Sécurité Informatique / Check Point

Formation: Check Point Security Administrator R76 ( 3 Jours )

Consulter les villes disponibles, le calendrier et nos tarifs dégressifs pour cette formation

Durée

3 Jour(s)

Pré-requis

Objectifs

Check Point Security Administrator provides an understanding of the basic concepts and skills necessary to configure Check Point Security Gateway and Management Software Blades. During this course you will configure a Security Policy and learn about managing and monitoring a secure network. In addition, you will upgrade and configure a Security Gateway to implement a virtual private network for both internal and external, remote users.

Programme

 

COURSE TOPICS:
Introduction to Check Point Technology
Deployment Platforms
Introduction to the Security Policy
Monitoring Traffic and Connections
Using SmartUpdate
User Management and Authentication
Identity Awareness
Introduction to Check Point VPNs
 
COURSE OBJECTIVES:
Describe Check Point's unified approach to network management, and the key elements of it
Design a distributed environment
Perform a backup and restore the current Gateway installation from the command line
Deploy Gateways using the Gaia web interface
Create and configure network, host and gateway objects
Verify SIC establishment between the Security Management Server and the Gateway using SmartDashboard
Create a basic Rule Base in SmartDashboard that includes permissions for administrative ussers, external services, and LAN outbound use
Configure NAT rules on Web and Gateway servers
Evaluate existing policies and optimize the rules based on current corporate requirements
Maintain the Security Management Server with scheduled backups and policy versions to ensure seamless upgrades with minimal downtime
Use Queries in SmartView Tracker to monitor IPS and common network traffic and troubleshoot events using packet data
Use packet data to generate reports, troubleshoot system and security issues, and ensure network functionality
Using SmartView Monitor, configure alerts and traffic counters, view a Gateway's status, monitor suspicious activity rules, analyze tunnel activity and monitor remote user access
Monitor remote Gateways using SmartUpdate to evaluate the need for upgrades, new installations, and license modifications
Use SmartUpdate to apply upgrade packages to single or multiple VPN-1 Gateways
Upgrade and attach product licenses using SmartUpdate
Centrally manage users to ensure only authenticated users securely access the corporate network either locally or remotely
Manage users to access the corporate LAN by using external databases
Use Identify Awareness to provide granular level access to network resources
Acquire user information used by the Security Gateway to control access
Define Access Roles for use in an Identity Awarebess rule
Implement Identity Awareness in the Firewall Rule Base
Configure a pre-shared secret site-to-site VPN with partner sites
Configure permanent tunnels for remote access to corporate resources
Configure VPN tunnel sharing, given the difference between host-based, subunit-based and gateway-based tunnels
 
LAB Exercises:
Distributed Installations
Stand-alone Security Gateway Installations
Common Tools
Building a Security Policy
Configure the DMZ
Configure NAT
Monitor with SmartView Tracker
Client Authentication
Identity Awareness
Site-to-Site VPN between corporate and branch office
Certification 
Voucher en supplément - Ce cours prépare à la certification CCSA R76 disponible auprès d'un Centre d'examen VUE : www.vue.com/checkpoint

COURSE TOPICS:

 

Introduction to Check Point Technology

Deployment Platforms

Introduction to the Security Policy

Monitoring Traffic and Connections

Using SmartUpdate

User Management and Authentication

Identity Awareness

Introduction to Check Point VPNs

 

 

COURSE OBJECTIVES:

 

Describe Check Point's unified approach to network management, and the key elements of it

Design a distributed environment

Perform a backup and restore the current Gateway installation from the command line

Deploy Gateways using the Gaia web interface

Create and configure network, host and gateway objects

Verify SIC establishment between the Security Management Server and the Gateway using SmartDashboard

Create a basic Rule Base in SmartDashboard that includes permissions for administrative ussers, external services, and LAN outbound use

Configure NAT rules on Web and Gateway servers

Evaluate existing policies and optimize the rules based on current corporate requirements

Maintain the Security Management Server with scheduled backups and policy versions to ensure seamless upgrades with minimal downtime

Use Queries in SmartView Tracker to monitor IPS and common network traffic and troubleshoot events using packet data

Use packet data to generate reports, troubleshoot system and security issues, and ensure network functionality

Using SmartView Monitor, configure alerts and traffic counters, view a Gateway's status, monitor suspicious activity rules, analyze tunnel activity and monitor remote user access

Monitor remote Gateways using SmartUpdate to evaluate the need for upgrades, new installations, and license modifications

Use SmartUpdate to apply upgrade packages to single or multiple VPN-1 Gateways

Upgrade and attach product licenses using SmartUpdate

Centrally manage users to ensure only authenticated users securely access the corporate network either locally or remotely

Manage users to access the corporate LAN by using external databases

Use Identify Awareness to provide granular level access to network resources

Acquire user information used by the Security Gateway to control access

Define Access Roles for use in an Identity Awarebess rule

Implement Identity Awareness in the Firewall Rule Base

Configure a pre-shared secret site-to-site VPN with partner sites

Configure permanent tunnels for remote access to corporate resources

Configure VPN tunnel sharing, given the difference between host-based, subunit-based and gateway-based tunnels

 

 

LAB Exercises:

 

Distributed Installations

Stand-alone Security Gateway Installations

Common Tools

Building a Security Policy

Configure the DMZ

Configure NAT

Monitor with SmartView Tracker

Client Authentication

Identity Awareness

Site-to-Site VPN between corporate and branch office

 

Certification 

Voucher en supplément - Ce cours prépare à la certification CCSA R76 disponible auprès d'un Centre d'examen VUE : www.vue.com/checkpoint

 

 

 
  
 
Certificat/Attestation
Délivrance d'une attestation de fin de formation
 
Modalités d’évaluation
L’évaluation se déroule sous forme d’exercices pendant la durée de la formation. Une auto-évaluation est réalisée par le stagiaire en fin de formation
contactez-vous decouvrez nos formation en region decouvrez nos formation en region devis

Mots-Clés