Authorized Cisco Curriculum
 

MCNS™ (Managing Cisco® Network Security)

Full Course Description

Price: 2495.00

In this Cisco Authorized course, you will acquire the skills necessary to design and implement Cisco Security technology on your network. Learn to install, configure, and manage Cisco network security products including the PIX Firewall™ and CiscoSecure™.

Twelve hands-on labs show you how to evaluate and configure Cisco security products live on the classroom network. Use the latest hardware and software offerings available from Cisco to provide security within your network. Use traffic generation technology to test your network security policy.

 


You Will Learn...

To Install and Configure the PIX Firewall Using Cisco’s PIX Manager
How to Configure the Network Access Server for AAA Security
Cisco Router IPSec Encryption Configuration
New Methods to Secure Your Network Infrastructure
To Secure Network Access with CiscoSecure
Access List Packet Filter Design Rules and Syntax
Cisco Secure Integrated Software
How to Monitor Your Routers and PIX Using Syslog Analyzer

 


Who Should Attend...

This course is for professionals responsible for designing or implementing network security in Cisco networks.

 


Prerequisites...

Knowledge equivalent to Cisco’s authorized Interconnecting Cisco Network Devices course is required. Cisco’s authorized Building Scalable Cisco Networks is highly recommended prior to attending this course. Our Network Security Administration course also provides an excellent knowledge base for this course.

 

Follow-On Courses

Customers who enrolled in this class also took:

  1. BCMSN™ (Building Cisco® Multilayer Switched Networks)

     

  2. CIT™ (Cisco® Internetwork Troubleshooting)

     

  3. CSIDS™ (Cisco® Secure Intrusion Detection System 2.0)

     

  4. Building Cisco® Remote Access Networks

     

Course Outline

1. Evaluating Network Security Threats

Why Do We Have Security Issues?
Security Threat Types

2. Configuring the Network Access Server for AAA Security

Authentication Methods
PAP and CHAP Authentication
AAA Configuration Process
AAA Security Servers

3. Configuring CiscoSecureR ACS and TACACS+

Product Overview: CiscoSecureR ACS for NT
Installing CiscoSecureR for NT
Administering and Troubleshooting
Product Overview: CiscoSecureR for Unix, Version 2.3
TACACS+ Overview
RADIUS Overview
Kerberos Overview
Double Authentication Overview

4. Configuring PIX Firewall Basics

PIX Firewall Components
Essential PIX Configuration

5. Configuring Access Through the PIX Firewall

Configuring Outbound Access Control
Configuring Access to Inside Hosts

6. Configuring Multiple Interfaces and AAA on the PIX Firewall

Configuring Access to Multiple Interfaces
Configuring User Authentication

7. Configuring Advanced PIX Firewall Features

Configuring Syslog and SNMP
Configuring PIX Firewall Failover
Configuring Java Applet Blocking and URL Filtering
Cisco Security Manager™
PIX Password Recovery and Software Upgrades

8. Configuring a Cisco Perimeter Router

Perimeter Security Problems and Solutions
Eavesdropping and Session Replay
Unauthorized Access, Data Manipulation, and Malicious Destruction
IP Addressing Shortages
Rerouting and Denial-of-Service Attacks
Firewall Features Needed in Routers
Lock-and-Key Security Overview

9. Configuring CiscoSecure Integrated Software (Formerly IOS Firewall Feature Set)

Intrusion Detection
Configuring Context-Based Access Control (CBAC) Overview
Configuring Global Timeouts, Thresholds, and Inspection Rules
Testing, Verifying, and Administering CBA

10. Understanding Cisco IOS IPSec Support

Technologies Used
Cisco IOS Cryptosystem Overview
IPSec Support in Cisco Systems Products
Tunneling Protocols
VPN Overview

11. Configuring Cisco IOS IPSec

Configuring ISAKMP for IPSec
Creating Access Lists and Crypto Maps
Testing and Verifying IPSec

12. Scaling Cisco IOS IPSec Networks

Configuring Certificate Authority Support
Generation of RSA Key Pairs

13. Configuring the CiscoSecure VPN Client

Installing the Client
Configuring the Client

Hands-On Lab 1: Pod Equipment Connectivity

Hands-On Lab 2: Installing and Configuring Cisco Secure ACS for Windows NT

Hands-On Lab 3: Additional Manual NAS Configuration

Hands-On Lab 4: Basic PIX Configuration

Hands-On Lab 5: Advanced PIX Firewall Features

Hands-On Lab 6: Configuring a Cisco Perimeter Router

Hands-On Lab 7: Configuring Cisco Secure Integrated Software (IOS Firewall)

Hands-On Lab 8: Verifying Perimeter Security

Hands-On Lab 9: Configuring Cisco Router IPSec Encryption

Hands-On Lab 10: Configuring PIX-to-PIX IPSec Encryption

Hands-On Lab 11: Configuring CiscoSecure VPN Client

Hands-On Lab 12: Pod Equipment Reinitialization

 

CCNA, CCNP, CCDA, CCDE, CCDP, CCIE, and PIX are trademarks and Cisco and the Cisco Systems logo are registered trademarks of Cisco Systems, Inc. or its affiliates in the U.S. and certain other countries. All other trademarks mentioned in this document are the property of their respective owners

