Next Generation Firewalls (NGFWs) | Cisco CCNA 200-301

  Рет қаралды 38,830

Keith Barker - The OG of IT

Keith Barker - The OG of IT

Күн бұрын

Пікірлер: 104
@matthewcardinal4186
@matthewcardinal4186 Ай бұрын
I love the high energy you put into every thing you do - you are a great teacher and we appreciate you!
@KeithBarker
@KeithBarker 3 күн бұрын
Thank you @matthewcardinal4186!
@ilogiksolutions6410
@ilogiksolutions6410 2 жыл бұрын
you changed my life keith. May the odds be ever in your favor
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank You So Much!
@Don-Carillo
@Don-Carillo 2 жыл бұрын
Your videos are actually getting better and better and i didn't even think that was possible. These are great
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Don Neto!
@nersesavakyan5760
@nersesavakyan5760 2 жыл бұрын
High Quality Content + High Quality Expert + High Quality Mentor +++ == Keith Barker
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Nerses Avakyan!
@CyMDtech
@CyMDtech Жыл бұрын
this is funny Keith has been my teacher for the long time and we dont even know each other :D, got all the way to my CCNPs with him and Jeremy Cioara. I would love to meet those guys in real world.
@KeithBarker
@KeithBarker Жыл бұрын
Thank you CMD Tech! Next time you are in Vegas, ping me.
@mubashir1976
@mubashir1976 2 ай бұрын
I have been watching since 2009 , it looks like I always knew these guys ( Keith and Jeremy) . I got my first networking job thanks to all the stuff I leaned from these guys, I am able to pay forward by teaching others. It was a far cry from driving cab, delivering pizza to senior network engineer for DOD , all kudos to these guys. Keith, you might not know it, but understand you have impacted so many lives in good way. My family 's life changed and also I was able to change two families 's lives thanks to Keith !!
@TLR9898
@TLR9898 2 жыл бұрын
The best video I have ever watched, explaining with graphics, simplifying the terms and showing the related demo are just making it much easier to understand and remember. Thank you so much. Really appreciate it!
@KeithBarker
@KeithBarker 2 жыл бұрын
Happy to do it, thanks for the feedback kaiyu lee.
@timecircle8420
@timecircle8420 2 жыл бұрын
Man, this is a wonderful networking video. It finally clicks for me.
@KeithBarker
@KeithBarker 2 жыл бұрын
Congratulations B P❗ So great to hear. Best wishes on your continued success.
@cycleof7s438
@cycleof7s438 2 жыл бұрын
The visuals really help with understanding the theory. Thanks again Keith!
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Cycle of 7's!
@-Joseph
@-Joseph 2 жыл бұрын
Hallelujah!
@MsDosSantoss
@MsDosSantoss 2 жыл бұрын
One of the greatest and the most comprehensive tutorial I've ever seen. Thank you Keith!
@KeithBarker
@KeithBarker 2 жыл бұрын
Wow, thanks!
@ramdogproductions
@ramdogproductions 2 жыл бұрын
Studio is looking GREAT! Thnx for sharing this important info!! - Ramsey
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you ramdogproductions!
@ViralPoost1
@ViralPoost1 Жыл бұрын
I started watching your videos. Thank you Keith
@KeithBarker
@KeithBarker Жыл бұрын
Thank you Matthew567!
@yoyoyoyo3205
@yoyoyoyo3205 2 жыл бұрын
Thanks Keith. Very helpful video!
@ccnalab2589
@ccnalab2589 2 жыл бұрын
great content, simplified and easy to understand and to remember
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you ccna lab!
@rockinron5113
@rockinron5113 2 жыл бұрын
Thanks Keith. That was a great tutorial. Keep up the good work
@KeithBarker
@KeithBarker 2 жыл бұрын
Thanks, will do!
@pedrogonzalez3421
@pedrogonzalez3421 2 жыл бұрын
great nugget you are definitely the OG of IT :)
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Pedro Gonzalez!
@MA-ms2qn
@MA-ms2qn Жыл бұрын
Thank you so much!!, It was super beneficial
@KeithBarker
@KeithBarker Жыл бұрын
Happy to do it, thanks for the feedback M A.
