Cisco
Secure PIX Firewall (CSPFA)
The Cisco Secure PIX Firewall Advanced (CSPFA 642-521) course
focuses on building and maintaining Cisco security solutions, including standalone
firewall
products and IOS software features.
The following objectives are discussed:
Describe the Adaptive Security Algorithm (ASA) and security levels
Describe basic commands for the PIX Firewall (Access Configuration Through the PIX
Firewall)
Describe nat and global
Describe static and conduit
Configure multiple interfaces
Define Authentication, Authorization, and Accounting
Describe the differences between Authentication, Authorization,
and Accounting
Describe how users authenticate to the PIX Firewall
Describe how Cut-Through Proxy technology works
Name the AAA protocols supported by PIX Firewall
Install and configure Cisco Secure ACS for Windows NT
Configure AAA on the PIX Firewall
Understand and configure the Access Control List (ACL)
Configure Active Code Filtering (Active X and Java applets)
Configure WebSENSE for URL filtering with the PIX Firewall
Describe the need for advanced protocol handling
Describe how the PIX Firewall handles FTP, RSH, and SQL *Net
traffic
Configure FTP, RSH, and SQL *Net Fixup protocols
Describe the issues with multimedia applications
Describe how the PIX Firewall handles RTSP and H.323 multimedia protocols
Configure RTSP and H.323 protocols
Name, describe, and configure the attack guards in the PIX Firewall
Describe the primary, secondary, active, and standby PIX Firewall
Describe how failover works
Describe how configuration replication works
Define failover and stateful failover
Configure the PIX Firewall for stateful failover
Identify the failover interface tests
Define Cisco Secure Integrated Software
Define Cisco IOS Firewall
Define Context-Based Access Control
Configure CBAC
Describe how users authenticate to a CSIS router
Describe how authentication proxy technology works
Configure AAA on a CSIS router
Identify how the PIX Firewall enables a secure VPN
Identify the tasks to configure PIX Firewall IPSec support
Identify the commands to configure PIX Firewall IPSec support
Configure a VPN between PIX Firewalls
CNTLC Inc. provides the training for the above certification.