
Demonstrates a basic two-switch VLAN lab, creating VLAN 10 and VLAN 20, configuring access ports and a trunk, and illustrating broadcast isolation and MAC learning.
Explore static routing and static policy routing on a FortiGate firewall, compare administrative distance, configure two ISPs, and implement policy-based routing for port 80 traffic.
Configure the FortiGate firewall as a DHCP client, server, or relay agent, and explore the Dora process, UDP ports 67 and 68, and the flow of DHCP messages.
Learn fortigate snat lab concepts in eve-ng, applying static nat overload with port translation to map many private ips to a single public ip, using a hands-on topology.
Master destination NAT on FortiGate by configuring virtual IPs and policies to map a public IP and port (http 80, telnet 23) to internal servers, with central NAT options.
Enable policy-based VPN on the FortiGate. Create the IPsec site-to-site tunnel, define local subnets 192.168.1.0/24 and 192.168.2.0/24, configure MD5, a pre-shared key, and apply a single firewall policy.
The Network Security Professional designation recognizes your ability to install and manage the day-to-day configuration, monitoring, and operation of a FortiGate device to support specific corporate network security policies.
We recommend this course for network and security professionals who are involved in the day-to-day management, implementation, and administration of a security infrastructure using FortiGate devices.
In this course, you will learn how to use FortiGate Firewall features, including security profiles. You will explore firewall policies, the Fortinet Security Fabric, user authentication, SSL VPN, and how to protect your network using security profiles, such as IPS, antivirus, web filtering, application control, and advanced routing, transparent mode, redundant infrastructure, site-to-site IPsec VPN, and diagnostics and more.
Course Topics:
1. Introduction to Firewall
2. Installing FortiGate in GNS3
3. Installing FortiGate in EVE
4. FortiGate Dashboard
5. Initial Working Lab
6. Interfaces
7. VLAN and Zone Lab
8. One Armed Sniffer
9. Redundant Interfaces
10. Aggregate Interfaces
11. Virtual Wire Pair
12. Administrative Access
13. DNS Server
14. Static Policy Route
15. Static and Default Route Lab
16. Policy Routing LAB
17. RIP
18. OSPF
19. Routing Protocols Redistribution
20. BGP Border Gateway Protocol
21. Policies
22. Policy Labs MAC
23. Policy Labs LocalUser
24. DHCP
25. DHCP Relay Lab
26. Security Profile Intro
27. Replacement Messages
28. AV-Security Profiles
29. Web Filter
30. DNS Filter
31. Application+Control
32. Intrusion Prevention System
33. File Filter Profile
34. Inspection Mode
35. NGFW Modes
36. Policy Based Mode to Block Facebook
37. Policy Based Mode Default Service
38. FortiGate Firewall Modes
39. IPv4 DoS Policy
40. Network Address Translation
41. Policy Source Interface Overload NATLab
42. Policy Source Overload NAT Lab
43. Policy Source One To One NAT Lab
44. Policy Source Fixed Port Range NAT Lab
45. Policy Source Port Block Allocation NAT Lab
46. SNAT Lab
47. DNAT Lab
48. Destination NAT, Virtual IP with Central SNAT
49. Services+Objects
50. HA
51. Active Passive Lab
52. Active Active Lab
53. FortiGate AD
54. Active Authentication AD
55. Passive Authentication AD
56. VDOMS
57. Cryptography Concepts
58. Diffie Hellman(DH)
59. IPSec Protocols
60. VPN Concept
61. Site2SiteVPN+Theory
62. Site2Site Policy Based VPN
63. Backup and Restore
64. SNMP Access Lab
65. Syslog Server
66. Traffic Shaper
67. Remote Access VPN1
68. Command Line Interface
69. Troubleshooting FortiGate
70. Packet Sniffing
71. Fundamental CLI Commands
72. Packet Capture