
Explore palo alto networks firewall architecture and features, including app id, user id, content id, and single pass software with parallel processing, plus pcnse certification overview.
Install and configure the Palo Alto firewall in Gns3 by importing the pa vm image, creating a template, launching the vm, and accessing the management interface via https.
Configure dns and ntp on Palo Alto firewall to ensure name resolution and time synchronization; learn dns concepts, root servers, A records, CNAME, and nslookup, and ntp settings.
Demonstrates securing rip routing with authentication on Palo Alto firewall, configuring keychains on routers and an authentication profile, and verifying with debug ip rip to prevent unauthorized updates.
Explore how to configure and verify OSPF on a Palo Alto firewall, including area zero backbone, router IDs, LSA exchange, DR/BDR election, hello/dead timers, and key verification commands.
learn how policy optimizer helps identify unused firewall rules, disable them, test for a week, and delete stale policies, with version nine introducing usage export, reset, and timeframe options.
Grasp ssl and tls basics, how certificates encrypt and authenticate browser communications, and how a firewall uses a pushed certificate to intercept tls traffic.
Learn to configure ssl forward proxy in pa firewall to decrypt https traffic. Push a trusted certificate to clients and enable a decryption policy to inspect traffic.
Learn how Palo Alto firewalls perform network address translation to conserve IPv4 space, covering source and destination NAT, dynamic and static IP translation, port address translation, and port forwarding.
Learn how u-turn nat lets internal clients reach external or dmz resources using both source and destination translations, with practical palo alto firewall configuration and verification.
Introduce app-id in Palo Alto firewall, showing how app-based traffic identification replaces port-based rules, using signatures, unknown protocol decoding, and decryption to control apps like Facebook, web browsing, and DNS.
Navigate the Palo Alto firewall application window, exploring object, application group, and filter, and review categories, subcategories, and risk factors while using search, disable/enable, and tagging for policy management.
Demonstrate application shift in Palo Alto firewall, where TCP-based applications reclassify mid-session from web browsing to services like Facebook or YouTube, using the TCP three-way handshake and SSL transitions.
Explore how DHCP automates IP address, subnet mask, and DNS via UDP-based Dora and how Palo Alto firewall can act as a DHCP server, client, or relay.
Configure interface management profiles to control admin access on specific interfaces by enabling services like http, https, ssh, telnet, ping, snmp, and syslog with permitted ip addresses.
Walk through administrator accounts window, configuring users with password, certificate, and public key authentication, attaching authentication profiles, and testing login via PuTTY and automatic certificate-based login.
Explains cryptography basics, defines plaintext and ciphertext, explains encryption and decryption algorithms, describes Caesar cipher and vinegar cipher, contrasts symmetric and asymmetric encryption, and covers hash for integrity.
Explore IPsec as an open standard for site-to-site and remote access VPNs, detailing confidentiality, integrity, authentication, anti-replay, esp vs ah, tunnel vs transport modes, and key exchange with Diffie-Hellman groups.
Configure and verify syslog on a Palo Alto firewall, forward traffic, system, and policy logs to external servers (syslog, Panorama, SNMP) using UDP 514, with per-zone and service route considerations.
Configure and verify Palo Alto firewall packet capture via graphical user interface and command line interface. Filter by interface, source ip, destination ip, port, protocol, drop, receive, transmit, firewall stages.
Explore the Palo Alto firewall monitoring features, including summary, change, and threat monitors. Learn to view top gainers and losers, bandwidth by application, and exportable network maps.
In this courses, feature lecture and hands-on labs, you will learn to install, configure, manage and troubleshoot Palo Alto Networks firewalls, gaining the skills and expertise needed to protect your organization from the most advanced cyber-security attacks. The student will get hands-on experience in configuring, managing, and monitoring a firewall in a lab environment.
This class covers many topics required for PCNSE V10 and new topics are added frequently. This course dives deeper into Palo Alto firewalls policies and network configuration to give the students a clear understanding on several topics. Topics covered include Security Policies configuration, SSL Decryption, Routing configuration, IPsec configuration, High Availability configuration and other real world configuration examples. This online class will help in preparing the student for the PCNSE certification by covering topics in the depth that Palo Alto expects the candidates to know. There are also materials included with this class.
The Palo Alto Networks Certified Network Security Engineer (PCNSE) recognizes individuals with in-depth knowledge and abilities to design, install, configure, maintain and troubleshoot the vast majority of implementations based on the Palo Alto Networks platform.
“Palo Alto is an industry leader in the next-gen Firewall”. The course covers the Palo Alto Firewall “basis to advance”, concepts in a most practical way ensuring that delegates not only pass the exam but are also ready for a real-world environment.