.
   
 
 
 

Course: Check Point Provider-1 NGX

Length

2 days* (recommended)

Prerequisites

Check Point Security Administration NGX I Rev 1.1 and Check Point Security Administration NGX II Rev 1.1, or equivalent knowledge and experience in the prerequisites

Take this class if

You are a systems administrator, security manager, or network engineer implementing Provider-1 NGX in an enterprise setting

You are challenging exam #156-815 as part of Check Point Certified Managed Security Expert NGX (CCMSE NGX) certification

 

This course offers in depth training on deploying and managing Check Point Provider-1 NGX. You'll learn how to configure Security Policies for multiple remote Security Gateways using the Multi-Domain GUI (MDG), and learn about managing multiple firewall-secured environments using the Multi-Domain Server (MDS). You will also learn how to perform advanced configuration tasks, such as establishing redundant Multi-Domain Servers for High Availability management functions and migrating existing servers into the Provider-1 database.

You will learn

Describe the Provider-1 architecture

Describe the installation requirements for the Provider-1 components

Successfully install Provider-1

List and describe MDS configuration options

List and describe Customer Management Add-On (CMA) configuration options

Identify the features and functions of the MDG

Describe Provider-1 log-management features

Create and assign Global Policies to multiple CMAs

Use advanced tools to manage multiple Customer sites

Exercises

Install the MDS as a Manager and Container, then configure the MDS to function as a primary MDS

Install the Provider-1 SmartConsole and MDG client

Configure CMAs for city sites

Establish SIC between CMAs and the remote Security Gateways they manage

Adjust Provider-1 default settings to customize the system for your configuration

Create basic objects and Rule Bases for CMAs in your configuration

Create additional Administrators and show the differences in privilege levels

Deploy GUI clients at remote sites, and grant different access to clients with different privileges

Remotely install a Check Point software package on the Gateways in your lab configuration

Disconnect a rogue client from your primary MDS

Define network objects and rules for a NOC Gateway

Install and configure a secondary MDS to be an MDS Multi-Log Module (MLM)

Create objects and rules applied to each CMA in a Global Policy.
Define a Global VPN Community

Migrate an existing SmartCenter Server into your existing Provider-1 setup

Install and configure a secondary MDS for Management High Availability (HA)

Mirror a configured MDS to a second MDS in your setup

Configure a secondary MDS for CMA level HA in a Provider-1 setup

Back up MDS files using Provider-1 archiving commands.Restore MDS files using archiving commands