
This is a small introduction to how this course is structured
1. GNS3 VM and software: https://www.gns3.com/software/download
2. GNS3 Marketplace to download ASA template: https://www.gns3.com/marketplace/appliance/cisco-asav
3. ASAv image and instructions: https://docs.gns3.com/appliances/cisco-asav.html
Master routing on Cisco ASA by configuring interfaces, security levels, and policy to enable routing between internal and external networks, while redistributing routes with distribute lists and prefix lists.
Master basic NAT on a Cisco ASA pre 8.2 OS: configure dynamic and static NAT using address pools, interface bindings, and ACLs to enable inside hosts to reach the Internet.
Discover context based firewall concepts on Cisco ASA, including active/standby and active/active load sharing, by virtualizing a single physical box into multiple firewalls with shared interfaces and distinct policies.
Explore active-active firewall design with redundancy across two ASA devices, using context-based VLANs, trunk links, and DMZ segmentation to ensure reliable sales and marketing connectivity.
Explore how DCB normalization affects BGP traffic, including option 19 checksum handling and random sequence number protection, using DCB maps, policy maps, and advanced options.
Learn how tcp state bypass handles asymmetrical routing by permitting specific traffic with access-lists and policy maps, while using traceroute concepts to verify path and icmp behavior.
Learn how to use object groups to simplify Cisco ASA firewall policies by grouping networks, services, and protocols, enabling scalable, easy add/remove access for partners and servers.
Understand how ethertype values reveal the next protocol and how to enforce traffic with interface access lists by permitting or denying specific ethertype and transport protocols.
Shows using a prefix list to filter networks between two ASA areas, denying 20–22 and permitting 24 for incoming and outgoing traffic between area zero and area one.
Configure Cisco ASA port channels on 8.4+ by bundling interfaces into a channel group, removing per-interface IPs, assigning a shared IP, enabling active/standby, and troubleshooting with packet tracer.
In this course, you will learn how to configure, manage, and troubleshoot Cisco ASA firewalls, starting with the fundamentals and progressing to more advanced firewall features.
We will begin by building a solid understanding of core firewall concepts and ASA configuration, including static and dynamic routing. From there, we will move into advanced topics such as Active-Standby failover, Active-Active Failover, Clustering, and other features used to control and secure network traffic.
The goal of this course is to walk through configuration commands, but to help you understand how these features work, when to use them, and how they affect traffic as it passes through the firewall.
Before you join, please keep the following in mind before enrolling:
This course is a recorded classroom training series. Please watch the sample videos to make sure the teaching format works for you.
Review the audio quality of the sample videos to make sure you are comfortable with it.
Review the length and pacing of the videos to make sure they fit your preferred learning style.
If you have questions while working through the course, feel free to reach out to me. I am committed to responding to course-related questions within 24–48 hours.
Happy Learning!