Implementing and Configuring Cisco Identity Services Engine (SISE)

Course Description Agenda Course Outline
 

Course Overview

Implementing and Configuring Cisco Identity Services Engine v2.1 (SISE) is an identity and access control policy platform that provides a single policy plane across the entire organization, combining multiple services into a single context-aware identity-based platform. You will learn how to configure and administer many of the services, including authentication, authorization and accounting (AAA), posture, profiling, device on-boarding and guest management. You will also learn the knowledge and skills to enforce security posture compliance for wired and wireless endpoints and enhance infrastructure security using the Cisco ISE.

A qui s'adresse cette formation

The audience for this course is as follows:

  • Cisco Channel Partner SEs and FEs that are seeking to meet the education requirements to attain ATP authorisation to sell Cisco ISE.
  • Field engineers, network administrators, and consulting systems engineers who implement and maintain the Cisco ISE in enterprise networks.
  • Security architects, design engineers, network designers and others seeking hands-on experience with the Cisco ISE.
  • Integrators who install and implement the Cisco Identity Service Engine

Pré-requis

It is recommended that a learning have the following knowledge and skills before attending this course:

  • CCNA Security certification, completion of Implémentation de la sécurité du réseau IOS Cisco v3.0 (IINS) course or equivalent knowledge
  • Foundation-level network knowledge and skills necessary to install, configure, operate, and troubleshoot network devices and applications
  • Foundation-level wireless knowledge and skills
  • Basic knowledge of Cisco IOS networking and concepts

Objectifs

Upon completing this course, the learner will be able to meet these overall objectives:

  • Describe Cisco ISE architecture, installation, and distributed deployment options
  • Configure Network Access Devices (NADs), policy components, and basic authentication and authorization policies in Cisco ISE - Implement Cisco ISE web authentication and guest services
  • Deploy Cisco ISE profiling, posture and client provisioning services
  • Describe administration, monitoring, troubleshooting, and TrustSec SGA security
  • Configure device administration using TACACS+ in Cisco ISE

Follow On Courses

Contenu

Implementing and Configuring Cisco Identity Services Engine v2.1 (SISE) is an identity and access control policy platform that provides a single policy plane across the entire organization, combining multiple services into a single context-aware identity-based platform. You will learn how to configure and administer many of the services, including authentication, authorization and accounting (AAA), posture, profiling, device on-boarding and guest management. You will also learn the knowledge and skills to enforce security posture compliance for wired and wireless endpoints and enhance infrastructure security using the Cisco ISE.

Module 1: Introducing Cisco ISE Architecture and Deployment

  • Security challenges
  • Cisco ISE solutions Use Cases
    • Guest use
    • BYOD
    • Profiling
    • Compliance
    • Security group access
  • Secure Access Control
  • ISE function
  • ISE deployment components
    • Admin node
    • Policy service node
    • Monitoring node
    • pxGrid Services
    • Policy synchronization
    • Deployment options
  • Context visibility
    • Benefits
    • Wizard
    • Streamline wizard

Module 2: Cisco ISE Policy Enforcement

  • IEEE 802.1X primeer
  • MAC authentication bypass
  • 802.1X and MAB
  • Identity sources
  • Multi-AD overview and configuration
  • Lightweight directory access protocol
  • RADIUS
  • SAMLv2
  • Identity source sequence
  • Certification authority services
  • Authentication and authorization process
  • Exception policies and policy sets
  • Global vs local exception processing
  • Third-party NAD support
  • Cisco TrustSec
  • Easy connect
    • Overview
    • Modes and flows
    • Configuration

Module 3: Web Auth & Guest Services

  • Web authentication overview
  • Guest access services overview
  • Guest access settings
  • ISE sponsor components and configuration

Module 4: Cisco ISE Profiler

  • Profiler service and policies
    • Configure
    • Prepare
    • Enable
    • Probe configuration
    • Feed service
    • Settings
    • Profiling parameters
  • NMAP scan action

Module 5: Cisco ISE BYOD

  • Problem and solutions
  • Design
  • Portal selection process
  • Device portal configuration
  • ISE CA server and local certificates

Module 6: Cisco ISE Endpoint Compliance Services

  • Posture service
    • Conditions
    • Compliance module
    • Flow
    • Agents
    • Deployment and licensing
    • Client provisioning
    • Posture general settings
  • Client provisioning portal and policy

Module 7: Cisco ISE with AMP and VPN-Based Services

  • AAA – external authentication
  • Cisco ASA for VPN authentication
  • Threat centric NAC

