Building Blocks Technologies

Training Services
Course Develsopment Services
Training Instruction Services Consulting Services

Services

Technology Training: Security: Practical Firewall Concepts Level I

Course Objectives:

Upon completion of this course students will be able to:

  • Describe advanced firewall technology
  • Implement custom firewall and VPN solutions
  • Configure existing firewall monitoring

Course Type:

The course is taught in class with an instructor providing firewall/VPN product demonstrations and group hands-on exercises

Prerequisite:

Networking Foundations Level I and II, TCP/IP Fundamentals Security Concepts Level II, or a detailed understanding of IP networking, data are strongly recommended. Security Series: Practical Firewall Concepts Level I is mandatory.

Audience:

Individuals that need to implement network security concepts specifically related to enterprise firewall and VPN technology, specifically Systems Engineers, Network Administrators, Network Consultants, Technical Architects, and Security Planners.

Course Description:

This course introduces the student to advanced firewall and VPN security concepts. Through a combination of lectures, product demonstrations, and group exercises the student will gain knowledge of these concepts. The course wraps up with a IKE VPN implementation exercise.

Course length

2 Days

Course Outline

Tracking and Alerts

  • Rule Base and Object Definition
  • Log Entry vs. Execution
  • SNMP Traps
  • Log Filters
  • Firewall Configuration Exercise 1:

    • System Logs
    • SNMP config

    Load Balancing

    • Traffic Redirection
    • Load Measuring
    • Logical Servers
    • Balancing Algorithms
    • Addressing Schemes
    • Address Resolution Protocol
    • Network Domains
    • Persistence

    Firewall Configuration Exercise 2:

    • Routing Configuration
    • Traffic Management

    Voice Over IP

    • H.323-based Configuration
    • SIP-based Configuration
    • VoIP Gateway
    • VoIP Gatekeeper
    • Voice Quality

    Firewall Demonstration 3:

    • Basic H.323 Configuration

    Content Security/Vectoring

    • OPSEC
    • Content Security
    • URL
    • Security Server
    • Vectoring vs. Filtering
    • Blocking
    • Inspection

    Firewall Configuration Exercise:

    • Secure Management

    Encryption and VPN

    • Plaintext vs. Ciphertext
    • Encryption
    • Tunnelling
    • Digital Signatures
    • Message Digest
    • IKE and ISAKMP
    • IPSec

    Firewall Config Exercise 4:

    • VPN tunnel, Manual Key & IIKE

    Certificate Authorities

    • Internal and External Authorities
    • Public Keys
    • Revocation Lists
    • Authority Hierarchy
    • Cross Certification

    Firewall Config Exercise 4:

    • Config VPN Client for IKE