Cisco ISE Management and Administration Training Course
Cisco ISE serves as a comprehensive network security policy management platform, enabling organisations to enforce security protocols across their infrastructure.
This instructor-led training, available online or on-site, is designed for intermediate network administrators seeking to acquire the skills necessary to implement, configure, and optimise ISE for robust network security.
Upon completion of this course, participants will be capable of:
- Deploying Cisco ISE across diverse network environments while adhering to best practices and understanding hardware and software prerequisites.
- Implementing network profiling to identify and categorise connected devices.
- Managing authorisation and access control mechanisms.
- Configuring posture policies, remediation actions, and compliance modules.
Course Format
- Interactive lectures and discussions.
- Extensive practical exercises.
- Hands-on implementation within a live-lab environment.
Customisation Options
- For those requiring a tailored training experience, please contact us to make arrangements.
Course Outline
Introduction to Cisco ISE
- Understanding Network Access Control (NAC).
- Overview of Cisco ISE.
- The role of Cisco ISE in network security.
Implementing Cisco ISE
- Deployment modes.
- Hardware and software requirements.
- Initial configuration and setup.
- Integration with network devices.
Authentication with Cisco ISE
- Authentication methods and protocols.
- Configuring 802.1X authentication.
- MAC authentication bypass (MAB).
- Web authentication.
- EAP-TLS and certificate-based authentication.
Authorisation and Access Control
- Role-based access control (RBAC).
- Policies and policy sets.
- Enforcement profiles.
- Authorization rules and conditions.
- Access control lists (ACLs).
Network Profiling
- Device profiling and attributes.
- Creating profiling policies.
- Dynamic VLAN assignment.
- Profiling reports and dashboards.
Endpoint Compliance and Posture Assessment
- Configuring posture policies.
- Remediation actions.
- Compliance modules.
- Monitoring compliance.
Leveraging Guest Access with Cisco ISE
- Guest services and portals.
- Guest access policies.
- Customizing guest portals.
- Self-service guest management.
High Availability and Redundancy
- ISE deployment modes for high availability.
- Failover and load balancing.
- Backup and restore.
Monitoring and Reporting
- Logging and event viewer.
- Real-time monitoring.
- Reporting and custom report generation.
- Alerts and notifications.
Troubleshooting Cisco ISE
- Troubleshooting tools and techniques.
- Common issues and solutions.
- Debugging and logging.
Best Practices and Security Considerations
- Security hardening of Cisco ISE.
- Compliance and regulatory considerations.
- Scalability and performance optimization.
Integration with Other Cisco Security Solutions
- Integration with Cisco ASA.
- Integration with Cisco AnyConnect VPN.
- Integration with Cisco Stealthwatch.
Cisco ISE Upgrades and Maintenance
- Software upgrades.
- Patch management.
- Ongoing maintenance best practices.
Summary and Next Steps
Requirements
- A fundamental understanding of networking concepts and security principles.
Target Audience
- Network administrators.
- IT security professionals.
Need help picking the right course?
southafrica@nobleprog.co.za or +27 (0)10 005 5793
Cisco ISE Management and Administration Training Course - Enquiry
Testimonials (2)
The laboratory tool and the knowledge of trainer about network solutions
Michael Angelo Angeleles - Metrobank
Course - Cisco CCNP
Experience of the trainor and interaction
Michael Angelo - Metropolitan Bank and Trust Company
Course - Cisco CCNA Syllabus in 5 Days
Related Courses
CCNA 200-301 exam prep
35 HoursThis CCNA course provides comprehensive training and resources to ensure participants are well-prepared for the CCNA certification examination. With practical labs, continuous assessments, and significant cost savings on certification fees, this course is designed to help participants achieve their networking certification goals.
CBROPS - UNDERSTANDING CISCO CYBERSECURITY OPERATIONS FUNDAMENTALS V1.0
35 HoursThe CBROPS - Understanding Cisco Cybersecurity Operations Fundamentals v1.0 course offers an understanding of the network infrastructure devices, operations, and vulnerabilities of the Transmission Control Protocol/Internet Protocol (TCP/IP) protocol suite.
