Contact | Register |  Advanced Search | Student Login




Call for info: 949-477-2000 Option 1

Course Name

Securing Cisco Network Devices v2.0

Course Description

Course Fee: $3,195.00

SND v2.0 is a five-day, leader-led course which is delivered by Ascolta’s highly trained Security Instructors. This course is an entry level network security course offered as a pre-requisite to the Cisco Qualified Specialist curriculum. It provides an opportunity to learn about a broad range of the components embedded in Cisco SAFE blueprint. In this course learners will recognize threats and vulnerabilities to networks and learn how to implement basic mitigation measures. The course provides an introduction to the Cisco products and solutions that form the basis of the Cisco security portfolio. Learners will be able to perform basic task to secure network devices at Layers 2 and 3 using command line interface and web-based GUIs. Devices include routers, switches, access control servers, IPS sensors and VPN concentrators.

Who should attend this course?

  • Channel Partner / Reseller that work with Cisco Routers and Switches and have a need to secure these devices.
  • Cisco Customers who wish to obtain the knowledge for securing Cisco Routers and Switches or who are pursuing the Cisco Certified Security Professional Career certification.
  • Cisco Employees that need formal training on Securing Cisco devices.

Pre-SND course recommendations

  • INTRO
  • ICND

Prerequisites

  • Certification as a CCNA or the equivalent knowledge (optional)
  • Basic knowledge of the Windows operating system
  • Familiarity with networking and security terms and concepts (the concepts are learned in prerequisite training or by reading industry publications)
  • Interconnecting Cisco Network Devices (ICND)

Why are these prerequisites important?

Although this course is an entry level course, the technologies are not easy to understand unless the learner has a basic networking foundation. The topics and concepts discussed are taught in full detail, and the lab exercises are meant to solidify those concepts. Students who struggle with the most basic Cisco Command Line modes and basic networking knowledge may have a hard time getting a handle on the important security concepts that are related.

Follow-on courses

  • SNRS
  • SNPA
  • HIPS
  • IPS
  • CSVPN

Certifications

  • CCSP
  • Cisco Firewall Specialist
  • Cisco IPS Specialist
  • Cisco VPN Specialist

Number of Days:

5- Days instructor-led classroom training. (Approx. 7 hours each day.)

Also available in instructor-led Ascolta LIVE training format. (Approx. 4 hours each day.)

What is Ascolta LIVE training?

Ascolta LIVE training and long distance learning offered by Ascolta using state of the art virtual classroom software. This learning environment is still led by a live instructor that is available to answer your questions in real time. The sessions are recorded so you can review them as necessary. There are no travel costs, we ship you the learner material, verify that your computer meets the requirements for the learning environment, and you sit back, relax in the comfort of your own home or office, and learn.

Call for details. 949-477-2000 option 3

Course Objectives

Successful graduates will be able to secure the network environment using existing Cisco IOS and CatOS security features, configure the three primary components of the Cisco IOS Firewall Feature set (context-based access control (CBAC), intrusion prevention, and authentication proxy), implement secure tunnels(VPNs) using IPSec technology, and implement basic access switch security. In addition, they will complete a security audit using functions embedded in Cisco Security Device Manager.

Course Flow

This is the standard course schedule for a 5 day, instructor-led class. Adjustments may be made based on the skills, knowledge, and preferences of the learners in attendance.