@patrikmansuri
@patrikmansuri 2 жыл бұрын
Very cool and good video on NGFWs
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the question Patrik Mansuri.
@kierano7466
@kierano7466 2 жыл бұрын
Really excellent explanations thank you!
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Kieran O!
@akintolamichael6107
@akintolamichael6107 2 жыл бұрын
Very helpful and useful. Thanks Keith.
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Akintola Michael!
@popescusilviu9948
@popescusilviu9948 2 жыл бұрын
Very good explanation.
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Popescu Silviu!
@dono42
@dono42 2 жыл бұрын
Could you add a few comments regarding the placement of the firewall? Specifically, since it can do routing and NAT, what advantages / disadvantages there are to placing the firewall before an edge router vs. replacing the edge router with the firewall itself. In the last two companies that I worked at the edge device was a firewall (Cisco ASA and Palo Alto, respectively) at each office; there were no dedicated routers.
@mdbruin8143
@mdbruin8143 2 жыл бұрын
I don't know every single pros or cons of the placement, but I picked up some of them. With a dedicated router Pros Sharing the load, on the internet side there are a lot of things happening. Take for example port scans. When you have a dedicated router that will be handled by the router. This means that the firewall can scans all traffic without the noise of the internet. Also security wise are more devices, more secure if configured correctly. If a intruder needs to get access to one device or to several devices. It's more difficult and time consuming to get access to several devices, which gives a higher chance of detection. Cons Higher price because more devices Double NAT (which can also be a pro because of obscurity) Without a router Pros Lower cost No double NAT Cons Internet traffic can fill up the logs, which makes monitoring more difficult One device to handle the security. Some parts of this you need to know for the CCNA, but most of it is a higher level of certification. CCNA is more basic understanding the Cisco technology.
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you!
@kenstoudamire7366
@kenstoudamire7366 Жыл бұрын
Having an edge router don't mean you need to double Nat....you can have point to point and workload public IPs
@ex7229
@ex7229 2 жыл бұрын
Im a new network admin and we just got the new ftds to deploy. We're replacing our ASAs im pretty nervous.
@micheleklau2387
@micheleklau2387 2 жыл бұрын
Love your videos! Maybe mention that in the EU you can't just implement https inspection without permission from HR/management. You can land you company in a very bad place with that.
@konefine3626
@konefine3626 2 жыл бұрын
Check out for complet ccnp and ccie playlist, this man is also good in teaching and he is a well experienced prof like Keith kzbin.info
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the suggestion Michele Klau❗
@markarca6360
@markarca6360 2 жыл бұрын
Is it as per the EU GDPR?
@23poiuz
@23poiuz Жыл бұрын
The explicit permission by the individual user (!) is required. If the user is an employee, the employee contract must have appropriate text. Otherwise there is no effective user agreement wrt GPDR, and management will be liable. As a user, even of a company owned device, I expect HTTPS to be secure and not monitored other than by the target website. Also, NGFWs are misnamed: they are TLS interception intermediaries aka wiretaps. Which is ok, if I'm being made aware and explicitly and freely agree.
@yassersaied7279
@yassersaied7279 2 жыл бұрын
Thanks Keith so much for the session .. can i know what kind of pin/tab u r using for hand notes and what software u r using for the notes, i like the font and how clear ur hand notes ?
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the question Yasser Saied. I use a Wacom screen, which supports a pen. I also use EpicPen software, for the pen work.
@Dave-py2hi
@Dave-py2hi 2 жыл бұрын
Thanks Keith. Very Helpfull video :)
@KeithBarker
@KeithBarker 2 жыл бұрын
Glad it was helpful!
@ogboabeyone
@ogboabeyone Жыл бұрын
thanks this is so great
@KeithBarker
@KeithBarker Жыл бұрын
Thank you Abiodun Samuel!
