Sophos Certified Architect Course overview



Similar documents
Move over, TMG! Replacing TMG with Sophos UTM

Simple security is better security Or: How complexity became the biggest security threat

Astaro Gateway Software Applications

CompTIA Network+ (Exam N10-005)

Course Syllabus. Fundamentals of Windows Server 2008 Network and Applications Infrastructure. Key Data. Audience. Prerequisites. At Course Completion

Fireware Essentials Exam Study Guide

Deploying Cisco ASA VPN Solutions

VPN_2: Deploying Cisco ASA VPN Solutions

Table of Contents. Introduction. Audience. At Course Completion

NESCOT Cyberoam Training Academy

Appendix A: Configuring Firewalls for a VPN Server Running Windows Server 2003

Securing Networks with Cisco Routers and Switches ( )

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

Implementing and Administering Security in a Microsoft Windows Server 2003 Network

Implementing Cisco IOS Network Security

To participate in the hands-on labs in this class, you need to bring a laptop computer with the following:

Firewall Defaults and Some Basic Rules

Fundamentals of Windows Server 2008 Network and Applications Infrastructure

Gigabit SSL VPN Security Router

VPN. Date: 4/15/2004 By: Heena Patel

Boston Area Windows Server User Group April 2010

Managing Enterprise Security with Cisco Security Manager

Cisco Certified Security Professional (CCSP)

FortiGate Multi-Threat Security Systems I Administration, Content Inspection and SSL VPN Course #201

SNRS. Securing Networks with Cisco Routers and Switches. Length 5 days. Format Lecture/lab

Network Security. Protective and Dependable. 52 Network Security. UTM Content Security Gateway CS-2000

Implementing Core Cisco ASA Security (SASAC)

Results of Testing: Juniper Branch SRX Firewalls

Network protection and UTM Buyers Guide

CNS-207 Implementing Citrix NetScaler 10.5 for App and Desktop Solutions

For Sales Kathy Hall

Endian Unified Threat Management

Steps for Basic Configuration

CTS2134 Introduction to Networking. Module Network Security

Sophos Cloud and Partner Dashboard Jonathan Shaw

Implementing Cisco Secure AccessSolutions Exam

Securing Networks with Cisco Routers and Switches 1.0 (SECURE)

Network Security. Network Security. Protective and Dependable. > UTM Content Security Gateway. > VPN Security Gateway. > Multi-Homing Security Gateway

Overview and Deployment Guide. Sophos UTM on AWS

Professional Integrated SSL-VPN Appliance for Small and Medium-sized businesses

Implementing, Managing and Maintaining a Microsoft Windows Server 2003 Network Infrastructure: Network Services Course No.

Cisco Actualtests Exam Questions & Answers

Astaro Deployment Guide High Availability Options Clustering and Hot Standby

NETWORK SECURITY (W/LAB) Course Syllabus

Implementing Cisco IOS Network Security v2.0 (IINS)

Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010 Service Pack 2

Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010 Service Pack 2

IINS Implementing Cisco Network Security 3.0 (IINS)

MOC 6435A Designing a Windows Server 2008 Network Infrastructure

Sales Consultant I Engineer I Architect I Support Engineer I MSP. A Simple Overview to Training and Certification

Fortinet Certified Network Security Administrator

Designing, Deploying and Managing a Network Solution for Small- and Medium-sized Businesses Course No. MS Days

MS Configuring, Managing and Troubleshooting Microsoft Exchange Server 2010

External authentication with Astaro AG Astaro Security Gateway UTM appliances Authenticating Users Using SecurAccess Server by SecurEnvoy

Configuring Managing and Troubleshooting Microsoft Exchange Server 2010

Small Business Server Part 2

FortiMail Filtering. Course 221 (for FortiMail v5.0) Course Overview

MCSE Objectives. Exam : TS:Exchange Server 2007, Configuring

Sophos Roadshow. Complete Security Vision

NETASQ MIGRATING FROM V8 TO V9

(d-5273) CCIE Security v3.0 Written Exam Topics

Funkwerk UTM Release Notes (english)

McAfee Firewall Enterprise System Administration Intel Security Education Services Administration Course

FortiMail Filtering. Course 221 (for FortiMail v4.2) Course Overview

Security. TestOut Modules

Workflow Guide. Establish Site-to-Site VPN Connection using Digital Certificates. For Customers with Sophos Firewall Document Date: November 2015

Course Overview: Learn the essential skills needed to set up, configure, support, and troubleshoot your TCP/IP-based network.

