Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Palo Alto Firewall PCNSE New V9 & V10 Training
Bestseller
Rating: 4.5 out of 5(4,559 ratings)
28,362 students

Palo Alto Firewall PCNSE New V9 & V10 Training

Learn Palo Alto Firewall V9 & V10 with Step by Step Lab Workbook
Created byAhmad Ali
Last updated 1/2025
English

What you'll learn

  • Configure and Manage Palto Alto Firewall
  • Understand Palo Alto Firewalls Deployment Methods
  • How to setup a Lab Environment
  • Understand how to deploy Palo Alto Firewalls in GNS3 & EVE NG
  • Understand Palo Alto Firewalls Security Policies
  • Understand Palo Alto Firewalls NAT configuration
  • Understand User ID Integration
  • Configure user ID integration using User ID Agent
  • Configure Captive Portal to authenticate users
  • Understand AntiSpyware, AntiVirus, IPS configuration
  • Configure AntiSpyware, Antivirus and IPS
  • Configuring SSL Decryption

Course content

1 section102 lectures36h 33m total length
  • Lecture-01: Conman Network Security Terms.21:20
  • Lecture-02:Identify Malware Malicious Software.30:52
  • Lecture-03:Introduction to Firewall Technology.20:20
  • Lecture-04:About Palo Alto Networks Firewall.14:34

    Explore palo alto networks firewall architecture and features, including app id, user id, content id, and single pass software with parallel processing, plus pcnse certification overview.

  • Lecture-05:Install Palo Alto Firewall In VMware.17:12
  • Lecture-06:Install Palo Alto On EVE-NG:14:38
  • Lecture-07:Install Palo Alto in GNS3:6:26

    Install and configure the Palo Alto firewall in Gns3 by importing the pa vm image, creating a template, launching the vm, and accessing the management interface via https.

  • Lecture-08:Install Palo Alto On ESXI.11:50
  • Lecture-09:CLI Access Modes & Basic Commands.18:00
  • Lecture-10:Introduction to Dashboard Tab.21:42
  • Lecture-11:Palto Alto Initial Configuration.4:18
  • Lecture-12:Configure DNS & NTP in Palto Firewall.19:54

    Configure dns and ntp on Palo Alto firewall to ensure name resolution and time synchronization; learn dns concepts, root servers, A records, CNAME, and nslookup, and ntp settings.

  • Lecture-13:Activate Licenses and Subscriptions.23:02
  • Lecture-14:Dynamic Updates and Software Updates.20:30
  • Lecture-15:Initial Working of Palo Alto Firewall.22:27
  • Lecture-16:Management Interface Configuration.26:42
  • Lecture-17:Palo Alto Firewall Interfaces Details.32:13
  • Lecture-18:Palo Alto Firewall Zones Details.12:04
  • Lecture-19:Routing Protocols,AD,Metric & Routing Tables.20:51
  • Lecture-20:Virtual Routers in Palo Alto Firewall.11:12
  • Lecture-21:Configure & Verify Static Routing in PA Firewall.49:12
  • Lecture-22:Configure & Verify Default Routing in PA Firewall.14:07
  • Lecture-23:Configure & Verify Dynamic Protocol RIP in PA.23:53
  • Lecture-24:Configure & Verify RIP Authentication in PA.17:44

    Demonstrates securing rip routing with authentication on Palo Alto firewall, configuring keychains on routers and an authentication profile, and verifying with debug ip rip to prevent unauthorized updates.

  • Lecture-25:Configure & Verify Dynamic Protocol OSPF in PA.34:47

    Explore how to configure and verify OSPF on a Palo Alto firewall, including area zero backbone, router IDs, LSA exchange, DR/BDR election, hello/dead timers, and key verification commands.

  • Lecture-26:Configure and Verify Redistribute in PA.14:06
  • Lecture-27:Security Policy Concept & Theory in PA.51:48
  • Lecture-28:Security Policy Granular Criteria and Control.44:36
  • Lecture-29:Security Policy Action Setting Options.29:02
  • Lecture-30:Security Policy Shadows Rule in PA.5:05
  • Lecture-31:Security Policy Test Policy Match Option.6:08
  • Lecture-32:Security Policy View Rulebase as Groups.9:02
  • Lecture-33:Security Policy Policy Optimizer Option.5:15

    learn how policy optimizer helps identify unused firewall rules, disable them, test for a week, and delete stale policies, with version nine introducing usage export, reset, and timeframe options.

  • Lecture-34:Introduction to SSL and TLS certificates.16:31

    Grasp ssl and tls basics, how certificates encrypt and authenticate browser communications, and how a firewall uses a pushed certificate to intercept tls traffic.

