Cisco Network Security Troubleshooting Handbook

Mynul Hoda

  • 出版商: Cisco Press
  • 出版日期: 2005-11-21
  • 定價: $2,550
  • 售價: 6.0$1,530
  • 語言: 英文
  • 頁數: 1152
  • 裝訂: Paperback
  • ISBN: 1587051893
  • ISBN-13: 9781587051890
  • 相關分類: Cisco資訊安全
  • 立即出貨(限量) (庫存=1)

買這商品的人也買了...

商品描述

Book Description

Identify, analyze, and resolve current and potential network security problems 

  • Learn diagnostic commands, common problems and resolutions, best practices, and case studies covering a wide array of Cisco network security troubleshooting scenarios and products
  • Refer to common problems and resolutions in each chapter to identify and solve chronic issues or expedite escalation of problems to the Cisco TAC/HTTS
  • Flip directly to the techniques you need by following the modular chapter organization
  • Isolate the components of a complex network problem in sequence
  • Master the troubleshooting techniques used by TAC/HTTS security support engineers to isolate problems and resolve them on all four security domains: IDS/IPS, AAA, VPNs, and firewalls

With the myriad Cisco® security products available today, you need access to a comprehensive source of defensive troubleshooting strategies to protect your enterprise network. Cisco Network Security Troubleshooting Handbook can single-handedly help you analyze current and potential network security problems and identify viable solutions, detailing each step until you reach the best resolution.

 

Through its modular design, the book allows you to move between chapters and sections to find just the information you need. Chapters open with an in-depth architectural look at numerous popular Cisco security products and their packet flows, while also discussing potential third-party compatibility issues. By following the presentation of troubleshooting techniques and tips, you can observe and analyze problems through the eyes of an experienced Cisco TAC or High-Touch Technical Support (HTTS) engineer or determine how to escalate your case to a TAC/HTTS engineer.

 

Part I starts with a solid overview of troubleshooting tools and methodologies. In Part II, the author explains the features of Cisco ASA and Cisco PIX® version 7.0 security platforms, Firewall Services Module (FWSM), and Cisco IOS® firewalls. Part III covers troubleshooting IPsec Virtual Private Networks (IPsec VPN) on Cisco IOS routers, Cisco PIX firewalls with embedded VPN functionalities, and the Cisco 3000 Concentrator. Troubleshooting tools and techniques on the Authentication, Authorization, and Accounting (AAA) framework are discussed thoroughly on routers, Cisco PIX firewalls, and Cisco VPN 3000 concentrators in Part IV. Part IV also covers troubleshooting Cisco Secure ACS on Windows, the server-side component of the AAA framework. IDS/IPS troubleshooting on IDS/IPS appliances, IDSM-2 blade, and NM-CIDS blade on Cisco IOS routers are covered in

Part V. In Part VI, the author examines the troubleshooting techniques for VPN/Security Management Solution (VMS) tools used for managing products from all four security domains in greater detail: IDS/IPS, AAA, VPNs, and firewalls.

 

Cisco Network Security Troubleshooting Handbook prepares you to troubleshoot your network’s security devices and presents step-by-step procedures for tackling issues that arise, so that you can protect your network.

 

This security book is part of the Cisco Press® Networking Technology Series. Security titles from Cisco Press help networking professionals secure critical data and resources, prevent and mitigate network attacks, and build end-to-end self-defending networks.

 

 

商品描述(中文翻譯)

書籍描述

《Cisco網絡安全故障排除手冊》是一本全面的防禦性故障排除策略指南,可幫助您分析當前和潛在的網絡安全問題,並找到可行的解決方案。本書涵蓋了診斷命令、常見問題和解決方案、最佳實踐以及涵蓋Cisco網絡安全故障排除場景和產品的案例研究。您可以根據模塊化的章節組織直接翻閱所需的技術,並按順序分離複雜網絡問題的組件。本書還介紹了TAC/HTTS安全支持工程師用於隔離問題並解決IDS/IPS、AAA、VPN和防火牆等四個安全領域上的問題的故障排除技術。

本書通過模塊化設計,讓您可以在章節和部分之間切換,找到所需的信息。每個章節都以深入的架構性介紹多個熱門的Cisco安全產品及其數據包流程,同時討論潛在的第三方兼容性問題。通過遵循故障排除技術和提示的介紹,您可以從經驗豐富的Cisco TAC或High-Touch Technical Support(HTTS)工程師的角度觀察和分析問題,或者確定如何將您的案例升級到TAC/HTTS工程師。

第一部分首先對故障排除工具和方法進行了全面的概述。在第二部分中,作者解釋了Cisco ASA和Cisco PIX 7.0版本安全平台、防火牆服務模塊(FWSM)和Cisco IOS防火牆的功能。第三部分涵蓋了在Cisco IOS路由器上的IPsec虛擬私有網絡(IPsec VPN)故障排除、具有嵌入式VPN功能的Cisco PIX防火牆以及Cisco 3000 Concentrator。在第四部分中,詳細討論了路由器、Cisco PIX防火牆和Cisco VPN 3000 Concentrator上的身份驗證、授權和計費(AAA)框架的故障排除工具和技術。第四部分還涵蓋了在Windows上故障排除Cisco Secure ACS,這是AAA框架的服務器端組件。第五部分涵蓋了在IDS/IPS設備、IDSM-2模塊和Cisco IOS路由器上的NM-CIDS模塊上進行的IDS/IPS故障排除。

在第六部分中,作者更詳細地介紹了用於管理四個安全領域(IDS/IPS、AAA、VPN和防火牆)產品的VPN/安全管理解決方案(VMS)工具的故障排除技術。