SlideShare a Scribd company logo
Check Point Security Administration NGX I Course Overview
Course Description Objectives Describe Check Point’s unified approach to network management, and the key elements of this architecture Design a distributed environment using the network detailed in the course topology Install the Security Gateway version R71 in a distribute environment using the network detailed in the course topology Given Check Point’s latest integration of CoreXL technology, select the best security solution for your corporate environment Given network specifications, perform a backup and restore the current Gateway installation from the command line Check Point Security Administration NGX R71 I
Course Description Objectives Identify critical files needed to purge or backup, import and export users and groups and add or delete administrators from the command line Deploy Gateways using sysconfig and cpconfig from the Gateway command line Use the Command Line to assist support in troubleshooting common problems on the Security Gateway Given the network topology, create and configure network, host and gateway objects Verify SIC establishment between the SmartCenter Server and the Gateway using SmartDashboard Create a basic Rule Base in SmartDashboard that includes permissions for administrative users, external services, and LAN outbound use Check Point Security Administration NGX R71 I
Course Description Objectives Configure NAT rules on Web and Gateway servers Evaluate existing policies and optimize the rules based on current corporate requirements Maintain the Security Management Server with scheduled backups and policy versions to ensure seamless upgrades and minimal downtime Use queries in SmartView Tracker to monitor IPS and common network traffic and troubleshoot events using packet data Using packet data on a given corporate network, generate reports, troubleshoot system and security issues, and ensure network functionality Using SmartView Monitor, configure alerts and traffic counters, view a Gateway's status, monitor suspicious activity rules, analyze tunnel activity and monitor remote user access based on corporate requirements Check Point Security Administration NGX R71 I
Course Description Objectives Monitor remote Gateways using SmartUpdate to evaluate the need for upgrades, new installations, and license modifications Use SmartUpdate to apply upgrade packages to single or multiple VPN-1 Gateways Upgrade and attach product licenses using SmartUpdate Centrally manage users to ensure only authenticated users securely access the corporate network either locally or remotely Manage users to access to the corporate LAN by using external databases Select the most appropriate encryption algorithm when securing communication over a VPN, based on corporate requirements Check Point Security Administration NGX R71 I
Course Description Objectives Establish VPN connections to partner sites in order to establish access to a central database by configuring Advanced IKE properties Configure a pre-shared secret site-to-site VPN with partner sites Configure a certificate based site-to-site VPN using one partner's internal Configure a certificate based site-to-site VPN using a third-party CA Configure permanent tunnels for remote access to corporate resources Configure VPN tunnel sharing, given the difference between host-based, subnet-based and gateway-based tunnels Check Point Security Administration NGX R71 I
Course Description Objectives Configure Check Point Messaging Security to test IP Reputation, content based anti-spam, and zero hour virus detection Based on network analysis disclosing threats by specific sites, configure a Web-filtering and antivirus policy to filter and scan traffic Implement default or customized profiles to designated Gateways in the corporate network Check Point Security Administration NGX R71 I
Course Layout Course Requirements Prerequisites Check Point Certified Security Administrator (CCSA) Check Point Security Administration NGX R71 I
The course is geared towards System administators Support analysts Network engineers Course Requirements
Each delegate should have : General knowledge of TCP/IP Working knowledge of Windows and/or Unix Working knowledge of network technology Working knowledge of the Internet Pre-requisites
Course Map Module 1:  Check Point Technology Overview Module 2:  Deployment Platforms Module 3:  Introduction to the Security Policy Module 4:  Monitoring Traffic and Connections Module 5:  Using SmartUpdate Module 6:  Upgrading to R71 Module 7:  User Management and Authentication Module 8:  Encryption and VPNs Module 9:  Introduction to VPNs Module 10:  Messaging and Content Security Course Map
Lab Setup Lab Topology IP Addresses Lab Terms Lab Stations Lab Setup
Lab Topology
NGX R71  Security Software Containers by Platform Software Blade Platform and Operating System Check Point Windows Linux Crossbeam Solaris Secure Platform IPSO  6.2  Diskbased IPSO  6.2  Flashbased Server 2003/ 2008 (SP1-2)  32bit RHEL 5.0 RHEL 5.4  kernel  2.6.18 32bit X-series UltraSPARC  8, 9, 10 Security  Management X X X X X Security Gateway X X X X X Provider-1 MDS X X X
NGX R71  Security Gateway Software Blades by Platform Software Blade Platform and Operating System Check Point Windows Linux Crossbeam Solaris Secure Platform IPSO  6.2  Diskbased IPSO  6.2  Flashbased Server 2003/ 2008 (SP1-2)  32bit RHEL 5.0 RHEL 5.4  kernel  2.6.18 32bit X-series UltraSPARC  8, 9, 10 Firewall X X X X X IPSec VPN X X X X X IPS X X X X X SSL VPN X DLP X Anti-Virus &  Anti-Malware X URL Filtering X Anti-Spam &  Email Security X Web Security X X X X X Advanced  Networking X Acceleration &  Clustering (1) X X X X X
NGX R71  Security Management Software Blades by Platform Software Blade Platform and Operating System Check Point Windows Linux Crossbeam Solaris Secure Platform IPSO  6.2  Diskbased IPSO  6.2  Flashbased Server 2003/ 2008 (SP1-2)  32bit RHEL 5.0 RHEL 5.4  kernel  2.6.18 32bit X-series UltraSPARC  8, 9, 10 Network Policy  Management X X X X X Endpoint Policy  Management X X (2003 Only) Logging & Status X X X X X Monitoring X X X X X SmartProvisioning X X X X Management  Portal (*) X X X X User Director X X X X X SmartWorkflow X X X X SmartEvent X X X SmartReporter X X X X
NGX R71 Minimum Requirement Security Management Server Component Windows Linux SecurePlatform on Open Server Solaris Processor Intel Pentium  Processor  E2140 or 2  GHz equivalent  processor Intel Pentium  Processor E2140  or 2 GHz  equivalent  processor Intel Pentium Processor  E2140 or 2 GHz  equivalent processor Sun  UltraSPARC IV  and higher Free Disk Space 1GB 1.5GB 10GB  (installation  includes OS 1GB Memory 1GB 1GB 1GB 512MB CD-ROM Drive Yes Yes Yes (Bootable) Yes Network Adapter One or more One or more One or more One or more
NGX R71  SmartConsole Hardware Requirements Component Windows Processor Intel Pentium  Processor  E2140 or 2  GHz equivalent  processor Free Disk Space 500MB Memory 512MB CD-ROM Drive Yes Video Adapter Minimum resolution: 1024 x 76
End End of Course Overview

