Sei sulla pagina 1di 3

SNAF v1.

0 - Securing Networks with ASA Foundations


Course Length: 5 days Course Code: SNAF

• Cisco engineers who support the sale of ASA


Course Description security appliances p
Securing Networks with ASA Fundamentals (SNAF) v1.0
is a five-day, instructor-led, lab-intensive course, which
Prerequisites
will be delivered by Cisco Learning Partners. This task- • Cisco CCNA® certification or the equivalent
oriented course teaches the knowledge and skills knowledge
needed to configure, maintain, and operate Cisco ASA • Basic knowledge of the Microsoft Windows
5500 Series Adaptive Security Appliances. operating system
This course updates Securing Networks with PIX and • Familiarity with networking and security terms and
ASA (SNPA) v5.0. In SNAF 1.0, the ASDM 6.0 graphical concepts
user interface (GUI) is used for configuration and
monitoring. Although all lessons and labs are now GUI- Course Content
based, the commands for each configuration task are
also presented in the lessons for those who prefer to Lesson 1: Introducing Cisco Security Appliance
configure the security appliance via the command line Technology and Features
interface (CLI). In SNAF 1.0, lessons have been updated • Firewalls
to cover new features in Cisco ASA and PIX Security • Security Appliance Overview
Appliance Software Version 8.0(2), including the
following: Lesson 2: Introducing the Cisco ASA and PIX
• Threat detection Security Appliance Families
• Secure logging • Models and Features of Cisco Security Appliances
• Remote command execution in failover pairs • ASA Licensing
• Redundant interfaces
• Modular policy framework enhancements Lesson 3: Getting Started with Cisco Security
• Access control list renaming capability Appliances
• FTP support for SSL VPN • User Interface
• Onscreen keyboard for the SSL VPN • File Management
• Administrator-defined customization of all SSL VPN • Security Appliance Security Levels
user-visible content • ASDM Overview and Operating Requirements
• Personal bookmarks for SSL VPN users • Preparing to Use ASDM
• Navigating ASDM Windows
Target Audience
Lesson 4: Configuring a Security Appliance
The primary and secondary audience for this course is
as follows: • Basic Security Appliance Configuration
• Cisco customers who implement and maintain Cisco • Examining Security Appliance Status
ASA security appliances • Time Setting and NTP Support
• Cisco channel partners who sell, implement, and • Syslog Configuration
maintain ASA security appliances

www.inacom.com www.corebts.com
Lesson 5: Configuring Translations and Connection Lesson 11: Configuring Advanced Protocol Handling
Limits
• Advanced Protocol Handling
• Transport Protocols • Protocol Application Inspection
• Network Address Translation • Multimedia Support
• Port Address Translation
Lesson 12: Configuring Threat Detection
• Static Translations
• SYN Cookies and Connection Limits • Threat Detection Overview
• Connections and Translations • Basic Threat Detection
• Scanning Threat Detection
Lesson 6: Using ACLs and Content Filtering
• Configuring and Viewing Threat Detection Statistics
• ACLs
Lesson 13: Configuring Site-to-Site VPNs Using Pre-
• Malicious Active Code Filtering
Shared Keys
• URL Filtering
• Packet Tracer • Secure VPNs
• How IPsec Works
Lesson 7: Configuring Object Grouping
• Prepare to Configure an IPsec VPN
• Overview of Object Grouping • Configuring a Site-to-Site VPN Using Pre-shared
• Configuring Object Groups and Using Them in ACLs Keys
• Modifying the Site-to-Site VPN Configuration
Lesson 8: Switching and Routing on Cisco Security
• Test and Verify VPN Configuration
Appliances
Lesson 14: Configuring Security Appliance Remote-
• VLAN Capabilities
Access VPNs
• Static Routing
• Dynamic Routing • Introduction to Cisco Easy VPN
• Overview of Cisco VPN Client
Lesson 9: Configuring AAA for Cut-Through Proxy
• Configuring Remote Access VPNs
• Introduction to AAA • Configuring Users and Groups
• Configuring the Local User Database
Lesson 15: Configuring the Cisco ASA Security
• Installing Cisco Secure ACS for Windows Appliance for SSL VPN
• Cut-Through Proxy Authentication Configuration
• Authentication Prompts and Timeouts • SSL VPN Overview
• Authorization Configuration • Using the SSL VPN Wizard to Configure Clientless
• Accounting Configuration SSL VPN
• Verifying Clientless SSL VPN Operations
Lesson 10: Configuring the Cisco Modular Policy
Framework Lesson 16: Configuring Transparent Firewall Mode
• Modular Policy Framework Overview • Transparent Firewall Mode Overview
• Class Map Overview • How Data Traverses a Security Appliance in
• Policy Map Overview Transparent Mode
• Using ASDM to Configure a Modular Policy • Configuring Transparent Firewall Mode
• Configuring a Management Policy • Monitoring and Maintaining Transparent Firewall
• Displaying Modular Policy Framework Commands Mode

www.inacom.com www.corebts.com
Lesson 17: Configuring Security Contexts
• Security Context Overview
• Enabling Multiple Context Mode
• Configuring Security Contexts
• Managing Security Contexts
Lesson 18: Configuring Failover
• Understanding Failover
• Configuring Redundant Interfaces
• LAN-Based Active/Standby Failover Configuration
• Active/Active Failover Configuration
• Remote Command Execution
Lesson 19: Managing the Security Appliance
• Managing System Access
• Configuring Command Authorization
• Managing Configurations
• Managing Images and Activation Keys

www.inacom.com www.corebts.com

Potrebbero piacerti anche