CCSM Overview
CCSM Overview
CCSM Overview
CHECK POINT
SECURITY MASTER
WHO SHOULD ATTEND
COURSE OBJECTIVES AND TOPICS INCLUDE:
This course is for customers and partners who
Firewall-1 administration and infrastructure review
want to learn the advanced skills to troubleshoot
How policy changes impact chain module behavior
and configure Check Point Security Gateway and
Identify management issues and problems with commands
Management Software Blades:
Use commands to troubleshoot NAT stages
System Administrators Configure Manual NAT to define specific rules
Security Engineers Use commands to review and clear connections table
Modify files to allow traffic through a specific cluster member
Network Engineers
Locate the source of encryption failures using commands
CCSEs seeking higher certification Use commands to verify VPN connectivity
Identify any potentially mis-configured VPNs
PREREQUISITES Tune NIC performance
CCSE Increase size and improve hardware performance
Improve load capacity
General knowledge of TCP/IP Tune the firewall rule base
Working knowledge of Windows and UNIX Reduce load on Rule Base application
Working knowledge of network technology Improve network performance
Improve logging efficiency
Working knowledge of the Internet Use IPS Bypass to manage performance
Deploy IPv6 in a local envrionment
TABLE OF CONTENTS Identify differences between VPNs
Chapter 1: Introduction to Security Master Configure VPN Tunnel Interface (VTI)
Configure Open Shortest Path First (OSPF)
Chapter 2: Chain Modules Identify the wire mode function by testing a VPN failover
Chapter 3: NAT
Chapter 4: ClusterXL
Chapter 5: VPN Troubleshooting LAB EXERCISES INCLUDE:
Chapter 6: SecureXL Acceleration Debugging Evaluate Chain Modules
Chapter 7: Hardware Optimization Modify Security Policies
Examine how rules and objects affect optimization
Chapter 8: Software Tuning
Troubleshoot Secure Internal Communication issues
Chapter 9: Enable CoreXL Identify a mis-configured rule
Chapter 10: IPS Identify the source of GUI client connectivity problems
Improve load capacity through optimization
Chapter 11: IPv6
Optimize network performance
Chapter 12: Advanced VPN Configure Manual NAT
Troubleshoot ClusterXL and SecureXL
CERTIFICATION INFORMATION Configure IPS to reduce false positives
CCSM
Identify the speed of the system’s CPU
Identify connections in the ClusterXL debug file
Troubleshoot a mis-configured VPN
Prepares for exam #156-115.77 at
Identify VPN configuration problems
VUE.com/checkpoint
Identify acceleration status of current connections
80 multiple-choice questions with a passing score
Identify the source of an encryption failure
of 70% in 90 minutes. Valid CCSE required.
©2014 Check Point Software Technologies Ltd. All rights reserved. [Protected] Non-confidential content
CONTACT US Worldwide Headquarters | 5 Ha’Solelim Street, Tel Aviv 67897, Israel | Tel: 972-3-753-4555 | Fax: 972-3-624-1100 | Email: [email protected]
U.S. Headquarters | 959 Skyway Road, Suite 300, San Carlos, CA 94070 | Tel: 800-429-4391; 650-628-2000 | Fax: 650-654-4233 | www.checkpoint.com