Securing Networks with Cisco Routers and Switches 1.0 (SECURE)

Similar documents
Implementing Cisco IOS Network Security v2.0 (IINS)

SNRS. Securing Networks with Cisco Routers and Switches. Length 5 days. Format Lecture/lab

IINS Implementing Cisco Network Security 3.0 (IINS)

SSECMGT: CManaging Enterprise Security with Cisco Security Manager v4.x

VPN_2: Deploying Cisco ASA VPN Solutions

CCNP Security SECURE

Managing Enterprise Security with Cisco Security Manager

Implementing Cisco IOS Network Security

Implementing Cisco Secure AccessSolutions Exam

Cisco Certified Security Professional (CCSP)

Implementing Cisco Intrusion Prevention System 7.0 (IPS)

Managing Enterprise Security with Cisco Security Manager

Deploying Cisco ASA VPN Solutions

Implementing Cisco Secure Mobility

CISCO IOS NETWORK SECURITY (IINS)

Implementing Secured Converged Wide Area Networks (ISCW) Version 1.0

Cisco Security Certifications

To participate in the hands-on labs in this class, you need to bring a laptop computer with the following:

For Sales Kathy Hall

Implementing Core Cisco ASA Security (SASAC)

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

Chapter 1 The Principles of Auditing 1

(d-5273) CCIE Security v3.0 Written Exam Topics

Cisco Certified Network Expert (CCNE)

CCNA Security 2.0 Scope and Sequence

IPv6 Fundamentals, Design, and Deployment

IMPLEMENTING CISCO IP ROUTING V2.0 (ROUTE)

CCNA Cisco Associate- Level Certifications

CCNA Security. IINS v2.0 Implementing Cisco IOS Network Security ( )

INTERCONNECTING CISCO NETWORKING DEVICES PART 2 V2.0 (ICND 2)

The IINS acronym to this exam will remain but the title will change slightly, removing IOS from the title, making the new title

How To Learn Cisco Cisco Ios And Cisco Vlan

Securing Networks with Cisco Routers and Switches ( )

Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications

INTERCONNECTING CISCO NETWORK DEVICES PART 1 V2.0 (ICND 1)

"Charting the Course...

CCNA Security v1.0 Scope and Sequence

Cisco Certified Security Professional (CCSP) 50 Cragwood Rd, Suite 350 South Plainfield, NJ 07080

Interconnecting Cisco Networking Devices, Part 2 Course ICND2 v2.0; 5 Days, Instructor-led

Security Threats VPNs and IPSec AAA and Security Servers PIX and IOS Router Firewalls. Intrusion Detection Systems

BUY ONLINE AT:

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0

TABLE OF CONTENTS NETWORK SECURITY 2...1

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data

Latest IT Exam Questions & Answers

Interconnecting Cisco Networking Devices: Accelerated (CCNAX) 2.0(80 Hs) 1-Interconnecting Cisco Networking Devices Part 1 (40 Hs)

Designing Cisco Network Service Architectures ARCH v2.1; 5 Days, Instructor-led

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD SEGURIDAD EN REDES. NIVEL I. VERSION 2.0

CCIE Security Written Exam ( ) version 4.0

Asheville-Buncombe Technical Community College Department of Networking Technology. Course Outline

Tim Bovles WILEY. Wiley Publishing, Inc.

CCNA Security 1.1 Instructional Resource

Table of Contents. Introduction

Associate in Science Degree in Computer Network Systems Engineering

Securing Networks with PIX and ASA

Implementing a Microsoft Windows 2000 Network Infrastructure

CCNP: Implementing Secure Converged Wide-area Networks

Course Contents CCNP (CISco certified network professional)

Interconnecting Cisco Networking Devices, Part 2 **Part of CCNA Route/Switch**

Interconnecting Cisco Network Devices 1 Course, Class Outline

CCNA Security v1.0 Scope and Sequence

Cisco CCNP Implementing Secure Converged Wide Area Networks (ISCW)

: Interconnecting Cisco Networking Devices Part 2 v2.0 (ICND2)

ICT Infrastructure & Network Management

CCNA DATA CENTER BOOT CAMP: DCICN + DCICT

Cisco Virtual Office Overview. Contents. Scope of Document. Introduction

How To Extend Security Policies To Public Clouds

Fundamentals of Windows Server 2008 Network and Applications Infrastructure

Interconnecting Cisco Networking Devices, Part 1 (ICND1) v3.0

Cisco Which VPN Solution is Right for You?

