Cisco ASA Lab Camp v9.0

    Quantity

    $4,495.00

    New Age Technologies has been delivering Authorized Training since 1996. We offer Cisco’s full suite of authorized courses including Network Management with Cisco Prime Infrastructure, Unified Communications, Wireless, Cisco ASA Lab Camp, Storage Networking and more. If you have any questions or can’t seem to find the Cisco class that you are interested in, contact one of our Cisco Training Specialists. Invest in your future today with Cisco training from New Age Technologies.

    Cisco Training Specialist | ☏ 502.909.0819


    This Course Includes an Exclusive Benefit

    This courses comes pre-packaged with 10 lab credits that let you practice and hone your new skills at your convenience. 1 lab credit = 50 minutes of lab time. Whether you repeat labs from class or try out optional labs on your own time to see more features in action, with lab credits, you can:

    • Practice using real-world, practical scenarios
    • Practice on real-world equipment in real-world situations
    • Explore software and equipment features in depth
    • Take advantage of optional labs available outside of the classroom experience
    • Use your credits on a single lab or a variety of labs from several courses
    • Access labs 24 hours a day, 7 days a week in our secure data center

    Note: You will be provided with copies of Cisco official courseware for SASAC and SASAA 1.2 in addition to the ASA Lab Camp guide.


    COURSE INFORMATION

    Cisco ASA Lab Camp v9.0 Overview:

    Based on our enhanced SASAC v1.0 and SASAA v1.2 courses, this exclusive, lab-based course, provides you with your own set of equipment and is designed to provide you with the most Adaptive Security Appliance (ASA) 9.x and ASA CX-based lab experience possible in just five days.

    This course provides 30 different lab scenarios using Cisco equipment such as:

    • ASA v9.x
    • ASA 5515 NGFW (Next-Generation Firewall CX)
    • Access Control Server (ACS 5.4)
    • Context Directory Agent (CDA)
    • Catalyst switch
    • Integrated Services Router (ISR)
    • ASA 55×5

    Who Should Attend:

    • Network engineers supporting Cisco ASA 9.x implementations

    Cisco ASA Lab Camp v9.0 Prerequisites:

    Before attending this course, you must have:

    • Knowledge of the Cisco ASA
    • Attended IINS 2.0 – Implementing Cisco IOS Network Security

    Cisco ASA Lab Camp v9.0 Objectives:

    After successfully completing this course, you will be able to:

    • Fundamental ASA Configuration from the CLI and ASDM
    • Administrative Access using AAA, TACACS+ and Cisco ACS 5.x
    • Object (Auto) NAT and Manual (Twice) NAT
    • Access Control and Troubleshooting Tools
    • Application Inspection and Control (Deep Packet Inspection)
    • Bootstrapping and configuring CX and IPS software modules
    • Deploying Cisco Context Directory Agent (CDA) with Active Directory
    • Features of Cisco ASA 5500-X Series Next-Generation Firewalls (NGFW ASA CX)
    • SFR (FirePOWER Services) software module integration using FireSIGHT Management Center and access control, intrusion prevention, file policy, network discovery, Active Directory integration, and user based access control
    • CX software module integration using Prime Security Manager (PRSM)
    • CX access policies for URL and application filtering
    • CX identity policies using active and passive authentication
    • CX decryption policies
    • Cloud Web Security (ScanSafe) integration
    • Threat and Botnet Detection
    • Dynamic Routing
    • Transparent Firewall and bridge groups
    • Basic and Advanced Clientless SSL VPN
    • Full tunnel SSL VPN using AnyConnect 3.x Secure Mobility Client
    • Remote Access IPsec IKEv2 using AnyConnect 3.x
    • Easy VPN remote for the SOHO using ASA 5505
    • External AAA authentication of VPN users
    • PKI and VPN integration
    • Host Scan and Dynamic Access Policies (DAP) for VPN
    • IPsec VPN Site-to-site between ASAs and with IOS router
    • ASA and ISE integration for TrustSec Firewall using Security Group Tags
    • Active/Standby Failover
    • ASA clustering including local and spanned EtherChannel

