FortiOS Administrator 7.4 (Fortigate NSE4)

NSE-4-FT
IT professional

In deze training leer je de Fortigates te configureren en beheren.

Je gaat opdrachtgestuurd aan de slag met onder andere:

  • Firewall policies
  • Autheniticatie
  • IPsec, VPN, IPS, Proxy, Certificaten
  • SSO
  • Virus detectie
  • Data lek preventie
  • Web filtering
  • Applicatie beheer
  • Security as a service

De volledige inhoud lees je hieronder door te klikken op “Cursusinhoud”. Mocht je naar aanleiding hiervan nog vragen hebben, neem dan contact met ons op.

Deze training is bedoel voor iedereen die dagelijks te maken heeft met het beheer van een FortiGate. Er wordt van de deelnemers verwacht dat er kennis is van de basis Firewall principes.

  •  Goede basiskennis van Firewall principes
  • FortiGate I
    • Describe capabilities of FortiGate UTM
    • Neutralize threats / misuse: viruses, torrents, and inappropriate web sites
    • Control network access based on device type
    • Authenticate users via firewall policies
    • Offer an SSL VPN for secure access to your private network
    • Establish an IPsec VPN tunnel between two FortiGate appliances
    • Compare policy- vs. tunnel-based IPsec VPN
    • Apply port forwarding, source NAT, and destination NAT
    • Interpret log entries
    • Generate reports
    • Use the web UI and CLI for administration
    • Deploy the right operation mode
    • Deploy an explicit proxy with firewall policies, authentication, and caching
    • Simplify protocol handling with application control
  • FortiGate II
    • Deploy FortiGate devices as an HA cluster for faulttolerance & high performance
    • Inspect traffic transparently, forwarding as a Layer 2 device
    • Manage FortiGate device’s route table
    • Route packets using policy-based and static routes for multi-path and load-balance deployments
    • Connect virtual domains (VDOMs) without packets leaving FortiGate
    • Implement a meshed / partially redundant VPN
    • Diagnose failed IKE exchanges
    • Fight hacking & denial of service (DoS)
    • Diagnose IPS engine performance issues
    • Offer Fortinet Single Sign On (FSSO) access to network services, integrated with Microsoft Active Directory
    • Inspect SSL/TLS-secured traffic to prevent encryption used to bypass security policies
    • Understand encryption functions and certificates
    • Defend against data leaks by identifying files with sensitive data, and blocking them from leaving your private network
    • Diagnose and correct common problems
    • Optimize performance by configuring to leverage ASIC acceleration chips, such as CP or NPs, instead of only the CPU resources
    • Implement IPv6 and hybrid IPv4-IPv6 networks