Certified Chief Information Security Officer (CCISO)
35 HoursEC-Council’s CCISO Programme has certified leading information security professionals worldwide. A core group of high-level information security executives, the CCISO Advisory Board, contributed by forming the foundation of the programme and outlining the content that would be covered by the exam, body of knowledge, and training. Some members of the Board contributed as authors, others as exam writers, others as quality assurance checks, and still others as trainers. Each segment of the programme was developed with the aspiring CISO in mind and looks to transfer the knowledge of seasoned professionals to the next generation in the areas that are most critical in the development and maintenance of a successful information security programme.
The Certified CISO (CCISO) programme is the first of its kind training and certification programme aimed at producing top-level information security executives. The CCISO does not focus solely on technical knowledge but on the application of information security management principles from an executive management point of view. The programme was developed by sitting CISOs for current and aspiring CISOs.
CCNA Routing & Switching
35 HoursThis instructor-led, live training in Botswana (online or on-site) is aimed at expert-level network professionals who wish to prepare for the CCNA Routing & Switching certification exam.
By the end of this training, participants will be able to:
- Develop a comprehensive understanding of networking fundamentals.
- Master IP connectivity and understand WAN technologies.
- Secure network devices using Access Control Lists (ACLs), VPNs, and other security protocols to prevent unauthorized access and threats.
- Prepare for the CCNA Routing & Switching Certification exam.
Implementing and Administering Cisco Solutions (CCNA) v1.0
35 HoursThis course equips you with a broad foundation of essential knowledge for any career in networking. You will learn how to
• install, operate, configure, and verify basic IPv4 and IPv6 networks
• configure network components such as switches, routers, and wireless LAN controllers;
• manage network devices; and
• identify basic security threats.
The course also establishes a grounding in network programmability, automation, and software-defined networking.
Implementing Cisco Catalyst 9000 Series Switches
28 HoursThis instructor-led, live training in Botswana (online or onsite) is aimed at intermediate-level IT professionals who wish to learn the essential knowledge and practical skills required to deploy, manage, and troubleshoot Cisco Catalyst 9000 Series Switches within modern network environments.
By the end of this training, participants will be able to:
- Understand the architecture, capabilities, and positioning of the Cisco Catalyst 9000 Series switches.
- Use CLI, Cisco DNA Center, and IOS-XE web user GUI for management.
- Utilize security features, cloud integration, and automation tools.
- Deploy the switches within various network environments.
- Leverage Cisco DNA Center for device provisioning, management, and automation.
Cisco CCNP
35 HoursThis instructor-led, live training in Botswana (online or onsite) is targeted at advanced network professionals who wish to deepen their understanding of Cisco Enterprise Networks and successfully pass the CCNP certification exam.
By the end of this training, participants will be able to:
- Comprehend the architecture and components of Cisco enterprise networks.
- Implement and troubleshoot advanced routing technologies and secure enterprise LAN and WAN networks.
- Configure and manage Cisco SD-WAN solutions for enterprise networks.
- Design enterprise networks with a focus on scalability, security, and availability.
- Approach the CCNP Certification Exam with confidence.
Cisco CCNP Service Provider: Core, Advanced Routing, and Automation
35 HoursThe Cisco CCNP Service Provider certification is a professional-level track designed to validate expertise in the design, implementation, and operation of contemporary service provider networks. This course offers a comprehensive, hands-on methodology for mastering the essential technologies, advanced routing protocols, and automation tools prevalent in service provider ecosystems.
This instructor-led live training, available online or onsite, targets intermediate to advanced networking professionals seeking practical knowledge across the core CCNP Service Provider domains: SPCOR, SPRI, and SPAUTO.
Upon completion of this training, participants will be able to:
- Configure and troubleshoot core service provider network components, including MPLS and segment routing.
- Deploy advanced routing protocols such as IS-IS, OSPF, BGP, and route reflectors.
- Utilise YANG models, RESTCONF, and NETCONF to automate service provider network operations.
- Develop and test Python scripts for configuration management and monitoring purposes.
