Cisco ASA, PIX, and FWSM Firewall Handbook, 2/e (Paperback)

David Hucaby

  • 出版商: Cisco Press
  • 出版日期: 2007-08-19
  • 定價: $2,380
  • 售價: 6.0$1,428
  • 語言: 英文
  • 頁數: 912
  • 裝訂: Paperback
  • ISBN: 1587054574
  • ISBN-13: 9781587054570
  • 相關分類: Cisco
  • 立即出貨(限量) (庫存=2)

買這商品的人也買了...

商品描述

Description

Cisco ASA, PIX, and FWSM Firewall Handbook, Second Edition, is a guide for the most commonly implemented features of the popular Cisco® firewall security solutions. Fully updated to cover the latest firewall releases, this book helps you to quickly and easily configure, integrate, and manage the entire suite of Cisco firewall products, including ASA, PIX®, and the Catalyst® Firewall Services Module (FWSM).
 
Organized by families of features, this book helps you get up to speed quickly and efficiently on topics such as file management, building connectivity, controlling access, firewall management, increasing availability with failover, load balancing, logging, and verifying operation.
 
Sections are marked by shaded tabs for quick reference, and information on each feature is presented in a concise format, with background, configuration, and example components.
 
Whether you are looking for an introduction to the latest ASA, PIX, and FWSM devices or a complete reference for making the most out of your Cisco firewall deployments, Cisco ASA, PIX, and FWSM Firewall Handbook, Second Edition, helps you achieve maximum protection of your network resources.
 
“Many books on network security and firewalls settle for a discussion focused primarily on concepts and theory. This book, however, goes well beyond these topics. It covers in tremendous detail the information every network and security administrator needs to know when configuring and managing market-leading firewall products from Cisco.”
–Jason Nolet, Vice President of Engineering, Security Technology Group, Cisco
 
David Hucaby, CCIE® No. 4594, is a lead network engineer for the University of Kentucky, where he works with health-care networks based on the Cisco Catalyst, ASA, FWSM, and VPN product lines. He was one of the beta reviewers of the ASA 8.0 operating system software.
 
Learn about the various firewall models, user interfaces, feature sets, and configuration methods
Understand how a Cisco firewall inspects traffic
Configure firewall interfaces, routing, IP addressing services, and IP multicast support
Maintain security contexts and flash and configuration files, manage users, and monitor firewalls with SNMP
Authenticate, authorize, and maintain accounting records for firewall users
Control access through the firewall by implementing transparent and routed firewall modes, address translation, and traffic shunning
Define security policies that identify and act on various types of traffic with the Modular Policy Framework
Increase firewall availability with firewall failover operation
Understand how firewall load balancing works
Generate firewall activity logs and learn how to analyze the contents of the log
Verify firewall operation and connectivity and observe data passing through a firewall
Configure Security Services Modules, such as the Content Security Control (CSC) module and the Advanced Inspection Processor (AIP) module
 
This security book is part of the Cisco Press® Networking Technology Series. Security titles from Cisco Press help networking professionals secure critical data and resources, prevent and mitigate network attacks, and build end-to-end self-defending networks.
Table of Contents

商品描述(中文翻譯)

《Cisco ASA、PIX 和 FWSM 防火牆手冊,第二版》是一本指南,介紹了流行的 Cisco 防火牆安全解決方案中最常用的功能。本書完全更新,涵蓋了最新的防火牆版本,幫助您快速且輕鬆地配置、整合和管理整套 Cisco 防火牆產品,包括 ASA、PIX 和 Catalyst 防火牆服務模組(FWSM)。

本書按功能分類,幫助您快速而有效地了解文件管理、建立連接、控制訪問、防火牆管理、故障切換增加可用性、負載平衡、日誌記錄和驗證操作等主題。

每個章節都有陰影標籤以供快速參考,並以簡潔的格式提供每個功能的背景、配置和示例組件的信息。

無論您是對最新的 ASA、PIX 和 FWSM 設備尋求介紹,還是對如何充分利用 Cisco 防火牆部署進行完整參考,本書都能幫助您實現對網絡資源的最大保護。

「許多關於網絡安全和防火牆的書籍僅僅討論概念和理論。然而,這本書超越了這些主題。它詳細介紹了每個網絡和安全管理員在配置和管理 Cisco 領先的防火牆產品時需要了解的信息。」
- Jason Nolet,Cisco 安全技術部門工程副總裁

作者 David Hucaby,CCIE No. 4594,是肯塔基大學的首席網絡工程師,他在該大學的醫療網絡上使用了基於 Cisco Catalyst、ASA、FWSM 和 VPN 產品線的解決方案。他是 ASA 8.0 操作系統軟件的測試評審之一。

本書內容包括:
- 了解各種防火牆型號、用戶界面、功能集和配置方法
- 理解 Cisco 防火牆如何檢查流量
- 配置防火牆接口、路由、IP 地址服務和 IP 多播支持
- 維護安全上下文和快閃和配置文件,管理用戶,並通過 SNMP 監控防火牆
- 為防火牆用戶進行身份驗證、授權和記錄帳目
- 通過實施透明和路由防火牆模式、地址轉換和流量隔離來控制防火牆訪問
- 使用模塊化策略框架定義識別和處理各種類型流量的安全策略
- 通過防火牆故障切換操作提高防火牆可用性
- 理解防火牆負載平衡的工作原理
- 生成防火牆活動日誌,並學習如何分析日誌內容
- 驗證防火牆操作和連接性,觀察通過防火牆的數據流動
- 配置安全服務模塊,如內容安全控制(CSC)模塊和高級檢查處理器(AIP)模塊

本書是 Cisco Press 網絡技術系列的一部分。Cisco Press 的安全書籍幫助網絡專業人員保護關鍵數據和資源,預防和緩解網絡攻擊,構建端到端的自衛網絡。