Course Outline

Introduction

  • Overview of Palo Alto Networks' next-generation firewalls for government use

Using Tools and Resources

  • Basic troubleshooting methodologies for government
  • Options for information and support for government agencies
  • Utilizing status monitoring tools for government operations
  • Employing maintenance mode in a government environment

Understanding Flow Logic

  • Session flow and application identification (app-ID) for government networks
  • Overview of flow logic for government IT systems
  • TCP sessions and states for government applications
  • Tracing packet flow in a government context

Packet Captures and Packet-Diagnostics Logs

  • Understanding packet capture concepts for government networks
  • Configuring packet captures for government use
  • Using debug-level diagnostic log features for government IT
  • Interpreting the flow-basic output in a government setting
  • Leveraging hardware assistance and offloading for government systems

Host-Inbound and Transit Traffic

  • Troubleshooting transit traffic for government networks
  • Blocking Tor in a government context
  • Troubleshooting host-inbound traffic for government IT

Using System Services

  • Identifying performance issues for government systems
  • Utilizing baseline service performance for government operations
  • Performance troubleshooting use cases for government IT
  • Using system services daemons in a government environment
  • Gathering more data for government network diagnostics

Certificate Management and SSL Decryption

  • Verifying SSL decryption is applied via the certificate chain for government networks
  • Accessing sites via their IP versus fully qualified domain name (FQDN) in a government context
  • Addressing intermediate CA missing issues for government IT
  • Excluding URLs and certificates for government security
  • Using client authentication and SSL decryption exclusion for government systems
  • Working with external factors that complicate SSL decryption for government networks

User-ID

  • User-ID mapping flow for government IT systems
  • Troubleshooting User-ID in a government environment

GlobalProtect

  • Using connection sequence for GlobalProtect in a government context
  • Troubleshooting GlobalProtect for government networks

Support Escalation and RMAs

  • Case management for government IT support
  • Dealing with hardware failure and return merchandise authorizations (RMAs) for government equipment
  • Managing escalation and support events in a government setting

Summary and Next Steps

Requirements

  • Understanding of network and security principles for government

Audience

  • Security professionals
  • Cybersecurity analysts
  • Administrators
 21 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories