT Infrastructure & Network Management

TABLE OF CONTENTS NETWORK SECURITY 2...1

Cisco Actualtests Exam Questions & Answers

Description: Objective: Upon completing this course, the learner will be able to meet these overall objectives:

CCIE Exam Certification CCIE Routing and Switching Exam Certification Guide dec-2009

The IINS acronym to this exam will remain but the title will change slightly, removing IOS from the title, making the new title

Cisco Certified Network Expert (CCNE)

CCNA Security v1.0 Scope and Sequence

Designing Cisco Network Service Architectures ARCH v2.1; 5 Days, Instructor-led

CCNA Security. IINS v2.0 Implementing Cisco IOS Network Security ( )

Chapter 1 The Principles of Auditing 1

Designing for Cisco Internetwork Solutions

Security Threats VPNs and IPSec AAA and Security Servers PIX and IOS Router Firewalls. Intrusion Detection Systems

How To Set Up A Cisco Safesa Firewall And Security System

CISCO IOS NETWORK SECURITY (IINS)

Inquire about our programs at Worcester Technical High School!

Fundamentals of Windows Server 2008 Network and Applications Infrastructure

CCNA. Course Fee: 8500 INR (Lab Access, Software s, Books, Tool Kits & Tax Included) Course Duration: 5 Days

CCNA Security v1.0 Scope and Sequence

CCNP Security SECURE

Interconnecting Cisco Networking Devices, Part 2 Course ICND2 v2.0; 5 Days, Instructor-led

CCIE Security Written Exam ( ) version 4.0

Deploying Cisco ASA VPN Solutions Exam.

CNS Implementing NetScaler 11.0 For App and Desktop Solutions

Sophos Certified Architect Course overview

PKI Uncovered. Cisco Press. Andre Karamanian Srinivas Tenneti Francois Dessart. 800 East 96th Street. Indianapolis, IN 46240

Skillsoft Pre-Approved for CompTIA CEUs

Cisco Certification Skills Matrix

Tim Bovles WILEY. Wiley Publishing, Inc.

(d-5273) CCIE Security v3.0 Written Exam Topics

Official Cert Guide. CCNP Security IPS Odunayo Adesina, CCIE No Keith Barker, CCIE No Cisco Press.

Licenses are not interchangeable between the ISRs and NGX Series ISRs.

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0

Associate in Science Degree in Computer Network Systems Engineering

Asheville-Buncombe Technical Community College Department of Networking Technology. Course Outline

McAfee Next Generation Firewall (NGFW) Administration Course

Interconnecting Cisco Networking Devices: Accelerated (CCNAX) 2.0(80 Hs) 1-Interconnecting Cisco Networking Devices Part 1 (40 Hs)

Cisco TrustSec Solution Overview

Cisco TrustSec How-To Guide: Guest Services

Interconnecting Cisco Networking Devices, Part 2 **Part of CCNA Route/Switch**

Cisco TrustSec How-To Guide: Planning and Predeployment Checklists

Table of Contents. Introduction. Audience. At Course Completion

Schedule Singapore 2015

Computer Network Engineering

Cisco ASA 5500 Series SSL / IPsec VPN Edition for the Enterprise

Deploying Cisco Basic Wireless LANs WDBWL v1.1; 3 days, Instructor-led

Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure: Network Services (5 days)

CCNP: Implementing Secure Converged Wide-area Networks

CNS-207 Implementing Citrix NetScaler 10.5 for App and Desktop Solutions

Cisco ASA 5500 Series VPN Edition for the Enterprise

Securing Cisco Network Devices (SND)

Implementing and Administering Security in a Microsoft Windows Server 2003 Network

Cisco ASA 5500 Series Adaptive Security Appliance 8.2 Software Release

Brandman University. School of CCNA

Preliminary Course Syllabus

Configure ISE Version 1.4 Posture with Microsoft WSUS

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop

Computer Network Engineering

Remote-Access VPNs: Business Productivity, Deployment, and Security Considerations

Designing a Windows Server 2008 Network Infrastructure

Fireware Essentials Exam Study Guide

Implementing, Managing and Maintaining a Microsoft Windows Server 2003 Network Infrastructure: Network Services Course No.

Planning and Administering Windows Server 2008 Servers

"Charting the Course...

