Managing Enterprise Security with Cisco Security Manager v4.0 (SSECMGT)

Managing Enterprise Security with Cisco Security Manager v4.0 (SSECMGT)

Overview

Duration: 5 days

The Managing Enterprise Security with Cisco Security Manager (SSECMGT) v4.0 course is a five-day instructor-led course that is aimed at providing network security engineers with the knowledge and skills that are needed to configure and deploy Cisco Security Manager. The course also provides an overview of network security technologies, and includes case studies that are useful for deployment scenarios.

Objectives

Upon completing this course, the learner will be able to meet these overall objectives:

  • Present an overview of the Cisco Security Manager product, describe the main product features, and introduce the basic deployment tasks
  • Manage configuration of Cisco ASA adaptive security appliances and Cisco FWSM firewall devices, and explain firewall event management and device configuration correlation
  • Describe the most commonly used VPN topologies and their deployment
  • Examine the configuration of intrusion prevention mechanisms on the Cisco IOS platform, modules, and standalone appliances, as well as explain the Cisco IPS event and configuration correlation
  • Explain how Cisco Security Manager works with Cisco IOS devices, including the new Cisco ISR G2 routers
  • Describe the FlexConfig functionality of Cisco Security Manager, the workflow mode of operation, and administrative tasks and integration with Cisco Secure ACS

Course Outline

Module 1: Cisco Security Manager Overview

  • Lesson 1-1: Introducing Cisco Security Manager
  • Lesson 1-2: Managing Devices
  • Lesson 1-3: Managing Policies
  • Lesson 1-4: Managing Objects
  • Lesson 1-5: Using Map View

Module 2: Firewall Policy Management

  • Lesson 2-1: Managing Firewall Services
  • Lesson 2-2: Managing Firewall Devices
  • Lesson 2-3: Event Monitoring and Rule Correlation for Firewalls

Module 3: VPN Policy Configuration

  • Lesson 3-1: Managing VPNs
  • Lesson 3-2: Managing Remote Access IPsec VPNs
  • Lesson 3-3: Configuring Client-Based SSL VPNs
  • Lesson 3-4: Configuring Clientless SSL VPNs
  • Lesson 3-5: Configuring Advanced VPN Configurations
  • Lesson 3-6: Deploying Advanced VPN Technologies

Module 4: Cisco IPS Solutions Management

  • Lesson 4-1: Managing Cisco IPS Services
  • Lesson 4-2: Managing Cisco IPS Devices
  • Lesson 4-3: Managing Cisco IPS Events

Module 5: Cisco IOS Device Provisioning

  • Lesson 5-1: Managing Routers
  • Lesson 5-2: Using the Cisco Catalyst 6500 Series Switch and Cisco 7600 Series Router Device Manager

Module 6: Management, Deployment, and Administration of FlexConfigs in Cisco Security Manager

  • Lesson 6-1: Managing FlexConfigs
  • Lesson 6-2: Managing Activities and Workflow Deployments
  • Lesson 6-3: Implementing Integration Between Cisco Security Manager and Cisco Secure ACS
  • Lesson 6-4: Backing Up and Restoring Cisco Security Manager Databases
  • Lesson 6-5: Using Monitoring, Troubleshooting, and Diagnostic Tools

Lab Details:

  • Lab 1-1: Configuring Device Bootstrap and Testing Connectivity
  • Lab 1-2: Importing Devices
  • Lab 1-3: Defining Interface Roles and Usage
  • Lab 1-4: Creating Policy Objects
  • Lab 2-1: Managing Firewall Policy—Policy Sharing
  • Lab 2-2: Managing Firewall Policy—Policy Inheritance
  • Lab 2-3: Configuring NAT and Inspecting Configuration Commands Prior to Deployment
  • Lab 2-4: Configuring Event Monitoring and Configuration Correlation for Firewalls
  • Lab 3-1: Managing SSL VPN Deployment Using Cisco AnyConnect
  • Lab 3-2: Managing Clientless SSL VPN Deployment
  • Lab 3-3: Managing DMVPN Deployment
  • Lab 3-4: Managing GET VPN Deployment
  • Lab 4-1: Configuring the Cisco IOS IPS
  • Lab 4-2: Configuring the Cisco IPS Module
  • Lab 4-3: Configuring Event Monitoring and Configuration Correlation for IPSs
  • Lab 5-1: Configuring the Cisco IOS Software Router
  • Lab 5-2: Managing DHCP Devices with the CiscoWorks Auto Update Server
  • Lab 6-1: Configuring FlexConfigs
  • Lab 6-2: Configuring Cisco Secure ACS and Cisco Security Manager Integration

This course is part of the following Certifications:

Security

The knowledge and skills that a learner must have before attending this course are as follows:

  • Cisco CCNP® Security certification:

                - Securing Networks with Cisco Routers and Switches (SECURE)

                - Deploying Cisco ASA Firewall Features (FIREWALL)

                - Deploying Cisco ASA VPN Solutions (VPN)

                - Implementing Cisco Intrusion Prevention System (IPS)

  • Understanding of networking and routing (on the CCNP level, but no certification is required).
  • Understanding of different VPN technologies (such as DMVPN, GET VPN, and SSL VPN).
  • Working knowledge of the Microsoft Windows operating system.
Course ID:
SSECMGT


Show Schedule for: