課堂由導師以講座形式教授課程理論及進行眾多的商業實習,而實習時段由學員親自進行商業實習。
1 EasyVPN Remote
1.1 Client Mode and NEM Mode
1.2 實習: EasyVPN Remote in Client Mode
1.3 實習: EasyVPN Remote in NEM Mode
2 Advanced IPSec VPN Topics
2.1 NAT with IPSec VPN
2.2 實習: Easy VPN with dynamic NAT environment.
2.3 Certificate-Based Authentication IPSec Site-to-Site VPN
2.4 實習: IPSec VPN by Cert-based authentication
3 SSL VPN
3.1 SSL VPN Mode
3.2 實習: SSL VPN: Modify ASDM Port
3.3 實習: SSL VPN: Clientless Mode
3.4 實習: SSL VPN: Thin-Client Mode
3.5 實習: SSL VPN: Tunnel Mode
3.6 Webtype Access-List
3.7 實習: SSL VPN: Webtype Access-List
4 Modular Policy Framework
4.1 Features provided by Modular Policy Freamworok
4.2 Directionality (方向性) of features
4.3 Features Action Order
4.4 Default Modular Policy Framework
4.5 Default Inspection: DNS
4.6 Default Inspection: FTP
4.7 Default Inspection: ESMTP and SMTP
4.8 Default Inspection:TFTP
4.9 Default Inspection: H.323
4.10 實習: Layer 3 / 4 Inspection
4.11 Inspection Policy-Map
4.12 HTTP Deep Inspection
4.13 實習: HTTP Inspection – Blocking specific request method
4.14 實習: HTTP Inspection – Block specific URL
4.15 實習: HTTP Inspection – Block specific browser
4.16 實習: HTTP Inspection – Block specific Content Type
4.17 實習: HTTP Inspection – Block specific Content
4.18 FTP Deep Inspection
4.19 Stict Option
4.20 實習: FTP Deep Inspection – Block FTP commands
5 Threat Detection
5.1 Basic Threat Detection
5.2 實習: Basic Threat Detection
6 High End ASA Initialization
6.1 Demonstration: Initialize High End ASA
6.2 Management Interface
6.3 Demonstration: Management Interface
6.4 Subinterface (Trunking) in ASA
6.5 Demonstration: ASA Subinterface
6.6 NAT in ASA before software 8.3
6.7 Demonstration: Dynamic NAT with overload
6.8 Demonstration: Static NAT
6.9 Demonstration: Static NAT (Port redirection)
6.10 Demonstration: Identity NAT
6.11 Demonstration: Policy NAT
7 Transparent Firewall
7.1 Routed Mode
7.2 Transparent Mode
7.3 Allowed MAC Addresses
7.4 Logic of Traffic handling in Transparent ASA
7.5 Demonstration: Configure Transparent Firewall
7.6 Ethertype Access List
7.7 Ethertype Access List Operation details
7.8 Demonstration: EtherType Access List
7.9 MAC Address Table in ASA
7.10 ARP Inspection
7.11 Demonstration: ARP inspection
8 Multiple Context
8.1 Basic Concept of Multiple Context
8.2 Limitation of Mulitple Context
8.3 Muliple Context System Configuration
8.4 Admin Context
8.5 Classifier
8.6 Demonstration: Change from Single mode to Multiple Mode
8.7 Demonstration: Configure interfaces, create contexts and assign interfaces to contexts
8.8 Demonstration: Configure admin context
8.9 Demonstration: Configure custom context franco1
8.10 Demonstration: Configure custom context franco2
8.11 Multiple Contexts on Transparent Firewall
8.12 Demonstration: Multiple Contexts in Transparent Firewall
8.13 Multiple Contexts with shared interface
8.14 Demonstration: Configure a shared interface (e0/0.100) for multiple contexts
8.15 Advanced topics in Multiple Contexts
8.16 Concepts of default class
8.17 Demonstration: Configure Resource Limit on the context
9 Failover
9.1 Introduction of Failover
9.2 Hardware Requirements
9.3 Software Requirements
9.4 Failover Link
9.5 Active/Standby Failover
9.6 Demonstration: Active / Standby Failover
9.7 Active / Active Failover
9.8 Demonstration: Active / Active Failover
9.9 Factors that fail to implement ASA Failover
9.10 Demonstration: Importance of monitor-interface
10 Password Recovery in ASA
10.1 Demonstation: Password Recovery in ASA
11 Configuration disclosure avoidance
11.1 Demonstation: Disable Password-Recovery
12 ASDM
12.1 Lab Topolgy
12.2 實習: ASDM: Configure Hostname
12.3 實習: ASDM: Configure interfaces
12.4 實習: Configure static default gateway
12.5 實習: ASDM: Configure RIP
12.6 實習: ASDM: Configure OSPF
12.7 實習: ASDM: Configure EIGRP
12.8 實習: ASDM: Configure NTP
12.9 實習: Configure IP Extended Access-List
12.10 實習: Dynamic NAT (Port Address Translation)
12.11 實習: ASDM – Static NAT (Port Redirection)
12.12 實習: ASDM: Modular Policy Frameworks for HTTP Traffic
12.13 實習: ASDM – Local AAA
12.14 實習: SSL VPN
12.15 實習: ASDM - EasyVPN
12.16 實習: ASDM – IPSec Site to Site VPN |