ChecPoint Security Administration II NGX (R65) provides an understanding of upgrading and advanced configuration of VPN-1 (NGX R65), installing and managing VPN-1 (on both internal and external networks), gaining the maximum security from Security Gateways, and resolving Gateway performance issues.
Who Should Attend
Systems administrators, security managers, and network engineers implementing VPN-1/FireWall-1 for VPN deployment, and individuals seeking the Check Point Certified Security Expert (CCSE) NGX certification.
What You Will Learn:
How to install and configure VPN-1/FireWall-1 for enterprise VPN deployment
How to configure and deploy VPN-1 SecuRemote and VPN-1 SecureClient for remote access VPNs
How to set up VPN desktop policies for VPN-1 SecureClient and how to use Security Configuration Verification to ensure VPN client security
How to use the VPN-1 SecureClient packaging tool for easy software configuration and deployment
How to employ digital certificates to establish trust relationships in VPN environments
General VPN-1/FireWall-1 security functions:
SYNDefender to protect against denial of service (DOS) attacks
Content security options, including URL filterin
About the Labs
User SmartUpdate to add a package to an NGX Installation
Establish a VPN between two networks, encrypting traffic
Establish a VPN between two networks, encrypting traffic with Certificates
Configure a Security Gateway for hybrid IKE SecuRemote connections
Test VPN-1 SecuRemote and Secure Server using the IKE encryption scheme
Configure an Office Mode IP pool
Connect and authenticate via Office Mode IP addressing using SecureClient
Deploy and test ClusterXL by creating a Gateway cluster
Deploy and test ClusterXL New Modw HA
Deploy and test Cluster XL for Load Sharing Unicast mode
Deploy and test Cluster XL for Load Sharing Multicast mode
Implement Office Mode
Prerequisites:
VPN-1/FireWall-1 Management I - NG or equivalent knowledge and experience