Course Overview

Are you preparing to purchase a next-generation firewall for your organization? Then stay tuned since we will teach you how to do the sizing correctly, so you can be sure that the product you will buy will be the right fit for your organization.

 Learn what next-generation firewalls are capable of and what are some caveats. Learn what next-generation firewalls are capable of and what are some caveats. We will teach you also some threat hunting techniques with next-generation firewalls. Through the labs, you will have an opportunity to create a next-generation security policy with pfsense, an open-source next-generation firewall, but we will also show you how to achieve the same with some of the key players in the market: Palo Alto Networks, Check Point and Cisco.

 In the end, you will see how to prove the firewall is not causing a network outage, that is what are some troubleshooting techniques useful with next-generation firewalls.

What You Will Learn

  • Learn what is a (network) firewall and why it is useful?
  • Understand how the network firewalls evolved and what is a next generation firewall?
  • Learn how next generation firewalls filter the traffic by applications?
  • Learn how to set up a user id-based firewall policy?
  • Understand how we can protect end users from accessing malicious Internet content with next generation firewall?
  • Learn how next generation firewall can detect and stop an attack?

Program Curriculum

  • Agenda
  • What is a Network Firewall?
  • Basic Firewall Router Access Control List (ACL)
  • Stateful Firewall
  • Stateless vs Stateful Key Points
  • $7 Million Cybersecurity Scholarship by EC-Council
  • Chapter 1 Quiz

  • Agenda
  • Traditional Firewall Shortcomings
  • Application Recognition
  • Next Generation Firewall Key Pointers
  • Chapter 2 Quiz

  • Agenda
  • Application Detection Overview
  • Lab Demo – Cisco FirePOWER Threat Defense
  • Lab Demo – Checkpoint Smart Console
  • Demo – Palo Alto Networks
  • Lab Demo – pfSense
  • Application Detection Key Pointers
  • Chapter 3 Quiz

  • Agenda
  • Intrusion Prevention/Detection Overview
  • Lab Demo – Cisco FirePOWER Threat Defense
  • Lab Demo – Checkpoint Smart Console
  • Demo – Palo Alto Networks
  • Lab Demo – pfSense
  • Application Detection Key Pointers
  • Chapter 4 Quiz

  • Agenda and Overview
  • Lab Demo – Checkpoint Smart Console
  • Lab Demo – Cisco FirePOWER Threat Defense
  • Demo – Palo Alto Networks
  • Lab Demo – pfSense
  • URL Filtering Key Pointers
  • Chapter 5 Quiz

  • Agenda and Overview
  • Lab Demo – Checkpoint Smart Console
  • Lab Demo – Cisco FirePOWER Threat Defense
  • Demo – Palo Alto Networks
  • Lab Demo – pfSense
  • Anti-Malware Key Pointers
  • Chapter 6 Quiz

  • Agenda
  • Pre-requisites
  • How it Works?
  • Caveats
  • Decryption Key Pointers
  • Chapter 7 Quiz

  • Agenda
  • What is the User Identity Mapping?
  • The Concept
  • Caveats
  • The User Identity Mapping Key Pointers
  • Chapter 8 Quiz
Load more modules

Instructor

Igor Mamuzic

Igor Mamuzic, CCNP R&S, CCNP Security, CCDP, Check Point CCSA, Palo Alto Networks CNSE is a dedicated network security engineer with 20 years of field experience. He started his career in a local big enterprise as a network administrator and during this period besides a Cisco network Igor was also a system admin responsible for Microsoft based environment consisted of Active Directory, Exchange and SQL Servers, so there he gained a knowledge broader than that a typical network admin has, which helped a lot in his next role, a senior network security engineer at local big Cisco Gold Partner. Today, Igor also works for a system integrator as a senior network security engineer. Igor is also an experienced Cisco certified instructor, focused mainly on network security topics and author of many courses. In his private life, he enjoys his role of a hobby farmer with his beloved wife Kristijana.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $59.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 599.00
Billed annually or $69.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8