EMAIL SUPPORT

dclessons@dclessons.com

LOCATION

US

Cisco SDWAN Security (SDWSCS1.1)

Implementing Cisco SD-WAN Security & Cloud Solution ( SDWSCS 1.1 )

This Implementing Cisco SD-WAN Security & Cloud Solution (SDWSCS 1.1) training is an advanced SDWAN training which focuses on Cisco SD-WAN Seurity and cloud Services.

In this course you will learn application-aware enterprise firewall, intrusion prevention, URL filtering, malware protection, and Transport Layer Security (TLS) or Secure Socket Layer (SSL) decryption. You will also learn about cloud integration with multiple cloud service providers across multiple use cases.

In this course we have clearly defined tasks and each task has solution provided , which will make you learn how to configure particular use-case as a part of LAB. The training labs will allow you to configure and deploy local security services and cloud security services with the Cisco Umbrella Secure Internet Gateway (SIG), as well as integrate the Cisco SD-WAN fabric with a cloud service provider using the Cisco vManage automated workflows.

After Completing the course , you will be able to learn following concepts .

Course Pedagogy :

  • Cisco SD-WAN security functions and deployment options
  • Deploy on-premises threat prevention
  • Content filtering options
  • Implement secure Direct Internet Access (DIA)
  • Implement service chaining
  • Secure Access Service Edge (SASE) and identify use cases
  • Cisco Umbrella Secure Internet Gateway (SIG) and deployment options
  • Cisco Umbrella SIG and Domain Name System (DNS) policies
  • Cloud Access Security Broker (CASB) and identify use cases (including Microsoft 365)
  • Cisco ThousandEyes to monitor cloud services
  • Cisco ThousandEyes to monitor Microsoft 365 applications
  • Protect and optimize access to the Software as a Service (SaaS) application with Cisco SD-WAN Cloud OnRamp
  • Deploy Cloud OnRamp for multi-cloud, including interconnect and colocation use cases
  • SD-WAN monitoring capabilities and features with vManage and vAnalytics.

 

GENERAL FAQ

The Implementing Cisco SD-WAN Security and Cloud Solutions (SDWSCS) course focuses on advanced Cisco SD-WAN security and cloud integration. It covers on-premises security features like firewalls, intrusion prevention, and URL filtering, as well as cloud security and integration with various cloud services. The course also delves into topics like Cisco Umbrella SIG, Cisco ThousandEyes, and Cloud OnRamp. 
 
Here's a more detailed breakdown of the topics covered:
 
On-Premises Security:
  • Application-aware enterprise firewall:
    Implementing and configuring an application-aware firewall to protect against various threats.
  • Intrusion prevention:
    Setting up and managing intrusion prevention systems to detect and block malicious traffic.
  • URL filtering:
    Configuring URL filtering to block access to malicious websites and protect users from phishing attempts.
  • Malware protection:
    Implementing malware protection features to prevent and block malware infections.
  • TLS/SSL decryption:
    Deciphering encrypted traffic to inspect and filter malicious content. 
     
Cloud Security and Integration:
  • Cisco Umbrella SIG:
    Implementing and configuring Cisco Umbrella's Secure Internet Gateway (SIG) for cloud security.
  • Cisco ThousandEyes:
    Using Cisco ThousandEyes to monitor cloud services and applications, and troubleshoot performance issues.
  • Cloud OnRamp:
    Deploying and configuring Cloud OnRamp for multi-cloud environments, including interconnect and collocation use cases.
  • Cloud Interconnect:
    Establishing secure connections between Cisco SD-WAN and various cloud providers.
  • Cloud Access Security Broker (CASB):
    Understanding and implementing CASB solutions for cloud security.
  • Cisco vManage and vAnalytics:
    Utilizing Cisco vManage and vAnalytics to monitor and manage SD-WAN and cloud solutions.
  • Service Chaining:
    Implementing service chaining to route traffic through multiple security services.
  • Secure Access Service Edge (SASE):
    Exploring SASE concepts and identifying use cases.
  • Optimization of SaaS applications:
    Protecting and optimizing access to Software as a Service (SaaS) applications. 
Cisco SD-WAN courses cover a wide range of security features, including next-generation firewalls, intrusion prevention systems, URL filtering, malware protection, and SSL/TLS decryption, which are often integrated directly into the SD-WAN edge devices. Additionally, the course may delve into centralized policy management and secure connectivity within the SD-WAN infrastructure. 
 
