Cisco VPN 2.0: Cisco ASA Adaptive Security Appliance Remote Access IPsec VPNs


Overview/Description
Target Audience
Expected Duration
Lesson Objectives
Course Number



Overview/Description
The Cisco ASA adaptive security appliance supports remote access IP Security (IPsec) VPNs that you can manage using the Cisco Easy VPN solution. Remote access IPsec VPNs protect traffic between mobile workers and a central site. This course describes how to deploy remote access IPsec VPNs, including preshared authentication, certificate-based authentication, and advanced public key infrastructure (PKI) integration. Remote access deployments that use the Cisco VPN Client and the Cisco AnyConnect 3.0 Client for IPsec connections are also described. Cisco VPN Client is software that runs on an endpoint, with support for Windows, Mac OS X, and Linux. When you install Cisco VPN Client on a remote PC and it communicates with a Cisco ASA adaptive security appliance, it creates a secure connection over the Internet. Through this connection, you can access a private network as if you were an on-site user. This course describes the features that Cisco VPN Client and Cisco AnyConnect Secure Mobility Client 3.0 (Cisco AnyConnect 3.0) support, and shows you how to install the client software and configure a profile. This course also covers how to configure advanced Cisco VPN Client profile settings for the Cisco IPsec VPN Client. A basic Cisco remote access IP Security (IPsec) VPN solution provides client-based access to sensitive resources over a remote access IPsec VPN gateway that is implemented on the Cisco ASA adaptive security appliance. A basic Cisco remote access IPsec VPN solution uses basic user authentication using usernames and passwords, client configuration and IP address assignment services, and a single access control policy. This course demonstrates how to configure, verify, and troubleshoot a basic Remote Access IPsec VPN solution.

Target Audience
Anyone wishing to obtain the Cisco Certified Network Professional CCNP Security designation. Cisco Network Security Engineers responsible for the selection, configuration, and the troubleshooting of the majority of Cisco ASA adaptive security appliance perimeter security features to reduce risk to IT infrastructure and its applications within their networking environments. Established IT professionals with a good understanding of networking and Cisco technology, installation, troubleshooting and monitoring of devices used to maintain integrity, confidentiality and availability of data and network devices that Cisco uses in its security infrastructure, as well as working knowledge of the Microsoft Windows operating system. Candidates who have completed the Cisco Certified Network Associate (CCNA), the Cisco Certified Network Associate Security (CCNA Security), the Securing Networks with Cisco Routers and Switches (SECURE) v1.0, and the Deploying Cisco ASA Firewall Solutions (FIREWALL 2.0) Certifications.

Expected Duration (hours)
2.0

Lesson Objectives

Cisco VPN 2.0: Cisco ASA Adaptive Security Appliance Remote Access IPsec VPNs

  • describe the features of IPsec VPN technology
  • determine which Cisco VPN Client product should be used for a given scenario
  • identify the tasks to implement the Legacy Cisco IPsec VPN Client
  • identify the steps to configure basic Cisco ASA security appliance gateway features and gateway authentication for remote access IPsec VPNs
  • identify the steps to configure group authentication in the basic Cisco remote access IPsec VPN solution
  • deploy basic Cisco Easy VPN
  • set up the Cisco ASA 5520 as an Easy VPN server
  • identify the steps to configure Cisco remote access IPsec VPN extended authentication
  • identify the steps to configure Cisco remote access IPsec VPN hybrid authentication
  • identify the steps to configure Cisco remote access VPN local IP address management
  • identify the steps to configure Cisco remote access VPN basic access control
  • identify the steps to configure IKEv2 support for remote access IPsec VPN solutions
  • troubleshoot basic Cisco remote access IPsec VPN operation
  • Course Number:
    cc_avpn_a07_it_enus