What you’ll learn
The training course “Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention” teaches participants how to set up and customize the Cisco Secure Firewall Threat Defense system for use as either a firewall in a data center network or at the Internet edge, with support for Virtual Private Networks (VPNs). Topics covered include configuring policies based on identity, Secure Sockets Layer (SSL) decryption, setting up remote-access VPNs, and site-to-site VPNs. Participants will also delve into advanced configuration of the Intrusion Prevention System (IPS), event management, integration with other systems, and troubleshooting techniques. Additionally, the course covers automation of configuration and operations using programmability and Application Programming Interfaces (APIs), along with migrating configurations from Cisco Secure Firewall Adaptive Security Appliances (ASA).
Completion of this training course prepares individuals for the 300-710 Securing Networks with Cisco Firepower (SNCF) exam. Successful completion of the exam results in earning the Cisco Certified Specialist – Network Security Firepower certification and fulfills the concentration exam requirement for the Cisco Certified Networking Professional (CCNP) Security certification. Participants also receive 40 Continuing Education (CE) credits toward recertification.
Training overview
This training will help you:
- Attain advanced knowledge of Cisco Secure Firewall Threat Defense technology
- Gain competency and skills required to implement and manage a Cisco Secure Firewall Threat Defense system regardless of platform
- Learn detailed information on policy management, traffic flow through the system, and the system architecture
- Deploy and manage many of the advanced features available in the Cisco Secure Firewall Threat Defense system
- Gain knowledge for protocols, solutions, and designs to acquire professional-level and expert-level data center roles
- Earn 40 CE credits toward recertification
Objectives
- Describe Cisco Secure Firewall Threat Defense
- Describe advanced deployment options on Cisco Secure Firewall Threat Defense
- Describe advanced device settings for Cisco Secure Firewall Threat Defense device
- Configure dynamic routing on Cisco Secure Firewall Threat Defense
- Configure advanced network address translation on Cisco Secure Firewall Threat Defense
- Configure SSL decryption policy on Cisco Secure Firewall Threat Defense
- Deploy Remote Access VPN on Cisco Secure Firewall Threat Defense
- Deploy identity-based policies on Cisco Secure Firewall Threat Defense
- Deploy site-to-site IPsec-based VPN on Cisco Secure Firewall Threat Defense
- Deploy advanced access control settings on Cisco Secure Firewall Threat Defense
- Describe advanced event management on Cisco Secure Firewall Threat Defense
- Describe available integrations with Cisco Secure Firewall Threat Defense
- Troubleshoot traffic flow using advanced options on Cisco Secure Firewall Threat Defense
- Describe benefits of automating configuration and operations of Cisco Secure Firewall Threat Defense
- Describe configuration migration to Cisco Secure Firewall Threat Defense
Course Outline
- Introducing Cisco Secure Firewall Threat Defense
- Describing Advanced Deployment Options on Cisco Secure Firewall Threat Defense
- Configuring Advanced Device Settings on Cisco Secure Firewall Threat Defense
- Configuring Dynamic Routing on Cisco Secure Firewall Threat Defense
- Configuring Advanced NAT on Cisco Secure Firewall Threat Defense
- Configuring SSL Policy on Cisco Secure Firewall Threat Defense
- Deploying Remote Access VPN on Cisco Secure Firewall Threat Defense
- Deploying Identity-Based Policies on Cisco Secure Firewall Threat Defense
- Deploying Site-to-Site VPN on Cisco Secure Firewall Threat Defense
- Configuring Snort Rules and Network Analysis Policies
- Describing Advanced Event Management Cisco Secure Firewall Threat Defense
- Describing Integrations on Cisco Secure Firewall Threat Defense
- Troubleshooting Advanced Traffic Flow on Cisco Secure Firewall Threat Defense
- Automating Cisco Secure Firewall Threat Defense
- Migrating to Cisco Secure Firewall Threat Defense
Lab Outline
- Deploy Advanced Connection Settings
- Configure Dynamic Routing
- Configure SSL Policy
- Configure Remote Access VPN
- Configure Site-to-Site VPN
- Customize IPS and NAP Policies
- Configure Cisco Secure Firewall Threat Defense Integrations
- Troubleshoot Cisco Secure Firewall Threat Defense
- Migrate Configuration from Cisco Secure Firewall ASA