Course Details
This course is designed for security experts who want to gain the knowledge required to perform more advanced troubleshooting skills while managing their security environments.
COURSE TOPICS
- Advanced Troubleshooting Techniques
- Advanced Logs and Monitoring
- Management Database and Processes
- Advanced Kernel Debugging
- User Mode Troubleshooting
- Advanced Identity Awareness Troubleshooting
- Advanced Access Control
- Site to Site VPN Troubleshooting
- Client to Site VPN Troubleshooting
LAB EXERCISES
- Collecting and Reading CPInfo
- Collecting and Reading CPView Data
- Troubleshooting SmartLog
- Troubleshooting SmartEvent
- Troubleshooting Database Issues
- Debugging Security Gateway Kernel
- Debugging User Mode Processes
- Debugging Identity Awareness
- Debugging Unified Policy Inspection
- Troubleshooting Site-to-Site VPN
- Debugging Remote Access VPN
COURSE OBJECTIVES
- Demonstrate understanding of using advanced troubleshooting tools and techniques, including interpreting diagnostic data with CPInfo, Collecting and reading statistical data using CPView, and Advanced troubleshooting risks.
- Describe the use of Logs and SmartEvent in troubleshooting.
- Describe the log indexing system and issues that can occur.
- Discuss methods to troubleshoot log indexing in SmartLog and SmartEvent.
- Explain the databases used in Security Management operations.
- Identify common troubleshooting database issues.
- Discuss Management Processes.
- Demonstrate understanding of advanced troubleshooting tools and techniques including How the kernel handles traffic, How to troubleshoot issues using chain modules, How to use the two main procedures for debugging the Firewall kernel, and How the two main procedures for debugging the Firewall kernel differ.
- Demonstrate understanding of user mode debugging, including collecting and interpreting process debugs.
- Debug user mode processes.
- Discuss advanced Identity awareness troubleshooting.
- Learn to run debugs on Identity Awareness.
- Explain Unified Access Control flow and processes.
- Explain Access Control kernel debugs.
- Describe Access Control process debugs.
- Explain basic and advanced Site-to-Site VPN troubleshooting tools and techniques, including Packet captures, IKE debugs, and VPN process debugs.
- Explain Client-to-Site VPN troubleshooting tools and techniques, including Remote access and Mobile access troubleshooting.