BCMSN-Building Cisco Multilayer Switched Networks,BSCI-Building Scalable Cisco Internetworks, BCRAN Building Cisco Remote Access Networks,CATM-Cisco Campus ATM Solutions,CID-Cisco Internetwork Design,CIPT Cisco IP Telephony, CIT-Cisco Internetwork Troubleshooting,CSIDS-Cisco Secure Intrusion Detection System,CSPF-Cisco Secure PIX Firewall,CSVPN-Cisco Secure Virtual Private Networks,CVoice-Cisco Voice over IP,DCN-Designing Cisco Networks,ICND-Interconnecting Cisco Network Devices,ICT-Introduction to Cisco Technology,IMCR-Installation and Maintenance of Cisco Routers,MCNS-Managing Cisco Network Security,Understanding Networking Fundamentals,Advanced Border Gateway Protocol Configuration-ABGP,Advanced Cisco Campus Switching-ACCS, Border Gateway Protocol Configuration BGP,CCNA-Boot Camp, CCNP-Boot Camp,Cisco Security Specialist Boot Camp, CiscoWorks 2000 Boot Camp,BCMSN-Building Cisco Multilayer Switched Networks,BSCI-Building Scalable Cisco Internetworks, BCRAN Building Cisco Remote Access Networks,CATM-Cisco Campus ATM Solutions,CID-Cisco Internetwork Design,CIPT Cisco IP Telephony, CIT-Cisco Internetwork Troubleshooting,CSIDS-Cisco Secure Intrusion Detection System,CSPF-Cisco Secure PIX Firewall,CSVPN-Cisco Secure Virtual Private Networks,CVoice-Cisco Voice over IP,DCN-Designing Cisco Networks,ICND-Interconnecting Cisco Network Devices,ICT-Introduction to Cisco Technology,IMCR-Installation and Maintenance of Cisco Routers,MCNS-Managing Cisco Network Security,Understanding Networking Fundamentals,Advanced Border Gateway Protocol Configuration-ABGP,Advanced Cisco Campus Switching-ACCS, Border Gateway Protocol Configuration BGP,CCNA-Boot Camp, CCNP-Boot Camp,Cisco Security Specialist Boot Camp, CiscoWorks 2000 Boot Camp,BCMSN-Building Cisco Multilayer Switched Networks,BSCI-Building Scalable Cisco Internetworks, BCRAN Building Cisco Remote Access Networks,CATM-Cisco Campus ATM Solutions,CID-Cisco Internetwork Design,CIPT Cisco IP Telephony, CIT-Cisco Internetwork Troubleshooting,CSIDS-Cisco Secure Intrusion Detection System,CSPF-Cisco Secure PIX Firewall,CSVPN-Cisco Secure Virtual Private Networks,CVoice-Cisco Voice over IP,DCN-Designing Cisco Networks,ICND-Interconnecting Cisco Network Devices,ICT-Introduction to Cisco Technology,IMCR-Installation and Maintenance of Cisco Routers,MCNS-Managing Cisco Network Security,Understanding Networking Fundamentals,Advanced Border Gateway Protocol Configuration-ABGP,Advanced Cisco Campus Switching-ACCS, Border Gateway Protocol Configuration BGP,CCNA-Boot Camp, CCNP-Boot Camp,Cisco Security Specialist Boot Camp, CiscoWorks 2000 Boot Camp
BCMSN-Building Cisco Multilayer Switched Networks,BSCI-Building Scalable Cisco Internetworks, BCRAN Building Cisco Remote Access Networks,CATM-Cisco Campus ATM Solutions,CID-Cisco Internetwork Design,CIPT Cisco IP Telephony, CIT-Cisco Internetwork Troubleshooting,CSIDS-Cisco Secure Intrusion Detection System,CSPF-Cisco Secure PIX Firewall,CSVPN-Cisco Secure Virtual Private Networks,CVoice-Cisco Voice over IP,DCN-Designing Cisco Networks,ICND-Interconnecting Cisco Network Devices,ICT-Introduction to Cisco Technology,IMCR-Installation and Maintenance of Cisco Routers,MCNS-Managing Cisco Network Security,Understanding Networking Fundamentals,Advanced Border Gateway Protocol Configuration-ABGP,Advanced Cisco Campus Switching-ACCS, Border Gateway Protocol Configuration BGP,CCNA-Boot Camp, CCNP-Boot Camp,Cisco Security Specialist Boot Camp, CiscoWorks 2000 Boot Camp,BCMSN-Building Cisco Multilayer Switched Networks,BSCI-Building Scalable Cisco Internetworks, BCRAN Building Cisco Remote Access Networks,CATM-Cisco Campus ATM Solutions,CID-Cisco Internetwork Design,CIPT Cisco IP Telephony, CIT-Cisco Internetwork Troubleshooting,CSIDS-Cisco Secure Intrusion Detection System,CSPF-Cisco Secure PIX Firewall,CSVPN-Cisco Secure Virtual Private Networks,CVoice-Cisco Voice over IP,DCN-Designing Cisco Networks,ICND-Interconnecting Cisco Network Devices,ICT-Introduction to Cisco Technology,IMCR-Installation and Maintenance of Cisco Routers,MCNS-Managing Cisco Network Security,Understanding Networking Fundamentals,Advanced Border Gateway Protocol Configuration-ABGP,Advanced Cisco Campus Switching-ACCS, Border Gateway Protocol Configuration BGP,CCNA-Boot Camp, CCNP-Boot Camp,Cisco Security Specialist Boot Camp, CiscoWorks 2000 Boot Camp,Cisco Certified Course Outline in Sacramento and Worldwide - Instructor led course,Cisco Certified Course Outline in Sacramento and Worldwide - Instructor led course