More Related Content

PPTX
CCSA NGX R71 Course Overview
PDF
Deploying Next Generation Firewalling with ASA - CX
PPTX
ASA Multiple Context Training
PDF
Cisco, Sourcefire and Lancope - Better Together
PDF
Cisco Connect Toronto 2017 - Model-driven Telemetry
PPTX
In-kernel Analytics and Tracing with eBPF for OpenStack Clouds
PPTX
Application Visibility and Experience through Flexible Netflow
CCSA NGX R71 Course Overview
Deploying Next Generation Firewalling with ASA - CX
ASA Multiple Context Training
Cisco, Sourcefire and Lancope - Better Together
Cisco Connect Toronto 2017 - Model-driven Telemetry
In-kernel Analytics and Tracing with eBPF for OpenStack Clouds
Application Visibility and Experience through Flexible Netflow

What's hot (17)

ODP
OWASP Brisbane - SDN Security
PDF
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
PPT
NetFlow Auditor Anomaly Detection Plus Forensics February 2010 08
PDF
Solving the Visibility Gap for Effective Security
DOCX
How to configure cisco asa virtual firewall
PDF
Bypassing Port-Security In 2018: Defeating MacSEC and 802.1x-2010
PDF
IEEE MACSec and NSA ESS: How to Protect Your WAN, LAN and Cloud
PPTX
Router hardening project.slide
PDF
Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для ма...
PDF
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
PDF
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
PDF
LAS16-306: Exploring the Open Trusted Protocol
 
