Sunset Learning Institute

Cisco Partner : Learning Solutions

Implementing Cisco Intrusion Prevention System (IPS) Version 5.0

Register Now

Course Length: 5 Days

Course Overview

Given an example of Cisco's defense in depth, the student will explain how Cisco IPS protects network devices from attacks. Given an IPS sensor appliance, the student will install the appliance in the network and initialize it. Use IDM to configure basic sensor settings. The student will use IDM to configure built-in signatures to meet the requirements of a given security policy. The student will describe the functions of signature engines and their parameters. The student will use IDM to tune and create signatures to meet the requirements of a given security policy. Given a scenario, the student will use IDM to tune a sensor to work optimally in the network. Given a scenario, the student will use the Monitoring Center for Security and Cisco Threat Response to maximize alarm management efficiency. The student will explain blocking concepts and use IDM to configure blocking for a given scenario. The student will install the NM-CIDS in a router and initialize it. The learner will install the module in a Cisco Catalyst 6500 Switch and initialize it. The student will use a Cisco Catalyst 6500 Switch to capture network traffic for intrusion prevention analysis. The student will install and recover the sensor software image and perform service pack and signature updates. The student will use the CLI and IDM to verify system configuration.

Prerequisites

  • CCNA or the equivalent knowledge
  • Basic knowledge of Windows operating system
  • Familiarity with the networking and security terms and concepts (the concepts are learned in prerequisite training or by reading industry publications)

Course Outline

  • Course Introduction
  • Security Fundamentals
  • Intrusion Prevention Overview
  • Getting started with IDS command line interface
  • Using IDM
  • Basic Sensor configuration
  • Cisco Intrusion Detection System alarms and signatures
  • Signature engines
  • Signature configuration
  • Sensor tuning lesson
  • Alarm monitoring and management
  • Blocking configuration
  • Cisco Intrusion Detection system network module
  • Intrusion Detection System module configuration
  • Capturing network traffic for intrusion detection systems
  • Sensor maintenance
  • Verifying system configuration