Home Company Information Consulting Course Catalog Contact Us Request a Quote Government Corporate
 

   
Course Name: Check Point VPN-1/FireWall-l Management II - NG with Application Intelligence Training
Course Duration: 2 Days
Deployment Option: Onsite Training
Course Price: $1995.00
   

Who Should Attend:
 
This course is designed for those people who will be responsible for the installation, implementation or maintenance of a FireWall-1 protected site, including systems administrators, security managers, network engineers implementing VPN-1/FireWall-1 for VPN deployment and individuals seeking the Check Point Certified Security Expert (CCSE) NG certification..
 
Prerequisites:
 
Delegates must already have attended the VPN-1/FireWall-1 Management I - NG course or have equivalent knowledge and experience
 
Course Description:
 
VPN-1/FireWall-1 Management II - NG offers advanced training on VPN-1/FireWall-1 NG and delivers in-depth information on VPN and encryption technologies. In this 2 day course, you will acquire the skills necessary to set up a site-to-site VPN and roll out a remote access VPN with either VPN-1 SecureClient or VPN-1 SecuRemote.

A comprehensive course allowing the student to gain hands-on experience in the workshops, learning how to administer and support a FireWall-1 firewall. The student gets real-life experience as they install FireWall-1, design and implement various corporate security policies.
 
Certification:
 
This course meets the requirements for the Check Point Security Expert (CCSE) NG Certification.
 
Course Objectives:
 

Delegates attending this course will be able to:

  • Understand how to install and configure VPN-1/FireWall-1 for enterprise VPN deployment
  • Configure and deploy VPN-1 SecuRemote and VPN-1 SecureClient for remote access VPNs
  • Set up VPN desktop policies for VPN-1 SecureClient and how to use Security Configuration Verification to ensure VPN client security
  • Use the VPN-1 SecureClient packaging tool for easy software configuration and deployment
  • Employ digital certificates to establish trust relationships in VPN environments
  • Understand general VPN-1/FireWall-1 security functions:
  • Content security options, including URL filtering

In the labs you will gain hands-on experience in:

  • Configuring VPN-1 Gateway to support VPN deployments
  • Setting up VPN-1 SecuRemote and VPN-1 Secure Client secure VPN remote access deployments
  • Using content security to enable Java blocking, URL filtering and anti-virus checking
  • Configuring two-gateway IKE encryption
 
Course Outline:
 

Chapter 1: Check Point NG with Application Intelligence - Management II

VPN-1/FireWall-1 Installation
System requirements
Installing and uninstalling VPN-1/FireWall-1
Tracking and Alerts

  • Masking and disabling rules
  • Uninstalling a security policy
  • Improving VPN-1/FireWall-1 NG performance

Load Balancing

  • Setting up VPN-1/FireWall-1 load balancing
  • Logical server types
  • Load-balancing algorithms on HTTP

Enabling Voice Over IP Traffic

  • Voice over IP basics
  • Configuring FireWall-1 for H.323-based Voice over IP traffic
  • Enabling Voice over IP traffic in a SIP environment
  • Configuring the Security Policy for Voice over IP communications

Content security

  • Role of the security server
  • Content Vectoring Protocol
  • URL Filtering Protocol
  • Implementing content security
  • Implementing the TCP resource
  • CVP load sharing and chaining

Encryption and Virtual Private Networks

  • How encryption works
  • VPN-1/FireWall-1 encryption schemes

Certificate Authorities

  • Using certificates
  • Certificate Authority deployment

Configuring VPNs

  • VPN deployments
  • Using Secure Virtual Networking to protect wireless LANs
  • Exporting ICA certificates
  • Simplified intranet setup
  • Integrating VPNs into a Rule Base
  • Clientless VPNs
  • VPN-1 Net

VPN for Remote Clients

  • SecuRemote/SecureClient
  • Configuring remote-access VPNs
  • Global properties settings
  • Structure of SecuRemote connections
  • SecuRemote Client
  • Installing SecuRemote

VPN-1 SecureClient

  • SecureClient Policy
  • Using SecuRemote in an IKE VPN
  • Desktop policies
  • Installing the Policy Server
  • Policy Server troubleshooting
  • SecureClient considerations
  • Configuring the Policy Server on the Enforcement Module
  • Connect and Office modes
  • SecureClient Diagnostics Tool
  • Partial-topology configuration
  • SecureClient software distribution