Module 8: Cisco ISE Integrated Solutions with APIs

  • Location-based authorization
  • pxGrid framework

Module 9: Working with Network Access Devices

  • TACACS+
    • Device administration
    • Configuration
    • Guidelines
    • Best practices
  • Migrating Cisco ACS to ISE

Module 10: Cisco ISE Design (Self-Study)

  • ISE planning and Pre-deployment
  • ISE sizing and scaling practices
  • Deployment best practices
  • Web portals best practices
  • PSN HA or load sharing
  • Deploying monitoring personas
  • Network infrastructure preparation

Module 11: Configuring Thrid Party NAD Support (optional/Self-Study/Reference)

  • Third-party NAD support configuration

Labs:

  • Initial Configuration of Cisco ISE
  • Complete Cisco ISE GUI Setup
  • Integrate Cisco ISE with Active Directory
  • Integrating Cisco ISE with a second Microsoft Active Directory
  • Basic Policy Configuration
  • Configure Guest Access
  • Guest Access Operations
  • Guest Reports
  • Configuring Profiling
  • Customizing the Cisco ISE Profiling Configuration
  • ISE Profiling Reports
  • BYOD Configuration
  • Device Blacklisting
  • Compliance
  • Configuring Client Provisioning
  • Configuring Posture Policies
  • Testing and Monitoring Compliance Based Access
  • Compliance Policy Testing
  • MDM Integration with Cisco ISE
  • MDM Access and Configuration
  • Client Access with MDM
  • Using Cisco ISE for VPN Access
  • Configuring Backups and Patching
  • Configuring Administrative Access
  • Review of General Tools
  • Report Operations
Classroom training
Modality: C

Durée 5 jours

Prix (Hors Taxe)
  • France: 3 870,- €
Dates et Inscription
 
pointer une ville pour s'enregistrer Agenda
France
21.01. - 25.01.2019 Paris
18.03. - 22.03.2019 Paris
13.05. - 17.05.2019 Paris
24.06. - 28.06.2019 Paris
19.08. - 23.08.2019 Paris
23.09. - 27.09.2019 Paris
04.11. - 08.11.2019 Paris
16.12. - 20.12.2019 Paris
FLEX Training

Please see below our alternative, English language, FLEX course option.

04.02. - 08.02.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
garanti !
18.02. - 22.02.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/Sofia
18.03. - 22.03.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
01.04. - 05.04.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
garanti !
20.05. - 24.05.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/Ljubljana
03.06. - 07.06.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
19.08. - 23.08.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
02.09. - 06.09.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/Bratislava

Fast Lane Flex™ Classroom If you can't find a suitable date, don't forget to check our world-wide FLEX training schedule.

