Checkpoint Firewall-R80 Training (5 Days)
Training Curriculum:
Day 1
1 Introduction of Trainer and Trainees.
2 Introduction of various types of firewalls.
Packet filtering, Stateful and Application firewalls
3 Introduction of Checkpoint Next Generation firewalls
Over view of Checkpoint Next Generation firewalls.
Capabilities of Checkpoint Next Generation
firewalls.
4 Various models of Checkpoint Next Generation Firewalls
Features and comparison of each model.
5 Supported Platforms on Checkpoint Firewalls: Hardware/Software/SPLAT/GAIA/IPSO
6 Overview on Deployment Methods: Standalone – Distributed.
7 Overview of Security features of Next Generation Threat Bundles
Firewall, Application Control, Anti bot, Antivirus, Identity Awareness, IPS and URL
filtering.
8 Traffic flow in Checkpoint firewall.
Checkpoint R80.10
a) Introduction to Check Point Technology
b) Introduction to Checkpoint R80.10
c) R80 Architecture
d) New Features and advantages in R80.
e) Multitenant Admin Console
f) Smart Log, Resource Monitoring
g) Policy Layers, Access Layers, Inline Layers
h) Defining Access Control Policy Layers
i) Defining and Sharing Security Policy Layers
Day 2
1 Introduction to Checkpoint Next Generation Firewall Components
Overview and features
2 Initial configurations of Checkpoint Next Generation Firewalls
Management Client, Management Server and Firewall module configuration and
integration
3 Regular operational configurations.
Objects, Groups and policies configurations.
4 NAT Configuration, (HIDE NAT, Auto NAT, Manual NAT Rules, Routing & Antispoofing.
5 Firewall Log Setting and Log forwarding.
6 Configurations of Policies packages and database version.
7 Types of Security Rules in Checkpoint including Global Properties.
8 Overview on Checkpoint Web UI.
9 Device Health Monitoring, Resource utilization Investigation.
Day 3
1 Checkpoint Next Generation Blade Configuration
Content Protection Blade Configuration
2 Application Control and URL filtering.
3 Usage of Various Checkpoint Next Generation components (Smart view tracker
/monitor/Dashboard)
4 Checkpoint Next Generation Firewall Packet capture.
5 Log analysis exploring various logs generated by Security Blades.
6 Configuration backups (DB revision, System Backup) and restore using CLI, WEB UI and
GUI.
Overview and Configuration of HTTPS/SSL Inspection on Checkpoint Firewalls.
Day 4
1 Advance IPS, Threat Prevention-Anti-Virus and Anti-Bot Blade Configuration.
2 Check Point IPS Overview, IPS in Smart Dashboard, IPS Profiles, Activating Protections,
Protection Browser, IPS Updates, Network Exceptions, Deploying Geo Protection
Detailed Testing of IPS Signatures, Anti-Virus and Anti-Bot blade with Real traffic activity
generated by Testing Machine behind the Firewalls.
3 Overview/Demonstration on Checkpoint Next Generation Firewall upgrade
4 Overview on Licensing Checkpoint Firewall using Local and Central Licensing (Smart
Update)
5 Command lines training for frequently used commands.
7 Overview of Checkpoint Filesystem, commonly identified directory and Configuration Files.
8 Exporting Checkpoint Security Rules for Security Audit Review in presentable format.
6 Report generation.
7 Question and Answers
Day 5
1 Introduction to VPN
2 Site to Site VPN overview and configuration
3 Overview and Configuration of Clientless SSL VPN-SSL Extender/ Mobile Access web based.
4 Checkpoint Next Generation Firewall High Availability overview and configuration. High
Availability-New Mode and Load Sharing Clustering.
5 Lab Practice.
6. Post Assessment