Implementing Cisco Secure Access Control System Version 5.6 (ACS)

Course Description Agenda
 

A qui s'adresse cette formation

Network administrators, network operators, and system administrators responsible for securing their networks to assure authorized access only by authenticated users, with accounting of their activities.

Pré-requis

CCNA certification or equivalent knowledge

Objectifs

This course teaches you how to provide secure access to your network using the Cisco® Secure Access Control Server (ACS) 5.2, interoperating with security features in Cisco IOS® Software. You will gain a thorough understanding of the operation of the Cisco Secure ACS to control access to network services and devices. Course subjects include the principles of authentication, to restrict user access to networks, services, and devices; authorization, to restrict the functions users can perform on services and devices; and accounting, to track the activities of users. The RADIUS, TACACS+, Extensible Authentication Protocol (EAP), and 802.1x protocols are discussed in theory and practice as the basis of network security. Specific methods and configurations are shown that can be used in your production networks to achieve targeted and detailed restrictions. The course includes hands-on labs to provide personal experience in configuring Cisco ACS and Cisco network devices.

Contenu

Introduction

  • What is RADIUS: TLV, RADIUS packets, differentiation to TACACS+
  • The portfolio: ACS versions, licenses, ACS View

Installation

  • Installation steps
  • Overview of the GUI and CLI

Basic configuration

  • Setup of devices, groups and user
  • AAA configuration (Switch, Access Point, ASA)

Authentication and Authorization

  • Behind the scenes: internal Authentication Flow
  • External databases: LDAP, AD, NAC Server
  • Proxy Authentication
  • Identity and Authorization Policies
  • Example: Command Authorization

Operation and Maintenance

  • Software Upgrade
  • Logging, Logging Relay
  • Reports / Reporting / MARS
  • Cluster
  • CLI

Scenarios

  • IP Phones
  • WLAN (AP, Controller)
  • VPN Group / Policy Mapping
  • Downloadable ACLs
  • DOT1X

Labs

  • ACS basic configuration
  • Updating ACS from 5.1 to 5.2
  • Creating AAA clients and Device Groups
  • Administrating internal and external application database
  • Creating Policies for Authentication and Authorization
  • Create and use monitoring, reporting and logging functions
  • Implementation of IEEE 802.1X Solutions: Switches, IP Phones, WLAN (AP, Controller), MARS, NAC Server, Access Point
  • Supporting the WLAN Security
  • LDAP Integration
Classroom training
Modality: C

Durée 3 jours

Prix (Hors Taxe)
  • France: 2 690,- €
  • Cisco Learning Credits: 19 CLC
Dates et Inscription
 
pointer une ville pour s'enregistrer Agenda
France

Actuellement pas de date de disponible  For enquiries please write to info@flane.fr.

Europe
Espagne
20.03. - 22.03.2019 Madrid
02.09. - 04.09.2019 Madrid
Portugal
27.03. - 29.03.2019 Lisbonne
09.09. - 11.09.2019 Lisbonne
Moyen-Orient
Emirats-Arabes-Unis
16.06. - 18.06.2019 Dubai Langue: Anglais This course is being delivered by iTLS.
22.09. - 24.09.2019 Dubai Langue: Anglais This course is being delivered by iTLS.
24.11. - 26.11.2019 Dubai Langue: Anglais This course is being delivered by iTLS.
Qatar
22.09. - 24.09.2019 Doha Langue: Anglais
Afrique
Egypte
16.06. - 18.06.2019 Le Caire Langue: Anglais
22.09. - 24.09.2019 Le Caire Langue: Anglais
24.11. - 26.11.2019 Le Caire Langue: Anglais