Working with the TechNow lab for the PA-215: Palo Alto Networks Firewall Essentials FastTrack course has been nothing less than a techie's idea of fun. When students come in we are immediatly configuring the Cisco 3750 switches for access ports, VLANS, and trunks. We then cable the switch to the Palo Alto Networks Firewall. Each student gets their own Palo Alto Firewall Pod of hardware and software. What we find as fun is the VLAN environment, with an array of virtual machines hosted on an ESXi server that can really exercise the abilities of the Palo Alto Firewall. The DMZ VLAN hosts virtual machines that support enterprise services and also potentialy vulnerable web services. The Trust VLAN has Windows and Linux clients. The UnTrust VLAN has Web services and a VM of Kali. The hardware Firewall is additionally connected to a Management VLAN. All those VLANs are trunked into an ESXi server where the student also has a VM-Series Palo Alto Networks Firewall for High Availability.
After configuring all the trunking, VLANs, and network interfaces we learn about the firewall and configure it for the lab environment. Using Metasploitable and Kali/Metasploit nefarious penetration attempts are executed. Using packet captures, custom APP-ID's and custom signatures are generated. Custom logging and reporting are created to similate and enterprise and assist the desired Incident Response. It is always fun in a training environment to learn all about the controls available in a product, even though specific controls may not be used in the operational environment. In the end we have a good understanding of the Palo Alto Networks Firewall.
TechNow has 26 years of courseware deveopment with a huge library of course material. If our standard courses are just not quite right for what you require, we can provide customized training to meet your needs! We have serviced many request for training that is aligned to customer business operations. Additionally, our security related courses can provide concise direction on how to build security programs and/or address gaps in your existing security programs. TechNow strives for 100% customer satisfaction, and customized classes is one method that TechNow uses to achieve that goal.
Together, our Classroom in a Box service and the customized class service can provide highly targeted training to your team at your location.
If you are interested in more information regarding our customized training, contact us at 800-324-2294
Course Overview:
This course is designed for students who intend to work with virtual private networks (VPNs) using IPSec. The course includes detailed coverage of the VPN 3000 Concentrator, a scalable remote access platform that offers encryption, high availability, and superior performance. This class is an invaluable theory and configuration guide for the VPN 3000 series of products, with its thorough coverage of concentrators, hardware clients, and software clients.
Attendees to N-315: Cisco Secure Virtual Private Networks will receive TechNow approved course materials and expert instruction.
Dates/Locations:
No Events
Duration: 5 days
Course Objectives:
- Network Security & Virtual Private Network Technologies Cisco VPN 3000 Concentrator Series Hardware Overview
- Routing on the VPN 3000
- Configuring the Cisco VPN 3000 for Remote Access Using Pre-shared Keys
- Configuring the Cisco VPN 3000 for Remote Access Using Digital Certificates
- The Cisco VPN Client Firewall Feature
- Configuring the Cisco 3002 Hardware Client for Remote Access
- Configuring the Cisco 3002 Hardware Client for User & Unit Authentication
- Configuring Cisco VPN Clients for Backup Server, Load Balancing & Reverse Route Injection
- Configuring the Cisco 3000 Concentrator for IPSec over TCP & UDP
- Configuring LAN-to-LAN VPNs on the Cisco 3000
- Network Monitoring & Administration Troubleshooting
Prerequisites:
- Students who attend this advanced course must have experience in configuring Cisco IOS software
- CCNA certification
- Basic knowledge of the Windows operations system
- Familiarity with the networking & security terms & concepts
Comments
Latest comments from students
Liked the class? Then let everyone know!