
Learn to build and configure a network using checkpoint security plates with Gaia OS, deploying standalone and cluster gateways, VPN clustering, Secure Excel, Google Excel, and advanced firewall troubleshooting.
Learn to plan and execute Checkpoint upgrades and migrations with backups, snapshots, and pre-upgrade verification, using image management and migration tools to minimize downtime.
Execute a clean installation of the checkpoint security management server using a vm-based open server, configure hardware resources and network interfaces, and designate the secure management server as primary.
Learn how to perform a security gateway clean installation by configuring Gaia OS, management server, and two interfaces, establishing secure internal communication, and applying a basic policy.
Learn to use Check Point command line tools via export mode to manage gateways, set expert passwords, add or delete administrators, and perform backup and restore operations.
Learn to use cpview and other advanced checkpoint commands to monitor systems in real time, verify file integrity with sha1sum, check NIC compatibility, view processes, and access historical performance data.
Learn to load and verify a security policy from the Check Point CLI, using policy packages, targets, and correct syntax to install on a cluster and verify results.
Configure active and standby management servers with regular backups of databases, users, and certificates to ensure high availability. Synchronize security policies and policy packages automatically or manually for seamless failover.
Learn how to promote a secondary security management server to primary, resolve conflict and collision, and maintain synchronized master status during failures.
Master precheck verification for upgrading Check Point firewall management server and gateway, using upgrade guides, release notes, and essential tools to minimize downtime.
Run preupgrade verifier tools from the CLI to verify upgrade readiness and check migration checkpoints. Review minimum hardware requirements and space needs described in the release notes.
Explore how to use preupgrade verifier tools from web UI to ratify updates, verify licenses and compatibility, auto-download tools, and set inactivity timeouts for upgrades.
Learn to use migrate export command line tools to back up management data, run exports, specify destinations, and transfer export files to a local computer.
Upgrade the security management server from R80.30 to R81.10 GAIA using CPUSE, including logging in, checking for updates, downloading, installing, verifying, rebooting, and validating the new web UI.
Configure the v6 gateway by naming it, setting its IP address, and entering the activation key to establish trust and enable policy deployment.
Create a virtual system on the gateway, configure interface 80 with 192.168.1.200 and install a standard policy, then upgrade the V6 gateway from the management server.
Learn to upgrade VSX and VS from MDS using vsx_util and vsls, convert clusters to load shedding mode, back up management database, and apply security policies via expert mode.
Learn to use the smart view monitor to detect firewall cpu spikes and slow performance, set threshold alerts, and monitor policy installation and gateway status for proactive security management.
Implement sam rule to drop a single ip or an entire subnet on a checkpoint firewall. Observe policy enforcement, traffic drops, and the impact on firewall cpu and memory.
Explore CoreXL, a multi-core firewall technology enabling high throughput with deep packet inspection, stateful inspection, and load balancing across multiple independent kernel inspection instances.
Learn how CoreXL uses CPU affinity to bind processes to specific CPUs, assign dispatchers to handle packets across interfaces, and optimize throughput with multi-view and interrupt queues.
Discover how SecureXL accelerates firewall and vpn throughput by offloading validated packets to a security API, improving connection setup and maintaining stateful inspection.
Learn how SecureXL accelerates packet handling by offloading connections to security software using connection templates. See how firewall policies, Secure API, and dynamic VPN routing validate inbound packets.
Explore how the secure network dispatcher (SND) integrates with SecureXL to route packets through firewall stages, enabling medium-path processing and performance-backed handling for IP traffic.
Master the command line to use CoreXL and SecureXL, monitor the external dispatcher and assemblies, and analyze firewall performance to optimize packet flow.
explain what drop template is and why it reduces firewall cpu and memory load under heavy traffic by dropping unwanted packets, and demonstrate enabling and testing in a lab.
Explore Check Point packet inspection, from inbound NIC interception to rule base matching and log forwarding, and use Ebola monitor and Wireshark for effective troubleshooting.
Understand Checkpoint firewall architecture with management and gateway components, and the split between user mode and kernel mode processes. Learn how policy installation, logging, and secure communication drive inter-process coordination.
Explore how cluster Excel load shedding and high availability secure enterprise networks through state synchronization, full synchronization, delta synchronization, unicast and multicast modes, and sticky connections.
Learn how to configure cluster xl across gateways, including installation, activation keys, and policy enforcement for high-availability clustering.
Discover essential ClusterXL command line tools to verify MAC and MAC magic settings, view cluster statistics and failover status, and configure CCP multicast or broadcast modes for gateway clusters.
Learn how a Check Point cluster with VRRP creates a single, high-availability security gateway for load sharing. Monitors manage failover between master and backup to ensure uninterrupted service.
The following course NEW CHECK POINT CERTIFIED SECURITY EXPERT(CCSE) Course includes lectures on Check Point New SECURITY EXPERT study concepts and Features work and the walk-through of the configuration in the lab/production environment. From the very beginning following step-by-step approach you will be able to grasp advanced concepts and step on the next level. The course is structured in an easy to follow manner starting from the very basic to advanced topics. The topics that are covered are: Installing Check Point in a lab environment, understanding general principles of Firewalling.
You will Learn :
Pre-Upgrade Verifications , How To Install and How to Upgrade Management Server , How To Install and How To Upgrade Security gateway, VSX Gateways and VS .
Check Point CLI Tools, Identity Awareness Site-to-Site VPN Between Corporate and Branch Office, VPN Troubleshooting Advanced Firewall, Advanced Clustering and Acceleration, Advanced User Management, Advanced IPsec VPN and Remote Access, Core Elements of Firewall Administration, Core Processes, SecureXL and CoreXL.
I have applied the streamlined, step-by-step method to excel as a Check Point professional in less time than you ever thought possible. I'm going to walk you through the main challenges, so you can step on the next level.
Who this course is for:
System Administrators
Information Security Analysts
Support Analysts
Network Engineers
Firewall Enthusiasts
Security Engineers
Requirements
General knowledge of TCP/IP
Working knowledge of Windows and/or UNIX
Working knowledge of networking technology
Working knowledge of the Internet
CCSA basic concepts
Introductory product information is provided in video guided instruction and labs, and the more advanced, technical training is instructor-led classroom based.