Palo Alto Firewall Configuration, Management and Troubleshooting – PAN 10
About This Course
The Palo Alto Networks Firewall Configuration, Management and troubleshooting recorded training course will help you to:
- Configure and manage the essential features of Palo Alto Networks Next-Generation Firewalls
- Configure and manage Security and NAT policies
- Application ID , User ID and Content ID
- Configure and manage Threat Prevention strategies to block known and unknown threats
- IPsec Site to Site and Remote access VPNs
- High Availability Deployment
- Packet Flow and Troubleshooting
This training is the most important course as it covers all the fundamentals to understand the Next-Generation Firewall from the ground up. Even experienced firewall engineers can take a lot out of this course as it includes, besides the architecture and management essentials, topics like Application Identification, Content ID (IPS, Anti-Virus/-Spyware, URL Filtering, File Blocking), SSL Decryption and User Identification which are all features usually not supported by legacy firewalls.
Prerequisites:
No previous Palo Alto Networks experience is required to take this Firewall Configuration, Management and troubleshooting course while basic familiarity with networking concepts including, OSI Model , IP addressing , TCP, UDP, routing, ACL , switching is recommended.
Curriculum
Module 1: Overview of Firewall Technologies
Overview of Firewall Technologies00:00:00
Module 2 – Palo Alto Firewall Features
Module 3 – Palo Alto Firewall Platforms and Architecture
Module 4 – Initial Configuration
Module 5 – Creating your virtual Lab in EVE-NG
Module 6 – Creating your virtual Lab in AWS Cloud
Module 7 – Palo Alto Firewall Web Interface (WebUI)
Module 8 – Interface Configuration and Deployments
Module 9 – TAP Mode Interface Type
Module 10 – Vwire and Layer 2 Interface Type
Module 11 – Layer 3 and HA Interface Type
Module 12 – Palo Alto Firewall Security Polices
Module 13 – Network Address Translation (Theory)
Module 14 – Understanding NAT Policy (Theory)
Module 15 – Network Address Translation LAB (PART 1)
Module 16 – U-turn NAT (One Armed)
Module 17 – NAT Oversubscription and ICMP packet Translation
Module 18 – Application Identification APP ID
Module 19 – Decryption Concepts
Module 20 – SSL Decryption LAB
Module 21 – Content ID and Security Profiles (Theory)
Module 22 – Anti Virus, Antispyware and Vulnerability Protection Profiles LAB
Module 23 – URL Filtering Security Profile
Module 24 – Wild Fire Analysis (Theory)
Module 25 – Wild Fire Analysis (LAB)
Module 26 – File Blocking Profile
Module 27 – User ID and Captive Portal
Module 28 – IPsec site to site VPN (Theory)
Module 29 – S2S IPsec VPN between PAs (Pre Shared Key)
Module 30 – S2S IPsec VPN between PAs (Certificate Based)
Module 31 – S2S IPsec VPN between Overlapping Networks
Module 32 – S2S IPsec VPN between Cisco Router and PA (Policy Based)
Module 33 – S2S IPsec VPN between Cisco Router and PA (Route Based)
Module 34 – Global Protect VPN (Theory)
Module 35 – Global Protect VPN (LAB)
Module 36 – HA Mode Deployment Active-Passive
Module 37 – HA Mode Deployment Active-Active
Module 38 – Zone Protection Profile and DoS Protection
Module 39 – Packet Flow and Troubleshooting
Module 40 – PANOS Software upgrade
Module 41 – Palo Alto Firewall Routing – VR, Static, RIP, OSPF, BGP
Module 42 – DUAL ISP Redundancy (PBF)
Module 43 – Packet Capture, Logging, Reporting etc.
Your Instructor
I am senior technical instructor and Network/ security consultant. I have been in the networking industry for more than 20 years, with a focus on networking and security for the past 15 years. I have assisted thousands of engineers in obtaining their various certifications starting from CCNA to CCIE, CCSA, CCSE, PCNSE, F5 BIGIP LTM , DNS (GTM) ASM ,Cisco SDWAN ,AWS Solutions Architect (Associate), AWS Cloud security , MS-Azure , SIEM , Cyber Security etc. and learning the latest and cutting-edge technologies. I started my career as a system administrator and then switched to the networking and security domain. During the job, I realized that I have been gifted with a passion for teaching and sharing my knowledge, as I used to teach my colleagues and friends. I have brought years of classroom and online teaching experience, and years of real-world enterprise and service provider experience in designing self-paced training courses.