  • Lecture-35:Configure SSL Forward Proxy in PA Firewall.25:19

    Learn to configure ssl forward proxy in pa firewall to decrypt https traffic. Push a trusted certificate to clients and enable a decryption policy to inspect traffic.

  • Lecture-36:Introduction to Security Profiles Content-ID.10:15
  • Lecture-37:Configure Security Profile (Antivirus Profile).21:02
  • Lecture-38:Configure Security Profile (Anti-Spyware).24:56
  • Lecture-39:Configure Security Profile (Vulnerability).35:23
  • Lecture-40:Configure Security Profile (URL Filtering).36:37
  • Lecture-41:Configure Security Profile (File Blocking).19:00
  • Lecture-42:Configure Security Profile (WildFire Analysis).35:47
  • Lecture-43:Configure Security Profile (Data Filter).26:16
  • Lecture-44:Configure Security Profile (Security Group).9:35
  • Lecture-45:DoS & Zone Protection and Packet Buffer Theory.17:52
  • Lecture-46:Configure & Verify DoS Protection Profile.43:16
  • Lecture-47:Configure & Verify Zone Protection Profile.26:08
  • Lecture-48:Configure & Verify Packet Buffer Protection.10:29
  • Lecture-49:Palo Alto Firewall Layer 2 Deployment.30:42
  • Lecture-50:Palo Alto Firewall Tap Mode Deployment.24:45
  • Lecture-51:Palo Alto Firewall V-Wire Mode Deployment.22:37
  • Lecture-52:Palo Alto Firewall Sub-Interface Mode.22:41
  • Lecture-53:NAT Theory & Source Network Address Translation Types.18:04

    Learn how Palo Alto firewalls perform network address translation to conserve IPv4 space, covering source and destination NAT, dynamic and static IP translation, port address translation, and port forwarding.

  • Lecture-54:Source NAT Type Dynamic IP and Port (DIPP) Theory & Lab.46:18
  • Lecture-55:Source NAT Type Dynamic IP(DIP) Theory and Lab.10:32
  • Lecture-56:Source NAT Type Static IP Theory and Lab.11:15
  • Lecture-57:Destination Network Address Translation Static IP.21:05
  • Lecture-58:DNAT Port Forwarding and Port Translation.10:44
  • Lecture-59:U-Turn NAT-Network Address Translation Theory & Lab.18:21

    Learn how u-turn nat lets internal clients reach external or dmz resources using both source and destination translations, with practical palo alto firewall configuration and verification.

  • Lecture-60:Objects (Address, Address Groups,Regions,Service, Service Group).45:53
  • Lecture-61:Introduction to App-ID in Palo Alto Firewall.39:04

    Introduce app-id in Palo Alto firewall, showing how app-based traffic identification replaces port-based rules, using signatures, unknown protocol decoding, and decryption to control apps like Facebook, web browsing, and DNS.

  • Lecture-62: Walk-through and Details of Applications in PA Firewall.13:02

    Navigate the Palo Alto firewall application window, exploring object, application group, and filter, and review categories, subcategories, and risk factors while using search, disable/enable, and tagging for policy management.

  • Lecture-63: Walk-through and Details of Applications Window in PA.18:29
  • Lecture-64:Application Shifts in Palo Alto Firewall.12:15

    Demonstrate application shift in Palo Alto firewall, where TCP-based applications reclassify mid-session from web browsing to services like Facebook or YouTube, using the TCP three-way handshake and SSL transitions.

  • Lecture-65:Dependent Applications in Palo Alto Firewall.6:23
  • Lecture-66:Implicitly Use Applications in Palo Alto Firewall.1:57
  • Lecture-67:Application Groups in Palo Alto Firewall.14:27
  • Lecture-68: Application Filters in Palo Alto Firewall.14:33
  • Lecture-69:Custom Applications in Palo Alto Firewall.8:37
  • Lecture-70:Application Override in Palo Alto Firewall.14:28
  • Lecture-71:Application Updates in Palo Alto Firewall.4:14
  • Lecture-72:Security Policy based on Application in PA.11:46
  • Lecture-73:Introduction to User-ID (User Identification).6:27
  • Lecture-74:Captive Portal User-ID in Palo Alto Firewall.25:37
  • Lecture-75:AD,DNS, Users and Groups Configuration.16:16
  • Lecture-76:Palo Alto Firewall Active Directory Integration.42:42
  • Lecture-77:DHCP(Dynamic Host Configuration Protocol) Theory.15:48

    Explore how DHCP automates IP address, subnet mask, and DNS via UDP-based Dora and how Palo Alto firewall can act as a DHCP server, client, or relay.

