Course Outline
Overview of Cisco Identity Services Engine (ISE)
- Principles of Network Access Control (NAC)
- Cisco ISE system overview
- Function of Cisco ISE in securing network infrastructure
Deployment of Cisco ISE
- Operational deployment modes
- System hardware and software specifications
- Initial system configuration and initialization
- Connectivity with existing network equipment
Authentication Procedures in Cisco ISE
- Supported authentication methods and protocols
- Configuration of 802.1X standard authentication
- Implementation of MAC Authentication Bypass (MAB)
- Web-based authentication processes
- EAP-TLS and certificate-driven authentication mechanisms
Authorization and Access Management
- Role-Based Access Control (RBAC) frameworks
- Definition and application of policy sets
- Application of enforcement profiles
- Construction of authorization rules and conditional logic
- Integration with Access Control Lists (ACLs)
Network Device Profiling
- Device identification and attribute collection
- Development of profiling policies
- Mechanisms for dynamic VLAN allocation
- Analysis through profiling reports and dashboards
Endpoint Compliance and Posture Validation
- Establishment of posture compliance policies
- Execution of remediation procedures
- Utilization of compliance validation modules
- Ongoing monitoring of endpoint adherence
Guest Network Access via Cisco ISE
- Configuration of guest services and web portals
- Definition of guest access policies
- Customization of guest-facing interfaces
- Management of self-service guest provisioning
High Availability and System Redundancy
- ISE architectural modes for high availability
- Mechanisms for failover and load distribution
- Data backup and restoration procedures
Monitoring and Analytical Reporting
- Log management and event review interfaces
- Real-time traffic and security monitoring
- Standard report generation and custom analysis creation
- Configuration of alerts and notification systems
Cisco ISE Troubleshooting Methodologies
- Diagnostic tools and investigative techniques
- Identification and resolution of common system errors
- Utilization of debugging features and log analysis
Operational Best Practices and Security Guidelines
- Hardening procedures for Cisco ISE deployments
- Adherence to compliance standards and regulatory requirements
- Strategies for scalability and performance enhancement
Integration with Complementary Cisco Security Products
- Interoperability with Cisco ASA Firewalls
- Connectivity with Cisco AnyConnect Secure Mobile Client
- Synchronization with Cisco Stealthwatch Network Analytics
Cisco ISE Lifecycle Management and Maintenance
- Procedure for software version upgrades
- Management of security patches
- Guidelines for sustained operational maintenance
Concluding Remarks and Future Actions
Requirements
- Fundamental knowledge of networking principles and core security tenets
Target Audience
- Network administrators
- Information technology security personnel
Testimonials (3)
The laboratory tool and the knowledge of trainer about network solutions
Michael Angelo Angeleles - Metrobank
Course - Cisco CCNP
Good contact with the trainer
Radziszewski - EduBroker Sp. z o.o.
Course - SIP protocol in VoIP
Experience of the trainor and interaction