Cisco Secure PIX Firewalls
暫譯: Cisco Secure PIX 防火牆

David W. Chapman Jr., Andy Fox

  • 出版商: Cisco Press
  • 出版日期: 2001-12-18
  • 售價: $1,540
  • 貴賓價: 9.5$1,463
  • 語言: 英文
  • 頁數: 351
  • 裝訂: Hardcover
  • ISBN: 1587050358
  • ISBN-13: 9781587050350
  • 相關分類: Cisco
  • 已絕版

買這商品的人也買了...

商品描述

 

Reduce the threat of network attacks with an authorized self-study guide

One of the primary components of any organization's security policy is the implementation and maintenance of firewalls. Firewalls are network devices residing at the perimeter of corporate networks that protect internal networks from intrusion by the outside world. The integrated hardware/software PIX Firewall series delivers high security without impacting network performance while scaling to meet the entire range of customer requirements.

Based on the official instructor-led training course (Cisco Secure PIX Firewall Advanced-CSPFA), Cisco Secure PIX Firewalls teaches you the skills needed to describe, configure, verify, and manage the PIX Firewall product family and the Cisco IOS(r) Firewall feature set. Starting with a discussion of hacking methodologies and internal and external threats, this book opens by describing the Cisco Security Wheel, emphasizing network security as a continuous process. The authors then familiarize you with the characteristics of the various PIX models and examine upgrade tasks. This book covers basic installation details, as well as how to enable more advanced features and access control. In addition, this book details management and monitoring with PIX Syslog services and the PIX AAA subsystem. You also learn to configure the PIX Failover mechanism, IPSec on the PIX, and the Cisco IOS Firewall feature set. The appendixes provide helpful references, including configuring PIX intrusion detection features, SNMP management support, DHCP client and server, Secure Shell Protocol (SSH) connection, and dozens of security-related resources.

Whether you are preparing for the Cisco Security Specialist 1 certification or simply want to understand and make the most efficient use of PIX Firewalls, Cisco Secure PIX Firewalls provides you with a complete solution for planning, deploying, and managing PIX Firewall protected networks.

  • Prepare for the Cisco Security Specialist 1 PIX exam with the official CSPFA self-study guide
  • Understand the physical characteristics of PIX models 506, 515, 520, 525, and 535, including LED information and port and slot numbering
  • Upgrade PIX OS code, perform password recovery, and install feature licenses
  • Configure IPSec Phase I and Phase II Security Associations
  • Configure Cisco routers to perform Context Based Access Control (CBAC)
  • Examine the many operating features of the PIX, such as Cut-Through Proxy, Advanced Protocol Handling, Attack Guards, and the Adaptive Security Algorithm (ASA)
  • Learn the ins and outs of address translation and access control
  • Install the Cisco Secure ACS server and configure corresponding services on the PIX to authenticate and authorize users and services
  • Understand attack guards such as Syn Flood, Fragmentation, AAA, DNS, and Mail
  • Examine the workings of the PIX failover mechanism and learn the difference between failover, stateful failover, interface testing, and the failover poll

Table of Contents

1. Introduction to Network Security.
2. Cisco PIX Firewall Software and Hardware.
3. Working with and Upgrading the Cisco PIX Firewall Software Image.
4. Configuring the Cisco PIX Firewall.
5. Cisco PIX Firewall Translation.
6. Configuring Access Through the Cisco PIX Firewall.
7. Syslog and General Maintenance.
8. AAA Configuration on the Cisco PIX Firewall.
9. Cisco PIX Firewall Advanced Protocol Handling and Attack Guards.
10. Cisco PIX Firewall Failover.
11. Configuring IPSec for Cisco PIX Firewalls.
12. Cisco IOS Firewall Context-Based Access Control.
13. Cisco IOS Firewall Authentication Proxy Configuration.
Appendix A: Configuring the Cisco PIX Firewall for Intrusion Detection.
Appendix B: Configuring Simple Network Management Protocol (SNMP) on the PIX Firewall.
Appendix C: Configuring Dynamic Host Configuration Protocol (DHCP) on the PIX Firewall.
Appendix D: Configuring Secure Shell (SSH) on the PIX Firewall.
Appendix E: Security Resources.
Appendix F: Answers to Chapter Review Questions.

