CCNP Security FIREWALL + VPN

 

_

Do you want to be earning £50,000* per year?

 

Remember if you are ELC eligible you can get this course funded.

CCNP Security FIREWALL + VPN FAQs CLICK HERE

We use the latest ASA 5510 with Security Plus Licences on this course! One Lab per student, incredible, no one in the country offers this level of kit across 5 full days of real network Security training.

Only 8 Students per class, book now to secure your place.

Having just the CCNA under your belt is now seen as not enough to move forward in the networking world, employers are looking for more.

There are Security threats to your network and infrastructure from Worm to Trojan Horses, DoS attacks, Packet Sniffing, the list of attacks is long just check out Metasploit one tool that can bring havoc to your network.

_

Most big companies that value their network security secure their network perimeter using the Cisco Adaptive Security Appliances (ASA 5500 series).

_

These Cisco ASA devices can and do cost many many thousand is of pounds, the beast of them all the 5580 can come in at nearly £60,000!!

_

These companies are begging for QUALIFIED CISCO ASA PROFESSIONALS. They are paying big money for your skills, hey, they ain 't going to pay peanuts to someone who has ASA skills.

_

Security Skilled Contractors are earning nearly £300-£500 per day installing and configuring ASA security devices. (Day rates will vary across the country)

_

This course is a real investment in your career in only one week of contract work will bring a return on investment, click on this link to go to job serves site to view demand in the market for ASA trained engineers.

_

We have been working long and hard to develop this ASA course, we've made a very significant investment in acquiring the right lab setup so that you are able to experience first hand as much of setup and configuration.

_

Our courses follow the official Cisco Exam syllabus using our real world experience setting up and maintaining ASA secured networks

 

Call 0800 88 24 7 26 to book your place 8am till 9pm 7 days a week or you can Click here to book your course on-line

London Course Dates

 

 

Why do the CCNP Security FIREWALL + VPN certifications

Everyone needs a lock on their door!

Pre-Requisites

Students that are wanting to attend the CCNP Security FIREWALL + VPN must have attended the following courses or have the pre-requites level of knowledge;

  • CCNA - Cisco Certified Network Associate
  • IINS - Implementing Cisco IOS Network Security

 

At the end of this course delegates will be able to carry out the following;

  • How Cisco Adaptive Security Appliances (ASA's) and Cisco PIX Security Appliances protect network devices from attacks and why each is an appropriate choice
  • _
  • Bootstrap the security appliance, prepare the security appliance for configuration via the Cisco Adaptive Security Device Manager (ASDM), and launch and navigate ASDM
  • _
  • Perform essential security appliance configuration using ASDM and the CLI
  • _
  • Configure dynamic and static address translations using ASDM
  • _
  • Configure switching and routing using ASDM
  • _
  • Use ASDM to configure ACLs, filter malicious active codes, and filter URL's that meet the requirements of the security policy
  • _
  • Use the packet tracer for troubleshooting
  • _
  • Use ASDM to configure object groups that meet the requirements of the security policy
  • _
  • Use ASDM to configure AAA to meet the requirements of the security policy
  • Configure a modular policy that supports the security policy using ASDM
  • _
  • Use ASDM to configure protocol inspection to meet security policy requirements
  • _
  • Configure threat detection to meet security policy requirements using ASDM and the CLI
  • _
  • Using ASDM, configure the security appliance to support a site-to-site VPN that meets policy requirements
  • _
  • Using ASDM, configure the security appliance to provide secure connectivity using remote access VPNs
  • _
  • Configure the security appliance to run in transparent firewall mode
  • _
  • Enable, configure, and manage multiple contexts to meet security policy requirements
  • _
  • Select and configure the type of failover that best suits the network topology
  • _
  • Monitor and manage an installed security appliance

 

5 days intensive hands-on CCNP Security FIREWALL + VPN training 9:00 am until 5:00 pm (although the finish time is set for 5:00pm, the classes do tend to continue until the topics have been covered the labs and break/fixing have been completed, this course is not rushed, we finish when we finish!)

Exclusive access to telephone and E-mail support before, during and after your course for up to a year.

Re-training for free, if you feel you need more time and instruction, you can come back onto the course for free (Subject to availability and conditions)

Each Cisco Sec lab set is made up of a Cisco ASA security device, two routers & two laptops We use the best kit for this course, no compromises here

Learn real world scenarios in the labs, instructors will bring their real world experiences into the classroom so you learn, the "Why", "When", "What"

You learn from the most highly qualified network engineers in the industry and have many years experience in the field of teaching, designing, installing and configuring voice networks.

 

 

 

 

 

 

 

 

 

 

 

_

Special offer: Get the 5 day CCNP Security FIREWALL + VPN instructor led course for just £695+vat! this is a time limited offer subject to availability

Our Most Popular Combo package: You want to earn the big bucks then get the Classroom based Instructor led 6 day CCNA and 5 day CCNP Security FIREWALL + VPN combo package for just £795+vat Save £395!!

With the skills you learn on this course you'll be on the way to earning more than £50,000 per year. You can contract your skills out at a day rate of between £300 to £500 per day, this is a great return on your investment.

Your investment in this training could pay itself off in just two days contracting, we should know because we charge our clients £500 per day for ASA work!

 

 

What's on the CCNP Security FIREWALL + VPN instructor lead course

 

Below are the contents that we include in our CCNP Security FIREWALL + VPN course.

