SISAS – Implementing Cisco Secure Access Solutions

loading..
(Course eligible for SATVs)

loading..

This is a Professional-level self-study technical course in the curriculum for the CCNP Security certification. It is designed to prepare security engineers with the knowledge and hands-on experience so that they can deploy Cisco’s Identity Services Engine and 802.1X secure network access. The goal of the course is to provide students with foundational knowledge and the capabilities to implement and managed network access security by utilizing Cisco ISE appliance product solution. The student will gain hands-on experience with configuring various advance Cisco security solutions for mitigating outside threats and securing devices connecting to the network. At the end of the course, students will be able to reduce the risk to their IT infrastructures and applications using Cisco’s ISE appliance feature and provide operational support identity and network access control.

  • Identity Services
  • 802.1X and EAP
  • Identity System Quick Start

  • Cisco ISE Overview
  • Cisco ISE with PKI
  • Cisco ISE Authentication
  • Configuring Cisco ISE for External Authentication

Certificate-based User Authentication

  • Authorisation
  • Security Group Access (SGA) and MACsec Implementation
    • Describe the Cisco Email Security Solutions
    • Guest Access Services

    • Troubleshooting Network Access Control

  • Lab 1-1: Bootstrap Identity System
  • Lab 2-1: Enroll Cisco ISE in PKI
  • Lab 2-2: Implement MAB and Internal Authentication
  • Lab 2-3: Implement External Authentication
  • Lab 3-1: Implement EAP-TLS
  • Lab 3-2: Implement Authorisation
  • Lab 4-1: Implement Central WebAuth and Guest Services
  • Lab 5-1: Implement Posture Service
  • Lab 5-2: Implement the Profile Service
  • Lab 6-1: Troubleshooting Network Access Control
  • This course is aimed at engineers looking to deploy or support a Cisco’s Identity Services Engine solution and individuals looking to achieve the Cisco Certified Network Professional Certification for Security.

    Attendees should meet the following prerequisites:

    • Cisco Certified Network Associate Certification ICND1 and ICND2 or CCNABC
    • Cisco Certified Network AssociateSecurity Certification ICND1 and IINS
    • Knowledge of Microsoft Windows Operating System

     

    After completing this course, students will be able to:

    • Understand Cisco Identity Services Engine architecture and access control capabilities.
    • Understand 802.1X architecture, implementation and operation.
    • Understand commonly implemented Extensible Authentication Protocols (EAP).
    • Implement Public-Key Infrastructure with ISE.
    • Understand the implement Internal and External authentication databases.
    • Implement MAC Authentication Bypass.
    • Implement identity based authorization policies.
    • Understand Cisco TrustSec features.
    • Implement Web Authentication and Guest Access.
    • Implement ISE Posture service.
    • Implement ISE Profiling.
    • Understand Bring Your Own Device (BYOD) with ISE.
    • Troubleshoot ISE.
    This course is available On-Demand. With On-Demand you get access to:
    • 365 days of unlimited access to interactive, Cisco authorized training
    • Hands-on practice labs delivered through Discovery Labs
    • Course content that is equivalent to classroom training
    • Graded assessments at the end of every section to provide students with vital feedback
    blah is false
    top