Onboarding
Steps:
-
Step 1: Familiarize yourself with Cisco Secure Workload solution
- Task 1: Register for a virtual event, available on Cisco Community
-
Step 2: Validate pre-requisites and design requirements of Cisco
Secure Workload
- Task 2: Review Cisco Secure Workload deployment requirements
- Task 3: Review the Quick Start guide for Workload 3.8
- Step 3: Confirm license entitlement
-
Step 4: Gather information on your assets to help create your workload
scope
- Task 6: Gather IP addresses and subnets associated with your pre-production environment, data centers, and internal network
Implement
Steps
-
Step 1: Learn about agents, scopes, and labels
- Task 1: Watch the video
- Step 2: Learn about inventory and user labels
- Step 3: Install agents for workloads
- Step 4: Design and implement scope tree
-
Step 5: Explore results of agent installed and scopes
- Task 11: Identify queries for dynamic allocation of sensors to a scope
- Task 12: Analyze sensors in the default mode and in the defined scope (e.g. number of sensors per layer)
- Task 13: Analyze scope tree depth and breadth
- Task 14: Analyze ratio of default tree to scoped tree sensors
-
Step 6: Create workspaces
- Task 15: Create a workspace for each scope (e.g. one workspace based on a zone dev/prod, on application, and a workspace for global shared policies)
- Step 7: Create global or common policy manually
-
Step 8: Validate global policy
- Task 18: Validate and test global policy enforcement in the test environment
Use
Steps:
-
Step 1: Learn about automated policy discovery
- Task 1: Register for a virtual event, available on Cisco Community
-
Step 2: Automatically discover policies
- Task 2: Review and analyze policies
-
Step 3: Modify enforced policies
- Task 3: Set up a process to generate and optimize policies
-
Step 4: Configure enforcement
- Task 4: Enable enforcement for applications
-
Step 5: Create alerts and monitor
- Task 5: Configure alerts for sensor and cluster health
-
Step 6: Configure external orchestrators
- Task 6: Configure Infoblox, DNS, VMware vCenter, Kubernetes, AWS, F5, Citrix orchestrator in the Cisco Secure Workload dashboard
-
Step 7: Configure connectors
- Task 7: Configure connectors for flow ingestion, inventory enrichment, integration with cloud services, and endpoint context
Engage
Steps
- Step 1: Learn about Workload Security and Vulnerability Dashboards
-
Step 2: Integrate Secure Workload with other Cisco solutions
- Task 3: Deploy Network Visibility Module on endpoints using either Cisco Secure Firewall Connector (formerly known as "Adaptive Security Appliance") or Cisco Identity Service Engine
- Task 4: Configure Firewall Management Center in Cisco Secure Workload (for flow data)
- Step 3: Configure real-time forensics
Adopt
Steps
- Step 1: Conduct a Cisco Secure Workload health check
- Step 2: Configure connector for alert notifications
Comments
0 comments
Please sign in to leave a comment.