Cisco Secure Firewall Services Module (FWSM)
暫譯: Cisco 安全防火牆服務模組 (FWSM)
Ray Blair, Arvind Durai
- 出版商: Cisco Press
- 出版日期: 2008-08-29
- 定價: $2,240
- 售價: 8.0 折 $1,792
- 語言: 英文
- 頁數: 528
- 裝訂: Paperback
- ISBN: 1587053535
- ISBN-13: 9781587053535
-
相關分類:
Cisco
立即出貨 (庫存 < 4)
買這商品的人也買了...
-
$890$703 -
$990$782 -
$760$600 -
$299$236 -
$480$408 -
$880$695 -
$990$891 -
$600$480 -
$540$427 -
$620$490 -
$650$514 -
$420$357 -
$360$284 -
$420$357 -
$490$417 -
$590$460 -
$450$405 -
$590$502 -
$680$578 -
$490$417 -
$520$411 -
$420$328 -
$680$537 -
$199$169 -
$780$616
商品描述
Cisco Secure Firewall Services Module (FWSM)
Best practices for securing networks with FWSM
Ray Blair, CCIE® No. 7050
Arvind Durai, CCIE No. 7016
The Firewall Services Module (FWSM) is a high-performance stateful-inspection firewall that integrates into the Cisco® 6500 switch and 7600 router chassis. The FWSM monitors traffic flows using application inspection engines to provide a strong level of network security. The FWSM defines the security parameter and enables the enforcement of security policies through authentication, access control lists, and protocol inspection. The FWSM is a key component to anyone deploying network security.
Cisco Secure Firewall Services Module (FWSM) covers all aspects of the FWSM. The book provides a detailed look at how the FWSM processes information, as well as installation advice, configuration details, recommendations for network integration, and reviews of operation and management. This book provides you with a single source that comprehensively answers how and why the FWSM functions as it does. This information enables you to successfully deploy the FWSM and gain the greatest functional benefit from your deployment. Practical examples throughout show you how other customers have successfully deployed the FWSM.
By reading this book, you will learn how the FWSM functions, the differences between the FWSM and the ASA Security Appliance, how to implement and maintain the FWSM, the latest features of the FWSM, and how to configure common installations.
Ray Blair, CCIE® No. 7050, is a consulting systems architect who has been with Cisco for more than 8 years, working primarily on security and large network designs. He has 20 years of experience in designing, implementing, and maintaining networks that have included nearly all networking technologies. Mr. Blair maintains three CCIE certifications in Routing and Switching, Security, and Service Provider. He is also a CNE and a CISSP.
Arvind Durai, CCIE No. 7016, is an advanced services technical leader for Cisco. His primary responsibility has been in supporting major Cisco customers in the enterprise sector. One of his focuses has been on security, and he has authored several white papers and design guides in various technologies. Mr. Durai maintains two CCIE certifications, in Routing and Switching and Security.
- Understand modes of operation, security levels, and contexts for the FWSM
- Configure routing protocols and the host-chassis to support the FWSM
- Deploy ACLs and Authentication, Authorization, and Accounting (AAA)
- Apply class and policy maps
- Configure multiple FWSMs for failover support
- Configure application and protocol inspection
- Filter traffic using filter servers, ActiveX, and Java filtering functions
- Learn how IP multicast and the FWSM interact
- Increase performance with firewall load balancing
- Configure IPv6 and asymmetric routing
- Mitigate network attacks using shunning, anti-spoofing, connection limits, and timeouts
- Examine network design, management, and troubleshooting best practices
This security book is part of the Cisco Press® Networking Technology series. Security titles from Cisco Press help networking professionals secure critical data and resources, prevent and mitigate network attacks, and build end-to-end self-defending networks.
Category: Networking: Security
Covers: Firewall security
商品描述(中文翻譯)
《Cisco 安全防火牆服務模組 (FWSM)》
使用 FWSM 保護網路的最佳實踐
Ray Blair, CCIE® 編號 7050
Arvind Durai, CCIE 編號 7016
防火牆服務模組 (FWSM) 是一款高效能的狀態檢查防火牆,整合於 Cisco® 6500 交換機和 7600 路由器底盤中。FWSM 使用應用程式檢查引擎監控流量,提供強大的網路安全性。FWSM 定義安全參數,並透過身份驗證、存取控制清單和協定檢查來執行安全政策。FWSM 是任何部署網路安全的關鍵組件。
《Cisco 安全防火牆服務模組 (FWSM)》涵蓋了 FWSM 的所有方面。本書詳細介紹了 FWSM 如何處理資訊,以及安裝建議、配置細節、網路整合建議和操作與管理的回顧。本書提供了一個綜合來源,全面回答 FWSM 為何及如何運作。這些資訊使您能夠成功部署 FWSM,並從部署中獲得最大的功能效益。書中提供的實際範例展示了其他客戶如何成功部署 FWSM。
透過閱讀本書,您將學習 FWSM 的運作方式、FWSM 與 ASA 安全設備之間的差異、如何實施和維護 FWSM、FWSM 的最新功能,以及如何配置常見的安裝。
Ray Blair, CCIE® 編號 7050,是一位顧問系統架構師,已在 Cisco 工作超過 8 年,主要從事安全性和大型網路設計。他擁有 20 年的經驗,設計、實施和維護幾乎所有網路技術的網路。Blair 先生擁有路由與交換、安全性和服務提供者三項 CCIE 認證。他同時也是 CNE 和 CISSP。
Arvind Durai, CCIE 編號 7016,是 Cisco 的高級服務技術領導者。他的主要責任是支持企業部門的主要 Cisco 客戶。他的重點之一是安全性,並且他在各種技術中撰寫了幾篇白皮書和設計指南。Durai 先生擁有路由與交換和安全性兩項 CCIE 認證。
- 了解 FWSM 的操作模式、安全級別和上下文
- 配置路由協定和主機底盤以支援 FWSM
- 部署 ACL 和身份驗證、授權及會計 (AAA)
- 應用類別和政策映射
- 配置多個 FWSM 以支援故障轉移
- 配置應用程式和協定檢查
- 使用過濾伺服器、ActiveX 和 Java 過濾功能過濾流量
- 瞭解 IP 多播與 FWSM 的互動
- 透過防火牆負載平衡提高效能
- 配置 IPv6 和非對稱路由
- 使用隔離、反欺騙、連接限制和超時來減輕網路攻擊
- 檢視網路設計、管理和故障排除的最佳實踐
這本安全書籍是 Cisco Press® 網路技術系列的一部分。Cisco Press 的安全書籍幫助網路專業人員保護關鍵數據和資源,防止和減輕網路攻擊,並建立端到端的自我防禦網路。
類別:網路:安全
涵蓋:防火牆安全