Cisco CCNP Security · SCOR + SNCF · SNCF 2.2–2.6 · SCOR 2.8
Next-generation policies on Threat Defense: Security Intelligence, application and URL control, intrusion, file & malware, decryption
Turn a stateful firewall into an NGFW: block known-bad IPs and domains with Talos feeds and a DNS sinkhole, control applications and URL categories, stop attacks with Snort intrusion rules, block malware downloads by SHA-256 — and learn why HTTPS hides all of it until you decrypt.
52 min read10 chapters5 labs15 quiz7 scenarios15 interview Q&A
This module is part of the paid plans
The free Starter plan opens the first module of every path. Upgrade to unlock this module's lesson, labs, quiz and scenarios.
Your free Starter plan includes
- ✓First module of every path — lessons and quizzes
- ✓3 hands-on labs in total
- ✓Practice questions (up to 10 per set)
- ✓Build your own lab — 3 sessions a month, up to 4 devices
Inside this module
- Lab · Security Intelligence and a DNS sinkhole against a C2 server
- Lab · Application control and URL filtering for the office
- Lab · Intrusion policy in front of the published web server
- Lab · File & malware policy: stop malicious downloads
- Lab · Ticket: payroll login broken by the IPS, and a beacon nobody saw