Cisco Adaptive Security Appliances and Citrix NetScaler Gateway citrix.com

Course Outline. Course 6421B : Configuring and Troubleshooting a Windows Server 2008 Network Infrastructure

INTERCONNECTING CISCO NETWORKING DEVICES PART 2 V2.0 (ICND 2)

IPS AIM for Cisco Integrated Services Routers

Transcription:

Implementing Cisco Secure Access Solutions Duration: 5 Days Course Code: SISAS Overview: This course has been designed to provide engineers with the foundational knowledge and skills required to implement and manage network access security through the deployment of the Cisco Identity Services Engine and 802.1x Solution. Students will gain hands-on experience with configuring advanced Cisco security solutions to enable secure device connection to the network and for mitigating outside threats. At the end of the course, students will be able to reduce the risk to their IT infrastructures and applications using Cisco s ISE appliance features and provide operational support to identity and network access control. Target Audience: This course is aimed at engineers looking to deploy or support a Cisco's Identity Services Engine solution and individuals looking to achieve the Cisco Certified Network Professional Certification for Security. Objectives: After completing this course you should be able to: Understand Cisco Identity Services Engine architecture and access control capabilities Understand 802.1X architecture, implementation and operation Understand commonly implemented Extensible Authentication Protocols (EAP) Implement Public-Key Infrastructure with ISE Understand the implement Internal and External authentication databases Implement identity based authorization policies Understand Cisco TrustSec features Implement Web Authentication and Guest Access Implement ISE Posture service Implement ISE Profiling Understand Bring Your Own Device (BYOD) with ISE Troubleshoot ISE Implement MAC Authentication Bypass Prerequisites: Attendees should meet the following prerequisites: Cisco Certified Network Associate Certification ICND1 and ICND2 or CCNABC Cisco Certified Network AssociateSecurity Certification ICND1 and IINS Knowledge of Microsoft Windows Operating System Testing and Certification Recommended Preparation for Exam(s): 300-208 - Implementing Cisco Secure AccessSolutions Exam Follow-on-Courses: Delegates looking to achieve the Cisco Certified Network Professional Certification for Security should also attend the following courses. SENSS - Implementing Cisco Edge Network Security Solutions SITCS - Implementing Cisco Threat Control Solutions SIMOS - Implementing Cisco Secure Mobility Solutions SISAS www.clclearningafirca.com training@clclearningafrica.com +254 713 027 191

Content: Threat Mitigation Through Identity Services Web Authentication and Guest Access Labs Identity Services Describe the Cisco Email Security Lab 1-1: Bootstrap Identity System 802.1X and EAP Solutions Lab 2-1: Enroll Cisco ISE in PKI Identity System Quick Start Guest Access Services Lab 2-2: Implement MAB and Internal Authentication Cisco Identity Services Engine (ISE) Endpoint Access Control Enhancements Lab 2-3: Implement External Fundamentals Authentication Posture Lab 3-1: Implement EAP-TLS Cisco ISE Overview Profiler Lab 3-2: Implement Authorization Cisco ISE with PKI BYOD Lab 4-1: Implement Central WebAuth and Cisco ISE Authentication Guest Services Configuring Cisco ISE for External Troubleshooting Network Access Control Lab 5-1: Implement Posture Service Authentication Lab 5-2: Implement the Profile Service Troubleshooting Network Access Control Lab 6-1: Troubleshooting Network Access Advanced Access Control Control Certificate-based User Authentication Authorization Security Group Access (SGA) and MACsec Implementation Further Information: For More information, or to book your course, please call us on +254 713 027 191 training@clclearningafrica.com www.clclearningafrica.com Computer Learning Centre 2nd Floor Museum Hill Centre, Muthithi Road, Westlands, Nairobi, Kenya SISAS www.clclearningafrica.com training@clclearningafrica.com +254 713 027 191

