Check Point Security Administration I NGX (R65) is a foundation course for Check Point''s flagship product, VPN-1 (NGX R65). This course provides an understanding of basic concepts and skills necessary to configure VPN-1. During this course, students will configure a Security Policy, and learn about managing and monitoring a secure network.
Prerequisites
To fully benefit from this course, it is recommended that you have the following prerequisite skills and knowledge:
- Basic networking knowledge, knowledge of Windows Server and/or UNIX, and experience with TCP/IP and the Internet
Associated Certifications
- Check Point Certified Security Administrator NGX R65
Who Should Attend
This course is intended for the following audience:
- You are a systems administrator, security manager, or network engineer who manages NGX R65 Security Gateway deployments
- Want to earn Check Point Certified Security Administrator (CCSA) NGX R65 certification
Number of Days
3 Days instructor-led classroom training. (Approx. 7 hours each day.)
You Will Learn
After completing this course, the student will be able to:
- How to use NGX tools to upgrade to VPN-1 NGX, from VPN-1/FireWall-1 NG or VPN-1 NG with Application Intelligence
- How to use NGX tools to install VPN-1 NGX on Windows Server 2003 and SecurePlatform
- How to work with Security Policy rules and NGX objects, using NGX object cloning and Database Revision Control features
- How to use VPN-1 SecuRemote/SecureClient to configure remote access
- How to use monitoring tools to track, monitor, and account for all connections logged by Check Point components
- How to implement LDAP, and integrate it with an NGX SmartCenter Server
- How to allocate bandwidth, given a variety of Check Point QoS configurations
- How to identify the features and limitations of Check Point High Availability solutions
Exercises
- Upgrading NG with AI R55 to VPN-1 NGX
- Installing VPN-1 NGX in a distributed deployment
- Installing VPN-1 Pro Gateway on SecurePlatform Pro
- Creating objects using object cloning
- Using Database Revision Control
- Configuring remote access in an IKE VPN
- Installing VPN-1 SecuRemote
- Using VPN-1 SecuRemote in an IKE VPN
- Implementing Office Mode
- Blocking intruder connections
- Setting up a Suspicious Activity Rule in SmartView Monitor
- Checking status in SmartView Monitor
- Configuring LDAP authentication with SmartDirectory
- Configuring a Check Point QoS Policy
- Deploying Management High Availability
- Deploying New Mode High Availability
- Configuring Load Sharing Unicast (Pivot) mode