Securing Networks with ASA Advanced (SNAA)

Course Code: SNAA
Duration: 5 Days

Bookmark and Share


Overview

Securing Networks with ASA Advanced (SNAA) v1.0 is a new course to replace the Cisco Secure Virtual Private Networks (CSVPN) & Securing Networks with PIX and ASA (SNPA) courses. In order to cover new features in ASA software version 8.0 and to fully cover the VPN features of the ASA, the content of SNPA was split into two courses, one that covers the fundamentals and on that covers more advanced topics. Content that has been moved to SNAA includes the following: configuring the ASA 5505 dual-ISP support, configuring ASA 5505 VLANs, configuring policy NAT, installing and configuring the Cisco Secure Desktop, configuring the security appliance to pass multicast traffic, configuring Layer 7 class maps and policy maps, and initialising the AIP-SSM and CSC-SSM. SNAA also utilises the graphical user interface instead of the command line interface for explanation and discussions of configuring the ASA. The SNAA 1.0 course takes a task-oriented approach to teaching the skills to deploy, configure, and administer the Cisco ASA using a fictional company's deployment of an ASA which is based on real world scenarios.

Prerequisites

Delegates will learn how to

Securing Networks with ASA Advanced (SNAA) v1.0 is a new course to replace the Cisco Secure Virtual Private Networks (CSVPN) & Securing Networks with PIX and ASA (SNPA) courses. In order to cover new features in ASA software version 8.0 and to fully cover the VPN features of the ASA, the content of SNPA was split into two courses, one that covers the fundamentals and on that covers more advanced topics. Content that has been moved to SNAA includes the following: configuring the ASA 5505 dual-ISP support, configuring ASA 5505 VLANs, configuring policy NAT, installing and configuring the Cisco Secure Desktop, configuring the security appliance to pass multicast traffic, configuring Layer 7 class maps and policy maps, and initialising the AIP-SSM and CSC-SSM. SNAA also utilises the graphical user interface instead of the command line interface for explanation and discussions of configuring the ASA. The SNAA 1.0 course takes a task-oriented approach to teaching the skills to deploy, configure, and administer the Cisco ASA using a fictional company's deployment of an ASA which is based on real world scenarios.

Outline

  • Advanced ASA NAT Configuration
    • ACLs, NAT 0, Policy NAT
  • Advanced Protocol Handling
    • Modular Policy Framework
    • Protocol Application Inspection
    • Multimedia Protocol Handling
  • Dynamic Routing and Switching
    • VLANs
    • Dynamic Routing
    • Multicast
  • VPNs with IPSec
    • IPSec and Digital Certificates
    • ASA CA Server
    • LAN-to-LAN with Digital Certificates
    • IPSec VPN Client
    • Remote Access with Digital Certificates
    • Advanced Remote Access Features
    • ASA 5505 as a Hardware Client
    • VPN QoS
  • Security Services Modules
    • ASA Services Modules
    • Content Security and Control
    • Advanced Inspection and Prevention

Leads to examination

642-515 Securing Networks with ASA Advanced (SNAA)

Leads to certification

This course is part of the following Certifications:

  • Cisco Certified Security Professional (CCSP)
  • CCIE Security (CCIES Security)
  • Cisco ASA Specialist

Follow on Courses

There are no follow on courses associated with this course