Interconnecting Cisco Networking Devices Part 2

Implementing and Administering Security in a Microsoft Windows Server 2003 Network

Securing Cisco Network Devices (SND)

IMPLEMENTING CISCO SWITCHED NETWORKS V2.0 (SWITCH)

Cisco Group Encrypted Transport VPN: Tunnel-less VPN Delivering Encryption and Authentication for the WAN

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop

Cisco Certified Network Associate - Design

Troubleshooting Cisco Unified Communications (TVOICE)

Description: Objective: Upon completing this course, the learner will be able to meet these overall objectives:

PKI Uncovered. Cisco Press. Andre Karamanian Srinivas Tenneti Francois Dessart. 800 East 96th Street. Indianapolis, IN 46240

TABLE OF CONTENTS NETWORK SECURITY 1...1

Building VPNs. Nam-Kee Tan. With IPSec and MPLS. McGraw-Hill CCIE #4307 S&

Licenses are not interchangeable between the ISRs and NGX Series ISRs.

IPv6 Security. Scott Hogg, CCIE No Eric Vyncke. Cisco Press. Cisco Press 800 East 96th Street Indianapolis, IN USA

Cisco Integrated Services Routers Performance Overview

Configuring IPsec VPN with a FortiGate and a Cisco ASA

Cisco Certified Network Associate (CCNA) 120 Hours / 12 Months / Self-Paced WIA Fee: $

Troubleshooting and Maintaining Cisco IP Networks Volume 1

White Paper. SSL vs. IPSec. Streamlining Site-to-Site VPN Deployments

Industrial Network Security for SCADA, Automation, Process Control and PLC Systems. Contents. 1 An Introduction to Industrial Network Security 1

Cisco Integrators Cisco Partners installing and implementing the Cisco Catalyst 6500 Series Switches

MOC 6435A Designing a Windows Server 2008 Network Infrastructure

Configuring SSL VPN on the Cisco ISA500 Security Appliance

Cisco IOS Advanced Firewall

Cisco Cisco 3845 X X X X X X X X X X X X X X X X X X

Case Study for Layer 3 Authentication and Encryption

Network Management for Common Topologies How best to use LiveAction for managing WAN and campus networks

IWAN Security for Remote Site Direct Internet Access and Guest Wireless

Configuring a Site-to-Site VPN Tunnel Between Cisco RV320 Gigabit Dual WAN VPN Router and Cisco (1900/2900/3900) Series Integrated Services Router

Transcription:

Securing Networks with Cisco Routers and Switches 1.0 (SECURE) Course Overview: The Securing Networks with Cisco Routers and Switches (SECURE) 1.0 course is a five-day course that aims at providing network security engineers with the knowledge and skills needed to secure Cisco IOS Software router- and switch-based networks, and provide security services based on Cisco IOS Software. Successful graduates will be able to secure the network environment using existing Cisco IOS Software features, and install and configure components of Cisco IOS Software. Components include the Zone- Based Policy Firewall, Cisco IOS Intrusion Prevention System (IPS), user-based firewall, and secure tunnels using IP Security (IPsec) virtual private network (VPN) technology including public key infrastructure (PKI). Components also include virtual tunnel interface/dynamic virtual tunnel interface (VTI/DVTI), Group Encrypted Transport VPN (GET VPN), Dynamic Multipoint Virtual Private Network (DMVPN), Secure Sockets Layer (SSL) VPN, and advanced switch security features. The course focuses on the implementation and troubleshooting aspects of the lifecycle services approach, adding some elements of the design phase as well. Who will benefit from this course? This course is intended for: Network Security Engineers (NSEs) Anyone that currently has their CCNA Security and/or is working towards CCNP Security certification. Prerequisites: To fully benefit from this course, students should have the following prerequisite skills and knowledge: Working knowledge of the Microsoft Windows operating system Knowledge attained from attending the following prerequisite authorized Cisco courses: ICND 1 & 2 or CCNA Bootcamp; and IINS Sunset Learning Differentiators: World Class Instruction Team o All instructors hold Certified Cisco Systems Instructor (CCSI) certification. o All instructors have a four-year technical degree or equivalent work experience. o All instructors have a minimum of either four years teaching technical networking classes or five years consulting experience. Enhanced Learning Experience o The goal of our instructors during class is ensure students understand the material, guide them through our up to date labs and encourage questions and interactive discussions. Enjoyment of the learning process is a primary objective for Sunset Learning instructors. High Quality Real World Lab Environments o Course offerings include real-time access to labs with the latest Cisco equipment o Result is real world experiences to help students prepare for actual networking environments. o Hands on experience aids in Cisco exam preparation. Outstanding Customer Service o Dedicated program manager o Quality instruction team o o Creatively designed curriculum to meet your specific needs Delivery at your location or ours

