Overview
Overview
Thank you for reading this post, don't forget to subscribe!The student will gain hands-on experience with configuring various advance Cisco security solutions for mitigating outside threats and securing devices connecting to the network. At the end of the course, students will be able to reduce the risk to their IT infrastructures and applications using Cisco’s ISE appliance feature and provide operational support identity and network access control.
Audience Profile
Network Security Engineers
Prerequisite(s) Recommended
CCNA Security or valid CCSP, or any CCIE certification can act as a prerequisite
Learning Objectives
At the end of the course, students will be able to reduce the risk to their IT infrastructures and applications using Cisco’s ISE appliance feature and provide operational support identity and network access control. Upon completing this course, the learner will be able to meet these overall objectives:
- Understand Cisco Identity Services Engine architecture and access control capabilities
- Understand 802.1X architecture, implementation and operation
- Understand commonly implemented Extensible Authentication Protocols (EAP)
- Implement Public-Key Infrastructure with ISE
- Understand the implement Internal and External authentication databases
- Implement MAC Authentication Bypass
- Implement identity based authorization policies
- Understand Cisco TrustSec features
- Implement Web Authentication and Guest Access
- Implement ISE Posture service
- Implement ISE Profiling
- Understand Bring Your Own Device (BYOD) with ISE
- Troubleshoot ISE
Course Outline
Course Outline
Module 1: Threat Mitigation through Identity Services
Lessons
• Identity Services
• 802.1X and EAP
• Configure 802.1X Components
Lab: Installing a Certificate in ISE
Lab: Local/Remote Identity Stores with Active Directory/LDAP and Sequence Lists
Module 2: ISE Fundamentals
Lessons
• Describe Cisco ISE Features and configure the fundamentals
• Cisco ISE with PKI
• Cisco ISE Authentication
• Cisco ISE with External Authentication
Lab: Examining and Configuring Supplicants
Lab: 802.1X: Wired Networks
Module 3: Advance Access Control
Lessons
• Certificate Based User Authentication
• Authorization
• Cisco TrustSec
Lab: 802.1X: MAR and EAP Chaining
Lab: MAC Authentication Bypass
Module 4: Web Authentication and Guest Access
Lessons
• Web Authentication
• Guest Access Services
Lab: Implement Central WebAuth
Lab: Implement Guest Access and My Device Portal
Module 5: Endpoint
Lessons
• Posture
• Profiler
• BYOD
Lab: Implement Posture Service
Lab: Implement the Profile Service
Module 6: Troubleshooting Network Access Control
Lessons
• Troubleshooting ISE
Lab: Implementing TrustSec and MACsec