Check Point Security Expert R70/R71

5 Day Course
Hands On
Official Check Point Curriculum
Code CPCCSE71

Book Now - 1 Delivery Method Available:

Scheduled Online Onsite

Overview

The Check Point Security Expert course provides an understanding of advanced concepts and skills necessary to configure Check Point Security Gateway and Management Software Blades. During this course, you will process a Change Request, implement Provisioning, and configure SSL VPN remote access. In addition, you will deploy HA, and configure your network for advanced routing features such as VTIs, while employing the Eventia suite for advanced reporting and monitoring options.

Objectives

By the end of this course, you will be able to:

  • Define Management Portal aides
  • Extend access to network policy settings
  • Use SmartWorkflow to track, approve and audit Security Policy changes
  • Assess policy life-cycle and change management
  • Use SmartProvisioning as a centralized management tool
  • Define SmartProvisioning deployment and management scenarios
  • Use profile-based management
  • Identify SSL VPN roles
  • Assess security acceleration requirements
  • Assess multi-core CPU with SecureXL benefits
  • Identify High Availability limitations
  • Set up multiple Security Gateway cluster configurations
  • Use Advanced Routing protocols
  • Apply Load Balancing configurations
  • Produce network-traffic audit reports
  • Apply intrusion event analysis
  • Monitor and analyze alerts to track and identify network intrusions

Please note that there is also a Check Point Security Expert R75 course available.

Training Partners

We work with the following best of breed training partners using our bulk buying power to bring you a wider range of dates, locations and prices.

Modules

Hide all

Lab Environment Setup (5 topics)

  • Build the Management Server
  • Build Gateways
  • Install and configure NTP
  • Upgrade to R70.1
  • Establish SIC

Management Portal (4 topics)

  • Configure Management Portal on corporate site
  • Test Management Portal access
  • Configure Management Portal access on partner site
  • Test Management Portal

SmartWorkflow (6 topics)

  • Create New Administrators
  • Configure SmartWorkflow
  • Open and Submit a Session for Approval
  • Disapprove the Session and Request a Modification
  • Approve the Session and Install the Policy
  • Disable SmartWorkflow

SmartProvisioning (4 topics)

  • Enable SmartProvisioning
  • Create New Profile
  • Assign Profile to Gateways
  • Verify Profile Changes

SSL VPN (9 topics)

  • Configure Connectra R66 Gateway
  • Enable Connectra Gateway in SmartDashboard
  • Create a file-share application in the SSL VPN tab
  • Create an Internal User
  • Assign file-share access to User Group
  • Update Rule Base for DMZ traffic
  • Verify file-share access through the User Portal
  • Configure embedded RDP
  • Shutdown and remove Connectra Server

SecureXL (2 topics)

  • Enable and Configure SecureXL on the Gateway
  • Open connections and verify acceleration

Deploying New Mode HA (7 topics)

  • Create and configure a secondary cluster member
  • Configure Gateway-Cluster object
  • Configure ClusterXL properties
  • Modify the Rule Base
  • Pass traffic through the cluster
  • Observe cluster status in SmartView Monitor
  • Perform test failovers

Load Sharing Modes (4 topics)

  • Configure Load Sharing Unicast mode
  • Test Load Sharing Unicast mode
  • Configure Load Sharing Multicast mode
  • Test Load Sharing Multicast mode

VPN with Sticky Decision Function (3 topics)

  • Configure VPN in a Cluster
  • View a packet capture of FTP connections without Sticky Decision function
  • View a packet capture of FTP connections with Sticky Decision function

Configure Check Point QoS Policy (4 topics)

  • Enable and Configure Check Point QoS
  • Create Check Point QoS Rules and adjust Rule weights
  • Verify and install Policy
  • Test QoS Policy

Route-based VPNs with Static Routes (4 topics)

  • Configure Gateway and VPN Community objects
  • Add participating Gateway to Community
  • Configure VTI's on participating Gateways
  • Add Static Routes for internal networks

Eventia Analyzer (4 topics)

  • Install the Eventia Suite on CG_Corporate
  • Configure the network object in SmartDashboard
  • Configure Eventia
  • Monitor events with Eventia

Prerequisites

Additional Learning

The courses below may help you meet the knowledge level required to take this course. If you are unsure please ask a training advisor .

  • Check Point Security Administration R70/R71

    This 5-Day Training Course on Check Point Security Administration NGX I training course provides hands-on training managing a VPN-1/FireWall-1 installation

    5 Day Course Hands On Training Official Curriculum Course Code CPCCSA70
    Scheduled Online Onsite

Relevant Certifications

or call:408-759-5074

Course PDF

Print

Share this Course

+1
Share

Recommend this Course

Sections