Deploying Security in Cisco ACI v1.0

Course information
Pris: kr 37 500,00 (exkl moms)
Längd: 4
Kurskod: DSACI
Version 1.0


This course is focused on the knowledge and skills required to successfully deploy, configure, and maintain Cisco ACI security. Including how you implement a secure Cisco Application Centric Infrastructure (ACI) operation, and integrate security services with the Cisco ACI Fabric

A brief overview of the Cisco ACI architecture, including an examination of the Cisco Nexus 9000 Series Switches for data centers is incorporated. You will have the opportunity to discover how to implement security mechanisms in the operational infrastructure with the Cisco ACI environment. You also explore the process for provisioning security services in Cisco ACI, including external Cisco Adaptive Security Appliance (ASA), Adaptive Security Virtual Appliance (ASAv) instances, and Cisco Firepower capabilities. This course combines lecture materials and hands-on labs throughout to make sure you are able to successfully deploy, configure, and maintain Cisco ACI security.


Attendees should meet the following prerequisites:

  • Complete knowledge of Cisco networking
  • Data center and virtualization knowledge
  • Network and data center security skills


Basics of Cisco ACI

  • Cisco APIC Architecture and Operation
  • Cisco ACI Logical Elements

Security Built In to Cisco ACI

  • Inherent Cisco ACI Security Mechanisms
  • Securing the Cisco ACI Environment from Threats

Security Services in Cisco ACI

  • L4 and L7 Services Key Concepts
  • Security Appliances in Cisco ACI
  • Deploying Cisco ASA in Cisco ACI
  • Deploying Cisco ASAv in Cisco ACI
  • Deploying Cisco FirePOWER NGIPS in Cisco ACI


  • Lab 1: Exploring the Cisco ACI Fabric
  • Lab 2: Exploring the Cisco APIC
  • Lab 3: Configuring Cisco Secure Access Control System (ACS) Terminal Access Controller Access Control System+ (TACACS+) Integration
  • Lab 4: Configuring Cisco ACI L4 and L7 Service Insertion
  • Lab 5: Configuring a Firewall High-Availability Pair
  • Lab 6: Configuring and Inserting a Firewall High-Availability Pair in Routed Mode
  • Lab 7: Configuring and Inserting an ASAv in Transparent Mode
  • Lab 8: Configuring and Inserting a Virtual Cisco Firepower NGIPS in Inline Mode


After completing this course you should be able to understand:

  • Basic Cisco ACI architecture and operation
  • Tenant security
  • Security domains
  • Secure fabric operation
  • Authentication, authorization, and accounting (AAA) integration
  • Microsegmentation
  • L4 andL7 service graphs
  • Function profiles
  • External ASA device integration
  • ASAv appliance integration
  • Cisco Firepower Next-Generation Intrusion Prevention System (NGIPS) integration


Security-focused and traditional network and data center engineers tasked with security roles in a Cisco networking environment.


Recommended as preparation for exams:

  • There are no exams currently aligned to this course


Datum tillgängliga på förfrågan. Vänligen kontakta oss

Denna vara har lagts till i din varukorg.