Cisco Platinum Learning Partner Logo

SFWIPF

Fundamentals of Cisco Firewall Threat Defense and Intrusion Prevention

Cisco Platinum Learning Partner Logo

Please note: This course replaces the previous SSNGFW course.

This course, together with the  Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention (SFWIPA) training, prepares you for the SNCF Securing Networks with Cisco Firepower 300-710 exam.

This training shows you how to implement and configure Cisco Secure Firewall Threat Defense for deployment as a next generation firewall at the internet edge. You’ll gain an understanding of Cisco Secure Firewall architecture and deployment, base configuration, packet processing and advanced options, and conducting Secure Firewall administration troubleshooting.

In this training, you will learn how to implement, configure, and manage Cisco® Secure Firewall Threat Defense for deployment, including: 

  • Configuring Cisco Secure Firewall Threat Defense settings and policies
  • Understanding Cisco Secure Firewall Threat Defense policies and explaining how various policies affect packet processing through the device
  • Performing basic threat analysis and management tasks using the Cisco Secure Firewall Management Center

Course Contents

  • Describe Cisco Secure Firewall Threat Defense 
  • Describe Cisco Secure Firewall Threat Defense Deployment Options 
  • Describe management options for Cisco Secure Firewall Threat Defense 
  • Configure basic initial settings on Cisco Secure Firewall Threat Defense 
  • Configure high availability on Cisco Secure Firewall Threat Defense 
  • Configure basic Network Address Translation on Cisco Secure Firewall Threat Defense 
  • Describe Cisco Secure Firewall Threat Defense policies and explain how different policies influence packet processing through the device 
  • Configure Discovery Policy on Cisco Secure Firewall Threat Defense 
  • Configure and explain prefilter and tunnel rules in prefilter policy 
  • Configure an access control policy on Cisco Secure Firewall Threat Defense 
  • Configure security intelligence on Cisco Secure Firewall Threat Defense 
  • Configure file policy on Cisco Secure Firewall Threat Defense 
  • Configure Intrusion Policy on Cisco Secure Firewall Threat Defense 
  • Perform basic threat analysis using Cisco Secure Firewall Management Center 
  • Perform basic management and system administration tasks on Cisco Secure Firewall Threat Defense 
  • Perform basic traffic flow troubleshooting on Cisco Secure Firewall Threat Defense 
  • Manage Cisco Secure Firewall Threat Defense with Cisco Secure Firewall Threat Defense Manager 
Request in-house training now

Target Group

  • Network Security Engineers
  • Administrators

Knowledge Prerequisites

Before taking this offering, you should understand:

  • TCP/IP
  • Basic routing protocols
  • Firewall, VPN, and IPS concepts

Complementary and Continuative Courses

SCOR – Implementing and Operating Cisco Security Core Technologies
SISE – Implementing and Configuring Cisco Identity Services Engine
SESA – Securing Email with Cisco Email Security Appliance
SWSA – Securing the Web with Cisco Web Security Appliance
SVPN – Implementing Secure Solutions with Virtual Private Networks
SAUI – Implementing Automation for Cisco Security Solutions
SFWIPA – Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention
SCAZT – Designing and Implementing Secure Cloud Access for Users and Endpoints

Course Objective

This training prepares you for the CCNP Security certification, which requires passing the 350-701 Implementing and Operating Cisco Security Core Technologies (SCOR) core exam and one concentration exam such as the 300-710 Securing Networks with Cisco Firepower (SNCF) concentration exam. This training also earns you 40 Continuing Education (CE) credits towards recertification.

Course Outline
Learning Path Curriculum
 
Cisco Secure Firewall Architecture and Deployment
Cisco Secure Firewall Base Configuration
Packet Processing and Advanced Inspection
Secure Firewall Administration and Troubleshooting
 
 
Lab Outline
Perform Initial Device Setup
Configure High Availability
Configure Network Address Translation
Configure Network Discovery
Configure Prefilter and Access Control Policy
Configure Security Intelligence
Implement File Control and Advanced Malware Protection
Configure Cisco Secure IPS
Detailed Analysis Using the Firewall Management Center
Manage Cisco Secure Firewall Threat Defense System
Secure Firewall Troubleshooting Fundamentals
Configure Managed Devices Using Cisco Secure Firewall Device Manager
Zertifizierungen Symbol You are interested in a certification? The course at hand is part of the following certification(s):

Certification as CCNP Security Certification

Classroom training

Do you prefer the classic training method? A course in one of our Training Centers, with a competent trainer and the direct exchange between all course participants? Then you should book one of our classroom training dates!

Hybrid training

Hybrid training means that online participants can additionally attend a classroom course. The dynamics of a real seminar are maintained, and the online participants are able to benefit from that. Online participants of a hybrid course use a collaboration platform, such as WebEx Training Center or Saba Meeting. To do this, a PC with browser and Internet access is required, as well as a headset and ideally a Web cam. In the seminar room, we use specially developed and customized audio- and video-technologies. This makes sure that the communication between all persons involved works in a convenient and fault-free way.

Online training

You wish to attend a course in online mode? We offer you online course dates for this course topic. To attend these seminars, you need to have a PC with Internet access (minimum data rate 1Mbps), a headset when working via VoIP and optionally a camera. For further information and technical recommendations, please refer to.

Tailor-made courses

You need a special course for your team? In addition to our standard offer, we will also support you in creating your customized courses, which precisely meet your individual demands. We will be glad to consult you and create an individual offer for you.
Request in-house training now
PDF SymbolYou can find the complete description of this course with dates and prices ready for download at as PDF.