Preliminary Course Syllabus

"Charting the Course... Implementing Citrix NetScaler 11 for App and Desktop Solutions CNS-207 Course Summary

Cyberoam Next-Generation Security. 11 de Setembro de 2015

FortiMail Filtering. Course for FortiMail v4.0. Course Overview

Securing the Small Business Network. Keeping up with the changing threat landscape

Troubleshooting BlackBerry Enterprise Service 10 version Instructor Manual

MCSA Objectives. Exam : TS:Exchange Server 2007, Configuring

Citrix NetScaler 10.5 Essentials for ACE Migration CNS208; 5 Days, Instructor-led

Darstellung Unterschied ZyNOS Firmware Version 4.02 => 4.03

Virtual private network. Network security protocols VPN VPN. Instead of a dedicated data link Packets securely sent over a shared network Internet VPN

A host-based firewall can be used in addition to a network-based firewall to provide multiple layers of protection.

Firewall Defaults, Public Server Rule, and Secondary WAN IP Address

Sophos UTM. Remote Access via PPTP. Configuring UTM and Client

Cyberoam Perspective BFSI Security Guidelines. Overview

SSECMGT: CManaging Enterprise Security with Cisco Security Manager v4.x

10 Strategies to Optimize IT Spending in an Economic Downturn. Wong Kang Yeong, CISA, CISM, CISSP Regional Security Architect, ASEAN

Building Your Complete Remote Access Infrastructure on Windows Server 2012

Cisco Certified Security Professional (CCSP) 50 Cragwood Rd, Suite 350 South Plainfield, NJ 07080

Radius Integration Guide Version 9

Assuring Your Business Continuity

F IREWALL/VPN REFERENCE GUIDE

Considerations In Developing Firewall Selection Criteria. Adeptech Systems, Inc.

Workflow Guide. Establish Site-to-Site VPN Connection using RSA Keys. For Customers with Sophos Firewall Document Date: November 2015

Network Security. Protective and Dependable. Pioneer of IP Innovation

INTRODUCTION TO FIREWALL SECURITY

Build Your Knowledge!

McAfee Next Generation Firewall (NGFW) Administration Course

Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure: Network Services (5 days)

Owner of the content within this article is Written by Marc Grote

Sizing Guideline. Sophos UTM 9.1

Security. Quick Sales Guide

Implementing and Configuring Cisco Identity Services Engine SISE v1.3; 5 Days; Instructor-led

Transcription:

Sophos Certified Architect Course overview UTM This course provides an in-depth study of UTM, designed for experienced technical professionals who will be planning, installing, configuring and supporting deployments in production environments. The course is intended to be delivered in a classroom setting, and consists of presentations and practical lab exercises to reinforce the taught content. Printed copies of the supporting documents for the course will be provided to each trainee. If the course is being taught via webinar then the documents will be sent electronically to the trainees, who are encouraged to print them out to keep as a reference. Due to the nature of delivery, and the varying experiences of the trainees, open discussion is encouraged during the training. The course lasts 4 days, of which roughly 11 hours will be spent on the practical exercises. Objectives On completion of this course, trainees will be able to: Understand the components of the UTM and how to configure them. Architect a solution for a customer s environment and needs. Implement proof of concept (PoC) deployments with the UTM. Perform a deployment appropriate to many customer environments. Configure the components of the UTM according to best practice. Troubleshoot common issues on the UTM. Prerequisites Prior to attending this course, trainees should: Complete the Sophos Certified Engineer UTM course. Have a working knowledge of the solution, having completed basic installation and configuration before attending. Have a strong working knowledge of network configuration and troubleshooting before attending this course. Similar to the level of knowledge required to pass the CCNA or CompTIA Network plus certification programs. Have a good understanding of IT security. CompTIA Security plus and CISSP are good evidence of such knowledge.

