Generic selectors
Exact matches only
Search in title
Search in content
Search in posts
Search in pages

Course Outline

SISE: Implementing and Configuring Cisco Identity Services Engine v3.0

SISE: Implementing and Configuring Cisco Identity Services Engine v3.0

Course Contents

Introducing Cisco ISE Architecture and Deployment
•   Using Cisco ISE as a Network Access Policy Engine
•   Cisco ISE Use Cases
•   Describing Cisco ISE Functions
•   Cisco ISE Deployment Models
•   Context Visibility

Cisco ISE Policy Enforcement
•   Using 802.1X for Wired and Wireless Access
•   Using MAC Authentication Bypass for Wired and Wireless Access
•   Introducing Identity Management
•   Configuring Certificate Services
•   Introducing Cisco ISE Policy
•   Implementing Third-Party Network Access Device Support
•   Introducing Cisco TrustSec
•   Cisco TrustSec Configuration
•   Easy Connect

Web Authentication and Guest Services
•   Introducing Web Access with Cisco ISE
•   Introducing Guest Access Components
•   Configuring Guest Access Settings
•   Configuring Sponsor and Guest Portals

Cisco ISE Profiler
•   Introducing Cisco ISE Profiler
•   Profiling Deployment and Best Practices

Cisco ISE BYOD
•   Introducing the Cisco ISE BYOD Process
•   Describing BYOD Flow
•   Configuring the My Devices Portal
•   Configuring Certificates in BYOD Scenarios

Cisco ISE Endpoint Compliance Services
•   Introducing Endpoint Compliance Services
•   Configuring Client Posture Services and Provisioning in Cisco ISE

Working with Network Access Devices
•   Review TACACS+
•   Cisco ISE TACACS+ Device Administration
•   Configure TACACS+ Device Administration
•   TACACS+ Device Administration Guidelines and Best Practices
•   Migrating from Cisco ACS to Cisco ISE

Lab Outline

•   Access the SISE Lab and Install ISE 2.4
•   Configure Initial Cisco ISE Setup, GUI Familiarization, and System Certificate Usage
•   Integrate Cisco ISE with Active Directory
•   Configure Basic Policy on Cisco ISE
•   Configure Policy Sets
•   Configure Access Policy for Easy Connect
•   Configure Guest Access
•   Configure Guest Access Operations
•   Create Guest Reports
•   Configure Profiling
•   Customize the Cisco ISE Profiling Configuration
•   Create Cisco ISE Profiling Reports
•   Configure BYOD
•   Blacklisting a Device
•   Configure Cisco ISE Compliance Services
•   Configure Client Provisioning
•   Configure Posture Policies
•   Test and Monitor Compliance-Based Access
•   Test Compliance Policy
•   Configure Cisco ISE for Basic Device Administration
•   Configure TACACS+ Command Authorization

We strongly recommend you attend this course before attempting the following exam.

Certification & Exam

This exam certifies your knowledge of Cisco Identify Services Engine, including architecture and deployment, policy enforcement, Web Auth and guest services, profiler, BYOD, endpoint compliance, and network access device administration.

After you pass 300-715 SISE:
•   You earn the Cisco Certified Specialist – Security Identity Management Implementation certification.
•   You will have satisfied the concentration exam requirement for the new CCNP Security certification. To complete CCNP Security, you also need to pass the Implementing and Operating Cisco Security Core Technologies (350-701 SCOR) exam or its equivalent.

This exam tests your knowledge of Cisco Identify Services Engine, including:
•   Architecture and deployment
•   Policy enforcement
•   Web Auth and guest services
•   Profiler
•   BYOD
•   Endpoint compliance
•   Network access device administration

The Implementing and Configuring Cisco Identity Services Engine v1.0 (SISE 300-715) exam is a 90-minute exam associated with the CCNP Security, and Cisco Certified Specialist – Security Identity Management Implementation certifications. This exam tests a candidate’s knowledge of Cisco Identify Services Engine, including architecture and deployment, policy enforcement, Web Auth and guest services, profiler, BYOD, endpoint compliance, and network access device administration. The course, Implementing and Configuring Cisco Identity Services Engine, helps candidates to prepare for this exam.

The following topics are general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. To better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.

10%
1.0 Architecture and Deployment
1.1 Configure personas
1.2 Describe deployment options

25%
2.0 Policy Enforcement
2.1 Configure native AD and LDAP
2.2 Describe identity store options
•   2.2.a LDAP
•   2.2.b AD
•   2.2.c PKI
•   2.2.d OTP
•   2.2.e Smart Card
•   2.2.f Local
2.3 Configure wired/wireless 802.1X network access
2.4 Configure 802.1X phasing deployment
•   2.4.a Monitor mode
•   2.4.b Low impact
•   2.4.c Closed mode
2.5 Configure network access devices
2.6 Implement MAB
2.7 Configure Cisco TrustSec
2.8 Configure policies including authentication and authorization profiles

15%
3.0 Web Auth and Guest Services
3.1 Configure web authentication
3.2 Configure guest access services
3.3 Configure sponsor and guest portals

15%
4.0 Profiler
4.1 Implement profiler services
4.2 Implement probes
4.3 Implement CoA
4.4 Configure endpoint identity management

15%
5.0 BYOD
5.1 Describe Cisco BYOD functionality
•   5.1.a Use cases and requirements
•   5.1.b Solution components
•   5.1.c BYOD flow
5.2 Configure BYOD device on-boarding using internal CA with Cisco switches and Cisco wireless LAN controllers
5.3 Configure certificates for BYOD
5.4 Configure blacklist/whitelist

10%
6.0 Endpoint Compliance
6.1 Describe endpoint compliance, posture services, and client provisioning
6.2 Configure posture conditions and policy, and client provisioning
6.3 Configure the compliance module
6.4 Configure Cisco ISE posture agents and operational modes
6.5 Describe supplicant, supplicant options, authenticator, and server

10%
7.0 Network Access Device Administration
7.1 Compare AAA protocols
7.2 Configure TACACS+ device administration and command authorization

Price per delegate

£3395

Scheduled Classes

Remote Access:

22 – 26 Mar 2021
19 – 23 Apr 2021
17 – 21 May 2021
14 – 18 Jun 2021
12 – 16 Jul 2021
09 – 13 Aug 2021
06 – 10 Sep 2021
04 – 08 Oct 2021
01 – 05 Nov 2021
13 – 17 Dec 2021

Please complete the contact form below or call 0141 221 5676 for further course information and available dates.
Alternatively you can email us at info@indiciatraining.com

Contact Us