Managing Enterprise Security with Cisco Security Manager

Duration: 
5 days
Codes: 
SSECMGT

Overview

This is a five-day instructor-led course that is aimed at providing network security engineers with the knowledge and skills that are needed to configure and deploy Cisco Security Manager. The course also provides an overview of network security technologies, and includes case studies that are useful for deployment scenarios.

Audience

Network Security engineers deploying Cisco Security Manager

Skills Gained

After you complete this course you will be able to :

  • Present an overview of the Cisco Security Manager product, describe the main product features, and introduce the basic deployment tasks
  • Manage configuration of Cisco ASA adaptive security appliances and Cisco FWSM firewall devices, and explain firewall event management and device configuration correlation
  • Describe the most commonly used VPN topologies and their deployment
  • Examine the configuration of intrusion prevention mechanisms on the Cisco IOS platform, modules, and standalone appliances, as well as explain the Cisco IPS event and configuration correlation
  • Explain how Cisco Security Manager works with Cisco IOS devices, including the new Cisco ISR G2 routers
  • Describe the FlexConfig functionality of Cisco Security Manager, the workflow mode of operation, and administrative tasks and integration with Cisco Secure ACS

Prerequisites

Attendees should meet the following prerequisites:

  • Cisco CCSP or CCNP Security Certification
  • Understanding of networking and routing (on the CCNP level, but no certification is required).
  • Understanding of different VPN technologies (such as DMVPN, GET VPN, and SSL VPN).
  • Working knowledge of the Microsoft Windows operating system.

Course Outline

Cisco Security Manager Overview

  • Introducing Cisco Security Manager
  • Managing Devices
  • Managing Policies
  • Managing Objects
  • Using Map View

Firewall Policy Management

  • Managing Firewall Services
  • Managing Firewall Devices
  • Event Monitoring and Rule Correlation for Firewalls

VPN Policy Configuration

  • Managing VPNs
  • Managing Remote Access IPsec VPNs
  • Configuring Client-Based SSL VPNs
  • Configuring Clientless SSL VPNs
  • Configuring Advanced VPN Configurations
  • Deploying Advanced VPN Technologies

Cisco IPS Solutions Management

  • Managing Cisco IPS Services
  • Managing Cisco IPS Devices
  • Managing Cisco IPS Events

Cisco IOS Device Provisioning

  • Managing Routers
  • Using the Cisco Catalyst 6500 Series Switch and Cisco 7600 Series Router Device Manager

Management, Deployment, and Administration of FlexConfigs in Cisco Security Manager

  • Managing FlexConfigs
  • Managing Activities and Workflow Deployments
  • Implementing Integration Between Cisco Security Manager and Cisco Secure ACS
  • Backing Up and Restoring Cisco Security Manager Databases
  • Using Monitoring, Troubleshooting, and Diagnostic Tools

Appendix A

  • Using CiscoWorks RME

Labs

  • Lab 1-1: Configuring Device Bootstrap and Testing Connectivity
  • Lab 1-2: Importing Devices
  • Lab 1-3: Defining Interface Roles and Usage
  • Lab 1-4: Creating Policy Objects
  • Lab 2-1: Managing Firewall Policy—Policy Sharing
  • Lab 2-2: Managing Firewall Policy—Policy Inheritance
  • Lab 2-3: Configuring NAT and Inspecting Configuration Commands Prior to Deployment
  • Lab 2-4: Configuring Event Monitoring and Configuration Correlation for Firewalls
  • Lab 3-1: Managing SSL VPN Deployment Using Cisco AnyConnect
  • Lab 3-2: Managing Clientless SSL VPN Deployment
  • Lab 3-3: Managing DMVPN Deployment
  • Lab 3-4: Managing GET VPN Deployment
  • Lab 4-1: Configuring the Cisco IOS IPS
  • Lab 4-2: Configuring the Cisco IPS Module
  • Lab 4-3: Configuring Event Monitoring and Configuration Correlation for IPSs
  • Lab 5-1: Configuring the Cisco IOS Software Router
  • Lab 5-2: Managing DHCP Devices with the CiscoWorks Auto Update Server
  • Lab 6-1: Configuring FlexConfigs
  • Lab 6-2: Configuring Cisco Secure ACS and Cisco Security Manager Integration

Thinking about Onsite?

If you need training for 3 or more people, you should ask us about onsite training. Putting aside the obvious location benefit, content can be customised to better meet your business objectives and more can be covered than in a public classroom. It's a cost effective option.

Submit an enquiry from any page on this site, and let us know you are interested in the requirements box, or simply mention it when we contact you.

Upcoming Dates

  • GREEN This class is Guaranteed To Run.
  • SPVC - Self-Paced Virtual Class.
  • Click a Date to Enroll.
Course Location Days Cost Date
Onsite
Onsite5 2500 £2500 2019-06-19