Download as pdf or txt
Download as pdf or txt
You are on page 1of 4

Palo alto Firewall PCNSE Contents

● About PaloAlto company and products.


● How to build the course lab from scratch step-by-step
● Installation and initial configuration
● Configuring the Management interface and access to the Firewall
● Understanding and Configuring Interface Types:
- Layer3 interface !
- Layer2 interface !
- Tap interface !
- High Availability interface !
- Virtual Wire interface !
- Sub interface !
- Loopback interface !
● Configuring DNS
● Understanding and configuring DNS Proxy.
● Configuring NTP and IP Proxy
● DHCP service configuration
- DHCP Server !
- DHCP Relay Agent service !
● Introduction and Configuration of security zones.
● Virtual Router
● Reset the firewall (Factory Defaults) and reset the admin password
● Administrator Type (Dynamic)
● Administrator Type (Role Based)
● Routing
- Static Routing.
- Dynamic Routing (RIP, OSPF, BGP)
● Bidirectional Forwarding Detection (BFD)
● Policy Based Forwarding (PBF)
● Understanding and configuring different NAT types:
- Static NAT
- Dynamic NAT
- PAT
- Port forwarding
- U-turn NAT
● Understanding and creating different types of Objects.
● Security policy
● Managing Logging
● Application policy
● URL Filtering
● File control
● Anti-virus configuration
● Anti-Spyware configuration
● Security Profile Groups
● Schedules
● Managing Netflow
● SSL decryption and inspection
- What is encryption and decryption !
- How SSL works !
- Differences between SSL and IPSec !
- How SSL traffic can be decrypted !
● Integration with Active Directory and LDAP profiles.
● Managing Captive portal
● Palo Alto Passive Authentication Configuration
● Understanding and Configuring SNMP
● Managing logging
● Virtual Wires deployment
● Virtual Private Network (VPN)
- What is VPN ! and why used !
- How VPN works in general !
- VPN types !
- Deploying Site to Site VPN !
- Deploying Remote Access VPN !
● Understanding and deploying High availability
- AA (Active/AActive) high availability
- AP (Active/Passive) high availability
● Zone Protection Profiles
● DoS protection
● Vulnerability protection (protect vulnerable systems)
● Data filtering
● RADIUS Server Authentication
● TACACS+ Authentication.
● Traffic capture
● Palo Alto WildFire
● Palo Alto backup
● Configuration Management.
- Candidate configuration
- Running configuration
- Saved configuration
● Common troubleshooting commands
● QoS policy
● Application override policy
● Understanding Palo Alto Virtual Systems
● Panorama

You might also like