Palo Alto Firewall Course Content PCNSE Training

Download as pdf or txt
Download as pdf or txt
You are on page 1of 6

Palo Alto Firewall Training

What you'll learn


Configure and Manage Palo Alto Firewall

Understand Palo Alto Firewalls Deployment Methods

How to setup a Lab Environment

Understand Palo Alto Firewalls Deployment Methods

Understand how to deploy Palo Alto Firewalls in GNS3 & EVE NG

Understand Palo Alto Firewalls Security Policies

Understand Palo Alto Firewalls NAT configuration

Understand User ID Integration


Configure user ID integration using User ID Agent

Configure Captive Portal to authenticate users

Understand AntiSpyWare, Antivirus, IPS configuration

Configure AntiSpyWare, Antivirus and IPS

Configuring SSL Decryption

Course Content
Platforms and Architecture

Single Pass Architecture

Flow Logic

Initial Configuration

Initial Access to the System

Configuration Management

Licensing and Software Updates

Account Administration

Account Administration using Radius

Admin Roles

Interface Configuration

Security Zones

Layer 2, Layer 3, Virtual Wire, and Tap

Sub-interfaces

DHCP

Virtual Routers

Multi VR Setup and Use Case


Security and NAT Policies

Security Policy Configuration

Policy Administration

NAT (source and destination)

App-ID

App-ID Overview

Application Groups and Filters

Content-ID Overview

Antivirus

Anti-spyware

Vulnerability

URL Filtering

External Dynamic List

File Blocking: Wildfire

Security Profiles File Blocking

Wildfire

Zone Protection and Dos Protection

Decryption

Certificate Management

SSL Handshake

Outbound SSL Decryption

Inbound SSL Decryption

SSH Decryption

User-ID
AD Integration

Users to IP Mapping

User-ID Agent

Site-to-Site VPN

Phase 01 and Phase 02 Exchange

IPsec Tunnels

1. Ipsec Site to Site VPN btw two palo alto devices having static IP at both end using PSK.

2. Ipsec Site to Site VPN btw two palo alto devices having static IP at both end using
Certificate.

3. Ipsec Site to Site VPN btw two palo alto devices having overlapping networks.

4. Ipsec Site to Site VPN btw two palo alto devices one peer having dynamic IP.

5. Ipsec Site to Site VPN btw two palo alto devices one peer behind NAT Gateway.

6. Dual Ipsec Site to Site VPN with dual ISPs from single firewall with A remote firewall.

1. Failover using Tunnel Monitoring

2. Failover using Static Route Path monitoring

3. Using two Virtual Router and PBF.

7. IPSec interoperability between Palo Alto firewalls and Cisco ASA

8. Dynamic IPSec site to site between Cisco ASA and PA firewall (dynamic)

9. Configuring route based IPSec using OSPF

10. Hub and Spoke IPSec VPN [Configuring route based Hub and spoke IPSec VPN using OSPF]

Palo Alto Global Protect

Global Protect Connecton Flow

Global Protect Connection Method

User Logon, On-Demand, Pre-Logon then On-Demand, Pre-Logon then User Logon
Management & Reporting

Syslog Server

Net flow

Log Types

Dashboard

Basic Logging

Basic Reports

Panorama

Active/Passive High Availability

Configuring Active/Passive HA

Active/Active High Availability

Configuring Active/Active HA

Floating IP HA Lab

ARP Load Share HA Lab

Mixed Mode HA Lab

Troubleshooting Webinar

Packet Filter

Packet Capture

Flow Basic

TCPDUMP

Palo Alto Management Plane troubleshooting

Palo Alto Data plane troubleshooting

Prerequisites for Palo Alto Firewall Training and Certification


Before you take this course, it is best that you become familiar with the concepts of networking
like switching, IP addressing and routing. you can master Palo Alto Firewalls in an easier way.

Contact Details
Hemu Sir

Mobile: +919019232915

email: [email protected]

YouTube ::
https://www.youtube.com/playlist?list=PLpfp_h7oipaTXVEGtBPficR8MSKfD3Sf6

You might also like