Cisco Firepower & ASA firewall

  • Cisco Firepower Threat Defense Overview
  • Firepower NGFW Device Configuration
  • Firepower NGFW Traffic Control
  • Firepower NGFW Address Translation
  • Firepower Discovery
  • Implementing Access Control Policies
  • Security Intelligence
  • File Control and Advanced Malware Protection
  • Next-Generation Intrusion Prevention Systems
  • Site-to-Site VPN
  • Remote-Access VPN
  • SSL Decryption
  • Detailed Analysis Techniques
  • System Administration
  • Firepower Troubleshooting
  • Labs During the Training

  • Initializing Cisco Firepower Threat Defense (FTD) on VMware Workstation
  • Manage FTD through Firepower Device Manager (FDM)
  • Initializing Cisco Firepower Management Centre (FMC) on VMware Workstation
  • Register FTD into FMC
  • Register FMC Smart License via Cisco Smart Software Manager
  • Basics with FDM (Interface configuration, security zones)
  • Basics with FMC (Interface configuration, security zones)
  • Backup and Restore
  • IPv4 Static and default route
  • IPv4 RIP, OSPF, EIGRP (Flex Config)
  • FTD IPv6 and Objects
  • FTD Pre-filter rules
  • FTD Access-control Policies (ACP rules)
  • FTD Platform settings
  • IPv4 NAT - Auto NAT & Manual NAT
  • FTD SLA (Service Level Agreement)
  • FTD Site-to-Site VPN: IKEv1, IKEv2, with NAT, with Cisco Router/ASA
  • Remote access VPN (Cisco AnyConnect) with Cisco ISE
  • FTD High Availability
  • Next Generation Intrusion Prevention System (NGIPS)
  • Discovering Network Applications & Controlling Application Traffic
  • FTD Malware Policy
  • FTD URL Filtering

ASA Basics and Deployment
  • Introduction to ASA products, licensing, and software
  • Interface setup and security zones
  • ASA ASDM configuration
Network Address Translation (NAT)
  • Static NAT, Dynamic NAT, and PAT
  • Manual vs. Auto NAT
  • NAT Exemption and NAT Port Forwarding
Access Control Lists (ACLs)
  • Basic ACL introduction and configuration
  • Object-group ACLs and time-based ACLs
IP Routing
  • Static and default routing
  • Routing protocols like RIP, EIGRP, and OSPF
High Availability
  • Active/Standby and Active/Active failover
  • Stateful failover and monitoring
VPNs
  • Site-to-Site IPsec VPN (IKEv1 and IKEv2)
  • Remote Access VPN (IPsec and SSL VPNs)
  • Group policies, split tunneling, and user authentication
Advanced Topics
  • Modular Policy Framework (MPF): Inspection policies, advanced network protections, application filtering
  • Transparency: Transparent firewall configuration
  • System Management & Monitoring: System maintenance, logging (Syslog), event monitoring, packet tracing, and troubleshooting
  • IPv6 Support: Configuration for IPv6 networks