商品描述(中文翻譯)

減少網路攻擊威脅的授權自學指南

任何組織安全政策的主要組成部分之一是防火牆的實施和維護。防火牆是位於企業網路邊界的網路設備,保護內部網路免受外部世界的入侵。集成硬體/軟體的 PIX 防火牆系列在不影響網路性能的情況下提供高安全性,並能擴展以滿足各種客戶需求。

基於官方的講師主導訓練課程 (Cisco Secure PIX Firewall Advanced-CSPFA),《Cisco Secure PIX Firewalls》教您描述、配置、驗證和管理 PIX 防火牆產品系列及 Cisco IOS(r) 防火牆功能集所需的技能。本書首先討論駭客方法論以及內部和外部威脅,接著描述 Cisco 安全輪,強調網路安全是一個持續的過程。作者隨後讓您熟悉各種 PIX 型號的特性並檢查升級任務。本書涵蓋基本安裝細節,以及如何啟用更高級的功能和存取控制。此外,本書詳細介紹了使用 PIX Syslog 服務和 PIX AAA 子系統的管理和監控。您還將學習配置 PIX 故障轉移機制、在 PIX 上配置 IPSec 以及 Cisco IOS 防火牆功能集。附錄提供了有用的參考資料,包括配置 PIX 入侵檢測功能、SNMP 管理支援、DHCP 客戶端和伺服器、安全外殼協議 (SSH) 連接,以及數十個與安全相關的資源。

無論您是準備 Cisco Security Specialist 1 認證,還是僅僅想了解並有效利用 PIX 防火牆,《Cisco Secure PIX Firewalls》都為您提供了規劃、部署和管理 PIX 防火牆保護網路的完整解決方案。

- 準備 Cisco Security Specialist 1 PIX 考試的官方 CSPFA 自學指南
- 了解 PIX 型號 506、515、520、525 和 535 的物理特性,包括 LED 資訊和埠及插槽編號
- 升級 PIX OS 代碼,執行密碼恢復,並安裝功能許可證
- 配置 IPSec 第一階段和第二階段安全關聯
- 配置 Cisco 路由器以執行基於上下文的存取控制 (CBAC)
- 檢查 PIX 的多種操作功能,如切通代理、高級協議處理、攻擊防護和自適應安全演算法 (ASA)
- 學習地址轉換和存取控制的細節
- 安裝 Cisco Secure ACS 伺服器並在 PIX 上配置相應服務以驗證和授權用戶及服務
- 了解攻擊防護,如 Syn Flood、分片、AAA、DNS 和郵件
- 檢查 PIX 故障轉移機制的運作,並了解故障轉移、狀態故障轉移、介面測試和故障轉移輪詢之間的區別

目錄
1. 網路安全簡介。
2. Cisco PIX 防火牆軟體和硬體。
3. 使用和升級 Cisco PIX 防火牆軟體映像。
4. 配置 Cisco PIX 防火牆。
5. Cisco PIX 防火牆翻譯。
6. 通過 Cisco PIX 防火牆配置存取。
7. Syslog 和一般維護。
8. Cisco PIX 防火牆上的 AAA 配置。
9. Cisco PIX 防火牆高級協議處理和攻擊防護。
10. Cisco PIX 防火牆故障轉移。
11. 為 Cisco PIX 防火牆配置 IPSec。
12. Cisco IOS 防火牆基於上下文的存取控制。
13. Cisco IOS 防火牆身份驗證代理配置。
附錄 A: 配置 Cisco PIX 防火牆以進行入侵檢測。
附錄 B: 在 PIX 防火牆上配置簡單網路管理協議 (SNMP)。
附錄 C: 在 PIX 防火牆上配置動態主機配置協議 (DHCP)。
附錄 D: 在 PIX 防火牆上配置安全外殼 (SSH)。
附錄 E: 安全資源。
附錄 F: 章節回顧問題的答案。