  • Lecture-78:DHCP(Dynamic Host Configuration Protocol) Server Lab.28:39
  • Lecture-79:DHCP(Dynamic Host Configuration Protocol) Relay Lab.17:07
  • Lecture-80:Configure Interface Mgmt (Management) Profile.8:54

    Configure interface management profiles to control admin access on specific interfaces by enabling services like http, https, ssh, telnet, ping, snmp, and syslog with permitted ip addresses.

  • Lecture-81:Service Features Service Route Configuration.8:37
  • Lecture-82:Administrator Accounts & Dynamic Roles Configuration.16:31
  • Lecture-83:Administrator Accounts & Role Based Configuration.15:32
  • Lecture-84:Administrator Accounts Window Walk-through.9:46

    Walk through administrator accounts window, configuring users with password, certificate, and public key authentication, attaching authentication profiles, and testing login via PuTTY and automatic certificate-based login.

  • Lecture-85:Administrator Accounts Password Complexity.26:06
  • Lecture-86:Redundancy High Availability (HA) Theory.33:04
  • Lecture-87:High Availability (HA) Active-Passive Lab.45:40
  • Lecture-88:Cryptography, Encryption and Hashing Concepts.36:48

    Explains cryptography basics, defines plaintext and ciphertext, explains encryption and decryption algorithms, describes Caesar cipher and vinegar cipher, contrasts symmetric and asymmetric encryption, and covers hash for integrity.

  • Lecture-89:Internet Key Exchange, Version & Phases Theory.9:39
  • Lecture-90:VPN, Types, Protocols,Classification etc Theory.6:47
  • Lecture-91:IPSec Protocols, Features,Modes,Encryption Theory.5:57

    Explore IPsec as an open standard for site-to-site and remote access VPNs, detailing confidentiality, integrity, authentication, anti-replay, esp vs ah, tunnel vs transport modes, and key exchange with Diffie-Hellman groups.

  • Lecture-92:IPSec Site-to-Site Virtual Private Network VPN Lab.36:31
  • Lecture-93:Remote-Access VPN GlobalProtect Theory and Lab.1:26:19
  • Lecture-94:Log Types (Traffic,Threat, User-ID etc) in Monitor Tab.34:49
  • Lecture-95:Configure and Verify Syslog in Palo Alto Firewall.23:48

    Configure and verify syslog on a Palo Alto firewall, forward traffic, system, and policy logs to external servers (syslog, Panorama, SNMP) using UDP 514, with per-zone and service route considerations.

  • Lecture-96:Configure and Verify NetFlow in Palo Alto Firewall.15:07
  • Lecture-97:Configure and Verify SNMP in Palo Alto Firewall.16:26
  • Lecture-98:Configure and Verify Packet Capture GUI and CLI.35:35

    Configure and verify Palo Alto firewall packet capture via graphical user interface and command line interface. Filter by interface, source ip, destination ip, port, protocol, drop, receive, transmit, firewall stages.

  • Lecture-99:App Scope (Summary,Change,Threat,Network Monitor).4:39

    Explore the Palo Alto firewall monitoring features, including summary, change, and threat monitors. Learn to view top gainers and losers, bandwidth by application, and exportable network maps.

  • Lecture-100:ACC (Application Command Center ) Tab Walk-through.17:17
  • Lecture-101:Configure Backup and Restore in Palo Alto Firewall.40:00
  • EVE-NG Installation, Configuration & Images31:15

Requirements

  • Basic IP and security knowledge is nice to have.
  • Students need to understand basic networking.
  • Students needs to understand Networking Fundamentals.

Description

In this courses, feature lecture and hands-on labs, you will learn to install, configure, manage and troubleshoot Palo Alto Networks firewalls, gaining the skills and expertise needed to protect your organization from the most advanced cyber-security attacks. The student will get hands-on experience in configuring, managing, and monitoring a firewall in a lab environment.

This class covers many topics required for PCNSE V10 and new topics are added frequently. This course dives deeper into Palo Alto firewalls policies and network configuration to give the students a clear understanding on several topics. Topics covered include Security Policies configuration, SSL Decryption, Routing configuration, IPsec configuration, High Availability configuration and other real world configuration examples. This online class will help in preparing the student for the PCNSE certification by covering topics in the depth that Palo Alto expects the candidates to know. There are also materials included with this class.

The Palo Alto Networks Certified Network Security Engineer (PCNSE) recognizes individuals with in-depth knowledge and abilities to design, install, configure, maintain and troubleshoot the vast majority of implementations based on the Palo Alto Networks platform.

“Palo Alto is an industry leader in the next-gen Firewall”. The course covers the Palo Alto Firewall “basis to advance”, concepts in a most practical way ensuring that delegates not only pass the exam but are also ready for a real-world environment.

Who this course is for:

  • This course is for students trying to obtain the PCNSE.
  • This course is for students trying to learn the Palo Alto Firewall.
  • Any Network or Security Engineer want to learn or polish their Skills.