PDF
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...
PPTX
6421 b Module-09
DOCX
AWS VPN with Juniper SRX- Lab Sheet
PPTX
VPN in Virtualized DataCenter
PDF
Logger Forwarding Connector for NNMi 7.3.0.7837.0 Configuration Guide
OWASP Brisbane - SDN Security
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
NetFlow Auditor Anomaly Detection Plus Forensics February 2010 08
Solving the Visibility Gap for Effective Security
How to configure cisco asa virtual firewall
Bypassing Port-Security In 2018: Defeating MacSEC and 802.1x-2010
IEEE MACSec and NSA ESS: How to Protect Your WAN, LAN and Cloud
Router hardening project.slide
Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для ма...
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
LAS16-306: Exploring the Open Trusted Protocol
 
CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OF...
6421 b Module-09
AWS VPN with Juniper SRX- Lab Sheet
VPN in Virtualized DataCenter
Logger Forwarding Connector for NNMi 7.3.0.7837.0 Configuration Guide
Ad

Similar to Check Point CCSA NGX R71 Course Overview (20)

PPTX
Check Point CCSE NGX R71 Course Overview
PDF
Plan with confidence: Route to a successful Do178c multicore certification
DOCX
manoj_resume
PDF
2008-09-09 IBM Interaction Conference, Red Hat Update for System z
PDF
Cisco Firewall secure firewall configuration
PPT
PPT
Linux Based Advanced Routing with Firewall and Traffic Control
PDF
Fortinet FortiGate 100D
PDF
Using Kubernetes to make cellular data plans cheaper for 50M users
PPTX
Exploring the Final Frontier of Data Center Orchestration: Network Elements -...
 
PDF
Generating Signatures for cyberattacks.
PDF
Review of QNX
PPTX
Nebulas Solutions Group | R75 Event
PDF
Netronome Corporate Brochure
PDF
NVIDIA Triton Inference Server, a game-changing platform for deploying AI mod...
PDF
20141111_SOS3_Gallo
PDF
Serie dei nuovi processori Xeon Scalabili - Yashi Italia
DOC
Prasad_Meduri
PPTX
Monitoring federation open stack infrastructure
PDF
PLNOG 17 - Nicolai van der Smagt - Building and connecting the eBay Classifie...
Check Point CCSE NGX R71 Course Overview
Plan with confidence: Route to a successful Do178c multicore certification
manoj_resume
2008-09-09 IBM Interaction Conference, Red Hat Update for System z
Cisco Firewall secure firewall configuration
Linux Based Advanced Routing with Firewall and Traffic Control
Fortinet FortiGate 100D
Using Kubernetes to make cellular data plans cheaper for 50M users
Exploring the Final Frontier of Data Center Orchestration: Network Elements -...
 
Generating Signatures for cyberattacks.
Review of QNX
Nebulas Solutions Group | R75 Event
Netronome Corporate Brochure
NVIDIA Triton Inference Server, a game-changing platform for deploying AI mod...
20141111_SOS3_Gallo
Serie dei nuovi processori Xeon Scalabili - Yashi Italia
Prasad_Meduri
Monitoring federation open stack infrastructure
PLNOG 17 - Nicolai van der Smagt - Building and connecting the eBay Classifie...
Ad

Recently uploaded (20)

PDF
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
PDF
Sports Quiz easy sports quiz sports quiz
PDF
O5-L3 Freight Transport Ops (International) V1.pdf
PPTX
human mycosis Human fungal infections are called human mycosis..pptx
PPTX
Lesson notes of climatology university.
PDF
Module 4: Burden of Disease Tutorial Slides S2 2025
PDF
Complications of Minimal Access Surgery at WLH
PDF
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
PDF
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
PDF
STATICS OF THE RIGID BODIES Hibbelers.pdf
PPTX
IMMUNITY IMMUNITY refers to protection against infection, and the immune syst...
PDF
FourierSeries-QuestionsWithAnswers(Part-A).pdf
PDF
01-Introduction-to-Information-Management.pdf
PDF
Pre independence Education in Inndia.pdf
PPTX
Pharmacology of Heart Failure /Pharmacotherapy of CHF
PPTX
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
PPTX
PPH.pptx obstetrics and gynecology in nursing
PDF
102 student loan defaulters named and shamed – Is someone you know on the list?
PPTX
PPT- ENG7_QUARTER1_LESSON1_WEEK1. IMAGERY -DESCRIPTIONS pptx.pptx
 
