Sie sind auf Seite 1von 3

Check Point Security Expert R70

Length Prerequisites Take this class if 4 days Check Point Security Administration R70, or equivalent knowledge and experience. At least 6 months experience after CCSA R70 course. You are a systems administrator, security manager, or network engineer who deploys R70 Security Gateway deployments on open servers, IP appliances, UTM-1 appliances, or Power-1 appliances. Want to earn Check Point Certified Security Expert (CCSE) R70 certification

The Check Point Security Expert course provides an understanding of advanced concepts and skills necessary to configure Check Point Security Gateway and Management Software Blades. During this course, you will process a Change Request, implement Provisioning, and configure SSL VPN remote access. In addition, you will deploy HA, and configure your network for advanced routing features such as VTIs, while employing the Eventia suite for advanced reporting and monitoring options. Define Management Portal aides You will learn Extend access to network policy settings Use SmartWorkflow to track, approve and audit Security Policy changes Assess policy life-cycle and change management Use SmartProvisioning as a centralized management tool Define SmartProvisioning deployment and management scenarios Use profile-based management Identify SSL VPN roles Assess security acceleration requirements Assess multi-core CPU with SecureXL benefits Identify High Availability limitations Set up multiple Security Gateway cluster configurations Use Advanced Routing protocols Apply Load Balancing configurations Produce network-traffic audit reports Apply intrusion event analysis Monitor and analyze alerts to track and identify network intrusions Exercises

Lab Environment Setup o Build the Management Server o Build Gateways o Install and configure NTP o Upgrade to R70.1

Establish SIC Management Portal o Configure Management Portal on corporate site o Test Management Portal access o Configure Management Portal access on partner site o Test Management Portal SmartWorkflow o Create New Administrators o Configure SmartWorkflow o Open and Submit a Session for Approval o Disapprove the Session and Request a Modification o Approve the Session and Install the Policy o Disable SmartWorkflow SmartProvisioning o Enable SmartProvisioning o Create New Profile o Assign Profile to Gateways o Verify Profile Changes SSL VPN o Configure Connectra R66 Gateway o Enable Connectra Gateway in SmartDashboard o Create a file-share application in the SSL VPN tab o Create an Internal User o Assign file-share access to User Group o Update Rule Base for DMZ traffic o Verify file-share access through the User Portal o Configure embedded RDP o Shutdown and remove Connectra Server SecureXL o Enable and Configure SecureXL on the Gateway o Open connections and verify acceleration Deploying New Mode HA o Create and configure a secondary cluster member o Configure Gateway-Cluster object o Configure ClusterXL properties o Modify the Rule Base o Pass traffic through the cluster o Observe cluster status in SmartView Monitor o Perform test failovers Load Sharing Modes o Configure Load Sharing Unicast mode o Test Load Sharing Unicast mode o Configure Load Sharing Multicast mode o Test Load Sharing Multicast mode
o

VPN with Sticky Decision Function o Configure VPN in a Cluster o View a packet capture of FTP connections without Sticky Decision function o View a packet capture of FTP connections with Sticky Decision function Configure Check Point QoS Policy o Enable and Configure Check Point QoS o Create Check Point QoS Rules and adjust Rule weights o Verify and install Policy o Test QoS Policy Route-based VPNs with Static Routes o Configure Gateway and VPN Community objects o Add participating Gateway to Community o Configure VTIs on participating Gateways o Add Static Routes for internal networks Eventia Analyzer o Install the Eventia Suite on CG_Corporate o Configure the network object in SmartDashboard o Configure Eventia o Monitor events with Eventia

Das könnte Ihnen auch gefallen