Managing Enterprise Security with Cisco Security Manager



Similar documents
SSECMGT: CManaging Enterprise Security with Cisco Security Manager v4.x

Managing Enterprise Security with Cisco Security Manager

Securing Networks with Cisco Routers and Switches 1.0 (SECURE)

VPN_2: Deploying Cisco ASA VPN Solutions

Deploying Cisco ASA VPN Solutions

Implementing Cisco IOS Network Security v2.0 (IINS)

Implementing Core Cisco ASA Security (SASAC)

Cisco Security Manager 4.2: Integrated Security Management for Cisco Firewall, IPS, and VPN Solutions

To participate in the hands-on labs in this class, you need to bring a laptop computer with the following:

Implementing Cisco Secure AccessSolutions Exam

For Sales Kathy Hall

Implementing Cisco IOS Network Security

Implementing Cisco Secure Mobility

Cisco ASA 5500 Series Adaptive Security Appliance 8.2 Software Release

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

SNRS. Securing Networks with Cisco Routers and Switches. Length 5 days. Format Lecture/lab

Cisco Certified Security Professional (CCSP)

IINS Implementing Cisco Network Security 3.0 (IINS)

Securing Networks with Cisco Routers and Switches ( )

Securing Networks with PIX and ASA

Licenses are not interchangeable between the ISRs and NGX Series ISRs.

Cisco Security Manager

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data

Implementing Cisco Intrusion Prevention System 7.0 (IPS)

Implementing Secured Converged Wide Area Networks (ISCW) Version 1.0

IPv6 Fundamentals, Design, and Deployment

Cisco Certified Network Expert (CCNE)

Chapter 1 The Principles of Auditing 1

CCNA Security 2.0 Scope and Sequence

(d-5273) CCIE Security v3.0 Written Exam Topics

CCNP Security SECURE

Workspot Configuration Guide for the Cisco Adaptive Security Appliance

TABLE OF CONTENTS NETWORK SECURITY 2...1

Designing Cisco Network Service Architectures ARCH v2.1; 5 Days, Instructor-led

Cisco ASA. Administrators

Cisco Certified Security Professional (CCSP) 50 Cragwood Rd, Suite 350 South Plainfield, NJ 07080

Configuring the Transparent or Routed Firewall

Asheville-Buncombe Technical Community College Department of Networking Technology. Course Outline

Course Syllabus. 2553A: Administering Microsoft SharePoint Portal Server Key Data. Audience. At Course Completion.

CNS-207 Implementing Citrix NetScaler 10.5 for App and Desktop Solutions

CCIE Security Written Exam ( ) version 4.0

Implementing and Configuring Cisco Identity Services Engine SISE v1.3; 5 Days; Instructor-led

Citrix NetScaler 10.5 Essentials for ACE Migration CNS208; 5 Days, Instructor-led

Cisco EXAM Implementing Cisco Secure Mobility Solutions (SIMOS) Buy Full Product.

CNS Implementing NetScaler 11.0 For App and Desktop Solutions

Cisco Security Certifications

Cisco Actualtests Exam Questions & Answers

"Charting the Course... Implementing Citrix NetScaler 11 for App and Desktop Solutions CNS-207 Course Summary

How To Set Up A Cisco Safesa Firewall And Security System

Tim Bovles WILEY. Wiley Publishing, Inc.

Professional Profile Company Experience & Biography SixNet Consulting Group .SixNetConsulting

Deploying Cisco Basic Wireless LANs WDBWL v1.1; 3 days, Instructor-led

Cisco IPsec and SSL VPN Solutions Portfolio

Scenario: Remote-Access VPN Configuration

FortiGate Multi-Threat Security Systems I Administration, Content Inspection and SSL VPN Course #201

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0

Latest IT Exam Questions & Answers

Troubleshooting and Maintaining Cisco IP Networks Volume 1

Deploying Cisco ASA VPN Solutions Exam.

Security Threats VPNs and IPSec AAA and Security Servers PIX and IOS Router Firewalls. Intrusion Detection Systems

Implementing, Managing and Maintaining a Microsoft Windows Server 2003 Network Infrastructure: Network Services Course No.

Course Syllabus. Fundamentals of Windows Server 2008 Network and Applications Infrastructure. Key Data. Audience. Prerequisites. At Course Completion

IMPLEMENTING CISCO IP ROUTING V2.0 (ROUTE)

Configuring IPsec VPN with a FortiGate and a Cisco ASA

Credit Card Secure Architecture for Interactive Voice Response (IVR) Applications

Cisco ASA 5500-X Series ASA 5512-X, ASA 5515-X, ASA 5525-X, ASA 5545-X, and ASA 5555-X

CCNA Security. IINS v2.0 Implementing Cisco IOS Network Security ( )

Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications

Cisco Which VPN Solution is Right for You?