Here's a more detailed breakdown of the security features covered:
 
On-box Security Features:
  • Next-Generation Firewalls (NGFWs):
    These firewalls offer application awareness and deep packet inspection, enabling granular control over traffic based on applications and protocols. 
     
  • Intrusion Prevention Systems (IPS):
    IPS utilizes signatures and threat intelligence to detect and prevent malicious activity, often updated automatically. 
     
  • URL Filtering:
    Allows blocking or allowing URLs based on web reputation scores, helping to mitigate phishing and malware risks. 
     
  • Malware Protection (AMP):
    Advanced Malware Protection continually analyzes file activity and detects, contains, and removes advanced malware. 
     
  • SSL/TLS Decryption:
    Inspects encrypted traffic to identify malicious content or threats that might be hidden within encrypted channels. 
     
SD-WAN Security Principles and Features:
  • Centralized Policy Management:
    A key benefit of SD-WAN is the ability to manage security policies centrally through a controller like vManage, reducing the risk of misconfigurations across distributed locations. 
     
  • Secure Connectivity:
    Cisco SD-WAN provides secure connectivity for data in transit through encryption and firewall capabilities, ensuring data privacy and protection against cyber threats. 
     
  • Fabric Security:
    Ensures that all devices within the SD-WAN fabric are genuine and trusted, preventing unauthorized devices from joining the network. 
     
  • Integrated Security:
    Security functions are integrated directly into the SD-WAN infrastructure, simplifying security management and reducing complexity. 
     
  • Cloud Security:
    Integration with cloud security providers like Cisco Umbrella or Secure Internet Gateway (SIG) enhances protection against cyber threats. 
     
  • Service Chaining:
    Allows routing SD-WAN traffic through external security devices for specialized security needs. 
     
Other Notable Features:
 
  • Application-Aware Routing:
    SD-WAN can route traffic based on application awareness, allowing for optimal performance and security for specific applications. 
     
  • Data Loss Prevention (DLP):
    Some SD-WAN solutions may include DLP capabilities to prevent sensitive data from leaving the network. 
     
  • Zero Trust Provisioning:
    SD-WAN can be configured to support Zero Trust security models, requiring authentication and authorization for all devices and users. 
     
  • Secure Out-of-Band Management:
    Secure out-of-band access allows for remote management and troubleshooting of SD-WAN devices while maintaining security. 
While not always explicitly designed as a beginner course, a Cisco SD-WAN course can be beneficial for those with some networking experienceThe course typically covers core SD-WAN concepts, design, deployment, and troubleshooting, which can be a valuable step for individuals looking to advance their networking skills, even if they're not yet experts. 
 
Elaboration:
  • Prerequisites:
    While SD-WAN courses often don't have strict prerequisites, a basic understanding of networking concepts, routing protocols (like BGP and OSPF), and enterprise WAN design is generally recommended. 
     
  • Benefits for Beginners:
    SD-WAN courses can provide a structured learning path to understand SD-WAN concepts, learn how to configure and manage SD-WAN solutions, and gain hands-on experience through labs. 
     
  • Target Audience:
    The courses are often designed for IT professionals, network engineers, and designers, but can be suitable for those with some networking background who are looking to learn more about SD-WAN. 
     
  • Course Content:
    SD-WAN courses typically cover topics like SD-WAN architecture, design, deployment, configuration, and troubleshooting. 
     
  • Hands-On Experience:
    Many courses include lab activities and practical exercises to help reinforce learning and build practical skills. 
     
  • Career Advancement:
    Gaining knowledge and skills in SD-WAN can be a valuable asset in today's IT landscape, as SD-WAN is becoming increasingly prevalent in enterprise networks. 
     
In summary, while not a "beginner-only" course, Cisco SD-WAN training can be a great resource for those with some networking experience who want to learn more about SD-WAN and advance their skills. 

Comment

  • WA

    In-depth SDWSCS1.1 courses, detailed content, perfect for networking professionals' advancement.


LEAVE A COMMENT

Please login here to comment.