Checkpoint Certification

Checkpoint Certification

Checkpoint Certification

Introduction

Signellent's training for Checkpoint Certified Security Administrator (CCSA) is intended for administrators who need to manage daily operations of Check Point Software Blades and Management systems. Check Point Certifications accredits your skill on the technology that is used by Checkpoint to secure large fortune 500 and global companies. Check Point Certified Security Expert (CCSE) course is designed for professionals who need to effectively build, modify, deploy and troubleshoot Check Point Security systems on the Gaia OS.

This course includes firewall processes and takes a close look at kernel processing and Stateful Inspection. Labs include configuring security gateways, implementing VPNs, and performing advanced troubleshooting tasks on the firewall. Cisco® Application Centric Infrastructure (ACI) can integrate with Check Point Next Generation Security Gateway to incorporate a full range of security protections into modern data centers. Cisco ACI can automatically configure Check Point Security Gateway and service routing paths between workloads. This capability helps you protect and accelerate your application deployments with the latest security technology, reduce management complexity, and insert security into scalable multitenant data centers.

Course Highlights

Signellent's expert instructor led course is designed to either be for 10 days (Weekdays – 3 hrs.) OR 6-weeks (Sunday/Saturday) to cater to both working and upcoming professionals. This course provides extensive server knowledge to excel in your organization. We pride ourselves in providing our students with a high success rate by highlighting the goals from day one. Our major course highlights are as below,

  • Course contents are based on CheckPoint guidelines
  • Dedicated attention by instructors to Monitoring and evaluate candidates' progress on a daily basis
  • Daily lab exercises to give extensive familiarity with the equipment
  • Regular evaluation
  • Industry experienced Certified instructors
  • The module is designed to meet the objective of the CheckPoint program.
  • The course is customized keeping in mind the ultimate aim of achieving technology expertise and CheckPoint certification.  
  • Assigned project manager will manage this program and drive the program from its registration stage to monitoring and tracking of the candidates' performance.
  • Curriculum is based on CheckPoint course outlines
  • Dedicated Professional to manage, track and evaluate the candidate's performance from registration to completion.
  • This course is especially beneficial for candidates who aim at building academic knowledge that is supplemented by applied lab exercises.
  • 6 weeks or 10 days, of intensive training+ rigorous lab exercises.
  • Course kits contains reference material and add ons to enable students prepare better.
  • Apt balance of theoretical and practical application
  • Customized tests at the end of course to ensure best results.
  • Stern passing standards with progress report of each candidate.
  • Facility of Lab on cloud for students who want to practice remotely
  • Students can attend the same lecture numerous times till they feel comfortable with the topic.
COURSE OBJECTIVES

After you complete this course Checkpoint CCSA you will be able to:

  • Describe Check Point's unified approach to network management, and its key elements.
  • Design a distributed environment.
  • Install the Security Gateway in a distributed environment.
  • Perform a backup and restore the current Gateway installation from the command line.
  • Identify critical files needed to purge or backup, import and export users and groups and add or delete administrators from the command line.
  • Deploy Gateways using the Gaia web interface.
  • Create and configure network, host and gateway objects.
  • Verify SIC establishment between the Security Management Server and the Gateway using SmartDashboar.
  • Create a basic Rule Base in SmartDashboard that includes permissions for administrative users, external services, and LAN outbound use.
  • Configure NAT rules on Web and Gateway servers.
  • Evaluate existing policies and optimize the rules based on current corporate requirements.
  • Maintain the Security Management Server with scheduled backups and policy versions to ensure seamless upgrades with minimal downtime.
  • Use Queries in SmartView Tracker to monitor IPS and common network traffic and trouble¬shoot events using packet data.
  • Use packet data to generate reports, trouble¬shoot system and security issues, and ensure network functionality.
  • onitor remote Gateways using SmartUpdate to evaluate the need for upgrades, new installations, and license modifications.
  • Use SmartUpdate to apply upgrade packages to single or multiple VPN-1 Gateways.
  • Upgrade and attach product licenses using SmartUpdate.
  • Centrally manage users to ensure only authenticated users securely access the corporate network either locally or remotely.
  • Manage users to access the corporate LAN by using external databases.
  • Use Identity Awareness to provide granular level access to network resources.
  • Acquire user information used by the Security Gateway to control access.
  • Define Access Roles for use in an Identity Awareness rule.
  • Implement Identity Awareness in the Firewall Rule Base.
  • Configure a pre-shared secret site-to-site VPN with partner sites.
  • Configure permanent tunnels for remote access to corporate resources.
  • Configure VPN tunnel sharing, given the difference between host-based, subunit-based and gateway-based tunnels.

