Cisco ASA Firewall — Course Overview
Cisco ASA Firewall EVE-NG — ASAv (CLI + ASDM)
آپ کیا سیکھیں گےWhat You Will LearnWhat You Will Learn
- Complete ASA initial setup کریں: hostname، passwords، management interface، SSH، اور ASDM access۔Complete ASA initial setup karo: hostname, passwords, management interface, SSH, aur ASDM access.Perform a complete ASA initial setup: hostname, passwords, management interface, SSH, and ASDM access.
- Interfaces کو نام دیں، security levels assign کریں، اور inside، outside، DMZ کے درمیان static routing کنفیگر کریں۔Interfaces ko naam do, security levels assign karo, aur inside, outside, DMZ ke darmiyan static routing configure karo.Name interfaces, assign security levels, and configure static routing between inside, outside, and DMZ.
- Object groups کے ساتھ extended ACLs لکھیں اور security levels کے درمیان traffic control کے لیے apply کریں۔Object groups ke sath extended ACLs likho aur security levels ke darmiyan traffic control ke liye apply karo.Write extended ACLs with object groups and apply them to control traffic between security levels.
- Auto NAT (PAT)، Manual/static NAT، Twice NAT، اور VPN traffic کے لیے NAT exemption کنفیگر کریں۔Auto NAT (PAT), Manual/static NAT, Twice NAT, aur VPN traffic ke liye NAT exemption configure karo.Configure Auto NAT (PAT), Manual/static NAT, Twice NAT, and NAT exemption for VPN traffic.
- AAA، local users، privilege levels، اور restricted SSH/HTTPS access سے management harden کریں۔AAA, local users, privilege levels, aur restricted SSH/HTTPS access se management harden karo.Harden management with AAA, local users, privilege levels, and restricted SSH/HTTPS access.
- IKEv2 site-to-site IPsec VPNs بنائیں اور AnyConnect remote-access VPN concepts سمجھیں۔IKEv2 site-to-site IPsec VPNs banao aur AnyConnect remote-access VPN concepts samjho.Build IKEv2 site-to-site IPsec VPNs and understand AnyConnect remote-access VPN concepts.
- Firewall operate اور troubleshoot کرنے کے لیے MPF inspection، threat detection، logging، ASDM monitoring، اور packet-tracer use کریں۔Firewall operate aur troubleshoot karne ke liye MPF inspection, threat detection, logging, ASDM monitoring, aur packet-tracer use karo.Use MPF inspection, threat detection, logging, ASDM monitoring, and packet-tracer to operate and troubleshoot the firewall.
شرائطPrerequisitesPrerequisites
Basic TCP/IP اور subnetting، CLI configuration میں comfort، اور CCNA-level routing/switching concepts سے familiarity۔ CCNA والے interface اور ACL ideas پہلے سے آنے سے مدد ملے گی، لیکن ہر ASA lesson اپنی ضرورت خود سمجھاتا ہے۔Basic TCP/IP aur subnetting, CLI configuration mein comfort, aur CCNA-level routing/switching concepts se familiarity. CCNA wale interface aur ACL ideas pehle se ane se madad milegi, lekin har ASA lesson apni zaroorat khud samjhata hai.Basic TCP/IP and subnetting, comfort with CLI configuration, and familiarity with CCNA-level routing and switching concepts. Prior completion of the interface and ACL ideas from CCNA helps, but each ASA lesson re-explains what it uses.
امتحان / سرٹیفیکیشنExam / CertificationExam / Certification
Cisco ASA FirewallCisco ASA FirewallCisco ASA Firewall
کریئرCareer RelevanceCareer Relevance
ASA skills firewall administrator اور network security engineer roles سے directly match کرتی ہیں۔ Enterprises اب بھی بڑی ASA fleets چلاتے ہیں، اور concepts — security levels، NAT، VPNs، MPF — Palo Alto، FortiGate اور cloud firewalls میں transfer ہوتے ہیں۔ASA skills firewall administrator aur network security engineer roles se directly match karti hain. Enterprises ab bhi bari ASA fleets chalate hain, aur concepts — security levels, NAT, VPNs, MPF — Palo Alto, FortiGate aur cloud firewalls mein transfer hote hain.ASA skills map directly to firewall administrator and network security engineer roles. Enterprises still run large ASA fleets, and the concepts — security levels, NAT, VPNs, MPF — transfer to Palo Alto, FortiGate, and cloud firewalls.
لیب سیٹ اپLab Environment SetupLab Environment Setup
EVE-NG ASAv image کے ساتھ (اکثر labs کے لیے ایک node کافی ہے؛ site-to-site VPN lab کے لیے دو nodes)۔ EVE-NG سے console، same segment پر management VM سے SSH/ASDM۔ VPN اور capstone labs سے پہلے snapshots save کریں۔EVE-NG ASAv image ke sath (aksar labs ke liye ek node kafi hai; site-to-site VPN lab ke liye do nodes). EVE-NG se console, same segment par management VM se SSH/ASDM. VPN aur capstone labs se pehle snapshots save karo.EVE-NG with the ASAv image (one node is enough for most labs; two nodes for the site-to-site VPN lab). Console via EVE-NG, SSH/ASDM from a management VM on the same segment. Save snapshots before the VPN and capstone labs.