larger cover

Add To My Wish List

Register your product to gain access to bonus material or receive a coupon.

Cisco Next-Generation Security Solutions: All-in-one Cisco ASA Firepower Services, NGIPS, and AMP

Book

  • Sorry, this book is no longer in print.
Not for Sale

eBook

  • Your Price: $46.39
  • List Price: $57.99
  • Includes EPUB and PDF
  • About eBook Formats
  • This eBook includes the following formats, accessible from your Account page after purchase:

    ePub EPUB The open industry format known for its reflowable content and usability on supported mobile devices.

    Adobe Reader PDF The popular standard, used most often with the free Acrobat® Reader® software.

    This eBook requires no passwords or activation to read. We customize your eBook by discreetly watermarking it with your name, making it uniquely yours.

  • About
  • Description
  • Sample Content
  • Updates

Features

• The definitive insider's guide to next-generation security with Cisco's Advanced Malware Protection (AMP) Firewall and IPS Services
• The key official resource for learning about Cisco's flagship and core next-generation security products
• Offers expert guidance on designing, configuring, managing, and troubleshooting advanced Cisco solutions for network visibility and control
• Introduces Cisco AMP for Networks, AMP for Endpoints, AMP Private Cloud Virtual Appliance, AMP for Cisco Email Security, AMP for Cisco Web
• Security, AMP for Cisco ASA for FirePOWER Services, and FireSIGHT Management Center (FSMC)
• Focuses on practical methods, applications, and examples, not just theory
• Includes easy-to-follow configurations, triage and troubleshooting steps, case studies, and illustrations

  • Copyright 2016
  • Dimensions: 7-3/8" x 9-1/8"
  • Pages: 368
  • Edition: 1st
  • Book
  • ISBN-10: 1-58714-446-8
  • ISBN-13: 978-1-58714-446-2

Network threats are emerging and changing faster than ever before. Cisco Next-Generation Network Security technologies give you all the visibility and control you need to anticipate and meet tomorrow’s threats, wherever they appear. Now, three Cisco network security experts introduce these products and solutions, and offer expert guidance for planning, deploying, and operating them.

The authors present authoritative coverage of Cisco ASA with FirePOWER Services; Cisco Firepower Threat Defense (FTD); Cisco Next-Generation IPS appliances; the Cisco Web Security Appliance (WSA) with integrated Advanced Malware Protection (AMP); Cisco Email Security Appliance (ESA) with integrated Advanced Malware Protection (AMP); Cisco AMP ThreatGrid Malware Analysis and Threat Intelligence, and the
Cisco Firepower Management Center (FMC).

You’ll find everything you need to succeed: easy-to-follow configurations, application case studies, practical triage and troubleshooting methodologies, and much more.

  • Effectively respond to changing threat landscapes and attack continuums
  • Design Cisco ASA with FirePOWER Services and Cisco Firepower Threat Defense (FTD) solutions
  • Set up, configure, and troubleshoot the Cisco ASA FirePOWER Services module and Cisco Firepower Threat Defense
  • Walk through installing AMP Private Clouds
  • Deploy Cisco AMP for Networks, and configure malware and file policies
  • Implement AMP for Content Security, and configure File Reputation and File Analysis Services
  • Master Cisco AMP for Endpoints, including custom detection, application control, and policy management
  • Make the most of the AMP ThreatGrid dynamic malware analysis engine
  • Manage Next-Generation Security Devices with the Firepower Management Center (FMC)
  • Plan, implement, and configure Cisco Next-Generation IPS—including performance and redundancy
  • Create Cisco Next-Generation IPS custom reports and analyses
  • Quickly identify the root causes of security problems

Sample Pages

Download the sample pages (includes Chapter 2 and the Index.)

