معرفی دوره
دوره FortiGate Pack + SD-WAN توسط آموزشگاه ساپرا جهت ارائه یک آموزش کامل و جامع جهت طراحی و پیاده سازی و مدیریت فایروال FortiGate به همراه پیاده سازی SD-WAN به صورت کاملا کاربردی و سناریو محور تعریف و طراحی شده است.
در دوره FortiGate Pack + SD-WAN به آشنایی محصولات قدرتمند شرکت Fortinet اعم از FortiGate FortiManager , پرداخته می شود. در دوره آموزشی FortiGate با شیوه کارکرد UTM FortiGate، پیادهسازی سیاستهای امنیتی، تنظیمات و نحوه پیکربندی آنها بر اساس سناریوهای واقعی پرداخته می شود. همچنین با معرفی FortiManager به عنوان Central Management تجهیزات FortiGate نحوه پیاده سازی و پیکربندی آن تشریح خواهد شد.
در این دوره دانشجو با یادگیری گام به گام مباحث امنیتی و راهکارهای اجرایی آن در نهایت با یادگیری
تکنولوژی SD-WAN شرکت Fortinet قادر به راه اندازی راهکارهای پیچیده مبتنی بر SDN در حوزه Enterprise WAN خواهد بود. لازم به ذکر است طبق گزارش موسسه معتبر گارتنر Fortinet SD-WAN به عنوان دومین برند معتبر در این حوزه بین 17 شرکت حاضر معرفی شده است، که نشان از پیشرفت قابل تئجه این شرکت در حوزه SD-WAN می باشد.
مدت زمان دوره: 80 ساعت
پيش نياز:
CCNA
سرفصل ها :
NSE 4 FortiGate
- Deploy the appropriate operation mode for your network
- Use the GUI and CLI for administration
- Identify the characteristics of the Fortinet Security Fabric
- Control network access to configured networks using firewall policies
- Apply port forwarding, source NAT, and destination NAT
- Authenticate users using firewall policies
- Understand encryption functions and certificates
- Inspect SSL/TLS-secured traffic to prevent encryption used to bypass security policies
- Configure security profiles to neutralize threats and misuse, including viruses, torrents, and inappropriate websites
- Apply application control techniques to monitor and control network applications that might use standard or non-standard protocols and ports
- Fight hacking and denial of service (DoS)
- Offer an SSL VPN for secure access to your private network
- Collect and interpret log entries
- Analyze a FortiGate route table
- Route packets using policy-based and static routes for multipath and load -balanced deployments
- Configure SD-WAN to load balance traffic between multiple WAN links effectively
- Inspect traffic transparently, forwarding as a Layer 2 device
- Divide FortiGate into two or more virtual devices, each operating as an independent FortiGate, by configuring virtual domains (VDOMs)
- Establish an IPsec VPN tunnel between two FortiGate devices
- Implement a meshed or partially redundant VPN
- Diagnose failed IKE exchanges
- Offer Fortinet Single Sign-On (FSSO) access to network services, integrated with Microsoft Active Directory (AD)
- Deploy FortiGate devices as an HA cluster for fault tolerance and high performance
- Deploy implicit and explicit proxy with firewall policies, authentication, and caching
- Diagnose and correct common problems
NSE 5 Fortimanger
- Describe the key features and capabilities of FortiManager
- Deploy administrative domains (ADOMs) to support multiple customers on a single FortiManager
- Restrict concurrent ADOM access by using workspaces and workflow mode
- Use provisioning templates for device-level changes across many devices
- Identify the synchronization states and manage the revision history of managed devices
- Manage firewall policies across multiple FortiGate devices using policy packages with shared and dynamic objects
- Deploy policies and objects from the global ADOM to multiple ADOMs
- Understand Security Fabric integration with FortiManager
- Deploy SD-WAN using central management
- Describe high-availability (HA), backup, and recovery options for FortiManager
- Manage the firmware of supported devices centrally
- Offer a local FortiGuard distribution server to your Fortinet devices
- Diagnose and troubleshoot import and installation issues
BGP
- BGP fundamental
- Basic BGP Configuration
- Understanding BGP session Type and Behaviors
- Route Summarization
- Verifying BGP
- Troubleshoot BGP
NSE 7 SD-WAN
- Describe capabilities of the Fortinet Secure SD-WAN solution
- Configure basic SD-WAN features
- Configure advanced SD-WAN features
- Differentiate basic static routing from the advanced dynamic routing capabilities of the Fortinet Secure SD-WAN solution
- Configure SD-WAN with advanced VPN features (ADVPN)
- Integrate FortiOS SD-WAN solutions with FortiManager for central management