Look !! After the Course you can practice your newly acquired skills with your own ASA 5510 emulator that allows you access to the CLI and the ASDM, no need to buy thousands of pounds of ASA kit to keep your skills current, all from your own laptop

On the Course you will work with real Cisco ASA Devices. No Sharing, each student works with their own dedicated lab

The CCNP Security FIREWALL + VPN exam is associated with the CCNP Security certification. This exam tests a candidate's knowledge of securing Cisco ASA devices and their associated networks. It leads to validated skills for installation, troubleshooting and monitoring of network devices to maintain integrity, confidentiality and availability of data and devices and develops competency in the technologies that Cisco uses in its security infrastructure.

 

Course Topics

The following topics are general guidelines for the content to be included on the CCNP Security FIREWALL + VPN course.

(Cisco do say that in order to better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.)

Introducing Cisco Security Appliance Technology and Features

  • Functions of the three types of firewalls that are used to secure modern computer networks
  • Technology and features of Cisco security appliances

Cisco Adaptive Security Appliance and PIX Security Appliance Families

  • Cisco ASA security appliance models
  • Cisco ASA security appliance licensing options

Getting Started with Cisco Security Appliances

  • Security appliance file management system
  • Security appliance security levels
  • ASDM requirements and capabilities
  • Use the CLI to configure and verify basic network settings, and prepare the security appliance for configuration via ASDM
  • Verify security appliance configuration and licensing via ASDM

Essential Security Appliance Configuration

  • Configure a security appliance for basic network connectivity
  • Verify the initial configuration
  • Set the clock and synchronize the time on security appliances
  • Configure the security appliance to send syslog messages to a syslog server

Configuring Translations and Connection Limits

  • Function of TCP and UDP protocols within the security appliance
  • Function of static and dynamic translations
  • Configure dynamic address translation
  • Configure static address translation
  • Set connection limits

Using ACLs and Content Filtering

  • Configure the basic function of ACLs
  • Configure additional functions of ACLs
  • Configure active code filtering (ActiveX and Java applets)
  • Configure the security appliance for URL filtering
  • Use the packet tracer for troubleshooting

Configuring Object Grouping

  • Object grouping feature of the security appliance and its advantages
  • Configure object groups and use them in ACLs

Switching and Routing on Security Appliances

  • Configure logical interfaces and VLANs
  • Configure static routes and static route tracking
  • Dynamic routing capabilities of Cisco security appliances

Configuring AAA for Cut-Through Proxy

  • Define and compare AAA
  • Install and configure Cisco Secure ACS
  • Configure the local user database
  • Define and configure cut-through proxy authentication
  • Define and configure user authorization using downloadable ACLs
  • Define and configure accounting

Configuring the Cisco Modular Policy Framework

  • Cisco Modular Policy Framework feature for security appliances
  • Functionality of class maps
  • Functionality of policy maps
  • Functionality of service policies
  • Use ASDM to configure a service policy rule

Configuring Advanced Protocol Handling

  • Need for advanced protocol handling
  • How the security appliance implements inspection of common network applications
  • Issues with multimedia applications and how the security appliance supports multimedia call control and audio sessions

Configuring Threat Detection

  • Threat detection and statistics
  • Configure basic threat detection and scanning threat detection
  • Configure and view threat detection statistics

Configuring Site-to-Site VPNs Using Pre-Shared Keys

  • How security appliances enable a secure VPN
  • Perform the tasks necessary to configure security appliance IPsec support
  • Commands to configure security appliance IPsec support
  • Configure a VPN between security appliances

Configuring Security Appliance Remote Access VPNs

  • Cisco Easy VPN
  • Cisco VPN Client
  • Configure an IPSec Remote Access VPN
  • Configure Users and Groups

Configuring Cisco Security Appliances for SSL VPN

  • SSL VPN and its purpose
  • Use the SSL VPN Wizard to configure a basic clientless SSL VPN connection
  • Configure SSL VPN policies
  • Verify SSL VPN operations
  • Customize the clientless SSL VPN portals

Configuring Transparent Firewall Mode

  • Purpose of transparent firewall mode
  • How data traverses a security appliance in transparent mode
  • Enable transparent firewall mode
  • Monitor and maintain transparent firewall mode

Configuring Security Contexts

  • Purpose of security contexts
  • Enable and disable multiple context mode
  • Configure a security context
  • Manage a security context

Configuring Failover

  • Difference between hardware and stateful failover
  • Difference between active/standby and active/active failover
  • Security appliance failover hardware requirements
  • Configure redundant interfaces
  • How active/standby failover works
  • Security appliance roles of primary, secondary, active, and standby
  • How active/active failover works
  • Configure active/standby cable-based and LAN-based failover
  • Configure active/active failover
  • Use remote command execution

Managing Security Appliances

  • Configure Telnet access to the security appliance Configure SSH access to the security appliance
  • Configure command authorization
  • Recover security appliance passwords using general password recovery procedures
  • Use TFTP to install and upgrade the software image on the security appliance

 

London Course Dates

*£50,000 based on contracting at £300 per day for 167 days per year (33 weeks). We have used the most conservative of figures in these calculations.

 

 
  CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, Cisco, Cisco IOS, Cisco Systems, the Cisco Systems logo, and Networking Academy are registered trademarks or trademarks of Cisco Systems, Inc. and/or its affiliates in the U.S. and certain other countries. All other trademarks mentioned in this web site are the property of their respective owners.

Design by Garry Salter
Copyright All Rights Reserved © 2010 Commsupport Networks Ltd