Securing Cisco Networks with Sourcefire Intrusion Prevention System (SSFIPS)

      Quantity

      $3,995.00

      New Age Technologies has been delivering Authorized Training since 1996. We offer Cisco’s full suite of authorized courses including Network Management with Cisco Prime Infrastructure, Unified Communications, Wireless, Securing Cisco Networks with Sourcefire Intrusion Prevention System, Storage Networking and more. If you have any questions or can’t seem to find the Cisco class that you are interested in, contact one of our Cisco Training Specialists. Invest in your future today with Cisco training from New Age Technologies.

      Cisco Training Specialist | ☏ 502.909.0819


      COURSE INFORMATION

      Securing Cisco Networks with Sourcefire Intrusion Prevention System (SSFIPS) Overview:

      Securing Cisco Networks with Sourcefire Intrusion Prevention System (IPS) course introduces you to the powerful features of the Cisco Sourcefire System, including:

      • FireSIGHT technology
      • In-depth event analysis
      • IPS tuning and configuration
      • Snort rules language

      You will learn how to use and configure next-generation Sourcefire technology, including application control, firewall, and routing and switching capabilities. You will also learn to properly tune systems for better performance and greater network intelligence while taking full advantage of powerful tools for more efficient event analysis, including file type and network-based malware detection. This course combines lecture materials and hands-on labs throughout to make sure that you are able to successfully deploy and manage the Sourcefire System.

      Securing Cisco Networks with Sourcefire Intrusion Prevention System (SSFIPS) Prerequisites:

      Before attending this course, you must have the following:

      • Technical understanding of TCP/IP networking and network architecture
      • Basic familiarity with the concepts of intrusion detection systems (IDS) and IPS

      Securing Cisco Networks with Sourcefire Intrusion Prevention System (SSFIPS) Objectives:

      After completing this course, you will be able to:

      • Understand the Sourcefire System infrastructure
      • Navigate the UI and administrative features of the Sourcefire System, including reporting functionality to properly assess threats
      • Understand how to deploy and manage the Sourcefire device
      • Understand the role FireSIGHT technology plays in the Sourcefire System
      • Understand, create, and implement objects for use in access control policies
      • Understand advanced policy configuration and Sourcefire System configuration options
      • Analyze events
      • Write and configure several basic rules

      Securing Cisco Networks with Sourcefire Intrusion Prevention System (SSFIPS) Outline:

      • Module 1: Sourcefire System Overview and Classroom Setup
      • Module 2: Device Management
      • Module 3: Object Management
      • Module 4: Access Control Policy
      • Module 5: Network-based Malware Detection
      • Module 6: FireSight Technology
      • Module 7: Correlation Policies
      • Module 8: IPS Policy Basics
      • Module 9: Advanced IPS Polcity Configurations
      • Module 10: User Account Management
      • Module 11: Event Anlaysis
      • Module 12: Reporting
      • Module 13: Basic Rule Syntax and Usage
      • Module 14: Case Studies in Rule Writing and Packet Analysis

      Securing Cisco Networks with Sourcefire Intrusion Prevention System (SSFIPS) Labs:

      • Lab 1: Verifying Product Licenses
      • Lab 2: Testing the Environment with Attack PCAPs
      • Lab 3: Viewing Events
      • Lab 4: Configuring Inline Interface Set
      • Lab 5: Creating User Accounts and Configuring UI Timeout Value
      • Lab 6: Testing Exempt vs. Non-Exempt Users
      • Lab 7: Escalating Permissions
      • Lab 8: Working with an External User Account
      • Lab 9: Testing the LDAP Authentication Object
      • Lab 10: Creating Objects
      • Lab 11: Creating Basic Access Control Policy
      • Lab 12: Creating an Access Control Policy for Application Awareness
      • Lab 13: URL Filtering
      • Lab 14: Including an IPS Policy in Access Control Rules
      • Lab 15: Tuning the Network Discovery Detection Policy
      • Lab 16: Viewing FireSIGHT Data
      • Lab 17: User Discovery
      • Lab 18: Host Attributes
      • Lab 19: Creating a File Policy
      • Lab 20: Creating an Intrusion Policy
      • Lab 21: Enable Include FireSIGHT Recommendations
      • Lab 22: Implement FireSIGHT Recommendations
      • Lab 23: Applying Your Policy and Variable Set and Test
      • Lab 24: Tuning Your HTTP Inspect Preprocessor
      • Lab 25: Testing the Network Analysis Policy Settings
      • Lab 26: Analyzing Events
      • Lab 27: Tuning an Event
      • Lab 28: Context Explorer
      • Lab 29: Comparing Trends
      • Lab 30: Creating a Correlation Policy Based on Connection Data
      • Lab 31: Whitelists
      • Lab 32: Working with Connection Data and Traffic Profiles
      • Lab 33: Writing Custom Rules

      Average Salary for Careers in Computer/Network Security:

        Top