Call : (+91) 968636 4243
Mail : info@EncartaLabs.com
EncartaLabs

Implementing Juniper Networks Secure Analytics (IJSA)

( Duration: 3 Days )

This Implementing Juniper Networks Secure Analytics (IJSA) training course discusses the configuration of Juniper Networks JSA Series Secure Analytics (formerly known as Security Threat Response Manager [STRM]) in a typical network environment. Key topics include deploying a JSA Series device in the network, configuring flows, running reports, and troubleshooting.

By attending Implementing Juniper Networks Secure Analytics (IJSA) workshop, delegates will learn to:

  • Describe the JSA system and its basic functionality.
  • Describe the hardware used with the JSA system.
  • Identify the technology behind the JSA system.
  • Identify the JSA system’s primary design divisions—display versus detection, and events versus traffic.
  • Plan and prepare for a new installation.
  • Access the administration console.
  • Configure the network hierarchy.
  • Configure the automatic update process.
  • Access the Deployment Editor.
  • Describe the JSA system’s internal processes.
  • Describe event and flow source configuration.
  • List key features of the JSA architecture.
  • Describe the JSA system’s processing logic.
  • Interpret the correlation of flow data and event data.
  • List the architectural component that provides each key function.
  • Describe Events and explain where they come from.
  • Access the Log Activity interface.
  • Execute Event searches.
  • Describe flows and their origin.
  • Configure the Network Activity interface.
  • Execute Flow searches.
  • Specify the JSA system’s Asset Management and Vulnerability Assessment functionality.
  • Access the Assets interface.
  • View Asset Profile data.
  • View Server Discovery.
  • Access the Vulnerability Assessment Scan Manager to produce vulnerability assessments (VAs).
  • Access vulnerability scanner configuration.
  • View vulnerability profiles.
  • Describe rules.
  • Configure rules.
  • Configure Building Blocks (BBs).
  • Explain how rules and flows work together.
  • Access the Offense Manager interface.
  • Understand Offense types.
  • Configure Offense actions.
  • Navigate the Offense interface.
  • Explain the Offense summary screen.
  • Search Offenses.
  • Use the JSA system’s Reporting functionality to produce graphs and reports.
  • Navigate the Reporting interface.
  • Configure Report Groups.
  • Demonstrate Report Branding.
  • View Report formats.
  • Identify the basic information on maintaining and troubleshooting the JSA system.
  • Navigate the JSA dashboard.
  • List flow and event troubleshooting steps.
  • Access the Event Mapping Tool.
  • Configure Event Collection for Junos devices.
  • Configure Flow Collection for Junos devices.
  • Explain high availability (HA) functionality on a JSA device.

  • Understanding of TCP/IP operation;
  • Understanding of network security concepts; and
  • Experience in network security administration.

COURSE AGENDA

1

Course Introduction

2

Product Overview

  • Overview of the JSA Series Device
  • Hardware
  • Collection
  • Operational Flow
3

Initial Configuration

  • A New Installation
  • Administration Console
  • Platform Configuration
  • Deployment Editor
4

Architecture

  • Processing Log Activity
  • Processing Network Activity
  • JSA Deployment Options
5

Log Activity

  • Log Activity Overview
  • Configuring Log Activity
6

Network Activity

  • Network Activity Overview
  • Configuring Network Activity
7

Assets and Vulnerability Assessment

  • Asset Interface
  • Vulnerability Assessment
  • Vulnerability Scanners
8

Rules

  • Rules
  • Configure Rules and Building Blocks
9

Offense Manager

  • Offense Manager
  • Offense Manager Configuration
  • Offense Investigation
10

JSA Reporting

  • Reporting Functionality
  • Reporting Interface
11

Basic Tuning and Troubleshooting

  • Basic Tuning
  • Troubleshooting
12

Configuring Junos Devices for Use with JSA

  • Collecting Junos Events
  • Collecting Junos Flows

Encarta Labs Advantage

  • One Stop Corporate Training Solution Providers for over 6,000 various courses on a variety of subjects
  • All courses are delivered by Industry Veterans
  • Get jumpstarted from newbie to production ready in a matter of few days
  • Trained more than 50,000 Corporate executives across the Globe
  • All our trainings are conducted in workshop mode with more focus on hands-on sessions

View our other course offerings by visiting https://www.encartalabs.com/course-catalogue-all.php

Contact us for delivering this course as a public/open-house workshop/online training for a group of 10+ candidates.

Top
Notice
X