Table of Contents

Introduction

Chapter 1 Fundamentals of Cisco Next-Generation Security

The New Threat Landscape and Attack Continuum

Cisco ASA 5500-X Series Next-Generation Firewalls and the Cisco ASA
with FirePOWER Services

Cisco Firepower Threat Defense (FTD)

Next-Generation Intrusion Prevention Systems (NGIPS)

Firepower Management Center

AMP for Endpoints

AMP for Networks

AMP Threat Grid

Email Security Overview

Web Security Overview

Cisco Identity Services Engine (ISE)

Cisco Meraki Cloud-Managed MDM

Cisco Meraki Cloud-Managed Security Appliances

Cisco VPN Solutions

Summary

Chapter 2 Introduction to and Design of Cisco ASA with FirePOWER Services

Introduction to Cisco ASA FirePOWER Services

Inline versus Promiscuous Mode

Cisco ASA FirePOWER Management Options

Cisco ASA FirePOWER Services Sizing

Cisco ASA FirePOWER Services Licensing

Cisco ASA FirePOWER Compatibility with Other Cisco ASA Features

Cisco ASA FirePOWER Packet Processing Order of Operations

Cisco ASA FirePOWER Services and Failover

Cisco ASA FirePOWER Services and Clustering

Deploying the Cisco ASA FirePOWER Services in the Internet Edge

Deploying the Cisco ASA FirePOWER Services in VPN Scenarios

Deploying Cisco ASA FirePOWER Services in the Data Center

Firepower Threat Defense (FTD)

Summary

Chapter 3 Configuring Cisco ASA with FirePOWER Services

Setting Up the Cisco ASA FirePOWER Module in Cisco ASA 5585-X Appliances

Setting Up the Cisco ASA FirePOWER Module in Cisco ASA 5500-X Appliances

Configuring the Cisco ASA to Redirect Traffic to the Cisco ASA FirePOWER Module

Configuring the Cisco ASA FirePOWER Module for the FMC

Configuring the Cisco ASA FirePOWER Module Using the ASDM

Firepower Threat Defense

Summary

Chapter 4 Troubleshooting Cisco ASA with FirePOWER Services and Firepower Threat Defense (FTD)

Useful show Commands

Useful ASA Debugging Commands

Summary

Chapter 5 Introduction to and Architecture of Cisco AMP

Introduction to Advanced Malware Protection (AMP)

Role of the AMP Cloud

Doing Security Differently

The Cloud

Private Cloud

Installing the Cisco AMP Private Cloud

Summary

Chapter 6 Cisco AMP for Networks

Introduction to Advanced Malware Protection (AMP) for Networks

Summary

Chapter 7 Cisco AMP for Content Security

Introduction to AMP for Content Security

Content Security Connectors

Configuring Cisco AMP for Content Security

AMP Reports

Summary

Chapter 8 Cisco AMP for Endpoints

Introduction to AMP for Endpoints

What Is AMP for Endpoints?

Connections to the AMP Cloud

Outbreak Control

The Many Faces of AMP for Endpoints

AMP for Windows

AMP for Mac

AMP for Linux

AMP for Android

Installing AMP for Endpoints

Proxy Complications

Using the Cloud Console

Summary

Chapter 9 AMP Threat Grid: Malware Analysis and Threat Intelligence

Cisco AMP Threat Grid

Cisco AMP Threat Grid Cloud Solution

Cisco AMP Threat Grid On-Premises Appliance

Summary

Chapter 10 Introduction to and Deployment of Cisco Next-Generation IPS

NGIPS Basics

NGIPS Deployment Design Considerations

NGIPS Deployment Lifecycle

Summary

Chapter 11 Configuring Cisco Next-Generation IPS

Policy

Snort Rules

Performance Settings

Stack/Cluster

Summary

Chapter 12 Reporting and Troubleshooting with Cisco Next-Generation IPS

Analysis

Troubleshooting

Summary

Errata

We've made every effort to ensure the accuracy of this book and its companion content. Any errors that have been confirmed since this book was published can be downloaded below.

Download the errata

Submit Errata

Cisco Press Promotional Mailings & Special Offers

I would like to receive exclusive offers and hear about products from Cisco Press and its family of brands. I can unsubscribe at any time.