@mdlottery
@mdlottery Жыл бұрын
Cisco NGFW uses a Linux (Lina) engine which is run on top of the Cisco code in FTD's, the problem in my experience is that in an FTD device you cannot use "normal" or should I say conventional commands in the ngfw to make configuration changes. Everything is done in the Firepower Management Console. You can only view the current running config in expert mode. That's a huge problem. What if I am unable to reach the firewall to deploy a configuration change from the FMC however, I am at the console with a db9 attached?. Then it becomes a pain in the arse. Cisco or any other NGFW developer should implement a way to configure AND manage the firewalls both remotely through deployment AND locally further, at a minimum we should be able to make simple switch port changes using conventional ASA commands i.e. config - t etc
@Sam-bw5sk
@Sam-bw5sk 2 жыл бұрын
Hi Keith, I couldn't find the practice lab on your website for 2-Tier and 3-Tier. could you send me the link to download it please?
@Shokingawesome
@Shokingawesome 2 жыл бұрын
Fire video!
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank You!
@JT-mk3kp
@JT-mk3kp 2 жыл бұрын
I love you Keith
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you J T!
@MrWinfil
@MrWinfil 2 жыл бұрын
thank you keith for this awesome tutorial , i wish to provide us more advanced courses on fortinet FG firewall if it is possible .
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the feedback, and the request. Most of my FG content is up at CBT Nuggets. I may be making a few more FG vids here on KZbin, time will tell. Thanks again.
@oritzhak8195
@oritzhak8195 2 жыл бұрын
hey keith I really admire you and I want to thank you so much you are explain those concepts really good and clear. could you make a video LAB about FHRP with vlans?
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you or itzhak!
@thilaks8334
@thilaks8334 2 жыл бұрын
Can we get a video series for FTD and FMC Pls
@davidchang5862
@davidchang5862 2 жыл бұрын
Are NGFWs the equivalent of Firepower ? How does it fare against Fortigate ?
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the question David Chang. There are a few vendors who have NGFW offerings, including: Cisco (Firepower Threat Defense (FTD)) FortiNet (FortiGates) Check Point Palo Alto (and there are more vendors as well, but those are the ones that come to mind first). They all have very similar NGFW features.
@EA-fb7ug
@EA-fb7ug 2 жыл бұрын
Thank you
@KeithBarker
@KeithBarker 2 жыл бұрын
You're welcome
@Hartley94
@Hartley94 2 жыл бұрын
Thanks.
@KeithBarker
@KeithBarker 2 жыл бұрын
You're welcome
@brunoblatief
@brunoblatief Жыл бұрын
awesome video
@KeithBarker
@KeithBarker Жыл бұрын
Thank you Kyle Wankin!
@brunoblatief
@brunoblatief Жыл бұрын
@@KeithBarker can you give a link for packet tracers on this topic? i would really like to explore firewalls more
@hiimbob2121
@hiimbob2121 2 жыл бұрын
I see in the picture that there's 2 routers and a NGFW. can a NGFW be a router? or is it always a seperate piece of gear / VM
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the question stuart duperron. Most firewalls are L3 routers (in addition to the firewall services). Most firewalls are physical appliances (devices) do to needing dedicated hardware and circuits to do all the work very fast. Having said that, most vendors also offer a virtualized version of their firewalls as well. Examples would be for use in cloud networking such as Azure or AWS.
@Hugo-my3ek
@Hugo-my3ek 2 жыл бұрын
What is the difference between NGFW and UTM?
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the question Hugo Teixeira. NGFWs are an example of a Unified Threat Management (UTM) system.
@saibot293
@saibot293 2 жыл бұрын
What's the cheapest way to get hands on with this
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the suggestion Saibot❗ Cisco's Firepower Threat Defense FTD and their Firepower Management Center (FMC) both provide 90 day evaluations for the VMs, with most of the features enabled, without having to register them or purchase licenses.
@Koszification
@Koszification 2 жыл бұрын
Very nice, my friend. :)
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you! Cheers!
@gatolibero8329
@gatolibero8329 2 жыл бұрын
How do you not have more subscribers....
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Gato Libero!
@javieranayapacheco7646
@javieranayapacheco7646 2 жыл бұрын
It seems WSA and NGFW both have the same features... why having two products we the same functionalities?
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the question Javier Anaya Pacheco. I think the answer is both $$$, as well as having specific products to fit specific needs.
