设为首页收藏本站language→→ 语言切换

鸿鹄论坛

 找回密码
 论坛注册

QQ登录

先注册再绑定QQ

查看: 76129|回复: 1994
收起左侧

思科ASA动手实验操作指南(中文版PDF)

  [复制链接]
 成长值: 59065
发表于 2014-7-16 13:22:55 | 显示全部楼层 |阅读模式
目录
一 测试拓扑图...............................................................................................................................5
二基础部分...................................................................................................................................6
1 Image从7.x 升级到8.x / ASDM 5.x升级到6.x............................................................6
2 通过ASDM 登陆设备(10.1.X.0/24)............................................................................8
3 syslog.................................................................................................................................15
4 通过telnet/ssh 访问ASA...............................................................................................19
4.1 telnet........................................................................................................................19
4.2 ssh............................................................................................................................21
5 设置ASA接口..................................................................................................................25
6 设置静态路由....................................................................................................................32
7 设置NAT...........................................................................................................................33
7.1设置PAT.................................................................................................................33
7.2静态NAT.................................................................................................................36
8 定义安全策略....................................................................................................................38
9 透明模式............................................................................................................................40
9.1 设置透明模式.........................................................................................................40
9.2 透明模式下的NAT................................................................................................41
Pool 中的IP为211.101.2. X( 请参考 POD ID)....................................................41
10 Dynamic Threat-detection 动态威胁检测(三大特性).........................................44
10.1 basic threat detection..........................................................................................44
10.2 scanning threat detection................................................................................44
10.3 scanning threat statistics.................................................................................44
10 应用层协议检测............................................................................................................49
10.1 过滤long URL....................................................................................................49
10.2 通过QOS对应用进行限速................................................................................55
10.3 对应用程序命令进行过滤...................................................................................59
11 对HTTP进行应用过滤..................................................................................................62
11.1 Filtering Java Applets .........................................................................................62
11.2 filter activeX..........................................................................................................65
11.4 基于表达式过滤URL..........................................................................................67
三高级部分.................................................................................................................................80
1 ssl/vpn................................................................................................................................80
1.1 Cisco AnyConnect............................................................................................80
1.2 clienless vpn......................................................................................................92
1.3 thin-client(port-forwarding) vpn ....................................................................108
2 安全桌面.......................................................................................................................... 113
3 主机扫描..........................................................................................................................124
四AIP-SSM 模块测试..............................................................................................................128
1 准备 HTTPS 的登陆...................................................................................................128
2设置AIP-SSM 的promiscous 模式.............................................................................134
2.1 设置AIP-SSM 的promiscous 模式.................................................................134
2.2定义AIP-SSM 和ASA5500的联动..................................................................138
3 ASA AIP 模块Inline 模式.............................................................................................142
3.1牵引流量................................................................................................................142
对Signature 6202 进行行为控制...............................................................................144
4自定义策略和签名.........................................................................................................145
5异常流量检测功能...........................................................................................................149
6 OS 水印识别功能...........................................................................................................151
7 Capturing 即时流量........................................................................................................152
8 SNMP and Syslog...........................................................................................................153
8.1 SNMP....................................................................................................................153
8.2 Syslog....................................................................................................................154
五MARS....................................................................................................................................155
六选作部分...............................................................................................................................177
1 High-Availability...............................................................................................................177
1.1 active/standby ......................................................................................................177
1.2 active/active..........................................................................................................179
2 multi-context 模式(选做)...........................................................................................184


游客,如果您要查看本帖隐藏内容请回复






发表于 2014-7-16 14:57:14 | 显示全部楼层
顶顶顶顶顶顶顶顶顶顶
6# 2014-7-16 14:57:14 回复 收起回复
回复 支持 反对

使用道具 举报

发表于 2014-7-16 16:18:08 | 显示全部楼层
顶顶顶顶顶顶顶顶顶顶顶顶顶
9# 2014-7-16 16:18:08 回复 收起回复
回复 支持 反对

使用道具 举报

发表于 2014-7-16 18:40:35 | 显示全部楼层
思科ASA动手实验操作指南(中文版PDF)
15# 2014-7-16 18:40:35 回复 收起回复
回复 支持 1 反对 0

使用道具 举报

您需要登录后才可以回帖 登录 | 论坛注册

本版积分规则

QQ|Archiver|手机版|小黑屋|sitemap|鸿鹄论坛 ( 京ICP备14027439号 )  

GMT+8, 2024-4-19 17:39 , Processed in 0.115316 second(s), 12 queries , Redis On.  

  Powered by Discuz!

  © 2001-2024 HH010.COM

快速回复 返回顶部 返回列表