0% found this document useful (0 votes)
9 views4 pages

Pa Course Syllabus

The document outlines a comprehensive course curriculum on Palo Alto firewalls, covering topics from basic introduction to advanced configurations. It includes hands-on lab exercises for practical learning, focusing on firewall management, security policies, and deployment options. Key areas of study include Panorama management, user ID integration, NAT configurations, and threat prevention strategies.

Uploaded by

d.yegane1999
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
9 views4 pages

Pa Course Syllabus

The document outlines a comprehensive course curriculum on Palo Alto firewalls, covering topics from basic introduction to advanced configurations. It includes hands-on lab exercises for practical learning, focusing on firewall management, security policies, and deployment options. Key areas of study include Panorama management, user ID integration, NAT configurations, and threat prevention strategies.

Uploaded by

d.yegane1999
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

Course Content

No Main Topic Sub-Topic LAB


1 Introduction to Firewall N/A
2 Palo Alto Resources N/A
3 Basic NGFW, Security Platform, Fortray Palo alto Student folder N/A
4 Arch and Design Palo Alto Next-Gen firewall overview N/A
5 Palo Alto devices selection N/A
6 Palo Alto LAB Design N/A
7 Resting to factory Default ✓
8 Initial IP Management access ✓
9 Palo Alto CLI Access via SSH & CLI (Command line interface) Overview ✓
10 Initial Setup and Overview Dashboard Overview ✓
11 Setup and Basic Management ✓
12 Login Banner & Message of the day Banner ✓
13 Saving and Committing the changes ✓
14 Revert – Last save configuration ✓
15 Revert – to Running configuration ✓
16 Config – Audit (Running VS Candidate Config) ✓
Operation - Configuration
17 Save – The Candidate configuration ✓
Management
18 Loading the Saved and configuration Version ✓
19 Export configuration and version ✓
20 Importing the configuration and version ✓
21 Reboot and Shut down the Firewall ✓
Device Operation - Services
22 DNS, Update Server, NTP ✓
23 Management IP and permitted Networks ✓
24 Registering the FW & Verifying the License ✓
25 Dynamic update ✓
26 Management Interface Setting - FW Upgrade with License ✓
27 FW Management FW Upgrade without License ✓
28 FW admin Account via Local user Database ✓
29 Role Based Admin User Account ✓
30 Response Pages ✓
31 Introduction to Panorama N/A
33 Panorama Commit ✓
34 Panorama Config Management ✓
35 Panorama Services and Interface (DNS, NTP, update server) Default GW ✓
36 Panorama (Central Panorama Licenses & registration ✓
37 Management System) Adding Palo Alto FW Manually to Panorama ✓
38 Automatically Adding Palo Alto FW to using CVS to Panorama ✓
39 Adding Tags to Palo Alto FW via Panorama ✓
40 Transition Locally configured FW to Panorama ✓
41 Upgrade PANOS Software and perform Dynamic update ✓
42 Introduction to Panorama Template N/A
43 Configuring Template via Panorama ✓

