Description

The Managing Enterprise Security with Cisco Security Manager (SSECMGT) v4.0 course is a five-day instructor-led course that is aimed at providing network security engineers with the knowledge and skills that are needed to configure and deploy Cisco Security Manager. The course also provides an overview of network security technologies, includes case studies that are useful for deployment scenarios, as well as lab activities.

Objectives

  • Present an overview of the Cisco Security Manager product, describe the main product features, and introduce the basic deployment tasks
  • Manage configuration of Cisco ASA adaptive security appliances and Cisco FWSM firewall devices, and explain firewall event management and device configuration correlation
  • Describe the most commonly used VPN topologies and their deployment
  • Examine the configuration of intrusion prevention mechanisms on the Cisco IOS platform, modules, and standalone appliances, as well as explain the Cisco IPS event and configuration correlation
  • Explain how Cisco Security Manager works with Cisco IOS devices, including the new Cisco ISR G2 routers
  • Describe the FlexConfig functionality of Cisco Security Manager, the workflow mode of operation, and administrative tasks and integration with Cisco Secure ACS

Outline


Cisco Security Manager Overview
  • Introducing Cisco Security Manager
  • Managing Devices
  • Managing Policies
  • Managing Objects
  • Using Map View

Firewall Policy Management
  • Managing Firewall Services
  • Managing Firewall Devices
  • Event Monitoring, Rule Correlation and Report Management for Firewalls

VPN Policy Configuration
  • Managing VPNs
  • Managing Remote Access IPsec VPNs
  • Configuring Client-Based SSL VPNs
  • Configuring Clientless SSL VPNs
  • Configuring Advanced VPN Configurations
  • Deploying Advanced VPN Technologies

Cisco IPS Solutions Management
  • Managing Cisco IPS Services
  • Managing Cisco IPS Devices
  • Managing Cisco IPS Events and Report Generation

Cisco IOS Device Provisioning
  • Managing Routers
  • Using the Cisco Catalyst 6500 Series Switch and Cisco 7600 Series Router Device Manager

Management, Deployment, and Administration of FlexConfigs in Cisco Security Manager
  • Managing FlexConfigs
  • Managing Activities and Workflow Deployments
  • Implementing Integration Between Cisco Security Manager and Cisco Secure ACS
  • Backing Up and Restoring Cisco Security Manager Databases
  • Using Monitoring, Troubleshooting, and Diagnostic Tools

Prerequisite Knowledge

  • Cisco CCNP Security certification:
    • Securing Networks with Cisco Routers and Switches (SECURE)
    • Deploying Cisco ASA Firewall Features (FIREWALL)
    • Deploying Cisco ASA VPN Solutions (VPN)
    • Implementing Cisco Intrusion Prevention System (IPS)
  • Understanding of networking and routing (on the CCNP level, but no certification is required)
  • Understanding of different VPN technologies (such as DMVPN, GET VPN, and SSL VPN)
  • Working knowledge of the Microsoft Windows operating system