Deploying Cisco ASA Firewall Features Duration: 5 Days Course Code: FIREWALL Version: 2.0 Overview: This five-day course aims to provide network security engineers with the knowledge and skills needed to implement and maintain Cisco ASA adaptive security appliance-based perimeter solutions. Delegates will be able to reduce risk to the IT infrastructure and applications using Cisco ASA adaptive security appliance features, and provide detailed operations support for the Cisco ASA adaptive security appliance. Target Audience: Anyone who implements and maintains Cisco ASA firewalls, Network security specialists and technicians, delegates seeking CCNP Security certification Objectives: After you complete this course you will be able to: Evaluate the basic firewall technology, features, hardware models, and licensing options of the Cisco ASA security appliance Implement and troubleshoot basic Cisco ASA security appliance connectivity and device management plane features Configure and verify Cisco ASA security appliance network integration Configure and verify Cisco ASA security appliance policy Configure and verify high availability and virtualization on Cisco ASA security appliances Prerequisites: Attendees should meet the following prerequisites: CCNA Security Certification ICND1 and IINS Required. Working knowledge of Microsoft Windows OS is an advantage. Testing and Certification Recommended preparation for exam(s): 642-618 - Deploying Cisco ASA Firewall Solutions FIREWALL is one of four courses required for the Cisco Certified Network Professional for Security Career Certification Follow-on-Courses: The following courses are recommended for further study : SECURE - Securing Cisco Routers and Switches VPN - Deploying Cisco ASA VPN Solutions IPS - Implementing Cisco Intrusion Prevention System The above courses along with FIREWALL make up the CCNP for Security Certification. Delegates may also want to consider ICISE - Implementing Cisco Identity Services Engine. 802.1X - Introduction to 802.1X Operations for Cisco Security Professionals FIREWALL 2.0 www.clclearningafrica.com training@clclearningafrica.com +254 713 027 191

Content: Cisco ASA Adaptive Security Appliance Network Integration Cisco ASA Adaptive Security Appliance Essentials High Availability and Virtualization Configuring Cisco ASA Adaptive Security Evaluating Cisco ASA Adaptive Security Appliance NAT Features Configuring Cisco ASA Adaptive Security Appliance Technologies Configuring Cisco ASA Adaptive Security Appliance Interface Redundancy Features Identifying Cisco ASA Adaptive Security Appliance Basic Access Control Features Cisco ASA Adaptive Security Appliance Appliance Families Configuring Cisco ASA Adaptive Security Active/Standby High Availability Identifying Cisco ASA Adaptive Security Appliance Routing Features Configuring Security Contexts on the Cisco Appliance Licensing Options Configuring the Cisco ASA Adaptive ASA Adaptive Security Appliance Security Appliance Transparent Firewall Configuring Cisco ASA Adaptive Security Basic Connectivity and Device Management Appliance Active/Active High Availability Cisco ASA Adaptive Security Appliance Preparing the Cisco ASA Adaptive Security Policy Control Labs Appliance for Network Integration Managing Basic Cisco ASA Adaptive Defining the Cisco ASA Adaptive Security Lab 2-1: Preparing the Cisco ASA Security Appliance Network Settings Appliance MPF Adaptive Security Appliance for Network Configuring Cisco ASA Adaptive Security Configuring Cisco ASA Adaptive Security Integration Appliance Device Management Features Appliance Connection Policy and QoS Lab 2-2: Configuring the Cisco ASA Settings Adaptive Security Appliance for Secure Configuring Cisco ASA Adaptive Security Network Integration Appliance Advanced Application Lab 2-3: Configuring Management Inspections Features Configuring Cisco ASA Adaptive Security Lab 3-1: Configuring NAT Appliance User-Based Policies Lab 3-2: Configuring Basic Cisco Access Control Features Lab 3-3: Configuring Transparent Firewall (Optional) Lab 4-1: Configuring MPF, Basic Stateful Inspections, and QoS Lab 4-2: Configuring MPF Advanced Application Inspections Lab 4-3: Configuring Cut-Through Proxy Lab 5-1: Configuring Active/Standby High Availability Lab 5-2: Configuring Active/Active High Availability Additional Information: Recertification: Cisco professional level certifications (CCNP, CCNP SP Operations, CCNP Wireless, CCDP, CCNP Security, CCNP Voice, and CCIP) are valid for three years. To recertify, pass any 642 exam that is part of the professional level curriculum or pass any CCIE/CCDE written exam before the certification expiration date. Achieving or recertifying any of the certifications above automatically extends your active Associate and Professional level certification(s) up to the point of expiration of the last certification achieved. For more information, access the Cisco About Recertification page Further Information: For More information, or to book your course, please Call/Email us on : - +254 713 027 191 KENYA - training.kenya@clclearningafrica.com TANZANIA - training.tanzania@clclearningafrica.com UGANDA - training.uganda@clclearningafrica.com RWANDA - training.rwanda@clclearningafrica.com BURUNDI - training.burundi@clclearningafrica.com ETHOPIA - training.ethopia@clclearningafrica.com FIREWALL 2.0 www.clclearningafrica.com training@clclearningafrica.com +254 713 027 191

