NW
NW NW
Networldz
Networldz
Instant Messengers. Networldz99@yahoo.com Networldz99@hotmail.com Networldz99@gmail.com
NW NW
NW
NW
  HYDERABAD
+91-9000544423
+9140 - 40045060
NW
  BANGALORE
Email : info@networldz.com
nw
CCNA TRAINING INDIA,CCNA TRAINING BANGLORE,CCNA TRAINING HYDERABAD,CCNA TRAINING CHENNAI,CCNA TRAINING BOMBAY,CCNA TRAINING  DELHI,CCNP TRAINING INDIA,CCSP TRAINING INDIA,CCVP TRAINING INDIA,CCVP TRAINING BANGLORE,CCVP TRAINING HYDERABAD,CCVP TRAINING  CHENNAI,CCVP TRAINING  BOMBAY,CCVP TRAINING DELHI,IPCC TRAINING INDIA,IPCC ENTERPRISE TRAINING INDIA,IPCC TRAINING BANGLORE,IPCC TRAINING HYDERABAD.IPCC TRAINING DUBAI,CCVP TRAINING RIYAD,CCVP TRAINING OMAN,CCSP TRAINING OMAN,CCIP TRAINING HYDERABAD,CVPI TRAINING OMAN,CVPI TRAINING BANGLORE,CCNA VOICE TRAINING INDIA,CCNA VOICE TRAINING HYDERABAD,VOICE TRAINING INDIA,VOICE TRAINING BANGLORE,VOICE TRAINING DUBAI,VOICE TRAINING RIYAD,CISCO CERTIFICATION TRAINING,INDIA,VOCIE TRAINING OMANSECURITY TRAINING BANGLORE,SECURITY TRAINING HYDERABAD,SECURITY TRAINING INDIA,CCVP TRAINING  LONDON,CCIE VOCIE TRAINING INDIA,BEST CCIE VOICE TRAINING INDIA,GOOD CCIE VOICE TRAINING INDIA,CCIE SECURITY TRAINING INDIA,CCIE VOICE TRAINING BANGLORE,CCIE VOICE TRAINING HYDERABAD,CISCO ICM TRAINING INDIA,ICM TRAINING BANGLORE,ICM TRAINING HYDERABAD.UNITY TRAINING INDIA,UNITY TRAINING BANGLORE.
 
NW NW NW
NW
NW
NW
 
 
News@ CISCO
 
 
More news
 
 
Examination Info.
 
readmore
 
Recommended Training
 
CCSP - Securing Networks with ASA Advanced (SNAA)
 
SNAA
In this Authorized Cisco course, you will take your knowledge and skills on configuring, maintaining, and operating Cisco ASA 5500 Series Adaptive Security to the next level. Recommended training for the Cisco Certified Security Professional (CCSP) certification, SNAA takes over where SNAF leaves off, covering advanced topics of Adaptive Security.

We have added depth to the existing Cisco-developed hands-on labs for SNAA. Our advanced hands-on labs, delivered in an enhanced topology designed to simulate a typical production network, guide you through exercises such as managing digital certificates for IPSec and SSL VPNs, deep packet inspection, and using the 5505 in the SOHO environment.

Prerequisites

To fully benefit from this course, it is recommended that you have the following prerequisite skills and knowledge:
•    SNAF - Securing Networks with ASA Fundamentals
Cisco CCNA® certification or the equivalent knowledge

 
Course Outline
 
COURES CONTENT

Module 1:
 Advanced ASA NAT

Lesson 1: Applying NAT 0 and Policy NAT
    ACLs
    NAT
    Translation Behavior
    NAT Exemption
    Policy NAT
    Verify and Troubleshoot

Module 2:
Advanced Protocol Handling

Lesson 1: Applying the Cisco Modular Policy Framework
    Modular Policy Framework Overview
    Configuring the Modular Policy Framework
    Configuring a Layer 7 Class Map
    Configuring a REGEX Class Map
    Configuring a Layer 7 Policy Map
    Verifying the Modular Policy Framework Configuration

Lesson 2: Handling Advanced Protocol
    Protocol Inspection Overview
    FTP Inspection
    HTTP Inspection
    Instant Messaging Inspection
    ESMTP Inspection
    DNS Inspection
    ICMP Inspection
    Verifying Protocol Inspection

Module 3:
 Dynamic Routing and Switching

Lesson 1: Switching with VLANs
    ASA VLAN Operations
    VLAN Configuration
    Configuring VLANs on the ASA 5505
    Verify VLANs