    Cisco ASA Lab Camp v9.0 Outline:

    Module 1: Cisco ASA v9.x Essentials
    • Firewall Technologies
    • Cisco ASA Features, Hardware, and Licenses
    Module 2: Basic Connectivity and Device Management
    • Managing the Cisco ASA Boot Process
    • Configuring the Cisco ASA Using the CLI and ASDM
    • Managing the Cisco ASA Basic Upgrade
    • Managing Cisco ASA Security Levels and Interfaces
    • Cisco ASA as DHCP Client and DHCP Server
    Module 3: Network Integration
    • Configuring Object (Auto) NAT and Manual NAT
    • Connection Table and Local Host Table
    • Configuring and Verifying Interface and Global ACLs
    • Configuring and Verifying Object Groups and Public Servers
    • Static and Dynamic Routing
    • Multicast Support
    Module 4: Cisco ASA Policy Control
    • Cisco Modular Policy Framework (MPF) Overview
    • Configuring Layer 3 and Layer 4 Policies
    • Configuring Layer 5 to Layer 7 Policies including HTTP and FTP inspection
    Module 5: Cisco ASA VPN Common Components
    • VPN Types and Components
    • VPN Connection Profiles and Group Policies
    • AAA Including External Policy Storage
    • Dynamic Access Policy for SSL VPN
    • PKI for VPN Including Provisioning Server-Side Certificates
    • Client-Based Certificate Authentication Including SCEP proxy
    Module 6: Cisco Clientless VPN Solution
    • Cisco Clientless SSL VPN
    • Basic Cisco Clientless SSL VPN
    • Cisco Clientless SSL VPN Application Access with Application Plug-Ins and Smart Tunnels
    • Client-side Authentication and Authorization Using AAA Server
    • Double Client-side Authentication Using AAA Servers
    Module 7: Cisco AnyConnect Full Tunnel VPN Solution
    • Cisco AnyConnect SSL VPN
    • Split Tunneling
    • IP Address Pools and Identity NAT
    • DTLS and TLS Tunnels
    • Cisco AnyConnect Client Configuration Management
    • Trusted Network Detection and Start Before Logon options
    • Certificate-Based Server Authentication
    • Client Enrollment Methods and Certificate-Based Authentication
    • Two-Factor Authentication
    • Local Authorization and External Authorization
    • AnyConnect Support for IKEv2
    • Making IPsec the Primary Protocol for a Host Entry
    Module 8: Cisco ASA High Availability and Virtualization
    • EtherChannel and Redundant Interfaces
    • Multiple-Context Mode
    Module 9: Cisco Next Generation Firewall
    • Introducing the Cisco ASA 5500-X Series NGFW
    • Introducing the Cisco ASA 1000V Cloud Firewall
    • Introducing the Cisco ASAv
    • Introducing the Cisco ASASM
    Module 10: Cisco ASA Identity Firewall
    • Describing the Cisco IDFW Solution
    • Setting Up Cisco CDA
    • Configuring Cisco CDA
    • Configuring Cisco ASA IDFW
    • Verifying and Troubleshooting Cisco ASA IDFW
    Module 11: Cisco ASA FirePOWER (SFR) Module
    • Installing Cisco ASA 5500-X Series FirePOWER (SFR) Module
    • Cisco Virtual FireSIGHT Management Center
    Module 12: Cisco ASA Cloud Web Security Integration
    • Introducing Cisco ASA with Cisco Cloud Web Security
    • Licensing Cisco ASA with Cisco Cloud Web Security
    • Configuring Cisco ASA with Cisco Cloud Web Security
    • Verifying Cisco ASA with Cisco Cloud Web Security
    • Describing the Web Filtering Policy in Cisco ScanCenter
    • Cisco Cloud Web Security Advanced Malware Protection and Threat Analytics
    Module 13: Cisco ASA Cluster
    • Describing Cisco ASA Cluster Features
    • Describing Cisco ASA Cluster Terminology and Data Flows
    • Using the CLI to Configure a Cisco ASA Cluster
    • Using the ASDM to Configure a Cisco ASA Cluster
    • Verifying Cisco ASA Cluster Operations
    • Troubleshooting a Cisco ASA Cluster Operations
    • Describing Cisco ASA v9.1.4 and later Clustering Features
    Module 14: Cisco ASA CX
    • Cisco ASA CX (Next-Generation Firewall)
    • Cisco Off-Box PRSM and Cisco ASA CX
    • PRSM Device Discovery and Configuration Import
    • Cisco ASA CX Policy Objects
    • Cisco ASA CX Access Policies
    • Cisco ASA CX Identity Policies
    • Cisco ASA CX Decryption Policies
    • Cisco PRSM for Administration
    Module 15: Cisco ASA IPv6 Enhancements
    • Cisco ASA IPv4 and IPv6 Unified ACL
    • Other Cisco ASA IPv6 Support Enhancements
    Module 16: Cisco ASA Security Group Firewall
    • Cisco Security Group Tagging Overview
    • Configuring Cisco ASA Security Group Firewall
    Module 17: Cisco ASA Multicontext Enhancements
    • Cisco ASA Multicontext Mode
    • Multicontext Enhancements in Cisco ASA Software Release 9.0