Deploying Cisco ASA VPN Solutions Duration: 5 Days Course Code: VPN Overview: The Deploying Cisco ASA VPN Solutions (VPN) course aims at providing network security engineers with the knowledge and skills that they need to implement and maintain Cisco ASA adaptive security appliance-based perimeter solutions. Successful graduates will be able to use Cisco ASA features to reduce the risk to the IT infrastructure and applications and to provide detailed operations support for the Cisco ASA security appliance. Target Audience: This course is designed for:anyone who implements and maintains VPN features on the Cisco ASA Those seeking CCNP Security certification Objectives: Upon completing this course, the learner will be able to meet these overall objectives: Describe the general properties of the Cisco ASA security appliance VPN subsystem Implement and maintain Cisco clientless remote access Secure Sockets Layer (SSL) VPNs on the Cisco ASA security appliance VPN gateway Implement and maintain Cisco AnyConnect client-based remote access SSL VPNs on the Cisco ASA security appliance VPN gateway, according to policies and environmental requirements Implement and maintain Cisco remote access IP Security (IPsec) VPNs on the Cisco ASA VPN gateway, according to policies and environmental requirements Implement and maintain site-to-site VPN solutions on the Cisco ASA security appliance VPN gateway, according to policies and environmental requirements Deploy endpoint security with Cisco Secure Desktop and dynamic access policy (DAP), and deploy and manage high-availability and high-performance features of the Cisco ASA security appliance Prerequisites: Testing and Certification The knowledge and skills that a learner must have before attending Recommended as preparation for: this course are as follows: 642-647 - Deploying Cisco ASA VPN Solutions (Last day to test Cisco CCNA certification 28th May 2012) Cisco CCNA Security certification 642-648 - Deploying Cisco ASA VPN Solutions Familiarity with networking and security terms and concepts VPN is one of four courses required for the Cisco Certified Network Working knowledge of the Microsoft Windows operating system Professional (CCNP) Security Certification To gain the prerequisite skills and knowledge, Cisco strongly recommends the knowledge of the following courses: Interconnecting Cisco Networking Devices Part 1 (ICND1) Interconnecting Cisco Networking Devices Part2 (ICND2) Implementing Cisco IOS Network Security (IINS) Securing Networks with Cisco Routers and Switches (SECURE) Deploying Cisco ASA Firewall Solutions (FIREWALL) Follow-on-Courses: Implementing Cisco Intrusion Prevention System (IPS) VPN www.clclearningafrica.com training@clclearningafrica.com +254 713 027 191

Content: Cisco ASA Adaptive Security Appliance VPN Cisco AnyConnect Remote Access SSL Cisco ASA Adaptive Security Appliance Architecture and Common Components Solutions Site-to-Site IPsec VPN Solutions Evaluating the Cisco ASA VPN Subsystem Deploying a Basic Cisco AnyConnect Deploying Basic Site-to-Site IPsec VPNs Architecture Full-Tunnel SSL VPN Solution Deploying Advanced Site-to-Site IPsec Evaluating the Cisco ASA Software Deploying an Advanced Cisco VPNs Architecture AnyConnect Full-Tunnel SSL VPN Implementing Profiles, Group Policies, and Solution Endpoint Security and High Availability for User Policies Deploying Advanced Authentication, Cisco ASA VPNs Implementing PKI Services Authorization, and Accounting in Cisco Full-Tunnel VPNs Implementing Cisco Secure Desktop and Cisco ASA Adaptive Security Appliance DAP for SSL VPNs Clientless Remote Access SSL VPN Solutions Cisco ASA Adaptive Security Appliance Deploying High-Availability Features in Remote Access IPsec VPNs Cisco ASA Adaptive Security Appliance Deploying Basic Clientless VPN Solutions VPNs Deploying Advanced Application Access for Deploying Cisco Remote Access VPN Clientless SSL VPNs Clients Deploying Advanced Authentication and Deploying Basic Cisco Remote Access SSO for Clientless SSL VPNs IPsec VPN Solutions Customizing the Clientless SSL VPN User Interface and Portal Further Information: For More information, or to book your course, please call us on +254 713 027 191 training@clclearningafrica.com www.clclearningafrica.com Computer Learning Centre 2nd Floor Museum Hill Centre, Muthithi Road, Westlands, Nairobi, Kenya VPN www.clclearningafrica.com training@clclearningafrica.com +254 713 027 191

