Attend a live onboarding webinar or advanced training session Register now
Congratulations on your big step to improve – and simplify – cybersecurity protection
Select your Umbrella package deployment path
Not sure which Umbrella package you have? View package comparison.
Customer Webinars
Attend a live onboarding session with a customer success specialist, or an advanced training course to dive into Active Directory and SWG deployments. A library of recorded webcasts are also available to view.
Get started with Cisco Umbrella Secure Internet Gateway (SIG) Essentials
Onboard: Getting started resources
- Umbrella integrates multiple security solutions into a single cloud-delivered service.
- Check out our step-by-step user guide for Cisco Umbrella Secure Internet Gateway.
- Access on-demand education, advanced deployment courses, and product feature walk-throughs, in our Umbrella learning center.
- Visit our Umbrella Knowledge base for common customer FAQs and troubleshooting tips.
- Subscribe to receive service notifications, release notes, announcements, service updates, and Cisco Cloud Security updates
Implement: Deployments, policies, basic reporting
- Choose how you want to be protected by Umbrella: you can deploy different security functions, depending on the level of protection, visibility and control you want over your security environment: DNS-layer security, secure web gateway, or cloud-delivered firewall.
- Next, manage network identities; install the AnyConnect module; configure SAML or AD integrations to see identity activity down to the user or group.
- Customize your DNS policies, web policies, or firewall policies.
- Get started with reports: use reports to gain critical insight and to optimize your security in our on-demand course.
- Install root certificate to present block pages and to enable advanced features.
Leverage DNS-layer security
- For the quickest, most effective way to protect, block malicious and unwanted domains, IP addresses, and cloud applications before a connection is ever established, implement DNS-layer security.
- Add a network identity, point your DNS, and add internal domains; view basic deployment course.
- For more visibility into identity activity, take our advanced deployment course to utilize Active Directory integrations, and deploy virtual appliances.
- Protect both roaming and mobile users on and off network, by installing our roaming module.
- Customize DNS policies to determine whether traffic is inspected, blocked, or allowed.
Leverage secure web gateway (SWG)
- For greater visibility into all web traffic, increased content control, advanced malware protection, sandboxing, and decryption, enable Umbrella’s secure web gateway (full web proxy).
- Learn how to deploy SWG in our cloud proxy course. Forward outbound traffic to Umbrella via Cisco’s AnyConnect module, PAC files, proxy chaining, or IPsec tunnels.
- Utilize SAML integrations and AD integrations to see more granular user or group activity using policies.
- Enforce consistent security and acceptable use policies to see exactly where your users are going full URL-inspection and block or allow access to specific destinations.
- SWG deployment web policies course: learn how to create web policies, how they contrast with DNS policies, and how to order policies.
Leverage cloud-delivered firewall
- To secure users across all branch offices without backhauling traffic to a datacenter for inspection, put cloud-delivered firewall into action.
- Embrace direct internet access (DIA) by routing outbound traffic to the Umbrella cloud via a single IPsec tunnel. You can also route traffic using our SD-WAN integration.
- For better visibility and control into non-web/non-DNS traffic across all ports and protocols and to easily block non-web applications customize firewall policies.
- Access our on-demand video on IPsec tunnel deployment for a step-by-step walkthrough.
Adopt: activate advanced features
Activate SWG advanced features
- Enable file inspection for web policies using Cisco’s Advanced Malware Protection (AMP) to scan all uploaded and download files for malware and other threats.
- Apply Tenant Controls to manage user access to SaaS apps, like Microsoft Office 365, Google G Suite, and Slack.
- Analyze suspicious files (not blocked through file inspection or Cisco AMP) using Threatgrid sandbox environment.
- Block file downloads by file type.
Maximize your dashboard: API configuration, log management, advanced reporting
Log management, APIs, and admin
- Define the activities you want Umbrella to log – all requests, only security events, or no requests
- Upload, store, retain activity logs from Umbrella to a customer or Cisco-managed Amazon S3 bucket
- Integrate existing tools with APIs for enforcement, visibility, management and deployment.
- Authenticate your dashboard admins using two-step verification, single sign-on or SSO.
Advanced reporting, threat intelligence, and more
- Get advanced reporting with App Discovery, Top Identities and Top Destinations.
- Schedule reports you want to see regularly, sent straight to your inbox.
- Access your Investigate console to expose current and developing threats in real-time with interactive threat intelligence
- Maximize your Umbrella deployment with helpful use tips for new features like, web and firewall policies in this on-demand video.
Get started with Cisco Umbrella DNS-layer security
Onboard: Getting started resources
- For the quickest, most effective way to protect and block malicious and unwanted domains and IP addresses before a connection is ever established, implement DNS-layer security.
- Check out our step-by-step user guide for Cisco Umbrella DNS-layer security.
- Access on-demand education, advanced deployment courses, and product feature walk-throughs in our DNS-layer security learning path.
- Visit our Umbrella Knowledge base for common customer FAQs and troubleshooting tips.
- Subscribe to receive service notifications, release notes, announcements, service updates, and Cisco Cloud Security updates.
Implement: Deployments, policies, basic reporting
- Add a network identity, point your DNS, and add internal domains that should not be sent to Umbrella.
- Install root certificate to present block pages and to enable advanced features.
- Protect users on and off network, by installing our roaming client.
- Customize DNS policies to define how security and access controls are applied to identities.
- To create policies and view reports by user, enable Active Directory integrations.
- Get started with reports: use reports to gain critical insight and optimize your security in our on-demand course.
Adopt: Activate advanced features
- For more control over your dashboard, take our advanced deployment course, to deploy virtual appliances, maximize roaming client protection, and learn more about Active Directory.
- Enable your intelligent proxy for more visibility and control and SSL decryption to inspect traffic over HTTPs and block custom URLs.
- Proxy risky domains for URL and file inspection using AV engines and Cisco Advanced Malware Protection (AMP).
- Gain visibility into threats that bypass lookups with IP layer enforcement (requires AnyConnect client).
Maximize your dashboard: API configuration, log management, advanced reporting
-
Log management, APIs, and admin
- Define the activities you want Umbrella to log – all requests, only security events, or no requests.
- Upload, store, retain activity logs from Umbrella to a customer or Cisco-managed Amazon S3 bucket.
- Integrate existing tools with APIs for enforcement, visibility, management and deployment.
- Authenticate your dashboard admins using – two-step verification, single sign-on or SSO.
- Get advanced reporting with App Discovery, Top Identities and Top Destinations.
- Schedule reports you want to see regularly, sent straight to your inbox.
- Access your Investigate console to expose current and developing threats in real-time with interactive threat intelligence.
- Maximize your Umbrella deployment with helpful tips in this on-demand video.
Advanced reporting, threat intelligence, and more
Customer support
Have technical questions or need additional deployment assistance? Submit a request.