larger cover

Add To My Wish List

Register your product to gain access to bonus material or receive a coupon.

Cisco Next-Generation Security Solutions: All-in-one Cisco ASA Firepower Services, NGIPS, and AMP

Best Value Purchase

Book + eBook Bundle

  • Your Price: $64.79
  • List Price: $107.98
  • Includes EPUB, MOBI, and PDF
  • About eBook Formats
  • This eBook includes the following formats, accessible from your Account page after purchase:

    ePub EPUB The open industry format known for its reflowable content and usability on supported mobile devices.

    MOBI MOBI The eBook format compatible with the Amazon Kindle and Amazon Kindle applications.

    Adobe Reader PDF The popular standard, used most often with the free Adobe® Reader® software.

    This eBook requires no passwords or activation to read. We customize your eBook by discreetly watermarking it with your name, making it uniquely yours.

Individual Purchases

Book

  • Your Price: $47.99
  • List Price: $59.99
  • Usually ships in 24 hours.

eBook (Watermarked)

  • Your Price: $38.39
  • List Price: $47.99
  • Includes EPUB, MOBI, and PDF
  • About eBook Formats
  • This eBook includes the following formats, accessible from your Account page after purchase:

    ePub EPUB The open industry format known for its reflowable content and usability on supported mobile devices.

    MOBI MOBI The eBook format compatible with the Amazon Kindle and Amazon Kindle applications.

    Adobe Reader PDF The popular standard, used most often with the free Adobe® Reader® software.

    This eBook requires no passwords or activation to read. We customize your eBook by discreetly watermarking it with your name, making it uniquely yours.

  • About
  • Description
  • Sample Content
  • Updates

Features

• The definitive insider's guide to next-generation security with Cisco's Advanced Malware Protection (AMP) Firewall and IPS Services
• The key official resource for learning about Cisco's flagship and core next-generation security products
• Offers expert guidance on designing, configuring, managing, and troubleshooting advanced Cisco solutions for network visibility and control
• Introduces Cisco AMP for Networks, AMP for Endpoints, AMP Private Cloud Virtual Appliance, AMP for Cisco Email Security, AMP for Cisco Web
• Security, AMP for Cisco ASA for FirePOWER Services, and FireSIGHT Management Center (FSMC)
• Focuses on practical methods, applications, and examples, not just theory
• Includes easy-to-follow configurations, triage and troubleshooting steps, case studies, and illustrations

  • Copyright 2016
  • Dimensions: 7-3/8" x 9-1/8"
  • Pages: 368
  • Edition: 1st
  • Book
  • ISBN-10: 1-58714-446-8
  • ISBN-13: 978-1-58714-446-2

Network threats are emerging and changing faster than ever before. Cisco Next-Generation Network Security technologies give you all the visibility and control you need to anticipate and meet tomorrow’s threats, wherever they appear. Now, three Cisco network security experts introduce these products and solutions, and offer expert guidance for planning, deploying, and operating them.


The authors present authoritative coverage of Cisco ASA with FirePOWER Services; Cisco Firepower Threat Defense (FTD); Cisco Next-Generation IPS appliances; the Cisco Web Security Appliance (WSA) with integrated Advanced Malware Protection (AMP); Cisco Email Security Appliance (ESA) with integrated Advanced Malware Protection (AMP); Cisco AMP ThreatGrid Malware Analysis and Threat Intelligence, and the
Cisco Firepower Management Center (FMC).


You’ll find everything you need to succeed: easy-to-follow configurations, application case studies, practical triage and troubleshooting methodologies, and much more.

  • Effectively respond to changing threat landscapes and attack continuums
  • Design Cisco ASA with FirePOWER Services and Cisco Firepower Threat Defense (FTD) solutions
  • Set up, configure, and troubleshoot the Cisco ASA FirePOWER Services module and Cisco Firepower Threat Defense
  • Walk through installing AMP Private Clouds
  • Deploy Cisco AMP for Networks, and configure malware and file policies
  • Implement AMP for Content Security, and configure File Reputation and File Analysis Services
  • Master Cisco AMP for Endpoints, including custom detection, application control, and policy management
  • Make the most of the AMP ThreatGrid dynamic malware analysis engine
  • Manage Next-Generation Security Devices with the Firepower Management Center (FMC)
  • Plan, implement, and configure Cisco Next-Generation IPS—including performance and redundancy
  • Create Cisco Next-Generation IPS custom reports and analyses
  • Quickly identify the root causes of security problems

Online Sample Chapter

Introduction to and Design of Cisco ASA with FirePOWER Services

Sample Pages

Download the sample pages (includes Chapter 2 and the Index.)