Lesson 2: Routing with Dynamic Protocols
    Dynamic versus Static Routing
    RIP
    OSPF
    EIGRP
    Redistribution
    Verification and Troubleshooting

Module 4:
 IPsec VPNs

Lesson 1: Understanding IPsec and Digital Certificates
    What is IPsec
    IPsec Operation
    Digital Certificates and Public Key Cryptography
    Certificates and Scalability
    Certificate Enrollment Process
    Validating the Certificate
    Certificate Revocation Lists
    Security Appliance Certificate Enrollment Support
    Key Pairs and Trustpoints

Lesson 2: Implementing Site-to-Site VPNs with Digital Certificates
    Site-to-Site VPNs
    Configuring CA Certificates
    Site-to-Site IPsec Connection Profiles
    Modifying Certificate to Connection Mapping
    Hub and Spoke
    Site-to-Site Redundancy
    Verifying Site-to-Site VPNs
    Troubleshooting Site-to-Site VPNs

Lesson 3: Configuring the Cisco VPN Client
    Cisco VPN Client
    Client Installation
    Digital Certificates with Cisco VPN Client
    Connection Entry
    Advanced Options
    Verify and Troubleshoot Client Configuration

Lesson 4: Implementing Remote Access VPNs with Digital Certificates
    Remote Access VPNs
    Configuring an ASA for Remote Access
    Installing ASA Certificates
    Defining a Remote Access Address Pool
    User Policy Attribute Inheritance
    Configuring an IPSec Connection Profile
    Configuring the Certificate to Connection Profile Policy
    Verifying Remote Access VPNs
    Troubleshooting Remote Access VPNs

Lesson 5: Configuring Advanced Remote Access Features and Policy
    Load Balancing
    Reverse Route Injection
    Backup Servers
    Intra-interface VPN Traffic
    NAT Transparency
    Client Update
    Split Tunneling
    Personal Firewalls

Lesson 6: Configuring the ASA 5505 as an Easy VPN Hardware Client
    Introduction to Cisco Easy VPN
    Cisco Easy VPN Server Policy
    Easy VPN Hardware Client

Lesson 7: IPsec VPNs and QoS
    QoS Overview
    ASA QoS
    Configuring QoS for VPNs

Module 5:
 SSL VPNs

Lesson 1: SSL VPN Technology Overview
    SSL Overview
    Clientless SSL VPN
    Cisco Secure Desktop (CSD)

Lesson 2: Configuring Clientless SSL VPNs
    Configuring Clientless SSL VPN
    Verifying Clientless SSL VPN Operation
    Configuring Port-Forwarding SSL VPN
    Verifying Port-Forwarding SSL VPN
    Configuring Additional SSL VPN Features
    Troubleshooting Clientless and Port-Forwarding SSL VPNs

Lesson 3: Configuring Full Network Access SSL VPNs
    Cisco Full Network Access SSL VPN Overview
    Configuring Cisco AnyConnect SSL VPN
    Verifying Cisco AnyConnect SSL VPN Operation
    Configuring Advanced Features for the Cisco AnyConnect SSL VPN Client
    Configuring Certificate-Based Authentication for AnyConnect SSL VPN
    Troubleshooting Cisco AnyConnect SSL VPN Client Operation

Lesson 4: Cisco Secure Desktop
    Cisco Secure Desktop Overview
    Cisco Secure Desktop Interoperability
    Preparing the ASA for Cisco Secure Desktop

Lesson 5: Securing the Desktop with CSD and DAP
    CSD Workflow
    Prelogin Assessment
    Secure Session
    Cache Cleaner
    Host Emulation and Keystroke Logger Detection
    Host Scan
    Dynamic Access Policy
    DAP Testing

Module 6:
Security Services Modules

Lesson 1: Examining the SSMs
    Business Challenges
    SSMs
    CSC-SSM
    AIP-SSM
    AIP-SSM or CSC-SSM

Lesson 2: CSC-SSM: Getting Started
    CSC-SSM Overview
    CSC-SSM SW Loading
    Initial CLI CSC Configuration
    Initial Configuration of the CSC-SSM using CSC Setup Wizard from ASDM

Lesson 3: AIP-SSM: Getting Started
    AIP-SSM Overview
    AIP-SSM SW Loading
    Initial IPS ASDM Configuration
    Configure an IPS Security Policy
 
Back Top
NW
NW
NW
NW NW NW
 
NW
NW