Palo Alto Firewall Configuration, Management and Troubleshooting – PAN 10
About This Course
In this course, students are provided with a functional understanding of how to deploy, tune, and operate ASM to protect their web applications from HTTP-based attacks.
The course includes lecture, hands-on labs, and discussion about different ASM components for detecting and mitigating threats from multiple attack vectors such web scraping, Layer 7 Denial of Service, brute force, bots, code injection, and zero day exploits.
Prerequisites
There are no required F5 technology-specific prerequisites for this course. However, completing one the following before attending would be very helpful for students unfamiliar with BIG-IP:
- Administering BIG-IP
- F5 Certified BIG-IP Administrator
The course includes:
11 hours on-demand Video [Total 17 Videos]
Presentation files
Step by step Lab workbook
Curriculum
Module 0: Introduction – PREVIEW
Sample Lab Workbook – Step by Step00:00:00
Next Gen Firewalls Vs WAFs (F5 BIGIP ASM)00:00:00
Module 1: Setting Up the BIG-IP System
Module 2: Traffic Processing with BIG-IP
Module 3: Web Application Concepts
Module 4: Common Web Application Vulnerabilities
Module 5: Security Policy Deployment
Module 6: Policy Tuning and Violations
Module 7: Attack Signatures
Module 8: Positive Security Policy Building
Module 9: Cookies and Other Headers
Module 10: User Roles and Policy Modification
Module 11: Reporting and Logging
Module 12: Advanced Parameter Handling
Module 13: Using Application-Ready Templates
Module 14: Automatic Policy Building
Module 15: Web Application Vulnerability Scanner Integration
Module 16: Layered Policies
Module 17: Login Enforcement and Session Tracking
Module 18: Brute Force and Web Scraping Mitigation
Module 19: Layer 7 DoS Mitigation and Advanced Bot Protection
Lab Materials – Lab Workbook,Software
Presentation File
Your Instructor
I am senior technical instructor and Network/ security consultant. I have been in the networking industry for more than 20 years, with a focus on networking and security for the past 15 years. I have assisted thousands of engineers in obtaining their various certifications starting from CCNA to CCIE, CCSA, CCSE, PCNSE, F5 BIGIP LTM , DNS (GTM) ASM ,Cisco SDWAN ,AWS Solutions Architect (Associate), AWS Cloud security , MS-Azure , SIEM , Cyber Security etc. and learning the latest and cutting-edge technologies. I started my career as a system administrator and then switched to the networking and security domain. During the job, I realized that I have been gifted with a passion for teaching and sharing my knowledge, as I used to teach my colleagues and friends. I have brought years of classroom and online teaching experience, and years of real-world enterprise and service provider experience in designing self-paced training courses.