Implementing Cisco Intrusion Prevention System Duration: 5 Days Course Code: IPS Overview: The Implementing Cisco Intrusion Prevention System (IPS) course is part of the curriculum path leading to the Cisco Certified Network Professional Security (CCNP Security) certification. It is a five-day instructor-led course aimed at providing network security engineers with the knowledge and skills needed to deploy Cisco IPS-based security solutions. Successful graduates will be able to reduce risk to the IT infrastructure and applications using Cisco IPS features, and provide detailed operations support for the Cisco IPS. Target Audience: This course is designed for:channel Partner / Reseller Customer Employee Objectives: Upon completing this course, the learner will be able to meet these overall objectives: Evaluate products and deployment architectures for the Cisco IPS product. Perform an initial implementation of a Cisco IPS sensor. Implement an initial security policy using a Cisco IPS sensor according to local policies and environmental requirements. Implement a basic Cisco IPS data management and analysis solution. Implement complex Cisco IPS policy virtualization, high availability, and high performance solutions according to policy and environmental requirements. Perform the initial setup of, and maintain specific Cisco IPS hardware. Deploy customized policies to adapt Cisco IPS traffic analysis and response to the target environment. Prerequisites: The knowledge and skills that a learner must have before attending this course: Working knowledge of the Microsoft Windows operating system To gain the prerequisite skills and knowledge, Cisco strongly recommends the knowledge of the following courses: Testing and Certification Recommended as preparation for: 642-627 - Implementing Cisco Intrusion Prevention System IPS is one of the courses required for the Cisco Certified Network Professional (CCNP) Security Certification. Interconnecting Cisco Network Devices 1 (ICND1) Interconnecting Cisco Network Devices 2 (ICND2) Implementing Cisco IOS Network Security (IINS) Follow-on-Courses: Securing Networks with Cisco Routers and Switches (SECURE) Deploying Cisco ASA Firewall Solutions (FIREWALL) Deploying Cisco ASAVPN Solutions (VPN) IPS www.clclearningafrica.com training@clclearningafrica.com +254 713 027 191

Content: Introduction to Intrusion Prevention and Adapting Traffic Analysis and Response to Configuring and Maintaining Specific Cisco Detection, Cisco IPS Software, and Supporting the Environment IPS Hardware Devices Customizing Traffic Analysis Configuring and Maintaining the Cisco Evaluating Intrusion Prevention and Managing False Positives and False ASA AIP-SSM and AIP-SSC-5 Modules Intrusion Detection Systems Negatives Configuring and Maintaining the Cisco ISR Choosing Cisco IPS Software, Hardware, Improving Alarm and Response Quality IPS AIM and IPS NME Modules and Supporting Applications Configuring and Maintaining the Cisco Evaluating Network IPS Traffic Analysis Managing and Analyzing Events IDSM-2 Methods, Evasion Possibilities, and Anti-Evasive Countermeasures Installing and Integrating Cisco IPS Choosing a Network IPS and IDS Manager Express with Cisco IPS Sensors Deployment Architecture Managing and Investigating Events Using Cisco IPS Manager Express Installing and Maintaining Cisco IPS Sensors Using Cisco IME Reporting and Notifications Integrating the Cisco IPS Sensor into a Integrating Cisco IPS with Cisco Security Network Manager and Cisco Security MARS Performing the Cisco IPS Sensor Initial Using the Cisco IntelliShield Database Setup and Services Managing Cisco IPS Devices Deploying Virtualization, High Availability, and Applying Cisco IPS Security Policies High Performance Solutions Configuring Basic Traffic Analysis Using Cisco IPS Virtual Sensors Implementing Cisco IPS Signatures and Deploying Cisco IPS for High Availability Responses and High Performance Configuring Cisco IPS Signature Engines and the Signature Database Deploying Anomaly-Based Operation Further Information: For More information, or to book your course, please call us on +254 713 027 191 training@clclearningafrica.com www.clclearningafrica.com Computer Learning Centre 2nd Floor Museum Hill Centre, Muthithi Road, Westlands, Nairobi, Kenya IPS www.clclearningafrica.com training@clclearningafrica.com +254 713 027 191