Europe
Allemagne
18.02. - 22.02.2019 Hambourg
11.03. - 15.03.2019 Düsseldorf
25.03. - 29.03.2019 Munich
01.04. - 05.04.2019 Berlin
23.04. - 26.04.2019 Münster 4 jours
06.05. - 10.05.2019 Stuttgart
13.05. - 17.05.2019 Hambourg
03.06. - 07.06.2019 Francfort
Autriche
25.03. - 29.03.2019 Wien (iTLS)
15.07. - 19.07.2019 Wien (iTLS)
23.09. - 27.09.2019 Wien (iTLS)
Belgique
27.05. - 31.05.2019 Bruxelles Langue: Anglais
Bulgarie
18.02. - 22.02.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/Sofia
Espagne
01.04. - 05.04.2019 Madrid
01.07. - 05.07.2019 Madrid
23.09. - 27.09.2019 Madrid
Italie
04.02. - 08.02.2019 Milan
11.03. - 15.03.2019 Rome
20.05. - 24.05.2019 Milan
08.07. - 12.07.2019 Milan
02.09. - 06.09.2019 Rome
07.10. - 11.10.2019 Rome
25.11. - 29.11.2019 Milan
09.12. - 13.12.2019 Rome
Luxembourg
20.05. - 24.05.2019 Luxemburg
18.11. - 22.11.2019 Luxemburg
Pays-Bas
18.03. - 22.03.2019 Utrecht Langue: Anglais
17.06. - 21.06.2019 Utrecht Langue: Anglais
Portugal
08.04. - 12.04.2019 Lisbonne
08.07. - 12.07.2019 Lisbonne
30.09. - 04.10.2019 Lisbonne
Roumanie
11.11. - 15.11.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/Bucharest
Royaume-Uni
04.02. - 08.02.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
garanti !
18.03. - 22.03.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
01.04. - 05.04.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
garanti !
03.06. - 07.06.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
19.08. - 23.08.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
21.10. - 25.10.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
25.11. - 29.11.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/London
Slovakia
02.09. - 06.09.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/Bratislava
Slovénie
20.05. - 24.05.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Europe/Ljubljana
Suisse
25.03. - 29.03.2019 Zürich
03.06. - 07.06.2019 Zürich
22.07. - 26.07.2019 Zürich
16.09. - 20.09.2019 Zürich
25.11. - 29.11.2019 Zürich
North America
Etats-Unis
04.02. - 08.02.2019 Formation en ligne Fuseau horaire: US/Central Langue: Anglais
11.02. - 15.02.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: US/Eastern
04.03. - 08.03.2019 Formation en ligne Fuseau horaire: US/Pacific Langue: Anglais
25.03. - 29.03.2019 Formation en ligne Fuseau horaire: US/Pacific Langue: Anglais
01.04. - 05.04.2019 Formation en ligne Fuseau horaire: US/Eastern Langue: Anglais
29.04. - 03.05.2019 Formation en ligne Fuseau horaire: US/Mountain Langue: Anglais
06.05. - 10.05.2019 Formation en ligne Fuseau horaire: US/Central Langue: Anglais
20.05. - 24.05.2019 Formation en ligne Fuseau horaire: US/Pacific Langue: Anglais
Canada
11.02. - 15.02.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Canada/Eastern
25.03. - 29.03.2019 Formation en ligne Fuseau horaire: Canada/Pacific Langue: Anglais
06.05. - 10.05.2019 Formation en ligne Fuseau horaire: Canada/Central Langue: Anglais
03.06. - 07.06.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Canada/Eastern
08.07. - 12.07.2019 Formation en ligne Fuseau horaire: Canada/Pacific Langue: Anglais
19.08. - 23.08.2019 Formation en ligne Fuseau horaire: Canada/Central Langue: Anglais
23.09. - 27.09.2019 FLEX training This is an Anglais language FLEX course.
Fuseau horaire: Canada/Eastern
04.11. - 08.11.2019 Formation en ligne Fuseau horaire: Canada/Pacific Langue: Anglais
09.12. - 13.12.2019 Formation en ligne Fuseau horaire: Canada/Central Langue: Anglais
Latin America
Argentine
06.05. - 10.05.2019 Formation en ligne Fuseau horaire: America/Buenos_Aires Langue: Español
09.09. - 13.09.2019 Formation en ligne Fuseau horaire: America/Buenos_Aires Langue: Español
Brésil
11.02. - 15.02.2019 FLEX training This is an Portuguais language FLEX course.
Fuseau horaire: America/Sao_Paulo
13.05. - 17.05.2019 Formation en ligne Fuseau horaire: America/Sao_Paulo Langue: Portuguais
26.08. - 30.08.2019 Formation en ligne Fuseau horaire: America/Sao_Paulo Langue: Portuguais
28.10. - 01.11.2019 Formation en ligne Fuseau horaire: America/Sao_Paulo Langue: Portuguais
Chile
25.03. - 29.03.2019 Formation en ligne Fuseau horaire: America/Santiago Langue: Español
01.07. - 05.07.2019 Formation en ligne Fuseau horaire: America/Santiago Langue: Español
Colombie
22.07. - 26.07.2019 Formation en ligne Fuseau horaire: America/Bogota Langue: Español
Mexico
01.04. - 05.04.2019 Formation en ligne Fuseau horaire: America/Mexico_City Langue: Español
07.10. - 11.10.2019 Formation en ligne Fuseau horaire: America/Mexico_City Langue: Español
Moyen-Orient
Emirats-Arabes-Unis
24.02. - 28.02.2019 Dubai Langue: Anglais This course is being delivered by iTLS.
09.06. - 13.06.2019 Dubai Langue: Anglais This course is being delivered by iTLS.
15.09. - 19.09.2019 Dubai Langue: Anglais This course is being delivered by iTLS.
17.11. - 21.11.2019 Dubai Langue: Anglais This course is being delivered by iTLS.
Qatar
24.02. - 28.02.2019 Doha Langue: Anglais
15.09. - 19.09.2019 Doha Langue: Anglais
Afrique
Egypte
24.02. - 28.02.2019 Le Caire Langue: Anglais
09.06. - 13.06.2019 Le Caire Langue: Anglais
15.09. - 19.09.2019 Le Caire Langue: Anglais
17.11. - 21.11.2019 Le Caire Langue: Anglais
Fast Lane s’engage à mettre en œuvre les formations garanties quelque soit le nombre de participants, en dehors des cas de force majeurs ou d’événements exceptionnels, comme un accident ou un maladie de l’instructeur.
Formation confirmée sous réserve d'une personne supplémentaire.
Cours en ligne avec instructeur
Formation en mode FLEX™.