Cisco - Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0

Dauer

Dauer:

Nur 3 Tage

Methode

Methode:

Klassenraum / Online / Hybrid

nächster Termin

nächster Termin:

30.9.2024 (Montag)

Overview

This accelerated Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0 course shows you how to deploy and use Cisco Firepower® Threat Defence system. This hands-on course gives you knowledge and skills to use and configure Cisco® Firepower Threat Defence technology, beginning with initial device setup and configuration and including routing, high availability, Cisco Adaptive Security Appliance (ASA) to Cisco Firepower Threat Defence migration, traffic control, and Network Address Translation (NAT). You will learn how to implement advanced Next-Generation Firewall (NGFW) and Next-Generation Intrusion Prevention System (NGIPS) features, including network intelligence, file type detection, network-based malware detection, and deep packet inspection. You will also learn how to configure site-to-site VPN, remote-access VPN, and SSL decryption before moving on to detailed analysis, system administration, and troubleshooting.

In just 4 days, you’ll also learn to Implement Cisco Firepower NGFW to provide advanced threat protection before, during, and after attacks and gain leading-edge skills for high-demand responsibilities focused on security.

After taking this course, you should be able to:

  • Describe key concepts of NGIPS and NGFW technology and the Cisco Firepower Threat Defence system, and identify deployment scenarios
  •  Perform initial Cisco Firepower Threat Defence device configuration and setup tasks
  •  Describe how to manage traffic and implement Quality of Service (QoS) using Cisco Firepower Threat Defence
  •  Describe how to implement NAT by using Cisco Firepower Threat Defence
  •  Perform an initial network discovery, using Cisco Firepower to identify hosts, applications, and services
  •  Describe the behaviour, usage, and implementation procedure for access control policies
  •  Describe the concepts and procedures for implementing security intelligence features
  •  Describe Cisco Advanced Malware Protection (AMP) for Networks and the procedures for implementing file control and advanced malware protection
  •  Implement and manage intrusion policies
  •  Describe the components and configuration of site-to-site VPN
  •  Describe and configure a remote-access SSL VPN that uses Cisco AnyConnect®
  •  Describe SSL decryption capabilities and usage 

At the end of this course, you’ll sit the Cisco exam, and achieve your Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0 certification. Through Firebrand’s Lecture | Lab | Review methodology, you’ll get certified at twice the speed of the traditional training and get access to courseware, learn from certified instructors, and train in a distraction-free environment.

 

Audience

This course is ideal for:

  • Security administrators
  • Security consultants
  • Network administrators
  • System engineers
  • Technical support personnel
  • Cisco integrators and partners

Benefits

In einem Firebrand Intensiv-Training profitieren Sie von folgenden Vorteilen:

  • Zwei Optionen - Präsenz- oder Onlinetraining
  • Ablenkungsfreie Lernumgebung
  • Eigene Trainings- und Prüfungszentren (Pearson VUE Select Partner)
  • Effektives Training mit praktischen Übungseinheiten und intensiver Betreuung durch unsere Trainer
  • Umfassendes Leistungspaket mit allem, was Sie benötigen, um Ihre Zertifizierung zu erhalten, inklusive unserer Firebrand Leistungsgarantie.

Curriculum

Module 1: Cisco Firepower Threat Defence Overview

  • Examining Firewall and IPS Technology
  • Firepower Threat Defence Features and Components
  • Examining Firepower Platforms
  • Examining Firepower Threat Defence Licensing
  • Cisco Firepower Implementation Use Cases

 

Module 2: Cisco Firepower NGFW Device Configuration

  • Firepower Threat Defence Device Registration
  • FXOS and Firepower Device Manager
  • Initial Device Setup
  • Managing NGFW Devices
  • Examining Firepower Management Centre Policies
  • Examining Objects
  • Examining System Configuration and Health Monitoring
  • Device Management
  • Examining Firepower High Availability
  • Configuring High Availability
  • Cisco ASA to Firepower Migration
  • Migrating from Cisco ASA to Firepower Threat Defence

 

Module 3: Cisco Firepower NGFW Traffic Control

  • Firepower Threat Defence Packet Processing
  • Implementing QoS
  • Bypassing Traffic

 

Module 4: Cisco Firepower NGFW Address Translation

  • NAT Basics
  • Implementing NAT
  • NAT Rule Examples
  • Implementing NAT

 

Module 5: Cisco Firepower Discovery

  • Examining Network Discovery
  • Configuring Network Discovery

 

Module 6: Implementing Access Control Policies

  • Examining Access Control Policies
  • Examining Access Control Policy Rules and Default Action
  • Implementing Further Inspection
  • Examining Connection Events
  • Access Control Policy Advanced Settings
  • Access Control Policy Considerations
  • Implementing an Access Control Policy

 

Module 7: Security Intelligence

  • Examining Security Intelligence
  • Examining Security Intelligence Objects
  • Security Intelligence Deployment and Logging
  • Implementing Security Intelligence

 

Module 8: File Control and Advanced Malware Protection

  • Examining Malware and File Policy
  • Examining Advanced Malware Protection

 

