Op werkdagen voor 23:00 besteld, morgen in huis Gratis verzending vanaf €20
,

Cisco ISE for BYOD and Secure Unified Access

Paperback Engels 2017 2e druk 9781587144738
Verwachte levertijd ongeveer 9 werkdagen

Samenvatting

Fully updated: The complete guide to Cisco Identity Services Engine solutions

Using Cisco Secure Access Architecture and Cisco Identity Services Engine, you can secure and gain control of access to your networks in a Bring Your Own Device (BYOD) world.

This second edition of Cisco ISE for BYOD and Secure Unified Accesscontains more than eight brand-new chapters as well as extensively updated coverage of all the previous topics in the first edition book to reflect the latest technologies, features, and best practices of the ISE solution. It begins by reviewing today’s business case for identity solutions. Next, you walk through ISE foundational topics and ISE design. Then you explore how to build an access security policy using the building blocks of ISE. Next are the in-depth and advanced ISE configuration sections, followed by the troubleshooting and monitoring chapters. Finally, we go in depth on the new TACACS+ device administration solution that is new to ISE and to this second edition.

With this book, you will gain an understanding of ISE configuration, such as identifying users, devices, and security posture; learn about Cisco Secure Access solutions; and master advanced techniques for securing access to networks, from dynamic segmentation to guest access and everything in between.

Drawing on their cutting-edge experience supporting Cisco enterprise customers, the authors offer in-depth coverage of the complete lifecycle for all relevant ISE solutions, making this book a cornerstone resource whether you’re an architect, engineer, operator, or IT manager.

Review evolving security challenges associated with borderless networks, ubiquitous mobility, and consumerized IT
Understand Cisco Secure Access, the Identity Services Engine (ISE), and the building blocks of complete solutions
Design an ISE-enabled network, plan/distribute ISE functions, and prepare for rollout
Build context-aware security policies for network access, devices, accounting, and audit
Configure device profiles, visibility, endpoint posture assessments, and guest services
Implement secure guest lifecycle management, from WebAuth to sponsored guest access
Configure ISE, network access devices, and supplicants, step by step
Apply best practices to avoid the pitfalls of BYOD secure access
Set up efficient distributed ISE deployments
Provide remote access VPNs with ASA and Cisco ISE
Simplify administration with self-service onboarding and registration
Deploy security group access with Cisco TrustSec
Prepare for high availability and disaster scenarios
Implement passive identities via ISE-PIC and EZ Connect
Implement TACACS+ using ISE
Monitor, maintain, and troubleshoot ISE and your entire Secure Access system
Administer device AAA with Cisco IOS, WLC, and Nexus

Specificaties

ISBN13:9781587144738
Taal:Engels
Bindwijze:paperback
Aantal pagina's:912
Uitgever:Cisco Press
Druk:2
Verschijningsdatum:28-4-2017
Hoofdrubriek:IT-management / ICT

Lezersrecensies

Wees de eerste die een lezersrecensie schrijft!

Over Aaron Woland

Aaron Woland , CCIE No. 20113, is a Senior Secure Access Engineer at Cisco Systems and works with Cisco's largest customers all over the world. His primary job responsibilities include secure access and ISE deployments, solution enhancements, futures, and escalations. Aaron joined Cisco in 2005 and is currently a member of numerous security advisory boards. Prior to joining Cisco, he spent 12 years as a consultant and technical trainer. His areas of expertise include network and host security architecture and implementation, regulatory compliance, and routing and switching. Aaron is the author of many white papers and design guides, including the TrustSec 2.0 Design and Implementation Guide and the NAC Layer 3 OOB Using VRFs for Traffic Isolation design guide. He is also a distinguished speaker at Cisco Live for topics related to identity and is a security columnist for Network World , where he blogs on all things related to identity. Additional certifications include CCSP, CCNP, CCDP, Certified Ethical Hacker, MCSE, and many other industry certifications.

Andere boeken door Aaron Woland

Over Jamey Heary

Jamey Heary, CCIE No. 7680, is a security consulting systems engineer at Cisco, where he works with its largest customers in the northwest United States. Jamey joined Cisco in 2000 and currently leads its Western Security Asset team and is a field advisor for its U.S. Security Virtual team. His areas of expertise include network and host security design and implementation, security regulatory compliance, and routing and switching. His other certifications include CISSP, CCSP, and Microsoft MCSE. He is also a Certified HIPAA Security Professional. He has been working in the IT field for 13 years and in IT security for 9 years.

Andere boeken door Jamey Heary

Inhoudsopgave

Introduction

Section I: Identity Enabled Network: Unite!
Chapter 1: Fundamentals of AAA
Chapter 2: The Evolution of Network Access
Chapter 3: Introducing Cisco Secure Access and the Identity Services Engine

Section II: The Blueprint, Designing an ISE Enabled Network
Chapter 3: What are the building blocks in ISE Design?
Chapter 4: Making Sense of all the ISE Design Options
Chapter 5: The Basics: Principal Configuration Tasks for ISE

Section III: The Foundation, Building a Context-Aware Security Policy
Chapter 6: Creating Authentication and Authorization Policies
Chapter 7: Building a Device Security Policy
Chapter 8: Building an Accounting and Audit Policy

Section IV: Let's Configure
Chapter 9: Profiling Basics and Initial Configuration
Chapter 10: Bootstrapping Network Access Devices
Chapter 11: The Building Blocks: Roles and Authorization Results
Chapter 12: Authentication and Authorization Policies
Chapter 13: Guest Lifecycle Management
Chapter 14: Device Posture Assessments
Chapter 15: Supplicant Configuration
Chapter 16: BYOD: Self Service Onboarding and Registration
Chapter 17: Setting up a Distributed ISE Deployment
Chapter 18: Remote Access VPN with ASA and Cisco ISE
Chapter 19: Deploying in Phases

Section V: Advanced Secure Access Features
Chapter 20: Advanced Profiling Configuration
Chapter 21: Cisco TrustSec AKA:Security Group Access
Chapter 22: High Availability & Disaster Scenario
Chapter 23: ISE Ecosystems: the platform exchange Grid

Section VI: Monitoring, Maintenance, and Troubleshooting for Network Access AAA
Chapter 24: Understanding Monitoring and Alerting
Chapter 25: Troubleshooting
Chapter 26: Backup, Upgrading

Section VII: Device Administration

Managementboek Top 100

Rubrieken

Populaire producten

    Personen

      Trefwoorden

        Cisco ISE for BYOD and Secure Unified Access