Related Courses: IINS FIREWALL VPN IPS Course Objectives: After completing this course, students will be able to... Implement and maintain Cisco IOS Software infrastructure protection controls in a Cisco router- and switch-based network infrastructure Implement and maintain Cisco IOS Software threat control and containment technologies in a Cisco router-based perimeter infrastructure Implement and maintain Cisco IOS Software VPN technologies in a Cisco router-based WAN Implement and maintain Cisco IOS Software remote access VPN technologies in a Cisco router-based remote access solution Course Outline: Module 1: Deploying Cisco IOS Software Network Foundation Protection Lesson 1: Deploying Network Foundation Protection Controls Overview of Network Infrastructure Threats Identifying Network Foundation Protection Identifying Network Device Planes Deployment Models Identifying Network Foundation Protection Feature Availability Lesson 2: Deploying Advanced Switched Data Plane Security Controls Deploying ARP Control Deploying Source IP Address Control Deploying PVLANs and PVLAN Edge Troubleshooting Cisco Catalyst IOS Software Deploying DHCP Control Switched Infrastructure Protection Controls Lesson 3: Implementing Cisco Identity-Based Network Services Overview of Cisco IBNS and 802.1X Identifying Cisco Secure Services Client Features Identifying Cisco IOS Software 802.1X Features Choosing an EAP Type Identifying Cisco Secure ACS 802.1X Features Lesson 4: Deploying Basic 802.1X Features Configuring the Cisco Catalyst IOS Software 802.1X Authenticator Configure Cisco Secure ACS for EAP-FAST Configure the Cisco Secure Services Client 802.1X Supplicant Verify and Troubleshoot Basic 802.1X Features Lesson 5: Deploying Advanced Routed Data Plane Security Controls Deploying Cisco IOS Software Flexible Packet Matching Deploying Cisco IOS Software Unicast Reverse Path Deploying Cisco IOS Software NetFlow Forwarding

Lesson 6: Deploying Advanced Control Plane Security Controls Deploying Cisco IOS Software Control Plane Protection Deploying Infrastructure ACLs Deploying Routing Protocol Authentication Deploying Cisco IOS Software Control Plane Policing Deploying Routing Protocol Filtering Lesson 7: Deploying Advanced Management Plane Security Controls Configuring Security Features of the Cisco IOS Software SNMP Server Configuring Cisco IOS Software Management Plane Deploying Digitally Signed Cisco IOS Software Access Control Images Configuring Cisco IOS Software RBAC Deploying CPU and Memory Thresholding Module 2: Deploying Cisco IOS Software Threat Control and Containment Lesson 1: Deploying Cisco IOS Software Network Address Translation Configuring Dynamic NAT and PAT Troubleshooting Cisco IOS Software NAT Configuring Static NAT and PAT Lesson 2: Deploying Basic Zone-Based Policy Firewalls Configuring Zones and Zone Pairs Configuring a Basic OSI Layers 3 and 4 interzone access policy Configuring a Basic OSI Layers 3 and 4 intrazone access policy Configuring Inspection of Control Plane and Management Plane Traffic Tuning Stateful Engine and Connection Settings Configuring Support for Transparent Mode, VRF, and NAT Troubleshooting the Zone-Based Policy Firewall Lesson 3: Deploying Advanced Zone-Based Policy Firewalls Configure Zone-Based Policy Firewall User-Based Policies Configure Application-Layer Access Policies Configure Zone-Based Policy Firewall URL Filtering Lesson 4: Deploying Cisco IOS Software IPS Configuring Cisco IOS Software IPS Signature Policies Tuning Cisco IOS Software IPS Signature Policies Deploying Cisco IOS Software IPS Signature Update Monitoring Cisco IOS Software IPS Events Troubleshooting Cisco IOS Software IPS Module 3: Deploying Cisco IOS Software Site-to-Site Transmission Security Lesson 1: Site-to-Site VPN Architectures and Technologies Choosing a Site-to-Site VPN Topology IPsec Technology Refresher Choosing a Site-to-Site VPN Technology Choosing Cryptographic Controls for a Site-to-Site VPN Lesson 2: Deploying VTI-Based Site-to-Site IPsec VPNs Configuring Basic IKE Peering Configuring Static Point-to-Point IPsec VTI Tunnels Configuring Dynamic Point-to-Point IPsec VTI Tunnels

