Palo Alto Networks Certified Network Security Engineer
Fortray Global Services LTD
Training on Real Equipment with Subject Matter Expert Trainer and Consultant
Summary
Add to basket or enquire
Overview
Certification
Certified Network Security Engineer (CNSE)
Description
Detailed Course Outline
Module 1: Platforms and Architecture
- Security platform overview
- Next-generation firewall architecture
- Zero Trust security model
- Public cloud security
- Firewall offerings
Module 2: Initial Configuration
- Administrative controls
- Initial access to the system
- Configuration management
- Licensing and software updates
- Account administration
- Viewing and filtering logs
Module 3: Interface Configuration
- Security zones and interfaces
- Tap interfaces
- Virtual Wire interfaces
- Layer 2 interfaces
- Layer 3 interfaces
- Virtual routers
- VLAN interfaces
- Loopback interfaces
- Policy-based forwarding
Module 4: Security and NAT Policies
- Security policy fundamental concepts
- Security policy administration
- Network Address Translation
- Source NAT configuration
- Destination NAT configuration
Module 5: App-IDâ„¢
- Application Identification (App-ID) overview
- Using App-ID in a Security policy
- Identifying unknown application traffic
- Updating App-ID
Module 6: Basic Content-IDâ„¢
- Content-ID overview
- Vulnerability Protection Security Profiles
- Antivirus Security Profiles
- Anti-Spyware Security Profiles
- File Blocking Profiles
- Attaching Security Profiles to Security policy rules
- Telemetry and threat intelligence
- Denial of service protection
Module 7: URL Filtering
- URL Filtering Security Profiles
- Attaching URL Filtering Profiles
Module 8: Decryption
- Decryption concepts
- Certificate management
- SSL Forward Proxy decryption
- SSL Inbound Inspection
- Other decryption topics:
- Unsupported applications
- No decryption
- Decryption port mirroring
- Hardware security modules
- Troubleshooting SSL session terminations
Module 9: WildFireâ„¢
- WildFire concepts
- Configuring and managing WildFire
- WildFire reporting
Module 10: User-IDâ„¢
- User-ID overview
- User mapping methods overview
- Configuring User-ID
- PAN-OS® Integrated agent configuration
- Windows-based agent configuration
- Configuring group mapping
- User-ID and Security policy
Module 11: GlobalProtectâ„¢
- GlobalProtect overview
- Preparing the firewall for GlobalProtect
- Configuration: GlobalProtect Portal
- Configuration: GlobalProtect Gateway
- Configuration: GlobalProtect agents
Module 12: Site-to-Site VPNs
- Site-to-site VPN
- Configuring site-to-site tunnels
- IPsec troubleshooting
Module 13: Monitoring and Reporting
- Dashboard, ACC, and Monitor
- Log forwarding
- Syslog
- Configuring SNMP
Module 14: Active/Passive High Availability
- HA components and operation
- Active/passive HA configuration
- Monitoring HA state
Who is this course for?
Network Security Engineer
Network Analyst
Firewall Engineer
Requirements
Students must have a basic familiarity with networking concepts including routing, switching, and IP address. Students also should be familiar with basic security concepts. Experience with other security technologies (IPS, proxy, and content filtering) is a plus
Questions and answers
Currently there are no Q&As for this course. Be the first to ask a question.
Reviews
Currently there are no reviews for this course. Be the first to leave a review.
Sidebar navigation
Legal information
This course is advertised on Reed.co.uk by the Course Provider, whose terms and conditions apply. Purchases are made directly from the Course Provider, and as such, content and materials are supplied by the Course Provider directly. Reed is acting as agent and not reseller in relation to this course. Reed's only responsibility is to facilitate your payment for the course. It is your responsibility to review and agree to the Course Provider's terms and conditions and satisfy yourself as to the suitability of the course you intend to purchase. Reed will not have any responsibility for the content of the course and/or associated materials.