Cisco Router and Security Device Manager (SDM)

ESET SECURE AUTHENTICATION. Cisco ASA SSL VPN Integration Guide

Cisco Certified Network Associate - Design

Cisco AnyConnect Secure Mobility Solution Guide

10533A: Deploying, Configuring, and Administering Microsoft Lync Server 2010

McAfee Next Generation Firewall (NGFW) Administration Course

Tech-Note Bridges Vs Routers Version /06/2009. Bridges Vs Routers

Fundamentals of Windows Server 2008 Network and Applications Infrastructure

Sophos Certified Architect Course overview

Cisco Wide Area Application Services (WAAS) Software Version 4.0

Course Description. Course Audience. Course Outline. Course Page - Page 1 of 12

Microsoft Enterprise Search for IT Professionals Course 10802A; 3 Days, Instructor-led

Scenario: IPsec Remote-Access VPN Configuration

Cisco Easy VPN on Cisco IOS Software-Based Routers

Implementing Cisco IP Telephony & Video, Part 2 CIPTV2 v1.0; 5 Days; Instructor-led

Interconnecting Cisco Networking Devices: Accelerated (CCNAX) 2.0(80 Hs) 1-Interconnecting Cisco Networking Devices Part 1 (40 Hs)

Designing a Windows Server 2008 Applications Infrastructure

Cisco Firewall Technology

Securing Cisco Network Devices (SND)

MCSA Objectives. Exam : TS:Exchange Server 2007, Configuring

Fortinet Certified Network Security Administrator

CISCO TECHNICAL TRAINING

How To Learn Cisco Cisco Ios And Cisco Vlan

Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure: Network Services (5 days)

Course 50322B: Configuring and Administering Windows 7

Deploying, Configuring, and Administering Microsoft Lync Server 2010

Managing Enterprise Devices and Apps using System Center Configuration Manager 20696B; 5 Days, Instructor-led

CCNP: Implementing Secure Converged Wide-area Networks

Transcription:

Managing Enterprise Security with Cisco Security Manager Course SSECMGT v4.0; 5 Days, Instructor-led Course Description: The Managing Enterprise Security with Cisco Security Manager (SSECMGT) v4.0 course is a five-day instructor-led course that is aimed at providing network security engineers with the knowledge and skills that are needed to configure and deploy Cisco Security Manager. The course also provides an overview of network security technologies, and includes case studies that are useful for deployment scenarios. Course Objectives: Upon completing this course, the learner will be able to meet these overall objectives: Present an overview of the Cisco Security Manager product, describe the main product features, and introduce the basic deployment tasks Manage configuration of Cisco ASA adaptive security appliances and Cisco FWSM firewall devices, and explain firewall event management and device configuration correlation Describe the most commonly used VPN topologies and their deployment Examine the configuration of intrusion prevention mechanisms on the Cisco IOS platform, modules, and standalone appliances, as well as explain the Cisco IPS event and configuration correlation Explain how Cisco Security Manager works with Cisco IOS devices, including the new Cisco ISR G2 routers Describe the FlexConfig functionality of Cisco Security Manager, the workflow mode of operation, and administrative tasks and integration with Cisco Secure ACS Prerequisites: The knowledge and skills that a learner must have before attending this course are as follows: Cisco CCNP Security certification: o Securing Networks with Cisco Routers and Switches (SECURE) o Deploying Cisco ASA Firewall Features (FIREWALL) o Deploying Cisco ASA VPN Solutions (VPN) o Implementing Cisco Intrusion Prevention System (IPS) Understanding of networking and routing (on the CCNP level, but no certification is required). Understanding of different VPN technologies (such as DMVPN, GET VPN, and SSL VPN). Working knowledge of the Microsoft Windows operating system.

Who Should Attend: The primary audience for this course is as follows: Network security engineers that are working in the enterprise sector. Course Outline: Module 1: Cisco Security Manager Overview Lesson 1: Introducing Cisco Security Manager Product Overview Using Cisco Security Manager Installing Cisco Security Manager Cisco Security Manager Installation Procedure Working with the Cisco Security Manager User Interface New Features in Cisco Security Manager 4.0 Lesson 2: Managing Devices Preparing the Devices for Cisco Security Manager Understanding the Device View Adding Devices to Cisco Security Manager Inventory Working with Devices with Dynamically Assigned IP Addresses Understanding Device Properties Understanding Device Credentials Managing Devices Understanding Device Grouping On-Demand Out of-band Change Detection Lesson 3: Managing Policies Understanding Policies Managing Policies in Device View Managing Shared Policies in Policy View Interface Roles Advanced Policy Features Policy Locking Discovering Policies Lesson 4: Managing Objects Objects Overview Understanding the Policy Object Manager Window Overriding Global Objects for Individual Devices Selecting Objects for Policies Lesson 5: Using Map View Understanding Maps Displaying Your Network on the Map Managing Firewall Services in Map View Managing VPNs in Map View Managing Device Policies in Map View