Day 1: Module 1—Introduction to Network Security Policies
DAY 1 8:30–8:50 (0830–0850) Course Introduction
9:00–10:00 (0900–1000) Lesson 1-1: Understanding the Requirement for a Network Security Policy
10:10–11:00 (1010–1100) Lesson 1-2: Introducing Network Attack Mitigation Techniques
11:00–11:10 (1100–1110) Break
11:10–12:00 (1110–1200)
Lesson 1-2: Introducing Network Attack Mitigation Techniques
12:00–1:00 (1200–1300) Lunch
1:00–1:50 (1300–1350) Lab 1-1: Discovering Network Vulnerabilities and Threats
2:00–2:15 (1400–1415) Lesson 1-3: Thinking Like a Hacker
2:15–2:45 (1415–1445) Lesson 1-4: Designing a Secure Network Life-Cycle Model
2:45–3:00 (1445–1500) Break
3:00–3:30 (1500–1530) Case Study 1-1: Developing a Comprehensive Network Security Policy
3:40–4:30 (1540–1630) Lesson 1-5: Developing a Comprehensive Security Policy
4:30–4:45 (1630–1645) Lesson 1-6: Building Cisco Self Defending Networks and Module 1 Summary and Self-Check
4:45 (1645) Day ends
Day 2: Module 2— Securing the Perimeter
DAY 2 8:00–8:30 (0800–0830) Review of Day 1
8:30–8:55 (0830–0855) Lesson 2-1: Applying a Security Policy for Cisco Routers
9:00–9:45 (0900–0945) Lesson 2-2: Securing Administrative Access to Cisco Routers
9:45–9:55 (0945–0955) Break
9:55–10:20 (0955–1020) Lesson 2-2: Securing Administrative Access to Cisco Routers
10:20–11:25 (1020–1125) Lab 2-1 Securing Administrative Access to Cisco Routers
11:35–12:00 (1135–1200) Lesson 2-3: Introducing Cisco SDM
12:00–1:00 (1200–1300) Lunch
1:00–1:45 (1300–1345) Lesson 2-4: Configuring AAA Functions on the Cisco IOS Router
1:55–2:25 (1355–1425) Lab 2-2: Configuring AAA for Cisco Routers
2:35–3:15 (1435–1515) Lesson 2-5: Disabling Unused Cisco Router Network Services and Interfaces
3:30–4:20 (1530–1620) Lab 2-3: Using Cisco SDM Security Audit
4:20 (1620) Day ends
Day 3: Module 2—Securing the Perimeter; Module 3—Securing LAN and WLAN Devices; Module 4—Cisco IOS Firewall Configuration
DAY 3 8:00–8:30 (0800–0830) Review of Day 2
8:30–9:00 (0830–0900) Lesson 2-6: Implementing Secure Management and Reporting
9:00–9:10 (0900–0910) Break
9:10–9:35 (0910–0935) Lesson 2-6: Implementing Secure Management and Reporting
9:10–9:35 (0910–0935) Lesson 2-7: Defending the Network Perimeter with Cisco Products
9:35–9:50 (0935–0950) Module 2 Summary and Self-Check
10:00–10:15 (1000–1015) Lesson 3-1: Applying Security Policies to Network Switches
10:15–10:50 (1015–1050) Lesson 3-2: Mitigating Layer 2 Attacks
11:00–11:20 (1100–1120) Lesson 3-3: Using Cisco Catalyst Switch Security Features
11:20–12:00 (1120–1200) Lesson 3-4: Securing WLANs
12:00–1:00 (1200–1300) Lunch
1:00–1:20 (1300–1320) Case Study 3-1: Using Cisco Catalyst Switch Security Features
1:20–1:50 (1320–1350) Lesson 4-1: Introducing Firewall Technologies
1:50–2:00 (1350–1400) Break
2:00–2:25 (1400–1425) Lesson 4-1: Introducing Firewall Technologies
2:25–2:45 (1425–1445) Lesson 4-2: Building Static Packet Filters with Cisco ACLs
2:45–3:00 (1445–1500) Break
3:00–3:40 (1500–1540) Lesson 4-2: Building Static Packet Filters with Cisco ACLs
3:50–4:15 (1550–1615) Lesson 4-3: Configuring a Cisco IOS Firewall with the Cisco SDM Firewall Wizard
4:15–5:00 (1615–1700) Lab 4-1: Configuring a Cisco IOS Firewall
5:00 (1700) Day ends
Day 4: Module 4—Cisco IOS Firewall Configuration; Module 5—Securing Networks with Cisco IOS IPS; Module 6—Building IPsec VPNs
DAY 4 8:00–8:30 (0800–0830) Review of Day 3
8:30–8:55 (0830–0855) Lesson 4-4: Defending Your Network with the Cisco Firewall Product Family
9:15–10:00 (0915–1000) Lesson 5-1: Introducing Cisco IOS IPS
10:00–10:15 (1000–1015) Break
10:15–11:00 (1015–1100) Lesson 5-1: Introducing IDS and IPS
11:15–11:45 (1115–1145) Lesson 5-2: Configuring Cisco IOS IPS
11:45–12:00 (1145–1200) Lab 5-1: Configuring Cisco IOS IPS
12:00–1:00 (1200–1300) Lunch
1:00–1:50 (1300–1350) Lab 5-1: Configuring Cisco IOS IPS
2:00–2:25 (1400–1425) Lesson 5-3: Defending Your Network with the Cisco IPS Product Family
2:35–3:20 (1435–1520) Lesson 6-1: Introducing IPSec VPNs
3:30–3:50 (1530–1550) Lesson 6-2: Building a Site-to-Site IPSec VPN Operation
4:00 (1600) Day ends
Day 5: Module 6—Building IPsec VPNs
DAY 5 8:00–8:30 (0800–0830) Review of Day 4
8:40–9:10 (0840–0910) Lesson 6-3: Configuring IPSec Site-to-Site VPNs Using Cisco SDM
9:10–10:15 (0910–1015) Lab 6-1: Configuring Site-to-Site IPSec VPNs
10:30–11:00 (1030–1100) Lesson 6-4: Building Remote-Access VPNs
11:10–11:30 (1110–1130) Lab 6-2: Configuring a Remote-Access VPN Client
11:30–1:00 (1130–1300) Lunch
1:00–1:15 (1300–1315) Lab 6-2: Configuring a Remote-Access VPN Client
1:15–2:00 (1315–1400) Lesson 6-5: Defending Your Network with the Cisco VPN Product Family
2:15–2:30 (1415–1430) Wrap-up

Lab Topologies

Click Image to see full size

 

Hands-on Lab Exercises

  • Lab 1-1: Discovering Network Vulnerabilities and Threats
  • Lab 2-1: Securing Administrative Access to Cisco Routers
  • Lab 2-2: Configuring AAA for Cisco Routers
  • Lab 2-3: Using Cisco SDM Security Audit
  • Lab 4-1: Configuring a Cisco IOS Firewall
  • Lab 5-1: Configuring Cisco IOS IPS
  • Lab 6-1: Configuring Site-to-Site IPSec VPNs
  • Lab 6-2: Configuring a Remote-Access VPN Client
  • Configuration Files Summary
  • Lab Activity Solutions

Technical Case Studies

  • Case Study 1-1: Developing a Comprehensive Network Security Policy
  • Case Study 3-1: Using Cisco Catalyst Switch Security Features

Call for details. 949-477-2000 option 3

Facebook Link AscoltaBlogs.com link Twitter Link Linkedin