Table of Contents

Introduction  

Chapter 1 Fundamentals of Cisco Next-Generation Security 

The New Threat Landscape and Attack Continuum

Cisco ASA 5500-X Series Next-Generation Firewalls and the Cisco ASA
with FirePOWER Services  

Cisco Firepower Threat Defense (FTD)  

Next-Generation Intrusion Prevention Systems (NGIPS)  

Firepower Management Center  

AMP for Endpoints  

AMP for Networks  

AMP Threat Grid  

Email Security Overview  

Web Security Overview 

Cisco Identity Services Engine (ISE)

Cisco Meraki Cloud-Managed MDM

Cisco Meraki Cloud-Managed Security Appliances

Cisco VPN Solutions 

Summary


Chapter 2  Introduction to and Design of Cisco ASA with FirePOWER Services 

 Introduction to Cisco ASA FirePOWER Services  

Inline versus Promiscuous Mode  

Cisco ASA FirePOWER Management Options  

Cisco ASA FirePOWER Services Sizing  

Cisco ASA FirePOWER Services Licensing

Cisco ASA FirePOWER Compatibility with Other Cisco ASA Features  

Cisco ASA FirePOWER Packet Processing Order of Operations

Cisco ASA FirePOWER Services and Failover

Cisco ASA FirePOWER Services and Clustering  

Deploying the Cisco ASA FirePOWER Services in the Internet Edge  

Deploying the Cisco ASA FirePOWER Services in VPN Scenarios  

Deploying Cisco ASA FirePOWER Services in the Data Center  

Firepower Threat Defense (FTD)  

Summary 

Chapter 3  Configuring Cisco ASA with FirePOWER Services  

Setting Up the Cisco ASA FirePOWER Module in Cisco ASA 5585-X Appliances  

Setting Up the Cisco ASA FirePOWER Module in Cisco ASA 5500-X Appliances  

Configuring the Cisco ASA to Redirect Traffic to the Cisco ASA FirePOWER Module  

Configuring the Cisco ASA FirePOWER Module for the FMC  

Configuring the Cisco ASA FirePOWER Module Using the ASDM  

Firepower Threat Defense  

Summary  


Chapter 4 Troubleshooting Cisco ASA with FirePOWER Services and Firepower Threat Defense (FTD)  

Useful show Commands  

Useful ASA Debugging Commands  

Summary  


Chapter 5 Introduction to and Architecture of Cisco AMP  

Introduction to Advanced Malware Protection (AMP)  

Role of the AMP Cloud  

Doing Security Differently  

The Cloud  

Private Cloud  

Installing the Cisco AMP Private Cloud  

Summary  


Chapter 6 Cisco AMP for Networks  

Introduction to Advanced Malware Protection (AMP) for Networks  

Summary  


Chapter 7 Cisco AMP for Content Security  

Introduction to AMP for Content Security  

Content Security Connectors  

Configuring Cisco AMP for Content Security  

AMP Reports  

Summary  


Chapter 8 Cisco AMP for Endpoints  

Introduction to AMP for Endpoints  

What Is AMP for Endpoints?  

Connections to the AMP Cloud  

Outbreak Control  

The Many Faces of AMP for Endpoints  

AMP for Windows  

AMP for Mac  

AMP for Linux  

AMP for Android  

Installing AMP for Endpoints  

Proxy Complications  

Using the Cloud Console  

Summary  


Chapter 9  AMP Threat Grid: Malware Analysis and Threat Intelligence  

Cisco AMP Threat Grid  

Cisco AMP Threat Grid Cloud Solution  

Cisco AMP Threat Grid On-Premises Appliance  

Summary  


Chapter 10  Introduction to and Deployment of Cisco Next-Generation IPS  

NGIPS Basics  

NGIPS Deployment Design Considerations  

NGIPS Deployment Lifecycle  

Summary  


Chapter 11 Configuring Cisco Next-Generation IPS  

Policy  

Snort Rules  

Performance Settings  

Stack/Cluster  

Summary  


Chapter 12 Reporting and Troubleshooting with Cisco Next-Generation IPS  

Analysis  

Troubleshooting  

Summary  

Unlimited one-month access with your purchase
Free Safari Membership