PDF
Insiders guide to clinical Medicine.pdf
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
Sports Quiz easy sports quiz sports quiz
O5-L3 Freight Transport Ops (International) V1.pdf
human mycosis Human fungal infections are called human mycosis..pptx
Lesson notes of climatology university.
Module 4: Burden of Disease Tutorial Slides S2 2025
Complications of Minimal Access Surgery at WLH
Physiotherapy_for_Respiratory_and_Cardiac_Problems WEBBER.pdf
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
STATICS OF THE RIGID BODIES Hibbelers.pdf
IMMUNITY IMMUNITY refers to protection against infection, and the immune syst...
FourierSeries-QuestionsWithAnswers(Part-A).pdf
01-Introduction-to-Information-Management.pdf
Pre independence Education in Inndia.pdf
Pharmacology of Heart Failure /Pharmacotherapy of CHF
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
PPH.pptx obstetrics and gynecology in nursing
102 student loan defaulters named and shamed – Is someone you know on the list?
PPT- ENG7_QUARTER1_LESSON1_WEEK1. IMAGERY -DESCRIPTIONS pptx.pptx
 
Insiders guide to clinical Medicine.pdf

Check Point CCSA NGX R71 Course Overview

  • 1. Check Point Security Administration NGX I Course Overview
  • 2. Course Description Objectives Describe Check Point’s unified approach to network management, and the key elements of this architecture Design a distributed environment using the network detailed in the course topology Install the Security Gateway version R71 in a distribute environment using the network detailed in the course topology Given Check Point’s latest integration of CoreXL technology, select the best security solution for your corporate environment Given network specifications, perform a backup and restore the current Gateway installation from the command line Check Point Security Administration NGX R71 I
  • 3. Course Description Objectives Identify critical files needed to purge or backup, import and export users and groups and add or delete administrators from the command line Deploy Gateways using sysconfig and cpconfig from the Gateway command line Use the Command Line to assist support in troubleshooting common problems on the Security Gateway Given the network topology, create and configure network, host and gateway objects Verify SIC establishment between the SmartCenter Server and the Gateway using SmartDashboard Create a basic Rule Base in SmartDashboard that includes permissions for administrative users, external services, and LAN outbound use Check Point Security Administration NGX R71 I
  • 4. Course Description Objectives Configure NAT rules on Web and Gateway servers Evaluate existing policies and optimize the rules based on current corporate requirements Maintain the Security Management Server with scheduled backups and policy versions to ensure seamless upgrades and minimal downtime Use queries in SmartView Tracker to monitor IPS and common network traffic and troubleshoot events using packet data Using packet data on a given corporate network, generate reports, troubleshoot system and security issues, and ensure network functionality Using SmartView Monitor, configure alerts and traffic counters, view a Gateway's status, monitor suspicious activity rules, analyze tunnel activity and monitor remote user access based on corporate requirements Check Point Security Administration NGX R71 I
  • 5. Course Description Objectives Monitor remote Gateways using SmartUpdate to evaluate the need for upgrades, new installations, and license modifications Use SmartUpdate to apply upgrade packages to single or multiple VPN-1 Gateways Upgrade and attach product licenses using SmartUpdate Centrally manage users to ensure only authenticated users securely access the corporate network either locally or remotely Manage users to access to the corporate LAN by using external databases Select the most appropriate encryption algorithm when securing communication over a VPN, based on corporate requirements Check Point Security Administration NGX R71 I
