• Post category:StudyBullet-9
  • Reading time:9 mins read


Learn FortiGate Firewall NSE4 Version 7 with Step by Step Lab Workbook

What you will learn

Configure and Manage FortiGate Firewall.

Understand FortiGate Firewalls Deployment Methods.

How to setup a Lab Environment.

Understand how to deploy FortiGate Firewalls in EVE NG.

Understand FortiGate Firewalls Security Policies.

Students will learn to administrate their Fortinet FortiGate firewall.

Configure and Run First Time Wizard for a new Fertigate Firewall.

Connect internal LAN users to Internet through NAT.

Configure Routing, VLAN Trunking and Static routes.

Learn different Scenarios for Network Address Translation (NAT).

Description

Fortinet NSE 4: Network Security Professional:

The Network Security Professional designation recognizes your ability to install and manage the day-to-day configuration, monitoring, and operation of a FortiGate device to support specific corporate network security policies.

NSE 4 Certification:

I recommend this course for network and security professionals who are involved in the day-to-day management, implementation, and administration of a security infrastructure using FortiGate devices.

Course Description:

In this course, you will learn how to use FortiGate Firewall features, including security profiles. You will explore firewall policies, the Fortinet Security Fabric, user authentication, SSL VPN, and how to protect your network using security profiles, such as IPS, antivirus, web filtering, application control, and advanced routing, transparent mode, redundant infrastructure, site-to-site IPsec VPN, single sign-on (SSO), and diagnostics and more.

FortiGate Deployment:

– Perform initial configuration

– Implement the Fortinet Security Fabric

– Configure log settings and diagnose problems using the logs

– Describe and configure VDOMs to split a FortiGate into multiple virtual devices

– Identify and configure different operation modes for an HA cluster

– Diagnose resource and connectivity problems


Get Instant Notification of New Courses on our Telegram channel.


Content Inspection:

– Describe and inspect encrypted traffic using certificates

– Identify FortiGate inspection modes and configure web and DNS filtering

– Configure application control to monitor and control network applications

– Explain and configure antivirus scanning modes to neutralize malware threats

– Configure IPS, DoS, and WAF to protect the network from hacking and DDoS attacks

Routing and Layer 2 Switching:

– Configure and route packets using static and policy-based routes

– Configure SD-WAN to load balance traffic between multiple WAN links effectively

– Configure FortiGate interfaces or VDOMs to operate as Layer 2 devices

Product Versions:

FortiOS 7.X

English
language

Content

Introduction

Common Network Security Terms
Confidentiality, Integrity, Availability
Malicious Software
Different Firewall Technologies
Web Application Firewall WAF
Next-Generation Firewall (NGFW)
Fortinet, FortiGate and NSE4 Exam

Lab Setup

Configure EVE-NG on VMWare Workstation
Configure EVE-NG Client Pack for Windows
Upload FortiGate Firewall in EVE-NG
Upload Other Lab Images in EVE-NG
Create and configure Lab Main Topology
Initial Working Lab in EVE-NG

Administration

Fortigate Firewall Dashboard
Fortigate Firewall Monitors
Fortigate Different Interfaces

Different Deployments

VLAN Deployment In Fortigate Firewall
Zone in Fortigate Firewall
One-Armed Sniffer in Fortigate Firewall
Redundant Interfaces in Fortigate
Aggregate Interfaces in Fortigate
Theory of Software Switch in Fortigate
Software Switch in FortiGate Firewall
Virtual Wire Pair in Fortigate Firewall

Administrative Access

Administrative Access in Fortigate
DNS in Fortigate Firewall

Routing

Static and Dynamic Routing Protocols
Configure and Verify Static and Default Route
Theory of Policy Routing in Fortigate Firewall
Configure and Verify Policy Routing
Theory of Equal Cost Multi-Path Routing ECMP
Configure and Verify Equal Cost Multi-Path
Theory of Dynamic Routing Protocol RIP
Configure and Verify RIP
Theory of Dynamic Routing Protocol OSPF
Configure and Verify OSPF
Theory of Dynamic Routing Protocol BGP
Dynamic Routing Protocol BGP Flavors
Configure and Verify BGP

DHCP

Theory of Dynamic Host Configuration Protocol
Configure and Verify DHCP Server In FortiGate
Configure and Verify DHCP Server in Windows Server
Configure and Verify DHCP Relay in Fortigate Firewall

NAT & PAT

Theory of Network Address Translation NAT
Policy Source Interface Overload NAT
Policy Source Dynamic Overload NAT
Policy Source One-to-One NAT Lab
Policy Source Fixed Port Rang NAT
Policy Source Port Block Allocation NAT
Central Source NAT in Fortigate
Destination NAT and Virtual IP
VIP without Central SNAT

Security Policies

Theory of FortiGate Firewall Policies
MAC Address Based Firewall Policy
Local User Based Firewall Policy

Windows Server

Active Directory in Windows Server
DNS in MS Windows Server 2012
Create Users & Groups in AD
Network Time Protocol in Server 2012
Certificate Authority in Server 2012

Security Profiles

Theory of Security Profile in Firewall
Theory of SSL Inspection in Firewall
Configure and Verify SSL Inspection
Install Certificate in Client PCs
Theory of Antivirus Profile FortiGate
Configure and Verify Antivirus Profile
Theory of Web Filter Profile FortiGate