Check Point Certified Security Administrator (CCSA) R77

Check Point Certified Security Administrator (CCSA) R77 eğitiminde katılımcılara, Check Point Security Gateway’lerin ayarlanması için gerekli temel kavramlar öğretilecek olup, eğitim sonunda katılımcıların güvenlik politikaları oluşturabilecek, güvenli bir ağı yönetip gözlemleyebilecek seviyede bilgi birikimine sahip olmaları amaçlanmaktadır.


Describe Check Point's unified approach to network management and the key elements of this architecture
Design a distributed environment using the network detailed in the course topology
Install the Security Gateway version R75 in a distributed environment using the network detailed in the course topology
Given networkspecifications,perform abackup and restore the current Gatewayinstallation from thecommandline
Identify critical files needed topurge or backup, import and exportusers andgroups and add or delete administrators fromthe command line
Deploy Gateways using sysconfig and cpconfig from the Gatewaycommandline
Given thenetwork topology, createand configure network, host and gatewayobjects
Verify SICestablishmentbetween the Security ManagementServer and the Gateway usingSmart Dashboard
Create a basic RuleBase in Smart Dashboard that includes permissions foradministrative users, external services, and LAN outbound use
ConfigureNAT rules on Web and Gateway servers Evaluate existing policies and optimize the rules based on current corporate requirements
Maintain the Security ManagementServer with scheduled backups and policy versionsto ensure seamless upgrades withminimal downtime
UseQueries in SmartView Trackerto monitor IPSand common network traffic and troubleshoot events using packet data
Using packet data on a given corporatenetwork, generate reports,troubleshoot system andsecurity issues, and ensure network functionality
Using SmartView Monitor, configure alerts and traffic counters, view a Gateway's status, monitor suspicious activityrules, analyze tunnel activityandmonitor remote user access basedon corporate requirements
Monitor remote Gateways using SmartUpdate to evaluate the need for upgrades, new installations, and license modifications
UseSmartUpdate to apply upgrade packages to singleor multiple VPN-1 Gateways
Upgrade and attach product licenses using SmartUpdate
Centrallymanage users to ensure only authenticated users securely access the corporate network either locallyor remotely
Manage users to access the corporate LAN by using external databases
UseIdentity Awareness to providegranular level access to network resources
Acquire user information used by the Security Gateway to control access
Define Access Roles for use in an Identity Awareness rule
Implement Identity Awareness in the Firewall Rule Base
Configure a pre-shared secretsite-to-site VPN with partner sites
Configure permanent tunnels for remote access to corporateresources
Configure VPN tunnel sharing, given the difference between host-based, subunit-based and gateway-based tunnels