Lesson 3: Deploying Scalable Authentication in Site-to-Site IPsec VPNs Overview of PKI Technology Configuring PKI Enrollment Configuring PKI-Based IKE Authentication in Cisco IOS Software Site-to-Site VPNs Deploying the Cisco IOS Software Certificate Server Deploying Advanced PKI Integration Lesson 4: Deploying DMVPNs Overview of Cisco IOS Software DMVPN Deploying Cisco IOS Software GRE Tunnels Deploying Cisco IOS Software NHRP Deploying a Cisco IOS Software DMVPN Hub Deploying a Cisco IOS Software DMVPN Spoke Configuring Routing in a Cisco IOS Software DMVPN Troubleshooting a Cisco IOS Software DMVPN Network Lesson 5: Deploying High Availability in Tunnel-Based IPsec VPNs Managing Failures in a VTI-Based VPN Managing Failures in a DMVPN Using Routing Protocol-Based Failover Lesson 6: Deploying GET VPN Overview of the Cisco IOS Software GET VPN Architecture Deploying a Cisco IOS Software GET VPN Key Server Deploying a Cisco IOS Software GET VPN Group Member Deploying GET VPN High Availability Module 4: Deploying Secure Remote Access with Cisco IOS Software Lesson 1: Remote Access VPN Architectures and Technologies Choosing a Remote Access VPN Technology Choosing Cryptographic Controls for a Remote Access VPN Lesson 2: Deploying Remote Access Solutions Using SSL VPN Configuring Full-Tunneling Connectivity on a Cisco IOS Software SSL VPN Gateway Installing and Configuring Common Cisco IOS Software SSL VPN Configuring the Cisco AnyConnect Client Gateway Parameters Configuring Clientless Access on a Cisco IOS Configuring Client Authentication and Policies Software SSL VPN Gateway Troubleshooting Basic SSL VPN Operation Lesson 3: Deploying Remote Access Solutions Using Cisco Easy VPN Configuring the Cisco VPN Client Deploying a Cisco Easy VPN Remote Device Configuring Basic VTI-Based Cisco Easy VPN Server Deploying a PKI-Enabled Cisco Easy VPN Features Troubleshooting Basic Cisco Easy VPN Operation

Labs: Lab 1-1: Configuring Advanced Switched Data Plane Security Controls Lab 1-2: Configuring Advanced Infrastructure Security Controls Lab 2-1: Configuring Basic Zone-Based Policy Firewall Features Lab 2-2: Configuring Advanced Zone-Based Policy Firewall Features Lab 2-3: Configuring Cisco IOS Software IPS Lab 3-1: Configuring a PKI-Enabled Site-to-Site IPsec VPN Lab 3-2: Configuring Cisco IOS Software DMVPN Spokes Lab 3-3: Configuring GET VPN Group Members Lab 4-1: Configuring a Cisco IOS Software SSL VPN Gateway Lab 4-2: Configuring Cisco Easy VPN