Module 2: Firewall Policy Management Lesson 1: Managing Firewall Services Overview of Managing Firewall Services Managing Rules Tables Understanding Access Rules Understanding Access Control Settings Understanding Inspection Rules Understanding Access Rule Functions Understanding AAA Rules Understanding Web Filter Rules Understanding Transparent Firewall Rules Understanding Zone-Based Firewall Rules Understanding Interface and Global Rules Understanding Botnet Traffic Filtering Lesson 2: Managing Firewall Devices Platform Policies on Firewall Devices NAT Policies on Firewall Devices Bridging Policies on Firewall Devices Device Administration Policies on Firewall Devices Logging Policies on Firewall Devices Multicast Policies on Firewall Devices Routing Policies on Firewall Devices Security Policies on Firewall Devices Service Policy Rules on Firewall Devices Security Contexts on Firewall Devices Lesson 3: Event Monitoring and Rule Correlation for Firewalls Supported Devices and Events in Event Viewer EventServer Overview Cisco ASA Device Bootstrapping Introduction to Event Viewer Event-to-Policy Correlation Event Collection and Event Viewer Settings Module 3: VPN Policy Configuration Lesson 1: Managing VPNs Overview of Site-to-Site VPNs Working with VPN Topologies Working with Site-to-Site VPN Policies Configuring Advanced VPN Platforms Lesson 2: Managing Remote Access IPsec VPNs Overview of Remote-Access VPNs Working with Policies in Remote-Access VPNs

Configuring VPN Options Lesson 3: Configuring Client-Based SSL VPNs SSL VPN Management Features and Platform Support Overview of Remote-Access SSL VPNs Bootstrapping Cisco ASA Adaptive Security Appliance for Full Tunnel SSL VPN Configuring Full Tunnel SSL VPN Lesson 4: Configuring Clientless SSL VPNs Clientless SSL VPN Overview Clientless SSL VPN Configuration Working with Application Plug-Ins SSL VPN Portal Customization Lesson 5: Configuring Advanced VPN Configurations Managing Cisco Security Desktop Policy Configuring DAP Creating Group Policies Creating Remote Connection Profiles Working with VPN AAA Lesson 6: Deploying Advanced VPN Technologies DMVPN Overview Hub-and-Spoke Prerequisites Configuring DMVPN Managing DMVPN GET VPN Overview Configuring GET VPN Managing GET VPN GRE over IPsec VPN Dial Backup VRF-Aware IPsec VPN High Availability Module 4: Cisco IPS Solutions Management Lesson 1: Managing Cisco IPS Services Overview of Network Sensing Configuring Interfaces Configuring Signatures Working with IPS Signatures Configuring Anomaly Detection Configuring Event Actions Configuring Global Correlation Lesson 2: Managing Cisco IPS Devices Managing Cisco IPS Modules and Appliances Configuring Policies for Cisco IOS IPS Devices

Managing Cisco IPS Updates Lesson 3: Managing Cisco IPS Events Cisco Security Manager IPS Event Management Mapping IPS Events to Policies Module 5: Cisco IOS Device Provisioning Lesson 1: Managing Routers Overview of Policy Management on Cisco IOS Routers Working with Platform Policies for Cisco IOS Routers NAT Policies Interface Policies Device Administration Policies Configuring Device Administration Policies Identity Policies Logging and QoS Policies Routing Policies Advanced Routing Configuration Options Zone-Based Firewall Lesson 2: Using the Cisco Catalyst 6500 Series Switch and Cisco 7600 Series Router Device Manager Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers Overview Managing Policies for Catalyst 6500 Series Switches and 7600 Series Routers Module 6: Management, Deployment, and Administration of FlexConfigs in Cisco Security Manager Lesson 1: Managing FlexConfigs Understanding FlexConfig Creating FlexConfig Policy Objects Working with FlexConfig Lesson 2: Managing Activities and Workflow Deployments Managing Activities Working with Activities Managing Deployment Lesson 3: Implementing Integration between Cisco Security Manager and Cisco Secure ACS Understanding Roles in Cisco Security Manager Understanding RBAC with Cisco Secure ACS Configuring Cisco Secure ACS and Cisco Security Manager for RBAC Integration Lesson 4: Backing Up and Restoring Cisco Security Manager Databases Database Backup in Cisco Security Manager Database Restore in Cisco Security Manager Lesson 5: Using Monitoring, Troubleshooting, and Diagnostic Tools Lab Outline Lab 1-1: Configuring Device Bootstrap and Testing Connectivity Lab 1-2: Importing Devices Lab 1-3: Defining Interface Roles and Usage

Lab 1-4: Creating Policy Objects Lab 2-1: Managing Firewall Policy Policy Sharing Lab 2-2: Managing Firewall Policy Policy Inheritance Lab 2-3: Configuring NAT and Inspecting Configuration Commands Prior to Deployment Lab 2-4: Configuring Event Monitoring and Configuration Correlation for Firewalls Lab 3-1: Managing SSL VPN Deployment Using Cisco AnyConnect Lab 3-2: Managing Clientless SSL VPN Deployment Lab 3-3: Managing DMVPN Deployment Lab 3-4: Managing GET VPN Deployment Lab 4-1: Configuring the Cisco IOS IPS Lab 4-2: Configuring the Cisco IPS Module Lab 4-3: Configuring Event Monitoring and Configuration Correlation for IPSs Lab 5-1: Configuring the Cisco IOS Software Router Lab 5-2: Managing DHCP Devices with the CiscoWorks Auto Update Server Lab 6-1: Configuring FlexConfigs Lab 6-2: Configuring Cisco Secure ACS and Cisco Security Manager Integration