Be able to troubleshoot and resolve issues in Windows networked environments. Experience configuring and managing gateways and firewalls. Experience configuring mail and web gateways. If you are uncertain whether you meet the necessary prerequisites to attend this course, please email us at globaltraining@sophos.com and we will be happy to help. Certification To achieve the Sophos Certified Architect certification in UTM trainees must take and pass an online assessment. The assessment tests their knowledge of both the taught and practical content. The pass mark for the assessment is 80%, and it may be taken a maximum of three times. Agenda Module 1: Introduction o Overview o Deployment options o Installation process o Setup options o Manual configuration Module 2: System configuration o System configuration Engineer recap o Interfaces o VLAN interfaces o Bridge interfaces o 3G/UMTS interfaces o Additional addresses o Interface hardware o IPv6 o Uplink balancing o Link aggregation o Routing protocols o Routing priority o Quality of Service (QoS) Module 3: Authentication o Authentication Engineer recap o Remote authentication o RADIUS o TACACS+ o Sophos Authentication Agent o User authentication troubleshooting Module 4: Network Protection o Network protection Engineer recap o Traffic flow o Firewall rules o Restricting source by MAC address o Firewall live log o Viewing firewall configuration on the shell o Advanced firewall settings o Intrusion prevention o Anti-DOS/Flooding

o Advanced Threat Protection o Server load balancing o VoIP o Reporting o Firewall troubleshooting Module 5: Web Protection o Web Protection Engineer recap o Profiles o Policies o Filter actions o HTTPS scanning o Advanced filtering options o Customization o Web filtering reporting o Web filter troubleshooting o FTP o Application control o Application control reporting o Application control troubleshooting Module 5: Email Protection o Email Protection Engineer recap o SMTP proxy outbound relaying o SMTP proxy anti-spam o Modify email headers o SMTP proxy advanced settings o SMTP profiles o Data Protection o POP3 o Email encryption o S/MIME o OpenPGP o Customization o Reporting Module 7: Endpoint Protection o Endpoint Protection Engineer recap o UTM LiveConnect registration o Client installation o Client LiveConnect registration o Management Communication System (MCS) o Web control o Integration with Enterprise Console o UTM logs o Endpoint logs o Web control logging and troubleshooting o Additional information Module 8: Wireless Protection o Wireless Protection Engineer recap o Automatic access point configuration o Access point management o Wireless networks

o Wireless RADIUS authentication o Fast BSS Transition o Wireless background scanning o Mesh networks o Hotspots o Hotspot vouchers Module 9: Webserver Protection o Webserver Protection Engineer recap o Overview o Real webservers o Virtual webservers o Firewall profiles o Exceptions o Site path routing o Advanced settings o Reverse authentication o Webserver Protection and Microsoft Products o Custom mod_security rules o Performance tuning Module 10: RED Management o RED Management Engineer recap o Deployment o Automatic device deauthorization o MAC address filtering o Balancing and failover o VLAN port configuration Module 11: Site-to-site and Remote Access VPNs o Site-to-site and Remote Access VPNs Engineer recap o Site-to-site VPNs o IPsec configuration o IPsec with RSA authentication o IPsec with PKI configuration o IPsec with PKI authentication using cross site certification o Troubleshooting IPsec site-to-site VPNs o Remote Access VPNs o SSL configuration o PPTP VPNs o L2TP over IPsec VPNs o IPsec Remote Access configuration o Sophos IPsec client authentication o User portal Module 12: Central Management o Sophos UTM Manager o WebAdmin o Gateway Manager o Connecting a UTM to SUM Module 13: High availability o High availability Engineer recap o Auto configuration o Hot standby configuration

o Cluster configuration o Troubleshooting Module 14: Sizing and outbound connections o Hardware appliance models o Hardware appliance sizing o Sophos and virtual UTMs o Maximum concurrent connections o Sophos UTM Manager sizing o Outbound connections Further information If you require any further information on this course, please contact us at globaltraining@sophos.com.