Course : CCSE, Check Point Certified Security Expert R80: Certification Prep

CCSE, Check Point Certified Security Expert R80: Certification Prep

Download in PDF format Share this course by email 2


This training will help you acquire all of the techniques and methodologies needed to take the exam for CCSE R80 certification. You’ll learn how to set up advanced clustering, high-availability, and quality of service (QoS) mechanisms.


Inter
In-house
Custom

Practical course in person or remote class

Ref. CPW
Price : 2490 € E.T.
  3d - 21h00




This training will help you acquire all of the techniques and methodologies needed to take the exam for CCSE R80 certification. You’ll learn how to set up advanced clustering, high-availability, and quality of service (QoS) mechanisms.

Teaching objectives
At the end of the training, the participant will be able to:
  • Perform updates
  • Solve user access problems detected during implementation with Identity Awareness
  • Implement a high-availability cluster and Load Sharing
  • Prepare for the official exam that leads to CCSE certification

Intended audience
System/network/security technicians, administrators, and engineers.

Prerequisites
Good knowledge of TCP/IP, IS security, and the most common features of Check Point, or have taken the course "CCSA, Check Point Certified Security Administrator R80" (code CPQ).

Course schedule

Check Point R80: Operation and updating

  • Updating Check Point R80.
  • Update compatibility.
  • Upgrade tools.
  • Overview of Database Revision Control.
Hands-on work
Installing systems and updates in R80.

Identity Awareness and Application Control

  • The limits of a traditional IP-based and port-based firewall.
  • Access control.
  • The four authentication methods in Identity Awareness R80
  • Check Point 3D Security. HTTPS Inspection.
  • The AppWiki. URL Filtering.
Hands-on work
Setting up Identity Awareness. Installing Security Management Server R80. Installing the Smartconsole and creating objects

The SecurityCore acceleration module

  • Overview of the new SecurityCore acceleration module.
  • Accelerating connections with SecureXL.
  • The SecureX module and session acceleration.
  • The case of http. CoreXL technology.
  • Getting SecureXL and CoreXL to work at the same time.

Check Point clustering

  • High availability of the Management Server.
  • Firewall redundancy.
  • ClusterXL High Availability (Active/Passive).
  • ClusterXL Load Sharing (Active/Active).
  • VMAC and ARP issues.
  • VRRP. Comparing ClusterXL and VRRP.
Hands-on work
Implementing Active/Passive firewall redundancy, a cluster in Active/Active unicast (pivot mode) and multicast mode.

VPN and advanced routing

  • VPN routing. Route-Based VPN.
  • Dynamic routing with the RIP, OSPF, and BGP routing protocols.
  • Wire Mode operating modes.
  • Directional VPN Route Match.
  • Link Selection and VPN redundancy.
  • Traditional/simplified VPN. Tunnel Management.
Hands-on work
Setting up route-based VPN tunnels, static/dynamic routing, and configuring Wire Mode.

Advanced firewalls.

  • Tools: Dbedit and guiDBedit.
  • System files. Log management.
  • Retrieving a CPInfo file.
  • Example use of "InfoView" and "Confwiz".
  • SIC, ICA, and certificates.
  • Check Point processes.
  • Tcpdump. The command fw monitor.
Hands-on work
Using debug tools.


Certification
To take the certification exam, you’ll need to register on the Check Point website. You can then take the exam directly online or at an approved centre. You will need CCSA certification.

Customer reviews
3,8 / 5
Customer reviews are based on end-of-course evaluations. The score is calculated from all evaluations within the past year. Only reviews with a textual comment are displayed.


Dates and locations
Select your location or opt for the remote class then choose your date.
Remote class