Panorama Templates
Course Content
No Main Topic Sub-Topic LAB
44 Template VS Template Stack N/A
45 Configuring Template on Panorama for Head office FW ✓
46 Panorama Templates Configuring Template-Stack on Panorama for Head office FW ✓
47 Configuring Template and Template Stack for Data Centre FW ✓
48 Configuring Template and Template Stack for VW Firewall ✓
49 Template Variable Concept (Note if it is easy, leave it) ✓
50 Assigning Variable to FW via Template ✓
52 Device Group Concept ✓
53 Reference Template ✓
54 Panorama Device Group Shared Object ✓
55 Creating & applying Device Group for Head office FW ✓
56 Creating & applying Device Group for Data Centre FW ✓
57 SNMP Trap via Panorama ✓
58 Syslog via Panorama ✓
59 Radius via Panorama ✓
Server Profiles
60 TACACS+ via Panorama ✓
61 LDAP via Panorama for Head-Office ✓
62 FW Log via Panorama ✓
63 Palo Alto Firewall overview (different vendor) N/A
64 Zone Based FW N/A
65 Deployment Options N/A
66 Palo Alto Deployment Option Virtual Wire Deployment ✓
67 Layer 2 Deployment ✓
68 Layer 3 Deployment & interface MGMT ✓
69 TAP Mode Deployment ✓
70 Virtual Router Concept & Configuration ✓
71 Static and Default Routing ✓
Basic and Intermediate
72 DHCP Services ✓
Networking
73 OSPF Routing – LAN to DMZ ✓
74 Route Verification ✓
75 Security Zone and Packet processing N/A
76 Packet Flow N/A
77 App-ID N/A
78 Rule – Traffic from LAN to DMZ using Ports & App ID ✓
79 Rule – Traffic from LAN to Internet using ports and App ID ✓
80 NAT Rule – PAT for LAN to Internet Rule testing ✓
81 Rules – using URL Filtering Rules ✓
82 Rules – with URL Filtering Exception ✓
Security Policy Configuration
83 How to use Custom URL Filtering ✓
84 Address and Address Group ✓
85 Services and Services Group ✓
86 Application and Application Group ✓
Security Policy Configuration
Course Content
No Main Topic Sub-Topic LAB
87 Application Filtering ✓
88 Application Exception ✓
89 External Dynamic Lists ✓
90 Using Tags ✓
91 User ID Integration ✓
92 Installing User ID Agent on the AD ✓
93 Configure Firewall to use the user ID Agent ✓
94 Configure and integrate the user ID Agent ✓
95 Group to user – ID Mapping ✓
User- ID
96 Making Decision based on the user group Example ✓
97 Identify users using Captive Portal Redirect Mode ✓
98 User ID mapping using Captive Portal in Transparent Mode ✓
99 Captive Portal using Browser Challenge SSO example ✓
100 User ID mapping using Syslog Messages example ✓
101 Understanding Dynamic NAT and port ✓
102 Dynamic NAT and port configuration examples ✓
103 Static NAT concepts and example ✓
Network Address Translation
104 Static NAT with Port Translation Use Case and scenario example ✓
(NAT)
105 Static NAT – INTERNET TO DMZ Example ✓
106 Static NAT – INTERNET TO LAN Example ✓
107 Source & Destination NAT (optional) ✓
108 High Availability Overview ✓
109 Active Passive Configuration Example ✓
High Availability
110 Active Passive Failover - Testing ✓
111 Active Passive Failover – Operation ✓
112 Antivirus configuration ✓
113 Creating Anti-Spyware and DNS Sink holing ✓
114 Creating custom Anti-Spyware signatures ✓
115 Configuring Vulnerability Protection and Custom Signature ✓
116 File Policies ✓
117 Threat Prevention Configuring Wildfire ✓
118 Wildfire Portal ✓
119 Configuring Data Filtering - Data Leakage Prevention ✓
120 Data leakage demo - Credit Card Numbers Detection and Blocking ✓
121 Data leakage demo - Credit Card Numbers Detection and Blocking ✓
122 Implementing Zone and Host Denial Of Service Protection ✓
123 Certificates, Certificate of Authorities, and Decryption Concepts ✓
124 SSL Forward Proxy - Trust Certificate - Local Cert on Palo Alto ✓
125 SSL Forward Proxy - Untrusted Certificate - Local Cert on Palo Alto ✓
126 SSL Decryption SSL Forward Proxy Using an Internal PKI Subordinate CA ✓
127 SSL Forward Proxy Blocking Threats in Encrypted Traffic – Demo ✓
128 SSL Exception – Configuration Example ✓
SSL Decryption
Course Content
No Main Topic Sub-Topic LAB
129 SSL Inbound Inspection ✓
130 Concept of PBF (Policy Based Forwarding) ✓
131 Policy Based forwarding PBF Configuration Example ✓
132 PBF Exception Example ✓
133 QoS Introduction ✓
134 QoS Download Upload Bandwidth Restriction ✓
135 QOS QoS Classification and Marking ✓
136 QoS Classification and Markings Example ✓
137 CLI show QOS details ✓
138 Concept of Application Override ✓
Application Override
139 Application Override – Configuration Example & Verification ✓
140 VPN IPSEC L2L intro and configuration steps ✓
141 VPN IPsec Site to Site VPN IPSEc L2L PaloAlto to PaloAlto Example ✓
142 VPN IPSEc L2L PaloAlto to Cisco Router Example ✓
143 Concept of Tunnel Inspection ✓
Tunnel Inspection
144 Tunnel Inspection – Configuration Example ✓
145 Global Protect Setup example ✓
146 Getting a free publicly trusted SSL certificate to test Global Protect ✓
147 Global Protect Setting up global protect for on-demand mode, discover agent settings ✓
148 Global Protect Always on User-Logon and Pre-Logon configuration ✓
149 Global Protect HIP Check ✓
150 DDOS Concept ✓
DDOS
151 DDOS Configuration Example ✓
152 Installing in Google Cloud ✓
153 Cloud Deployment Installing in the AWS Cloud ✓
154 Installing in Azure Cloud ✓

You might also like