
Master practical firepower configurations, build a lab, register the FMC and firewalls, and apply updates, upgrades, and security features of next-generation devices.
This video covers the various ways to build your own Firepower lab.
Set up a complete firepower lab by provisioning ESXi from a USB, creating the inside port group, and importing the FMC and FTD images.
Configure the FMC and FTDi on the management network via the console, set IPs and shared passwords, and complete the bootstrap with rooted mode and license steps.
Register and license a ftdi device with FMC, enable a 90-day evaluation, apply base, threat, malware, and URL filtering licenses, and create an acme access control policy blocking all traffic.
Configure FMC basic settings, including access lists and user roles, and enable external authentication with ldap or active directory. Set up backups, monitoring, and scheduling to maintain security and reliability.
Configure a network discovery policy on the FMC to identify devices, users, and applications, collect data across RFC 1918 space, and enable LDAP integration.
Learn how to configure the intrusion prevention function of firepower with a balanced security and connectivity base policy, enable and test rules, and apply firepower recommendations for efficient detections.
Learn to configure identity policy to identify end users by name, apply active or passive authentication, and connect with AD using realms and identity sources.
Configure URL filtering with manual blocks and optional dynamic lists, using category and reputation scores to craft top-down policies. Implement whitelist first, then blocks, including interactive blocks and example rules.
Explore network design and routing concepts with layer two and layer three architectures, vlans, vrfs, and routing protocols like rip, ospf, and bgp, plus nat, ip sla, and firewall integration.
Learn to configure site-to-site VPN on Firepower with FMC management, linking HQ and remote sites via FTDs, IPsec, access lists, tunnel groups, and crypto maps.
Learn practical NAT concepts by building static and PAT rules, exploring dynamic NAT behavior, a two-router topology, loopbacks, and known NAT exceptions for VPN traffic in Firepower.
This course is designed for ASA engineers looking to upgrade their skills to Firepower quickly.
The course was built from the ground up in 2019 and covers Firepower version 6.3.
Complete and unlimited access to:
Firepower Initial Setup
Basic Network Configuration including NAT and Routing
All Next Generation Features
URL Filtering, SSL, Identity, and much more!
Please check out the introduction video for much more information about the course.
All students will receive full access to all lessons, which includes the ability to download the videos directly. In addition, you will also be granted access to a members-only forum where I will help you when/if you get stuck on a topic.
If you would like to see more information on any given topic, just let me know. I’m happy to update a video or even create a new one to cover something more in-depth.