Course Format
- Interactive lectures and guided discussions.
- Hands-on configuration and troubleshooting labs.
- Live exercises utilising virtual Cisco environments and APIs.
Course Customisation Options
- To request a customised training course, please contact us to make arrangements.
Transforming to a Cisco Intent-Based Network (IBNTRN) v1.1
21 HoursThis instructor-led, live training in Botswana (online or onsite) is tailored for intermediate-level network professionals aiming to build more agile, secure, and efficient networks that closely support business goals while dynamically adapting to evolving needs and threats.
Upon completing this training, participants will be equipped to:
- Grasp the core principles of Intent-Based Networking.
- Deploy network automation and embed security within an Intent-Based Network framework.
- Utilise analytics for network monitoring and understand how assurance mechanisms offer valuable insights into network performance and user experience.
- Design and deploy an Intent-Based Network (IBN) that satisfies both business requirements and operational objectives.
Implementing and Configuring Cisco Identity Services Engine (SISE) v4.0
21 HoursThis instructor-led, live training in Botswana (online or onsite) is aimed at intermediate-level network security professionals who wish to learn how to implement and configure Cisco ISE to enhance the security posture of their network infrastructure.
By the end of this training, participants will be able to:
- Understand Cisco ISE architecture and access control capabilities.
- Implement basic network access control and advanced network access control.
- Configure and manage TACACS+ for device administration, command authorisation, and role-based access control.
Cisco Switching Solutions: Advanced Implementation and Management
35 HoursThis instructor-led, live training in Botswana (online or onsite) is aimed at intermediate-level network engineers, architects, and system administrators who wish to gain the knowledge and skills required to implement and manage Cisco's Nexus 9K and Catalyst 9200/9500 series switches. It combines theoretical knowledge with hands-on practical experience, focusing on the Cisco NX-OS and IOS-XE platforms.
By the end of this training, participants will be able to:
- Install and manage Cisco Nexus 9K and Catalyst 9200/9500 switches.
- Configure advanced switch features for optimal performance.
- Integrate switches into diverse network environments.
- Enhance network resilience and efficiency.
- Utilise switches for high availability and data management.
Cisco Unified Communications Management v12.x Administration
35 HoursThis instructor-led, live training in Botswana (online or on-site) is designed for intermediate-level network engineers who wish to obtain the skills and knowledge necessary to effectively administer, manage, and optimise Cisco Unified Communications Manager (CUCM) v12.x.
Upon completing this training, participants will be capable of:
- Gaining an understanding of CUCM architecture and deployment strategies.
- Acquiring the skills to install, configure, and perform initial setup tasks for CUCM, including the creation of users, devices, and fundamental network settings.
- Implementing and managing call routing protocols.
- Conducting system maintenance and troubleshooting procedures.
Implementing and Operating Cisco Enterprise Network Core Technologies (ENCOR) v1.2
35 HoursAfter completing this course, you will be able to:
- Illustrate the hierarchical network design model and architecture, covering the access, distribution, and core layers
- Compare and contrast various hardware and software switching mechanisms, defining Ternary Content Addressable Memory (TCAM) and Content Addressable Memory (CAM), as well as process switching, fast switching, and Cisco Express Forwarding concepts
- Troubleshoot Layer 2 connectivity issues using VLANs and trunking
- Implement redundant switched networks using the Spanning Tree Protocol
- Troubleshoot link aggregation using EtherChannel
- Describe the features, metrics, and path selection concepts of the Enhanced Interior Gateway Routing Protocol (EIGRP)
- Implement and optimize Open Shortest Path First (OSPF) v2 and OSPFv3, including adjacencies, packet types, areas, summarization, and route filtering for IPv4 and IPv6
- Implement External Border Gateway Protocol (EBGP) for interdomain routing, path selection, and single or dual-homed networking
- Implement network redundancy using protocols such as Hot Standby Routing Protocol (HSRP) and Virtual Router Redundancy Protocol (VRRP)
- Implement internet connectivity within the enterprise using static and dynamic Network Address Translation (NAT)
