757-216-3656 | Monday–Friday 8:30 AM – 4:30 PM ET | info@itdojo.com
|

Course Duration

5 Days

Audience

Employees of federal, state and local governments; and businesses working with the government.

Prerequisites

The learner is expected to have the following skills and knowledge before attending this course: CCNA Security or equivalent level of experience with Cisco devices Foundation-level wireless knowledge and skills Familiarity with Microsoft Windows and Microsoft Active Directory Familiarity with 802.1X Familiarity with Cisco ASA

Course Description

SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 is an intensive, hands-on course covering all facets of Cisco ISE version 2.4. Students learn to enforce security compliance for wired and wireless endpoints using the Cisco ISE identity and access control platform. Topics include AAA with 802.1x and MAB, web authentication, posture assessment, device profiling, guest services, device on-boarding, and VPN access. The course builds practical skills for deploying and managing ISE across enterprise environments.

Learning Objectives

  • ISE deployment options including node types, personas, and licensing
  • Install certificates into ISE using a Windows 2012 Certificate Authority (CA)
  • Configure the Local and Active Directory Based Identity Store and use of Identity Source Sequences
  • Configure AAA clients and network device groups
  • Implement Policy Sets to streamline Authentication and Authorization in the organization
  • Deploy EasyConnect as an alternative to 802.1X port-based authentication
  • Implement 802.1X for wired and wireless networks using the AnyConnect 4.x NAM module, the latest dot1x commands on a catalyst switch, and version 8.4 of the vWLC
  • Configure policies to allow MAC Authentication Bypass (MAB) of endpoints
  • Use central web authentication (CWA) for redirection of legitimate domain users who need to register devices on the network using MAC addresses (device registration)
  • Configure hotspot guest access, self-registration guest access, and sponsored guest access
  • Configure profiler services in ISE and use newer probes available in IOS switch code 15.x as well as vWLC 8.4 code
  • Work with profiling feeds, logical profiles, and building profiling conditions to match network endpoints
  • Configure posture assessments using the new Cisco AnyConnect Secure Mobility 4.x posture module
  • Configure Cisco ISE as a TACACS+ Server for Device Administration with Command Authorization
  • Configure Cisco ISE to integrate with a 5500-X ASA and a Catalyst Switch for TrustSec and implement end-to-end Security Group Tagging (SGT) and Security Group Access Control (SGACL)
  • Maintenance, best practices, and logging

Course Outline

  • Labs

Frequently Asked Questions

What does the SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 course cover?

This course covers SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 training and best practices. IT Dojo delivers it as live instructor-led training with an emphasis on practical skills for government and DoD professionals.

How long is IT Dojo's SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 training?

IT Dojo's SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 training is 5 Days. It is available as live remote online instruction or on-site at your facility. All sessions are instructor-led with small class sizes to ensure individual attention.

Is this course available as live remote online training?

Yes. IT Dojo offers SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 as live remote online training. A certified instructor leads the session in real time. Students interact via chat or microphone. Classes are kept small (typically no more than 16 students) to ensure engagement. On-site delivery at your government facility or contractor location is also available.

What prerequisites are recommended before this course?

The learner is expected to have the following skills and knowledge before attending this course: CCNA Security or equivalent level of experience with Cisco devices Foundation-level wireless knowledge and skills Familiarity with Microsoft Windows and Microsoft Active Directory Familiarity with 802.1X Familiarity with Cisco ASA.

Does IT Dojo offer this training on-site at government or DoD facilities?

Yes. IT Dojo delivers SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 on-site at government agencies, DoD commands, military installations, and contractor facilities. On-site training is ideal for teams of four or more and can be customized to your organization's specific environment and mission requirements. Contact IT Dojo to schedule.

How do I register for this course?

IT Dojo training is employer sponsored. Your organization registers and pays for seats. To schedule SISE – Implementing and Configuring Cisco Identity Services Engine v3.0 for your team, contact IT Dojo via the Request Training form or call 757-216-3656. IT Dojo will work with your contracting officer, training coordinator, or program office to set up the course.

Get More Information

We work with Government Agencies, Military, government contractors, and corporate clients. As much as we would love to, our business model does not include working with the general public.