Check Point Certified Troubleshooting Administrator R81.20 (CCTA)

The Check Point Certified Troubleshooting Administrator R81.20 (CCTA) provides an understanding of the concepts and skills necessary to troubleshoot issues that may occur when managing the Check Point Security Management architecture and Security Gateways.

Audience

This course is designed for security administrators and Check Point resellers who need to manage and monitor issues that may occur within their Security Management environment. It is also aimed at individuals working towards their Check Point Certified Troubleshooting Administrator (CCTA) certification.

Prerequisites

  • Working knowledge of UNIX and/or Windows operating systems
  • Working knowledge of Networking TCP/IP
  • CCSA training/certification
  • Advanced knowledge of Check Point Security products

Om instruktøren Thomas Norbeck

Thomas Norbeck er uten tvil Norges ledende instruktør på opplæring innen Check Points produkter, og gjennomfører både sertifiseringskurs og bedriftsintern kurs på Check Point versjoner og produkter.

Thomas sin nøkkelkompetanse ligger innen Check Point spesielt, men også nettverksteknologi og sikkerhet generelt. I tillegg har han vært involvert i flere IT- og infrastruktur-prosjekter både som teknisk ressurs og som prosjektleder. I ulike perioder har Thomas jobbet som konsulent parallelt med at han har opparbeidet lang erfaring med utvikling, tilpasning og gjennomføring av skreddersydde kurs for bedrifter innen ulike sektorer. Blant annet har han laget og gjennomført nettverkskurs på fire ulike kontinenter. 

Thomas Norbeck har 24 års erfaring med nettverk og sikkerhet både som instruktør og konsulent hos bl.a Azlan, A-Team, Ajourit og Curriculum før han begynte i Glasspaper i 2004. Han jobber i dag som Senior konsulent og instruktør for Glasspaper, samt at han er IT sjef og konsulentleder.

 

Course topics

  • An Introduction to Troubleshooting
  • SmartConsole and Policy Management Troubleshooting
  • Monitoring Logging Activity
  • Troubleshooting Issues with NAT
  • Understanding the Unified Access Control Policy
  • Basic VPN Troubleshooting
  • Monitoring ClusterXL Connections
  • Understanding Identity Awareness

Lab exercises

  • Monitoring Security Gateway Traffic
  • Troubleshooting Issues with SmartConsole
  • Troubleshooting Log Connectivity Issues
  • Investigating Log Connectivity Issues
  • Investigating NAT Issues
  • Troubleshooting General Traffic Issues
  • Evaluating HTTP and HTTPS Traffic Issues
  • Troubleshooting Site-to-Site VPN Issues
  • Troubleshooting Clustering Issues
  • Troubleshooting Identity Awareness
  • Configuring and Testing Identity Collector

Course objectives

  • Understand how to use Check Point resources for support
  • Understand how to perform packet captures using tcpdump and FW Monitor command tools
  • Understand the basic process of kernel debugging, and how debug commands are structured.
  • Recognize how to use various Linux commands for troubleshooting system issues.
  • Recognize communication issues that may occur between SmartConsole and the SMS and how to resolve them.
  • Understand how to troubleshoot SmartConsole login and authentication issues.
  • Understand how to prevent and resolve licensing and contract issues.
  • Understand how to troubleshoot issues that may occur during policy installation.
  • Understand communication issues that may occur when collecting logs and how to resolve them.
  • Recall various tools to use when analyzing issues with logs.
  • Understand how to restore interrupted communications during heavy logging.
  • Understand how NAT works and how to troubleshoot issues.
  • Understand Client Side and Server Side NAT.
  • Understand how the Access Control Policy functions and how the access control applications work together.
  • Understand how to troubleshoot issues that may occur with Application Control and URL Filtering.
  • Understand how the HTTPS Inspection process works and how to resolve issues that may occur during the process.
  • Understand how to troubleshoot Content Awareness issues.
  • Recognize how to troubleshoot VPN-related issues.
  • Understand how to monitor cluster status and work with critical devices.
  • Recognize how to troubleshoot State Synchronization.
  • Understand how to troubleshoot communication issues between Identity Sources and Security Gateways.
  • Understand how to troubleshoot and debug issues with internal Identity Awareness processes.

Certification

This course is recommended as preparation for exam 156-581: Check Point Certified Troubleshooting Administrator (CCTA) R81

Andre relevante kurs