Module 9: Next-Generation Intrusion Prevention Systems

  • Examining Intrusion Prevention and Snort Rules
  • Examining Variables and Variable Sets
  • Examining Intrusion Policies

 

Module 10: Site-to-Site VPN

  • Examining IPsec
  • Site-to-Site VPN Configuration
  • Site-to-Site VPN Troubleshooting
  • Implementing Site-to-Site VPN

 

Module 11: Remote-Access VPN

  • Examining Remote-Access VPN
  • Examining Public-Key Cryptography and Certificates
  • Examining Certificate Enrolment
  • Remote-Access VPN Configuration
  • Implementing Remote-Access VPN

 

Module 12: SSL Decryption

  • Examining SSL Decryption
  • Configuring SSL Policies
  • SSL Decryption Best Practices and Monitoring

 

Module 13: Detailed Analysis Techniques

  • Examining Event Analysis
  • Examining Event Types
  • Examining Contextual Data
  • Examining Analysis Tools
  • Threat Analysis

 

Module 14: System Administration

  • Managing Updates
  • Examining User Account Management Features
  • Configuring User Accounts
  • System Administration

 

Module 15: Cisco Firepower Troubleshooting

  • Examining Common Misconfigurations
  • Examining Troubleshooting Commands
  • Firepower Troubleshooting

 

 Lab outline:

● Initial Device Setup

● Device Management

● Configuring High Availability

● Migrating from Cisco ASA to Cisco Firepower Threat Defence

● Implementing QoS

● Implementing NAT

● Configuring Network Discovery

● Implementing an Access Control Policy

● Implementing Security Intelligence

● Implementing Site-to-Site VPN

● Implementing Remote Access VPN

● Threat Analysis

● System Administration

● Firepower Troubleshooting

Exam Track

At the end of this accelerated course, you’ll sit the following exam at the Firebrand Training centre, covered Certification Guarantee:

Implementing and Operating Cisco Security Core Technologies (350-701 SCOR) Exam

  • Duration: 120 minutes

 

What's Included

Prerequisites

Before attending this accelerated course, you should have:

  • Knowledge of TCP/IP and basic routing protocols
  • Familiarity with firewall, VPN, and Intrusion Prevention System (IPS) concepts

Sind Sie sich unsicher, ob Sie die Voraussetzungen erfüllen? Wir besprechen gerne mit Ihnen Ihren technischen Hintergrund, Erfahrung und Qualifikation, um herauszufinden, ob dieser Intensivkurs der richtige für Sie ist.

Erfahrungsberichte

Bereits 134561 Kursteilnehmer haben seit 2001 erfolgreich einen Firebrand-Kurs absolviert. Unsere aktuellen Kundenbefragungen ergeben: Bei 96.13% unserer Teilnehmer wurde die Erwartungshaltung durch Firebrand übertroffen!


"Top Team aus Experten. Organisation und Ablauf sind großartig. Man sollte inhaltlich wissen, was einen Erwartet. Dozenten und Support sind jederzeit ansprechbereit."
Mathias Passmann, UNIKA. (9.10.2023 (Montag) bis 14.10.2023 (Samstag))

"Organisation, Freundlichkeit, professioneller Ansatz und vor allem ein guter Lehrer."
Anonym (5.6.2023 (Montag) bis 10.6.2023 (Samstag))

"Firebrand organisiert Unterbringung, Verpflegung und Training sehr gut. Wer es gewohnt ist, abends nochmal zurückzuschauen und eventuell Inhalte erneut durchzugehen, der wird feststellen, dass nach einem so langen Tag die Luft raus ist. Man muss tagsüber alles klären."
Ralf Bruckmann. (14.9.2020 (Montag) bis 19.9.2020 (Samstag))

"Es ist beeindruckend, wie viel Wissen man in kürzester Zeit vermittelt bekommen kann. Das Rundum-sorglos-Paket mit einem klaren Fokus."
M.R.. (14.9.2020 (Montag) bis 19.9.2020 (Samstag))

"Ich kann den Bootcamp für CCNA schwerstens empfehlen! Für jeden, der als Netzwerktechniker tätig ist und die Zertifizierung noch nicht hat, sollten dies umbedingt bei Firebrand machen. Sehr kompetente und erfahrene Trainer!"
B.A.. (3.2.2020 (Montag) bis 8.2.2020 (Samstag))

Kurstermine

Start

Ende

Verfügbarkeit

Standort

Anmelden

27.5.2024 (Montag)

29.5.2024 (Mittwoch)

Kurs gelaufen - Hinterlasse Kommentar

-

 

30.9.2024 (Montag)

2.10.2024 (Mittwoch)

Warteliste

Überregional

 

11.11.2024 (Montag)

13.11.2024 (Mittwoch)

Einige Plätze frei

Überregional

 

 

3.2.2025 (Montag)

5.2.2025 (Mittwoch)

Einige Plätze frei

Überregional

 

17.3.2025 (Montag)

19.3.2025 (Mittwoch)

Einige Plätze frei

Überregional

 

Neueste Rezensionen von unseren Kursteilnehmern