Fortigate I: Instructor Guide For Fortigate 5.4.1
Fortigate I: Instructor Guide For Fortigate 5.4.1
Fortigate I: Instructor Guide For Fortigate 5.4.1
Instructor Guide
for FortiGate 5.4.1
Product Version
Product Version
This training covers FortiGate 5.4.1.
The FortiGate I course is the first part of the two-part NSE 4 curriculum. It can be delivered as an
instructor-led course, or it can be taken online. This course includes a facilitated lab. This course may
be delivered as part of a custom, private training engagement.
See the course descriptions for the lessons, and the course goals and objectives.
What’s new
This section highlights some of the key changes you will see in this update of the FortiGate I course.
General Changes
16X9 layout for slides, which is better displayed in modern screens.
Quizzes have been added to FLC using Quizmaker. This provides direct feedback with references
to source slides.
The Firewall Policies lesson has been divided into two lessons:
o Firewall Policies
o Network Address Translation (NAT)
FortiGate inspection mode is chosen at the VDOM level – proxy-based or flow-based.
The student guide includes labs that are divided into exercises, and the exercises are divided into
procedures.
o Each procedure contains a short list of steps, and a description that explains what the student
will do and why.
The GUI settings are now shown in bold.
Changes in Lessons
This section provides details about changes and new feature information added to specific lessons.
Lesson 1 - Introduction
The Link Aggregation slide was moved from the Routing lesson to the Introduction lesson.
New Features
The ability to assign roles to interfaces. This defines the configuration settings that are available
on an interface, based on the role that is selected.
New Features
The requirement for mandatory policy names when configuring firewall policies in the GUI.
Learning mode:
o Applies hidden security profiles with monitor action and fully enabled logging capabilities.
o Provides cyber threat assessment report under Log & Reports > Learning Reports.
Right-click menu contains various options to add/modify policies.
Policy lookupx:
o Highlights matching policy based on input criteria.
Lesson 9 - Antivirus
Proxy/System conserve mode should be called only system conserve mode as proxy conserve
mode has different meaning for developers.
New Features
Flow-based: Quick Scan uses the IPS engine and embedded compact antivirus database.
o Quick scan is faster because the file is not cached in memory but it has a lower catching rate
compared to proxy-based or full flow-based scanning.
Wi-Fi is not recommended due to packet loss. Firewalls (including FortiClient and Windows Firewall)
must allow connections with the virtual lab.
Students must be able to reach both the virtual lab hosted by Microtek/Hatsize (connectivity details are
in the Student Guide) and the Learning Management System (LMS).
(https://gm1.geolearning.com/geonext/fortinet/myhome.geo). From the LMS, students can download a
copy of the Student Guide for labs and exam study/preparation. They may also be able to view an
alternative video of the presentation.
Item Amount
Lab Setup
FortiGate VMs in the virtual lab are running FortiGate 5.4.1.
The lab topology is described in the Virtual Lab Setup Guide for FortiOS 5.4.1, and the FortiGate I
Student Guide for FortiGate 5.4.1.
Materials and System Requirements
Class Size
The recommended class size for this course is 12 participants; however, smaller or larger class sizes
numbers are permitted.
Time to Complete
Time to Complete
Schedules may vary by region and customer, but, assuming a 9am to 5pm day with one hour for
breaks, there is a seven-hour study day. There are 11 lessons to deliver in this two-day course.
Try to avoid lectures longer than 30 minutes. Break lessons into two segments, if necessary.