- Describe the virtualization technology for servers, switches, and other network devices and components
- Implement overlay technologies such as Virtual Routing and Forwarding (VRF), Generic Routing Encapsulation (GRE), VPN, and Location Identifier Separation Protocol (LISP)
- Describe the components and concepts of wireless networking, including Radio Frequency (RF) and antenna characteristics, and define specific wireless standards
- Describe various wireless deployment models, including autonomous Access Point (AP) deployments and cloud-based designs within the centralized Cisco Wireless LAN Controller (WLC) architecture
- Describe wireless roaming and location services
- Describe how APs communicate with WLCs to obtain software, configurations, and centralized management
- Configure and verify Extensible Authentication Protocol (EAP), WebAuth, and Pre-Shared Key (PSK) wireless client authentication on a WLC
- Troubleshoot wireless client connectivity issues using various available tools
- Troubleshoot enterprise networks using services such as Network Time Protocol (NTP), Simple Network Management Protocol (SNMP), Cisco Internetwork Operating System (Cisco IOS®) IP Service Level Agreements (SLAs), NetFlow, and Cisco IOS Embedded Event Manager
- Explain the use of available network analysis and troubleshooting tools, including show and debug commands, as well as best practices in troubleshooting
- Configure secure administrative access for Cisco IOS devices using Command-Line Interface (CLI) access, Role-Based Access Control (RBAC), Access Control List (ACL), and Secure Shell (SSH), and explore device hardening concepts to secure devices from less secure applications such as Telnet and HTTP
- Implement scalable administration using Authentication, Authorization, and Accounting (AAA) and the local database, exploring the features and benefits
- Describe the enterprise network security architecture, including the purpose and function of VPNs, content security, logging, endpoint security, personal firewalls, and other security features
- Explain the purpose, function, features, and workflow of Cisco DNA Center™ Assurance for Intent-Based Networking, for network visibility, proactive monitoring, and application experience
- Describe the components and features of the Cisco SD-Access solution, including nodes, fabric control plane, and data plane, while illustrating the purpose and function of the Virtual Extensible LAN (VXLAN) gateways
- Define the components and features of Cisco SD-WAN solutions, including the orchestration plane, management plane, control plane, and data plane
- Describe the concepts, purpose, and features of multicast protocols, including Internet Group Management Protocol (IGMP) v2/v3, Protocol-Independent Multicast (PIM) dense mode/sparse mode, and rendezvous points
- Describe the concepts and features of Quality of Service (QoS), and explain the need within the enterprise network
- Explain basic Python components and conditionals with script writing and analysis
- Describe network programmability protocols such as Network Configuration Protocol (NETCONF) and RESTCONF
- Describe APIs in Cisco DNA Center and vManage
Implementing Cisco Enterprise Wireless Networks (ENWLSI) v2.0
21 HoursThis instructor-led live training in Botswana (online or on-site) is designed for intermediate-level network professionals who wish to implement and secure wireless networks within an enterprise environment using Cisco equipment and technologies.
By the end of this training, participants will be able to:
- Design and Implement FlexConnect Architectures.
- Implement Quality of Service in a wireless network environment.
- Configure and troubleshoot multicast in a wireless network.
- Implement security for wireless client connectivity.
Securing Email with Cisco Email Security Appliance (SESA) v3.1
28 HoursThis class will assist you to:
- Deploy high-availability email protection against dynamic, rapidly evolving threats affecting your organisation
- Gain leading-edge career skills focused on enterprise security
Objectives
After completing this course, you should be able to:
- Describe and administer the Cisco Email Security Appliance (ESA)
- Control sender and recipient domains
- Control spam using Talos SenderBase and anti-spam technologies
- Utilise anti-virus and outbreak filters
- Configure mail policies
- Implement content filters
- Use message filters to enforce email policies
- Prevent data loss
- Perform LDAP queries
- Authenticate Simple Mail Transfer Protocol (SMTP) sessions
- Authenticate email
- Encrypt email
- Utilise system quarantines and delivery methods
- Perform centralized management using clusters
- Test and troubleshoot