    Cisco ASA Lab Camp v9.0 Labs:

    SASAC v1 Labs:
    • Lab 1: ASA Administration and Network Integration
    • Lab 2: Network Address Translation
    • Lab 3: Access Control and Troubleshooting
    • Lab 4: MPF Basic Application Inspections
    • Lab 5: MPF Advanced Application Inspections
    • Lab 6: Basic Clientless SSL VPN
    • Lab 7: Clientless SSL VPN Applications
    • Lab 8: External AAA for Clientless SSL VPN
    • Lab 9: Basic AnyConnect SSL VPN
    • Lab 10: Advanced AnyConnect SSL VPN
    • Lab 11: IPSec Remote Access VPN
    • Lab 12: Active-Standby High Availability
    SASAA v1.2 Labs
    • Lab 1: Cisco Adaptive Security Virtual Appliance (ASAv) Basic Setup
    • Lab 2: Context Directory Agent (CDA) Configuration
    • Lab 3: Identity-Based Firewall Configuration
    • Lab 4: ASA 5500-X FirePOWER Services (SFR) Module Installation and Setup
    • Lab 5: ASA Cloud Web Security Integration
    • Lab 6: ASA Cluster Configuration
    • Lab 7: ASA CX and PRSM Exploration
    • Lab 8: ASA CX Access Policy Configuration
    • Lab 9: ASA CX Identity Policy
    • Lab 10: ASA CX Decryption Policy Configuration
    • Lab 11: ASA CX NGIPS Policy Configuration
    • Lab 12: PRSM Administration
    ASA Exclusive Add-On Labs:
    • Lab 1: Dynamic Routing
    • Lab 2: Threat Detection
    • Lab 3: Botnet Traffic Filter
    • Lab 4: IKEv1 Site-to-Site VPN (ASA to IOS router)
    • Lab 5*: Hardware Easy VPN (ASA 5505 to ASA 5515)
    • Lab 5*: IKEv2 Site-to-Site VPN (ASA to ASA)
    • Lab 6: ACS 5.x and TACACS+ for Administrative Access
    • Lab 7: Transparent Firewall
    • Lab 8: Host Scan and Dynamic Access Policies and VPN

    *ASA Lab Camp Lab 5 has two distinctive parts: Hardware Easy VPN and IKEv2 Site-to-Site VPN.


    Boost your salary by obtaining your Cisco Certification: Cisco Certified Internetwork Expert Security (CCIE Security):

      Top