View Cart
0 Items | Total: US$0.00
Welcome,      Register

You are here

firewall

SEC0080 - VSG and ASA 1000V Service Chaining

The video shows how to combine Cisco VSG and ASA 1000V into a single deployment through Service Chaining on Nexus 1000V to build a secured virtual datacenter. You will see how the VSG enforces security policies to east-west traffic, while ASA 1000V enforces the north-south traffic. We will utilize our previously completed VSG and ASA 1000V labs with additional configuration in our demonstration. Here we assume you have already reviewed previous lab videos, or have good familiarity with all related technologies including Nexus 1000V, VSG, and ASA 1000V
Rating: 
0
No votes yet
Difficulty Level: 
4

SEC0079 - ASA 1000V L2L IPSec VPN (ASDM CLI Mode)

The video shows you how to configure site-to-site IPSec VPN on Cisco ASA 1000V in ASDM mode via CLI. We will go through IKEv1 Phase 1 and Phase 2 configuration to establish an IPSec VPN tunnel to a physical ASA to provide remote access to our servers in the virtual datacenter. You will see the VPN configuration on ASA 1000V being almost identical to a physical ASA.
Topic:
  • ASA 1000V VPN - IKEv1 Phase1/2
  • ASA 1000V VPN - IPSec
  • ASA 1000V NAT Bypass (ie. Self-NAT)
Rating: 
0
No votes yet
Difficulty Level: 
3

SEC0078 - ASA 1000V Advance Security Profile (ASDM CLI Mode)

The video looks at advance features on Cisco ASA 1000V in ASDM mode via CLI. This includes Connection Timeout, IP Audit, Application Inspection, and TCP Normalize/Intercept. There are also features like packet fragment settings, and QoS that are not available for configuration in VNMC mode. In addition, we will configure static NAT and inbound ACL to allow our web servers to be accessed from outside.
Topic:
  • ASA 1000V Security Profile
    • Connection Timeout
    • IP Audit 
    • Static NAT, Port-Forwarding
Rating: 
0
No votes yet
Difficulty Level: 
4

SEC0077 - ASA 1000V Basic Security Profile (ASDM CLI Mode)

The video walks you through basic security profile configuration on Cisco ASA 1000V in ASDM mode via CLI. We will demonstrate the concept of Security Profile interfaces by applying different security policies based on Ingress ACL and NAT to our Web and DB servers. We will also go through configuration on a Nexus 1000V to have a VEM communicate with the ASA 1000V and enforce the security policies on a port-profile. The lab ends with connectivity testing to verify our configurations.
Note:
Rating: 
0
No votes yet
Difficulty Level: 
3

SEC0076 - ASA 1000V Basic Device Configuration (ASDM CLI Mode)

The video looks into basic configuration on Cisco ASA 1000V in ASDM mode via CLI. These are general configuration that are commonly found on physical ASA, for example, interfaces, routing, aaa, ssh, http, DHCP etc. There are also features like SNMP, banner, and failover timeouts that are not availble for configuration in VNMC mode. We will perform testing with Syslog, SNMO and DHCP for verficiation.
Notes:
  • SNMP cannot be configured on an ASA 1000V in VNMC mode
Topic:
Rating: 
0
No votes yet
Difficulty Level: 
3

SEC0075 - ASA 1000V Installation (ASDM CLI Mode)

The video walks you through an installation process of redundant ASA 1000V in ASDM mode from .ova file. We will create VLAN and port-profiles on Cisco Nexus 1000V for interfaces on ASA 1000V. At the end of the lab, we will register the ASA 1000V to a VNMC and be ready for configuration.
Notes:
  • ASA 1000V has four main interfaces
    • Outside
    • Inside
    • Management
    • Failover
  • ASA 1000V may have additional logical security profile interfaces 
Rating: 
0
No votes yet
Difficulty Level: 
2

SEC0074 - ASA 1000V L2L IPSec VPN (VNMC Mode)

The video shows you how to configure site-to-site IPSec VPN on Cisco ASA 1000V in VNMC mode. We will go through VPN Device Policy (Phase 1) and Interface Policy Set (Phase 2) configuration to establish an IPSec VPN tunnel to a physical ASA to provide remote access to our servers in the virtual datacenter. 
Note: 
  • VPN Interface Policy only take affect when applied to an outside interface
Topic:
  • ASA 1000V VPN Device Policy (Phase 1)
    • IKE Policy
Rating: 
0
No votes yet
Difficulty Level: 
3

SEC0073 - ASA 1000V Advance Edge Security Profile and Policies (VNMC Mode)

The video looks at advance features on Cisco ASA 1000V in VNMC mode. This includes Connection Timeout, IP Audit, Application Inspection, and TCP Intercept. In addition, we will configure static NAT and inbound ACL to allow our web servers to be accessed from outside.
Topic:
  • ASA 1000V Security Profile
    • Connection Timeout Policy
    • IP Audit Policy
    • Static NAT Policy
    • Application Inspection Policy
    • TCP Intercept Policy
    • Access Control List (ACL)
Rating: 
0
No votes yet
Difficulty Level: 
4

SEC0072 - ASA 1000V Basic Edge Security Profile and Policies (VNMC Mode)

The video walks you through basic configuration of Edge Security Profile and Policies on Cisco ASA 1000V in VNMC mode. We will demonstrate the concept of Security Profile interfaces by applying different security policies based on Ingress ACL and NAT to our Web and DB servers. We will also go through configuration on a Nexus 1000V to have a VEM communicate with the ASA 1000V and enforce the security policies on a port-profile. The lab ends with connectivity testing to verify our configurations.
Note:
Rating: 
0
No votes yet
Difficulty Level: 
3

SEC0071 - ASA 1000V Device Profile and Edge Firewall (VNMC Mode)

The video looks into concepts of Device Profile, Edge Device Profile, and Edge Firewall on Cisco ASA 1000V in VNMC mode. We will configure device general global settings similarly to Cisco VSG through a Device Profile, and ASA 1000V-specific global settings through an Edge Device Profile, both of which are building blocks to an Edge Firewall. Our ASA 1000V that was created in the previous video will be assigned to an Edge Firewall pool, and we will perform basic testing with Syslog and DHCP.
Notes:
Rating: 
0
No votes yet
Difficulty Level: 
3

Pages

Subscribe to RSS - firewall

Lab Minutes Classifieds