After you complete this course Checkpoint CCSA you will be able to:

  • Perform a backup of a Security Gateway and Management Server using your understanding of the differences between backups, snapshots and update-exports.
  • Upgrade and troubleshoot a Management Server using a database migration.
  • Upgrade and troubleshoot a clustered Security Gateway deployment.
  • Use knowledge of Security Gateway infrastructures, chain modules, packet flow and kernel tables to perform debugs on firewall processes.
  • Build, test and troubleshoot a ClusterXL Load Sharing deployment on an enterprise network.
  • Build, test and troubleshoot a ClusterXL High Availability deployment on an enterprise network.
  • Build, test and troubleshoot a management HA deployment on an enterprise network.
  • Configure, maintain and troubleshoot SecureXL and CoreXL acceleration solutions on the corporate network traffic to ensure noted performance enhancement.
  • Using an external user database such as LDAP, configure User Directory to incorporate user information for authentication services on the network.
  • Manage internal and external user access to resources for Remote Access or across a VPN.
  • Troubleshoot user access issues found when implementing Identity Awareness.
  • Troubleshoot a site-to-site or certificate based VPN on a corporate gateway using IKE View, VPN log files and
  • command-line debug tools.
  • Optimize VPN performance and availability by using Link Selection and Multiple Entry Point solutions.
Course Topics

Following Topics will be covered in Checkpoint CCSA Course.

  • Introduction to Check Point Technology.
  • Deployment Platforms.
  • Introduction to the Security Policy.
  • Monitoring Traffic and Connections.
  • Network Address Translation.
  • Using SmartUpdate.
  • User Management and Authentication.
  • Identity Awareness.
  • Introduction to Check Point VPNs.
  • Installing GAiA.
  • Linking the Manager & Firewall.
  • Pushing Policy.
  • NAT.
  • Policy Packages & Database Versions.
  • SmartView Tracker.
  • SmartView Monitor.
  • LDAP.
  • Identity Awareness.
  • App Control and URL Filtering.
  • HTTPS Inspection.
  • CLI.
  • IPsec VPNs (Site to Site).
  • Backup & Recovery.
  • Smart Updates.
  • Additional Checkpoint Features.

Following Topics will be covered in Checkpoint CCSE Course:

  • Advanced and in-depth explanation of Check Point firewall technology.
  • Key tips and techniques for troubleshooting Check Point firewall technology.
  • Advanced upgrading concepts and practices.
  • Clustering firewall, management concepts and practices.
  • Software acceleration features.
  • Advanced VPN concepts and implementations.
  • Reporting tools, deployment options and features.
  • Introduction.
  • Management High Availability.
  • HA Cluster.
  • Load sharing Clusters.
  • Cluster Trouble Shooting.
  • Link Aggregation- Etherchannel.
  • Encryption.
  • IKE & IPSec.
  • PKI.
  • Domain Based VPN.
  • SSL VPN.
  • Remote Access VPN.
  • Route Based VPN.
  • CLI for Different Features.
  • Recovery.
Lab Topics

Following hands-on Labs session will be provided to Checkpoint CCSA Course Students:

    • Distributed Installations.
    • Stand-alone Security Gateway Installations.
    • Common Tools.
    • Building a Security Policy.
    • Configure the DMZ.
    • Configure NAT.
    • Monitor with SmartView Tracker.
    • Client Authentication.
    • Identity Awareness.
    • Site-to-Site VPN between corporate and branch office.

Following hands-on Labs session will be provided to Checkpoint CCSE Course Students:

    • Upgrade to Check Point R77.
    • Core CLI elements of firewall administration.
    • Migrate to a clustering solution.
    • Configure SmartDashboard to interface with Active Directory.
    • Configure site-to-site VPNS with third-party certificates.
    • Remote access with Endpoint Security VPN.
    • SmartEvent and SmartReporter.

Enroll for this course now and get ahead in your career.



Enroll Now

CHECKPOINT