
Explore FortiGate technology, its perimeter, and core modules like antivirus and application control, and learn how to deploy, manage policies, and prepare for the NSE4 exam with labs and quizzes.
Build a practical Fortinet lab, install the FortiGate OS, and master next-generation firewall modules—antivirus, apps, and more—then review exam questions to maximize NSE4 preparation.
Grasp FortiGate topology and firewall placement, install the FortiGate image on a virtualization platform, and configure IP addresses and routes via basic command-line steps.
Explore a FortiGate topology with redundant internet links and a local LAN, and see how firewall policies and the intrusion prevention system respond to simulated attacks from a hacker machine.
Download and import FortiGate VM images from Fortinet support, select platform (kvm, vmware, or appliance), create and configure a VM with disk, CPU, and RAM, then boot and log in.
Learn how to design FortiGate topologies with external and internal zones, and add network interfaces in a VM, then configure IP addresses and a static route via command line.
Connect to the Fortinet device via the port IP in a browser, enable HTP and HDP connections, log in with the admin password, upload the license, and reboot for activation.
Configure a FortiGate interface via CLI by editing ports, assigning IPs and masks, enabling ping, http, and https, set a static route, and test connectivity with ping.
Learn firewall basics and firewall rules, then implement source NAT and destination NAT on a FortiGate device to reach a Windows 10 machine behind the firewall in a lab.
Configure firewall policies in FortiGate NSE4, including defining incoming and outgoing interfaces, source and destination, services, scheduling, and optional NAT, with security profiles such as antivirus and web filter.
Configure destination NAT as a virtual IP to map an external address to an internal Windows machine, translating external port 20000 to 3389, and enable access with a firewall policy.
Configure many-to-one source NAT on FortiGate by creating a policy from internal port 1 to external port 2 and enabling NAT on the external interface.
Understand the as the U.N. technology, its function, and its integration with the next generation firewall; deploy it in the lab and configure external links with as the one rules.
Learn to configure FortiGate SD-WAN with interface aggregation, create performance SLA targets, and balance traffic across two internet providers via SD-WAN zones and rules.
Apply sd-wan rules and application control to prioritize fifa traffic for a specific user, balancing across two links with latency, jitter, and packet loss sla thresholds.
This lecture demonstrates configuring an sd-wan load balance rule for YouTube across two external links, using active SLA probing, handling QUIC traffic and selective SSL inspection.
Demonstrates testing FortiGate traffic failover by disabling a link, renaming the rule to best quality link, and validating failover with ping, packet loss, and jitter measurements.
Examine modules of a next generation firewall, including antivirus, ibes, web filter, and video filter; deploy them with security profiles and explore malware payload testing and log analysis on FortiGate.
Learn how to configure certificate inspection with FortiGate using security profiles and SSL inspection, apply certificate inspection in firewall policies, and identify blocked certificates versus full SSL inspection.
Enable full SSL inspection by creating a new SSL profile, install the FortiGate certificate on Windows 10, and decrypt HTTPS traffic to inspect encrypted content, with category exemptions.
Learn to create and apply a web filter security profile to block or warn on banking and financing sites, test the firewall policy, and review web filter logs.
Configure web filter authentication by creating a banking group and adding a user Bob as a local or LDAP member. Validate access to banking sites like Wells Fargo.
Master granular application control in FortiGate by creating YouTube rules to block HD streaming and comments, then extend with filters for high bandwidth and monitor results with logs.
Block a specific YouTube channel with FortiGate video filter by creating a profile, adding the channel id, applying it to a policy, and using proxy-based web filter with ssl inspection.
Configure and activate antivirus in a FortiGate security profile, apply it to a firewall policy, and compare flow-based versus proxy-based scanning.
configure an intrusion prevention system profile and firewall policy to simulate a vulnerability exploit and payload delivery, then observe the intrusion prevention system drop the attack in logs.
This lecture demonstrates delivering a trojan payload to a Windows machine via social engineering, using Metasploit, and FortiGate IPS detecting and preventing the attack.
Learn to administer the device by checking antivirus and firewall logs, performing backup and restore of configurations, upgrading firmware, and managing admin profiles with selective feature access.
Master firmware upgrades by selecting a version or uploading a file, then update patches and verify status; also manage automatic updates for antivirus, application control, and web filter engines.
Create and assign FortiGate admin profiles to grant specific rights—such as firewall and VPN access—then log in as a restricted admin to verify a tailored, limited interface.
Deploy site-to-site IPsec between FortiGate devices and implement remote access VPN via browser or client, then master a practical debug procedure with key troubleshooting commands.
Establish a site-to-site IPsec vpn between FortiGate and Check Point by defining encryption domains, phase one and two parameters, and interoperable objects and firewall policies.
Learn to debug IPsec site-to-site VPN between FortiGate and Checkpoint, using diagnose debug and log filters to identify misconfigured networks and resolve connectivity issues.
Learn to deploy remote access IPsec VPN on FortiGate, configure client-based users, split-tunnel settings, and automatic firewall policy creation to securely connect end users behind a firewall.
Deploy a remote access VPN using the Windows native client, configure a layer 2 VPN with IPsec key, and verify connectivity via ipconfig and ping.
Explores SSL VPN web mode, tunnel mode, and full mode on FortiGate, demonstrating web access without a client, port configuration, policy binding, and portal bookmarks.
Explore ssl vpn deployment options—tunnel access mode, web access mode, and full access mode—by configuring profiles, enabling tunnel access, and preparing client downloads for secure remote access.
Enable both tunnel and web modes in full access SSL VPN. Users log in via the web portal, download the client, and establish a tunnel with an assigned IP.
Fortinet crash course will prepare you for NSE4 certification, will expand your general security knowledge and your ability to deploy, setup and tune your Fortigate Firewall in your environment. You will be able to understand important topics in great detail and use that knowledge.
The course includes Theory to get you started right away and actual practice.
You will learn about the core products and will be shown how to build a lab from scratch in the virtual environment.
The following course includes lectures on how Fortigate features work and the walk-through of the configuration in the lab/production environment. From the very beginning following step-by-step approach you will be able to grasp advanced concepts and step on the next level.
What you will learn:
Deployment of the Fotigate VM from scratch
(A step-by-step walk-through of Fortigate firewall installation in the lab environment. It includes getting an image file, licensing, choosing proper configuration, static routing, core things in Fortigate ecosystem to get the engine going)
Introduction to Fortigate technology
(In this section we talk about what is Fortigate what are the main features of the vendor, how it can be implemented in the world of cyber-security. We will work with Firewall and Security policies, setup source NAT and destination NAT. Also, a detailed explanation of URL & Application control is included)
IPsec VPN and Remote Access VPN
(IPsec is explained in depth and we also setup Site-to-Site VPN between Check Point and Fortigate, so you can check how VPN is implemented within various environments. Also contains Troubleshooting VPN section)
SD-wan
(SD-wan configuration is explained in great detail and setup in a lab environment with two Internet Service Providers)
General System Administration
> Backups
> Firmware Upgrades
> User & Admin Management
> CLI commands
Why this course:
You are NOT learning disconnected skills
You learn how to stack your troubleshooting knowledge together in a SINGLE, UNIFIED WHOLE
Also contains real lab devices, thorough explanation of each topic
I have applied the streamlined, step-by-step method to excel as a Fortigate professional in less time than you ever thought possible. I'm going to walk you through the main challenges, so you can step on the next level.
Also, that course contains Over 50+ EXAM questions