Please note: This course replaces the previous SSNGFW course.

This course, together with the  Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention (SFWIPA) training, prepares you for the SNCF Securing Networks with Cisco Firepower 300-710 exam.

This training shows you how to implement and configure Cisco Secure Firewall Threat Defense for deployment as a next generation firewall at the internet edge. You’ll gain an understanding of Cisco Secure Firewall architecture and deployment, base configuration, packet processing and advanced options, and conducting Secure Firewall administration troubleshooting.

In this training, you will learn how to implement, configure, and manage Cisco® Secure Firewall Threat Defense for deployment, including: 

  • Configuring Cisco Secure Firewall Threat Defense settings and policies
  • Understanding Cisco Secure Firewall Threat Defense policies and explaining how various policies affect packet processing through the device
  • Performing basic threat analysis and management tasks using the Cisco Secure Firewall Management Center

Course Contents

  • Describe Cisco Secure Firewall Threat Defense 
  • Describe Cisco Secure Firewall Threat Defense Deployment Options 
  • Describe management options for Cisco Secure Firewall Threat Defense 
  • Configure basic initial settings on Cisco Secure Firewall Threat Defense 
  • Configure high availability on Cisco Secure Firewall Threat Defense 
  • Configure basic Network Address Translation on Cisco Secure Firewall Threat Defense 
  • Describe Cisco Secure Firewall Threat Defense policies and explain how different policies influence packet processing through the device 
  • Configure Discovery Policy on Cisco Secure Firewall Threat Defense 
  • Configure and explain prefilter and tunnel rules in prefilter policy 
  • Configure an access control policy on Cisco Secure Firewall Threat Defense 
  • Configure security intelligence on Cisco Secure Firewall Threat Defense 
  • Configure file policy on Cisco Secure Firewall Threat Defense 
  • Configure Intrusion Policy on Cisco Secure Firewall Threat Defense 
  • Perform basic threat analysis using Cisco Secure Firewall Management Center 
  • Perform basic management and system administration tasks on Cisco Secure Firewall Threat Defense 
  • Perform basic traffic flow troubleshooting on Cisco Secure Firewall Threat Defense 
  • Manage Cisco Secure Firewall Threat Defense with Cisco Secure Firewall Threat Defense Manager 
Request in-house training now

Target Group

  • Network Security Engineers
  • Administrators

Knowledge Prerequisites

Before taking this offering, you should understand:

  • TCP/IP
  • Basic routing protocols
  • Firewall, VPN, and IPS concepts

Complementary and Continuative Courses

SCOR – Implementing and Operating Cisco Security Core Technologies
SISE – Implementing and Configuring Cisco Identity Services Engine
SESA – Securing Email with Cisco Email Security Appliance
SWSA – Securing the Web with Cisco Web Security Appliance
SVPN – Implementing Secure Solutions with Virtual Private Networks
SAUI – Implementing Automation for Cisco Security Solutions
SFWIPA – Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention
SCAZT – Designing and Implementing Secure Cloud Access for Users and Endpoints

Course Objective

This training prepares you for the CCNP Security certification, which requires passing the 350-701 Implementing and Operating Cisco Security Core Technologies (SCOR) core exam and one concentration exam such as the 300-710 Securing Networks with Cisco Firepower (SNCF) concentration exam. This training also earns you 40 Continuing Education (CE) credits towards recertification.

Course Outline
Learning Path Curriculum
 
Cisco Secure Firewall Architecture and Deployment
Cisco Secure Firewall Base Configuration
Packet Processing and Advanced Inspection
Secure Firewall Administration and Troubleshooting
 
 
Lab Outline
Perform Initial Device Setup
Configure High Availability
Configure Network Address Translation
Configure Network Discovery
Configure Prefilter and Access Control Policy
Configure Security Intelligence
Implement File Control and Advanced Malware Protection
Configure Cisco Secure IPS
Detailed Analysis Using the Firewall Management Center
Manage Cisco Secure Firewall Threat Defense System
Secure Firewall Troubleshooting Fundamentals
Configure Managed Devices Using Cisco Secure Firewall Device Manager

Zertifizierungen Symbol You are interested in a certification? The course at hand is part of the following certification(s):

Certification as CCNP Security Certification

Classroom training

Do you prefer the classic training method? A course in one of our Training Centers, with a competent trainer and the direct exchange between all course participants? Then you should book one of our classroom training dates!

Hybrid training

Hybrid training means that online participants can additionally attend a classroom course. The dynamics of a real seminar are maintained, and the online participants are able to benefit from that. Online participants of a hybrid course use a collaboration platform, such as WebEx Training Center or Saba Meeting. To do this, a PC with browser and Internet access is required, as well as a headset and ideally a Web cam. In the seminar room, we use specially developed and customized audio- and video-technologies. This makes sure that the communication between all persons involved works in a convenient and fault-free way.

Online training

You wish to attend a course in online mode? We offer you online course dates for this course topic. To attend these seminars, you need to have a PC with Internet access (minimum data rate 1Mbps), a headset when working via VoIP and optionally a camera. For further information and technical recommendations, please refer to.

Tailor-made courses

You need a special course for your team? In addition to our standard offer, we will also support you in creating your customized courses, which precisely meet your individual demands. We will be glad to consult you and create an individual offer for you.
Request in-house training now

PDF SymbolYou can find the complete description of this course with dates and prices ready for download at as PDF.