Cisco Firewalls (Paperback)
暫譯: Cisco 防火牆 (平裝本)

Alexandre M.S.P. Moraes

  • 出版商: Cisco Press
  • 出版日期: 2011-06-16
  • 定價: $2,450
  • 售價: 6.0$1,470
  • 語言: 英文
  • 頁數: 912
  • 裝訂: Paperback
  • ISBN: 1587141094
  • ISBN-13: 9781587141096
  • 相關分類: Cisco
  • 相關翻譯: Cisco 防火牆 (Cisco Firewalls) (簡中版)
  • 立即出貨 (庫存=1)

買這商品的人也買了...

相關主題

商品描述

Cisco Firewalls

Concepts, design and deployment for Cisco Stateful Firewall solutions

 

In this book, Alexandre proposes a totally different approach to the important subject of firewalls: Instead of just presenting configuration models, he uses a set of carefully crafted examples to illustrate the theory in action. A must read!—Luc Billot, Security Consulting Engineer at Cisco

 

Cisco Firewalls thoroughly explains each of the leading Cisco firewall products, features, and solutions, and shows how they can add value to any network security design or operation. The author tightly links theory with practice, demonstrating how to integrate Cisco firewalls into highly secure, self-defending networks. Cisco Firewalls shows you how to deploy Cisco firewalls as an essential component of every network infrastructure. The book takes the unique approach of illustrating complex configuration concepts through step-by-step examples that demonstrate the theory in action. This is the first book with detailed coverage of firewalling Unified Communications systems, network virtualization architectures, and environments that include virtual machines. The author also presents indispensable information about integrating firewalls with other security elements such as IPS, VPNs, and load balancers; as well as a complete introduction to firewalling IPv6 networks. Cisco Firewalls will be an indispensable resource for engineers and architects designing and implementing firewalls; security administrators, operators, and support professionals; and anyone preparing for the CCNA Security, CCNP Security, or CCIE Security certification exams.

 

Alexandre Matos da Silva Pires de Moraes, CCIE No. 6063, has worked as a Systems Engineer for Cisco Brazil since 1998 in projects that involve not only Security and VPN technologies but also Routing Protocol and Campus Design, IP Multicast Routing, and MPLS Networks Design. He coordinated a team of Security engineers in Brazil and holds the CISSP, CCSP, and three CCIE certifications (Routing/Switching, Security, and Service Provider). A frequent speaker at Cisco Live, he holds a degree in electronic engineering from the Instituto Tecnológico de Aeronáutica (ITA – Brazil).

 

·        Create advanced security designs utilizing the entire Cisco firewall product family

·        Choose the right firewalls based on your performance requirements

·        Learn firewall  configuration fundamentals and master the tools that provide insight about firewall operations

·        Properly insert firewalls in your network’s topology using Layer 3 or Layer 2 connectivity

·        Use Cisco firewalls as part of a robust, secure virtualization architecture

·        Deploy Cisco ASA firewalls with or without NAT

·        Take full advantage of the classic IOS firewall feature set (CBAC)

·        Implement flexible security policies with the Zone Policy Firewall (ZPF)

·        Strengthen stateful inspection with antispoofing, TCP normalization, connection limiting, and IP fragmentation handling

·        Use application-layer inspection capabilities built into Cisco firewalls

·        Inspect IP voice protocols, including SCCP, H.323, SIP, and MGCP

·        Utilize identity to provide user-based stateful functionality

·        Understand how multicast traffic is handled through firewalls

·        Use firewalls to protect your IPv6 deployments

 

This security book is part of the Cisco Press Networking Technology Series. Security titles from Cisco Press help networking professionals secure critical data and resources, prevent and mitigate network attacks, and build end-to-end, self-defending networks.

商品描述(中文翻譯)

概念、設計與 Cisco 有狀態防火牆解決方案的部署

“在這本書中,Alexandre 提出了對防火牆這一重要主題的全新方法:他不僅僅是展示配置模型,而是使用一系列精心設計的範例來說明理論的實際應用。必讀!”—Luc Billot,Cisco 安全顧問工程師

《Cisco 防火牆》徹底解釋了每一款主要的 Cisco 防火牆產品、特性和解決方案,並展示它們如何為任何網路安全設計或操作增值。作者緊密地將理論與實踐結合,演示如何將 Cisco 防火牆整合到高度安全、自我防禦的網路中。《Cisco 防火牆》告訴你如何將 Cisco 防火牆部署為每個網路基礎設施的基本組件。這本書採取獨特的方法,通過逐步範例來說明複雜的配置概念,展示理論的實際應用。這是第一本詳細涵蓋防火牆統一通信系統、網路虛擬化架構以及包含虛擬機的環境的書籍。作者還提供了有關將防火牆與其他安全元素(如 IPS、VPN 和負載平衡器)整合的不可或缺的信息;以及對防火牆 IPv6 網路的完整介紹。《Cisco 防火牆》將成為設計和實施防火牆的工程師和架構師、安保管理員、操作員和支援專業人員,以及任何準備參加 CCNA Security、CCNP Security 或 CCIE Security 認證考試的人的不可或缺的資源。

Alexandre Matos da Silva Pires de Moraes, CCIE No. 6063 自 1998 年以來一直在 Cisco 巴西擔任系統工程師,參與的項目不僅涉及安全和 VPN 技術,還包括路由協議和校園設計、IP 多播路由和 MPLS 網路設計。他在巴西協調了一支安全工程師團隊,並持有 CISSP、CCSP 和三個 CCIE 認證(路由/交換、安全和服務提供者)。他是 Cisco Live 的常客演講者,並擁有巴西航空技術學院 (Instituto Tecnológico de Aeronáutica, ITA) 的電子工程學位。

· 創建利用整個 Cisco 防火牆產品系列的高級安全設計
· 根據性能需求選擇合適的防火牆
· 學習防火牆配置基礎,掌握提供防火牆操作洞察的工具
· 正確地將防火牆插入網路拓撲中,使用第 3 層或第 2 層連接
· 將 Cisco 防火牆作為穩健、安全虛擬化架構的一部分
· 部署 Cisco ASA 防火牆,無論是否使用 NAT
· 充分利用經典的 IOS 防火牆功能集 (CBAC)
· 使用區域策略防火牆 (ZPF) 實施靈活的安全政策
· 通過反欺騙、TCP 正規化、連接限制和 IP 分片處理來加強有狀態檢查
· 使用內建於 Cisco 防火牆的應用層檢查功能
· 檢查 IP 語音協議,包括 SCCP、H.323、SIP 和 MGCP
· 利用身份提供基於用戶的有狀態功能
· 理解多播流量如何通過防火牆處理
· 使用防火牆保護你的 IPv6 部署

這本安全書籍是 Cisco Press 網路技術系列的一部分。Cisco Press 的安全書籍幫助網路專業人員保護關鍵數據和資源,防止和減輕網路攻擊,並建立端到端的自我防禦網路。