Check Point Certified Security Administrator R70 (CCSA R70)
With over 24,000 CCSA certified professionals worldwide, CCSA certification is one of the most highly recognized and respected vendor-specific security certifications available.
The foundation of Check Point certifications, CCSA R70 certification validates a Security Administrator's ability to maintain day-to-day operation of Check Point security solutions and ensure secure access to information across the network. Proficiencies include creating and installing Security Policies, using logging and reporting features, and managing anti-spoofing, Network Address Translation (NAT), and OPSEC applications.
More information on specific topics, skills, and competencies covered by CCSA R70 certification is available in the course and exam details.
- Exam:
- #156-215.70
- Course:
- Check Point Security Administration R70
- Products:
- VPN-1, SmartCenter, SmartConsole, IPS
- Competencies:
- Backup and restore, monitoring tools, object creation, Rule Base construction, VPNs, NAT, authentication (including LDAP), user management
Exam:156-215.70
- Course:
- Check Point Security Administration R70
- Prepares you for Certifications:
- CCSA R70, CCSE R70
Passing exam #156-215.70 earns you "Check Point Certified Security Administrator R70 (CCSA R70)" certification.
| Objectives |
- Check Point Technology Overview
- Describe Check Point’s unified approach to network management, and the key elements of this architecture
- Design a distributed environment using the network detailed in the course topology
- Install the Security Gateway version R70 in a distributed environment using the network detailed in the course topology
- Check Point Software Blades
- Given CheckPoint's latest integration of CoreXL technology, select the best security solution for your corporate environment
- Deployment Platforms
- Given network specifications, perform a backup and restore the current Gateway installation from the command line
- Identify critical files needed to purge or backup, import and export users and groups and add or delete administrators from the command line
- Deploy Gateways using sysconfig and cpconfig from the Gateway command line
- Use the Command Line to assist support in troubleshooting common problems on the Security Gateway
- Introduction to the Security Policy
- Given the network topology, create and configure network, host and gateway objects
- Verify SIC establishment between the SmartCenter Server and the Gateway using SmartDashboard
- Create a basic Rule Base in SmartDashboard that includes permissions for administrative users, external services, and LAN outbound use
- Configure NAT rules on Web and Gateway servers
- Evaluate existing policies and optimize the rules based on current corporate requirements
- Maintain the Security Management Server with scheduled backups and policy versions to ensure seamless upgrades and minimal downtime
- Monitoring Traffic and Connections
- Use queries in SmartView Tracker to monitor IPS and common network traffic and troubleshoot events using packet data
- Using packet data on a given corporate network, generate reports, troubleshoot system and security issues, and ensure network functionality
- Using SmartView Monitor, configure alerts and traffic counters, view a Gateway's status, monitor suspicious activity rules, analyze tunnel activity and monitor remote user access based on corporate requirements
- Using SmartUpdate
- Monitor remote Gateways using SmartUpdate to evaluate the need for upgrades, new installations, and license modifications
- Use SmartUpdate to apply upgrade packages to single or multiple VPN-1 Gateways
- Upgrade and attach product licenses using SmartUpdate
- Upgrading to R70
- Based on current products or platforms used in an enterprise network, perform a preinstallation compatibility assessment before upgrading to R70
- Given R70 licensing restrictions, obtain a license key
- Install a Contract File on platforms such as Windows, SecurePlatform, Linux, Solaris and IPSO
- User Management and Authentication
- Centrally manage users to ensure only authenticated users securely access the corporate network either locally or remotely
- Manage users to access to the corporate LAN by using external databases
- Encryption and VPNs
- Select the most appropriate encryption algorithm when securing communication over a VPN, based on corporate requirements
- Establish VPN connections to partner sites in order to establish access to a central database by configuring Advanced IKE properties
- Introduction to VPNs
- Configure a pre-shared secret site-to-site VPN with partner sites
- Configure a certificate based site-to-site VPN using one partner's internal
- Configure a certificate based site-to-site VPN using a third-party CA
- Configure permanent tunnels for remote access to corporate resources
- Configure VPN tunnel sharing, given the difference between hostbased, subnet-based and gateway-based tunnels
- Messaging and Content Security
- Configure Check Point Messaging Security to test IP Reputation, content based anti-spam, and zero hour virus detection
- Based on network analysis disclosing threats by specific sites, configure a Web-filtering and antivirus policy to filter and scan traffic
- Check Point IPS
- Implement default or customized profiles to designated Gateways in the corporate network
- Manage profiles by tracking changes to the network, including performance degradation, and troubleshoot issues with the network related to specific IPS policy rules
- Create and install IPS policies
|