@md.parvezlimon9263
@md.parvezlimon9263 2 жыл бұрын
Thank you sir, can you create a packet tracer lab on this topic sir.
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you for the question Md. Parvez Limon. Packet Tracer doesn't have most of the NGFW features available in that emulation tool yet. Perhaps someday it will.
@md.parvezlimon9263
@md.parvezlimon9263 2 жыл бұрын
@@KeithBarker thank you sir, I am learning many things from you. you are great.
@thefutureforme9765
@thefutureforme9765 2 жыл бұрын
You are gorgeous!
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you The Future For Me!
@cdfaulk
@cdfaulk Жыл бұрын
Cisco has NGFWs?
@KeithBarker
@KeithBarker Жыл бұрын
Thank you for the question Chris F. The Cisco Firepower line is a NGFW solution.
@AndersJackson
@AndersJackson 2 жыл бұрын
You don't need NAT IF you have public addresses, like you should have in IPv6. But still, at work our machines have public IPv4 addresses, so we do not need the ugly NAT hack. But each public IPv4 address is EXPENSIVE, compare to IPv6.
@KeithBarker
@KeithBarker 2 жыл бұрын
Thank you Anders Jackson!
@GamjaField
@GamjaField 2 жыл бұрын
Next-gen Firewall, more like Next-gen disaster. Don’t ever buy Cisco’s firewall device.
@yihadsamir1368
@yihadsamir1368 2 жыл бұрын
why
@GamjaField
@GamjaField 2 жыл бұрын
@@yihadsamir1368 it’s pain in the ass to manage, their software is full of bugs as well.
@rockinron5113
@rockinron5113 11 ай бұрын
And juniper. The flakiest of them all.
@vicg5323
@vicg5323 2 жыл бұрын
Good explanation but you need to speak slower.
@KeithBarker
@KeithBarker 2 жыл бұрын
Sorry for that
Office Hour Cisco NAT, PAT | Network Address Translation
16:34
Keith Barker - The OG of IT
Рет қаралды 14 М.
Cisco Spine-leaf Network Topology | Cisco CCNA 200-301
25:59
Keith Barker - The OG of IT
Рет қаралды 115 М.
小路飞还不知道他把路飞给擦没有了 #路飞#海贼王
00:32
路飞与唐舞桐
Рет қаралды 86 МЛН
Из какого города смотришь? 😃
00:34
МЯТНАЯ ФАНТА
Рет қаралды 2,4 МЛН
Ice Cream or Surprise Trip Around the World?
00:31
Hungry FAM
Рет қаралды 21 МЛН
IP Access Control Lists (ACLs) | Cisco CCNA 200-301
18:48
Keith Barker - The OG of IT
Рет қаралды 30 М.
Web Application Firewall vs. Next Generation Firewall
15:13
F5 Government Solutions
Рет қаралды 13 М.
Destroy the Barriers -  Use Ansible Today on Your Home Lab | Cisco CCNA 200-301
21:01
Keith Barker - The OG of IT
Рет қаралды 35 М.
OSPF Feb 2022 Edition | Cisco CCNA 200-301
26:42
Keith Barker - The OG of IT
Рет қаралды 26 М.
Destroy a network with one command! (FREE CCNA 200-301 Course 2024)
21:58
David Bombal Tech
Рет қаралды 21 М.
What is a Firewall? | Traditional + Next Generation
8:31
CertBros
Рет қаралды 105 М.
IPv6 SLAAC and DNS Overview | Cisco CCNA 200-301
27:34
Keith Barker - The OG of IT
Рет қаралды 39 М.
OSI and TCP IP Models - Best Explanation
19:20
_Drunk Engineer_
Рет қаралды 514 М.
EIGRP Fundamentals | Cisco CCNA 200-301
23:27
Keith Barker - The OG of IT
Рет қаралды 32 М.
InterVlan routing on Fortigate Firewall | Lecture#5
14:51
Doctor Networks
Рет қаралды 54 М.
小路飞还不知道他把路飞给擦没有了 #路飞#海贼王
00:32
路飞与唐舞桐
Рет қаралды 86 МЛН