Intermediate

Securing Networks with Cisco Firepower Next-Generation Firewall (SNCF)

Cisco

The Securing Networks with Cisco Firepower Next-Generation Firewall (SNCF) course shows you how to use and configure Cisco Firepower Threat Defense technology, beginning with initial device setup and configuration and including routing, high availability, Cisco Adaptive Security Appliance (ASA) to Cisco Firepower Threat Defense migration, traffic control, and Network Address Translation (NAT). You will learn how to implement advanced Next-Generation Firewall (NGFW) and Next-Generation Intrusion Prevention System (NGIPS) features, including network intelligence, file type detection, network-based malware detection, and deep packet inspection.

Who Should Attend

  • Security engineers
  • Network engineers
  • Network administrators
  • Systems engineers
  • Anyone pursuing CCNP Security certification

Prerequisites

  • CCNA Security or equivalent knowledge
  • Familiarity with TCP/IP networking
  • Basic understanding of firewall concepts
  • Familiarity with Cisco ASA (helpful but not required)

What You Will Learn

  • Describe Cisco Firepower Threat Defense and the Cisco Firepower Management Center
  • Perform initial Cisco FTD device configuration and setup
  • Describe and implement Cisco FTD traffic control and NAT
  • Implement Cisco FTD SSL decryption
  • Implement Cisco FTD access control policies
  • Implement Cisco FTD security intelligence
  • Implement Cisco FTD intrusion policies
  • Implement Cisco FTD malware and file policies
  • Implement Cisco FTD site-to-site VPN
  • Implement Cisco FTD remote access VPN
  • Describe and implement Cisco FTD high availability
  • Troubleshoot Cisco FTD policies and deployments

Course Outline

Labs & Practical Exercises

Hands-on labs covering Cisco FTD initial setup, access control policies, SSL decryption, intrusion prevention, malware and file policies, site-to-site and remote access VPN, and high availability. Participants will configure and manage a full Cisco Firepower deployment using FMC.

Certification & Assessment

Prepares candidates for the Cisco CCNP Security concentration exam (300-710 SNCF). Counts towards the CCNP Security certification.

Cookie Consent

We use cookies to enhance your browsing experience, analyse site traffic, and personalise content. By clicking "Accept All", you consent to our use of cookies. You can manage your preferences or learn more in our Privacy Policy.