
Discover how Check Point VSX runs multiple virtual firewalls on a single hardware appliance by creating virtual systems that inspect traffic and enforce security policies.
Explore the VSX architecture, including the VSX gateway, management server roles, and virtual devices; learn dedicated vs non dedicated management interfaces and remote connectivity considerations.
Explore the virtual components of the V6 gateway, including virtual system, virtual router, and virtual switch, and learn how warp link and external and internal interfaces enable firewall and routing.
Learn to install a Check Point management server on a VM, following open server installation and hardware requirements, then access and download the smart console.
Install Check Point security gateways with Gaia OS and configure SIC for secure internal communication with the management server, set up interfaces and publish policies.
Learn how to use checkpoint evolution licenses for labs, import licenses via web UI or CLI, generate license files, perform offline activation, and extend a lab trial to 30 days.
Configure a V6 VSX gateway by naming it, assigning ip address 192.168.1.2, initiating trust with an activation key, applying policies, and completing installation under an evolution license.
Explore how v6 traffic flows are managed through context determination, security enforcement, and destination forwarding across virtual systems, routers, and switches using VRF concepts.
Explore v6 routing concepts in vsx, including routing between virtual systems, vlan tagging, route propagation, overlapping ip space with nat, and dynamic routing options such as ospf, rip, and bgp.
Understand multi-domain security management and centralized control with multiple domain management servers for global clients, managed from a single console. Learn how multi-domain log servers consolidate logs for easy monitoring.
Install and configure a Check Point multi-domain management environment. Deploy a management server on a VM, set IPs and hardware options, and access setup via smart console and smart dashboard.
Install a V6 gateway cluster using the multi-domain management server and create domains with activation keys and secure communication. Access the smart console to configure cluster xl with gateways.
Explore how Check Point CoreXL technology enables multi-core processing with advanced core-level load balancing and the secure network dispatcher to boost intrusion prevention throughput and gateway performance.
Understand corexl technology by mastering cpu affinity, dispatchers, and kernel instances, and learn to allocate processors to nics and ports for optimized throughput.
Learn to use the v6 util command in VSX to convert a cluster to load shedding, backup the database before changes, and distribute virtual systems via expert mode.
Learn to troubleshoot with six VSX commands, switch contexts between management and virtual systems using V6 gate and set, and view detailed statistics with V6 stat and V6 stat -V.
Learn to perform packet capture on a Check Point gateway with the monitor command, apply filters by source/destination IP, port, and protocol, and review saved pcap with Wireshark.
Explore how checkpoint's virtual system load sharing balances traffic across v6 gateways by assigning active, standby, and backup virtual systems, with automatic synchronization and failover.
Create a virtual system on the gateway, attach an internal interface, and install the policy. Run v6_util_upgrade from the management server, then complete the upgrade to 8.46 and 8.40.
Course which provides a comprehensive understanding of the Check Point Virtual Security Extension (VSX) solution and describes how to deploy it within the corporate network environment. Check Point Firewall VSX Specialist Course includes lectures on Check Point Firewall VSX study concepts and Features work and the walk-through of the configuration in the lab/production environment. From the very beginning following step-by-step approach you will be able to grasp advanced concepts and step on the next level. The course is structured in an easy to follow manner starting from the very basic to advanced topics. The topics that are covered are: Installing Check Point in a lab environment, understanding general principles of Firewalling.
You will Learn :
• Explain the benefits of virtual network security.
• Understand the basic functions, components, and advantages of VSX technology.
• Examine the VSX management infrastructure and understand how traffic flows within a VSX network.
• Discuss options for deploying VSX technology within various types of organizations.
• Understand how to install and configure VSX Gateways and Virtual Systems.
• Describe different routing schemes and features that are available to use within the VSX environment.
• Understand how to deploy additional VSX networking configurations that may be required in the environment.
• Understand the differences between deploying physical Security Gateway Clusters and VSX Gateway Clusters.
• Understand how Virtual System Load Sharing works to enhance VSX network performance.
• Understand how to use the VSX Provisioning Tool to add and remove virtual devices.
• Recall how CoreXL technology enhances Security Gateway
performance and recognize how to use the technology in a VSX environment.
• Understand how to employ tools for optimizing resources allocated in a VSX environment.
• Identify various VSX command line tools commonly used to retrieve information and perform configuration changes.
• Understand how to use VSX utility commands to perform various maintenance tasks for the VSX environment.
I have applied the streamlined, step-by-step method to excel as a Check Point professional in less time than you ever thought possible. I'm going to walk you through the main challenges, so you can step on the next level.
Who this course is for:
System Administrators
Information Security Analysts
Support Analysts
Network Engineers
Firewall Enthusiasts
Security Engineers
Requirements
General knowledge of TCP/IP
Working knowledge of Windows and/or UNIX
Working knowledge of networking technology
Working knowledge of the Internet
CCSA basic concepts
Introductory product information is provided in video guided instruction and labs, and the more advanced, technical training is instructor-led classroom based.