|
Course Description
Course Objectives
Intended Audience
Prerequisites
Course Outline & Labs

|
|
Securing Networks with ASA Fundamentals (SNAF) - 5-day entry level course
Course Description
In this Authorized Cisco course, you will gain the knowledge and skills needed to configure, maintain, and operate Cisco ASA 5500 Series Adaptive Security.
We have enhanced our delivery of SNAF by adding depth to the existing Cisco-developed hands-on labs. In a topology designed to simulate a typical production network, our advanced hands-on labs guide you through exercises such as executing general maintenance commands, configuring ACLs, and configuring VPN on the Security Appliance.
Our labs utilize ASA 5520 security appliances, though the content in this course and our labs is applicable across the ASA and PIX families of security appliances since the command syntax is generally the same. This course has been updated to cover the features and syntax of Cisco Security Appliance Software v8.0.
Course Objectives
- Functions of the three types of firewalls used to secure today's computer networks
- Technology and features of Cisco security appliances
- How Cisco Adaptive Security Appliances (ASAs) and Cisco PIX Security Appliances protect network devices from attacks and why each is an appropriate choice
- Bootstrap the security appliance, prepare the security appliance for configuration via the Cisco Adaptive Security Device Manager (ASDM), and launch and navigate ASDM
- Perform essential security appliance configuration using ASDM and the CLI
- Configure dynamic and static address translations using ASDM
- Configure switching and routing using ASDM
- Use ASDM to configure ACLs, filter malicious active codes, and filter URLs that meet the requirements of the security policy
- Use the packet tracer for troubleshooting
- Use ASDM to configure object groups that meet the requirements of the security policy
- Use ASDM to configure AAA to meet the requirements of the security policy
- Configure a modular policy that supports the security policy using ASDM
- Use ASDM to configure protocol inspection to meet security policy requirements
- Configure threat detection to meet security policy requirements using ASDM and the CLI
- Using ASDM, configure the security appliance to support a site-to-site VPN that meets policy requirements
- Using ASDM, configure the security appliance to provide secure connectivity using remote access VPNs
- Configure the security appliance to run in transparent firewall mode
- Enable, configure, and manage multiple contexts to meet security policy requirements
- Select and configure the type of failover that best suits the network topology
- Monitor and manage an installed security appliance
Intended Audience
- Cisco customers who implement and maintain ASA and PIX Security Appliances
- Cisco channel partners who sell, implement, and maintain ASA and PIX Security Appliances
- Cisco systems engineers who support the sale of ASA and PIX Security Appliances

Prerequisites
Course Outline
- Introducing Cisco Security Appliance Technology and Features
- Cisco Adaptive Security Appliance and PIX Security Appliance Families
- Getting Started with Cisco Security Appliances
- Essential Security Appliance Configuration
- Configuring Translations and Connection Limits
- Using ACLs and Content Filtering
- Configuring Object Grouping
- Switching and Routing on Security Appliances
- Configuring AAA for Cut-Through Proxy
- Configuring the Cisco Modular Policy Framework
- Configuring Advanced Protocol Handling
- Configuring Threat Detection
- Configuring Site-to-Site VPNs Using Pre-Shared Keys
- Configuring Security Appliance Remote Access VPNs
- Configuring Cisco Security Appliances for SSL VPN
- Configuring Transparent Firewall Mode
- Configuring Security Contexts
- Configuring Failover
- Managing Security Appliances
Course Labs
- Lab 1: Getting Started with ASDM
- Lab 2: Essential Security Appliance Configuration
- Lab 3: Translations and Connections
- Lab 4: Configuring ACLs and Using Object Groups
- Lab 5: Switching and Routing
- Lab 6: Cut-Through Proxy
- Lab 7: Modular Policy Framework, Advanced Protocol Handling
- Lab 8: Threat Detection
- Lab 9: Site-to-Site VPN
- Lab 10: Remote Access VPN
- Lab 11: SSL Clientless VPN
- Lab 12: Transparent Mode Firewall and Security Contexts
- Lab 13: Active/Standby Failover
- Lab 14: Active/Active Failover
- Lab 15: Managing the Security Applianc

|