Implementing Advanced Cisco ASA Security Training v2.1 (SASAA)

Implementing Advanced Cisco ASA Security Training v2.1 (SASAA)

Course Delivery

This Course is available in the following format:

Request this course in a different delivery format

GSA Schedule 70 Saving for Government Customers

Course Overview:

Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) – Hands-on

Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) course is a 5-day classroom course led by our expert SASAA instructor. Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) is a hands-on course that dives into every aspect of Cisco’s ASA products. Graduates of this training will be able to implement the key features of ASA, including FirePOWER services v6.0, ASA Identity Firewall, ASA Cloud Web security, ASA Clustering and virtual ASA.

Customize It:

• If you are familiar with some aspects of this Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) course, we can omit or shorten their discussion.
• We can adjust the emphasis placed on the various topics or build the Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) course around the mix of technologies of interest to you (including technologies other than those included in this outline).
• If your background is nontechnical, we can exclude the more technical topics, include the topics that may be of special interest to you (e.g., as a manager or policy-maker), and present the Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) course in manner understandable to lay audiences.

Audience / Target Group:

The target audience for this Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) course:

• Due to a growing cyber-criminal underworld, network security is becoming a top priority for the modern business. And as the demand for strict security software increases, so too does the need for network engineers able to implement a variety of security software to scale. That’s why this Implementing Advanced Cisco ASA Security Training (SASAA) class is ideal for network engineers, network managers, network designers, network administrators and any other IT personnel tasked with maintaining, implementing and/or monitoring a company’s network security.

Class Prerequisites:

The knowledge and skills that a learner must have before attending this Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) course are as follows:

• Implementing Core Cisco ASA Security (SASAC) or equivalent knowledge of the Cisco ASA.

What You Will Learn:

Upon completing this Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) course, learners will be able to meet these objectives:

• Describe the Cisco ASA 5500-X Series Next-Generation Firewalls, ASAv, ASA 5506-X, 5508-X, 5516-X, and ASASM and implement new ASA 9.4.1 features
• Implement Cisco ASA Identity Firewall policies
• Install and set up the Cisco Firepower Services Module (SFR)
• Implement Cisco ASA Cloud Web Security
• Implement cisco ASA Clustering
• Describe Cisco ASA Security Group Firewall and Change of Authorization Support

Implementing Advanced Cisco ASA Security Training v2.1 (SASAA) – Course Syllabus:

Module 1: Cisco ASA Product Family

Introduction to ASA series firewalls
Introduction to ASAv
Deploy ASAv
ASAv Other hypervisors support, digitally signed image and management options
Verify ASAv VM
ASA 9.2.1 BGP IPv6 support
ASA 9.3 features
ASA 9.4.1 + VXLAN support
Describe the Cisco ASASM platforms, architecture, and features

Module 2: Cisco ASA Identity Firewall

ASA Identity Firewall benefits, flow and policies
Cisco CDA basic network configuration
Application status verification
Active directory server configuration
CDA user-account configuration
CDA GUI password policy configuration
Configure identity firewall policies on ASA
Using ASDM
Using CLI
FQDN network object configuration
Verify user-identity operations
CDA management with CLI, live log monitoring and troubleshooting

Module 3: Cisco ASA Firepower Services

SFR introduction
FireSIGHT management
SFR management interface, package installation and verification
FireSIGHT VM installation and setup
License requirement
Policy types introduction
Recommended rules introduction
Monitoring
ASDM and Firepower on-box FireSIGHT manager
Firepower dashboard, reporting, status and events viewer
Licensing
Firepower 6.0 features
System configurations and device platform settings
Firepower multidomain management

Module 4: Cisco ASA Cloud Web Security (CWS)

ASA with CWS introduction
CWS scanning processes
Licenses
ASA with CWS integration
CWS operations verification
Verify traffic redirection
Syslog messages
ScanCenter web filtering policy introduction and configuration
ASA CWS AMP introduction
CWS cognitive threat analysis
Threats reporting

Module 5: Cisco ASA Clustering

Cluster performance figures and supported platforms
Cluster data-interface modes and connections
CLL functions
Cluster dynamic-routing, NAT and PAT operations
Cluster terminology
TCP, asymmetric UDP, short-lived and centralized-feature traffic flows
Cluster management
Configuration with the CLI
Each unit configuration
Master unit configuration
Sample configuration of a two-unit cluster with spanned etherchannel and individual interface
Configure ASA cluster using Cisco ASDM
Cluster licensing
Verification types
Troubleshoot ASA cluster operations
Cluster features of v9.1.4, v9.2.1, v9.3.1 and v9.4.1

Module 6: Cisco ASA Security Group Firewall and Change of Authorization (Optional)

Cisco secure access architecture
SG Firewall configuration
SGACL operations monitoring
SGT features (post 9.0 releases)
Change of authorization introduction
Chang of authorization CLI and ASDM configurations

Labs:

Access the Remote Cisco Learning Lab Environment
Set Up and Test the ASAv
Implement New Features in ASA 9.3 and 9.4
Configure the Cisco CDA
Configure ASA IDFW
Cisco ASA Firepower Services Module Installation
Cisco Firepower Management Center Configuration
Configure ASA CWS
Cisco ASA Cluster Configuration

Whether you are looking for general information or have a specific question, we want to help!

Request More Information

Print Friendly, PDF & Email