  • 6. Course Description Objectives Establish VPN connections to partner sites in order to establish access to a central database by configuring Advanced IKE properties Configure a pre-shared secret site-to-site VPN with partner sites Configure a certificate based site-to-site VPN using one partner's internal Configure a certificate based site-to-site VPN using a third-party CA Configure permanent tunnels for remote access to corporate resources Configure VPN tunnel sharing, given the difference between host-based, subnet-based and gateway-based tunnels Check Point Security Administration NGX R71 I
  • 7. Course Description Objectives Configure Check Point Messaging Security to test IP Reputation, content based anti-spam, and zero hour virus detection Based on network analysis disclosing threats by specific sites, configure a Web-filtering and antivirus policy to filter and scan traffic Implement default or customized profiles to designated Gateways in the corporate network Check Point Security Administration NGX R71 I
  • 8. Course Layout Course Requirements Prerequisites Check Point Certified Security Administrator (CCSA) Check Point Security Administration NGX R71 I
  • 9. The course is geared towards System administators Support analysts Network engineers Course Requirements
  • 10. Each delegate should have : General knowledge of TCP/IP Working knowledge of Windows and/or Unix Working knowledge of network technology Working knowledge of the Internet Pre-requisites
  • 11. Course Map Module 1: Check Point Technology Overview Module 2: Deployment Platforms Module 3: Introduction to the Security Policy Module 4: Monitoring Traffic and Connections Module 5: Using SmartUpdate Module 6: Upgrading to R71 Module 7: User Management and Authentication Module 8: Encryption and VPNs Module 9: Introduction to VPNs Module 10: Messaging and Content Security Course Map
  • 12. Lab Setup Lab Topology IP Addresses Lab Terms Lab Stations Lab Setup
  • 14. NGX R71 Security Software Containers by Platform Software Blade Platform and Operating System Check Point Windows Linux Crossbeam Solaris Secure Platform IPSO 6.2 Diskbased IPSO 6.2 Flashbased Server 2003/ 2008 (SP1-2) 32bit RHEL 5.0 RHEL 5.4 kernel 2.6.18 32bit X-series UltraSPARC 8, 9, 10 Security Management X X X X X Security Gateway X X X X X Provider-1 MDS X X X
  • 15. NGX R71 Security Gateway Software Blades by Platform Software Blade Platform and Operating System Check Point Windows Linux Crossbeam Solaris Secure Platform IPSO 6.2 Diskbased IPSO 6.2 Flashbased Server 2003/ 2008 (SP1-2) 32bit RHEL 5.0 RHEL 5.4 kernel 2.6.18 32bit X-series UltraSPARC 8, 9, 10 Firewall X X X X X IPSec VPN X X X X X IPS X X X X X SSL VPN X DLP X Anti-Virus & Anti-Malware X URL Filtering X Anti-Spam & Email Security X Web Security X X X X X Advanced Networking X Acceleration & Clustering (1) X X X X X
  • 16. NGX R71 Security Management Software Blades by Platform Software Blade Platform and Operating System Check Point Windows Linux Crossbeam Solaris Secure Platform IPSO 6.2 Diskbased IPSO 6.2 Flashbased Server 2003/ 2008 (SP1-2) 32bit RHEL 5.0 RHEL 5.4 kernel 2.6.18 32bit X-series UltraSPARC 8, 9, 10 Network Policy Management X X X X X Endpoint Policy Management X X (2003 Only) Logging & Status X X X X X Monitoring X X X X X SmartProvisioning X X X X Management Portal (*) X X X X User Director X X X X X SmartWorkflow X X X X SmartEvent X X X SmartReporter X X X X
  • 17. NGX R71 Minimum Requirement Security Management Server Component Windows Linux SecurePlatform on Open Server Solaris Processor Intel Pentium Processor E2140 or 2 GHz equivalent processor Intel Pentium Processor E2140 or 2 GHz equivalent processor Intel Pentium Processor E2140 or 2 GHz equivalent processor Sun UltraSPARC IV and higher Free Disk Space 1GB 1.5GB 10GB (installation includes OS 1GB Memory 1GB 1GB 1GB 512MB CD-ROM Drive Yes Yes Yes (Bootable) Yes Network Adapter One or more One or more One or more One or more
  • 18. NGX R71 SmartConsole Hardware Requirements Component Windows Processor Intel Pentium Processor E2140 or 2 GHz equivalent processor Free Disk Space 500MB Memory 512MB CD-ROM Drive Yes Video Adapter Minimum resolution: 1024 x 76
  • 19. End End of Course Overview