Cisco ISE for BYOD and Secure Unified Access (2nd Edition) (Networking Technology: Security)
暫譯: Cisco ISE 在 BYOD 和安全統一訪問中的應用(第二版)(網路技術:安全性)
Aaron Woland, Jamey Heary
- 出版商: Cisco Press
- 出版日期: 2017-06-16
- 售價: $2,450
- 貴賓價: 9.5 折 $2,328
- 語言: 英文
- 頁數: 912
- 裝訂: Paperback
- ISBN: 1587144735
- ISBN-13: 9781587144738
-
相關分類:
Cisco、資訊安全
立即出貨 (庫存=1)
買這商品的人也買了...
相關主題
商品描述
Fully updated: The complete guide to Cisco Identity Services Engine solutions
Using Cisco Secure Access Architecture and Cisco Identity Services Engine, you can secure and gain control of access to your networks in a Bring Your Own Device (BYOD) world.
This second edition of Cisco ISE for BYOD and Secure Unified Accesscontains more than eight brand-new chapters as well as extensively updated coverage of all the previous topics in the first edition book to reflect the latest technologies, features, and best practices of the ISE solution. It begins by reviewing today’s business case for identity solutions. Next, you walk through ISE foundational topics and ISE design. Then you explore how to build an access security policy using the building blocks of ISE. Next are the in-depth and advanced ISE configuration sections, followed by the troubleshooting and monitoring chapters. Finally, we go in depth on the new TACACS+ device administration solution that is new to ISE and to this second edition.
With this book, you will gain an understanding of ISE configuration, such as identifying users, devices, and security posture; learn about Cisco Secure Access solutions; and master advanced techniques for securing access to networks, from dynamic segmentation to guest access and everything in between.
Drawing on their cutting-edge experience supporting Cisco enterprise customers, the authors offer in-depth coverage of the complete lifecycle for all relevant ISE solutions, making this book a cornerstone resource whether you’re an architect, engineer, operator, or IT manager.
· Review evolving security challenges associated with borderless networks, ubiquitous mobility, and consumerized IT
· Understand Cisco Secure Access, the Identity Services Engine (ISE), and the building blocks of complete solutions
· Design an ISE-enabled network, plan/distribute ISE functions, and prepare for rollout
· Build context-aware security policies for network access, devices, accounting, and audit
· Configure device profiles, visibility, endpoint posture assessments, and guest services
· Implement secure guest lifecycle management, from WebAuth to sponsored guest access
· Configure ISE, network access devices, and supplicants, step by step
· Apply best practices to avoid the pitfalls of BYOD secure access
· Set up efficient distributed ISE deployments
· Provide remote access VPNs with ASA and Cisco ISE
· Simplify administration with self-service onboarding and registration
· Deploy security group access with Cisco TrustSec
· Prepare for high availability and disaster scenarios
· Implement passive identities via ISE-PIC and EZ Connect
· Implement TACACS+ using ISE
· Monitor, maintain, and troubleshoot ISE and your entire Secure Access system
· Administer device AAA with Cisco IOS, WLC, and Nexus
商品描述(中文翻譯)
完全更新:Cisco 身份服務引擎解決方案的完整指南
使用 Cisco 安全訪問架構和 Cisco 身份服務引擎,您可以在自帶設備(BYOD)的世界中保護並控制對網絡的訪問。
本書第二版《Cisco ISE for BYOD and Secure Unified Access》包含超過八個全新章節,並對第一版書中所有先前主題進行了廣泛更新,以反映 ISE 解決方案的最新技術、功能和最佳實踐。書中首先回顧了當今身份解決方案的商業案例。接下來,您將了解 ISE 的基礎主題和設計。然後,您將探索如何使用 ISE 的基本組件構建訪問安全策略。接下來是深入和高級的 ISE 配置部分,然後是故障排除和監控章節。最後,我們深入探討了對 ISE 和本第二版新推出的 TACACS+ 設備管理解決方案。
通過本書,您將了解 ISE 配置,例如識別用戶、設備和安全狀態;學習 Cisco 安全訪問解決方案;並掌握從動態分段到訪客訪問及其間所有內容的高級技術,以保護對網絡的訪問。
作者基於其支持 Cisco 企業客戶的前沿經驗,提供了所有相關 ISE 解決方案完整生命周期的深入覆蓋,使本書成為無論您是架構師、工程師、操作員還是 IT 經理的基石資源。
· 回顧與無邊界網絡、無處不在的移動性和消費化 IT 相關的安全挑戰
· 了解 Cisco 安全訪問、身份服務引擎(ISE)及完整解決方案的基本組件
· 設計 ISE 啟用的網絡,計劃/分配 ISE 功能,並為推出做準備
· 為網絡訪問、設備、計費和審計構建上下文感知的安全策略
· 配置設備配置檔、可見性、端點狀態評估和訪客服務
· 實施安全的訪客生命周期管理,從 WebAuth 到贊助訪客訪問
· 逐步配置 ISE、網絡訪問設備和客戶端
· 應用最佳實踐以避免 BYOD 安全訪問的陷阱
· 設置高效的分佈式 ISE 部署
· 使用 ASA 和 Cisco ISE 提供遠程訪問 VPN
· 通過自助式入職和註冊簡化管理
· 使用 Cisco TrustSec 部署安全組訪問
· 為高可用性和災難情境做準備
· 通過 ISE-PIC 和 EZ Connect 實施被動身份
· 使用 ISE 實施 TACACS+
· 監控、維護和故障排除 ISE 及整個安全訪問系統
· 使用 Cisco IOS、WLC 和 Nexus 管理設備 AAA