Book description
Improve your organization's security posture by performing routine administration tasks flawlessly
Key Features
- Get a gradual and practical introduction to Check Point firewalls
- Acquire the knowledge and skills necessary for effective firewall administration, maintenance, and troubleshooting
- Create and operate a lab environment with gradually increasing complexity to practice firewall administration skills
Book Description
Check Point firewalls are the premiere firewalls, access control, and threat prevention appliances for physical and virtual infrastructures. With Check Point’s superior security, administrators can help maintain confidentiality, integrity, and the availability of their resources protected by firewalls and threat prevention devices. This hands-on guide covers everything you need to be fluent in using Check Point firewalls for your operations.
This book familiarizes you with Check Point firewalls and their most common implementation scenarios, showing you how to deploy them from scratch. You will begin by following the deployment and configuration of Check Point products and advance to their administration for an organization. Once you’ve learned how to plan, prepare, and implement Check Point infrastructure components and grasped the fundamental principles of their operation, you’ll be guided through the creation and modification of access control policies of increasing complexity, as well as the inclusion of additional features. To run your routine operations infallibly, you’ll also learn how to monitor security logs and dashboards. Generating reports detailing current or historical traffic patterns and security incidents is also covered.
By the end of this book, you'll have gained the knowledge necessary to implement and comfortably operate Check Point firewalls.
What you will learn
- Understand various Check Point implementation scenarios in different infrastructure topologies
- Perform initial installation and configuration tasks using Web UI and the CLI
- Create objects of different categories and types
- Configure different NAT options
- Work with access control policies and rules
- Use identity awareness to create highly granular rules
- Operate high-availability clusters
Who this book is for
Whether you’re new to Check Point firewalls or looking to catch up with the latest R81.10++ releases, this book is for you. Although intended for information/cybersecurity professionals with some experience in network or IT infrastructure security, IT professionals looking to shift their career focus to cybersecurity will also find this firewall book useful. Familiarity with Linux and bash scripting is a plus.
Table of contents
- Check Point Firewall Administration R81.10+
- Foreword
- Contributors
- About the author
- About the reviewer
- Preface
- Part 1: Introduction to Check Point, Network Topology, and Firewalls in Your Infrastructure and Lab
-
Chapter 1: Introduction to Check Point Firewalls and Threat Prevention Products
- Technical requirements
- Learning about Check Point's history and the current state of the technology
- Understanding the Check Point product lineup and coverage
- Introducing the Unified Management concepts and the advantages of security product consolidation
- Familiarization with the Security Management Architecture (SMART)
- Determining how we learn
- Navigating the Check Point User Center
- Summary
- Further reading
- Chapter 2: Common Deployment Scenarios and Network Segmentation
- Chapter 3: Building a Check Point Lab Environment – Part 1
- Chapter 4: Building a Check Point Lab Environment – Part 2
- Part 2: Introduction to Gaia, Check Point Management Interfaces, Objects, and NAT
- Chapter 5: Gaia OS, the First Time Configuration Wizard, and an Introduction to the Gaia Portal (WebUI)
- Chapter 6: Check Point Gaia Command-Line Interface; Backup and Recovery Methods; CPUSE
- Chapter 7: SmartConsole – Familiarization and Navigation
- Chapter 8: Introduction to Policies, Layers, and Rules
- Chapter 9: Working with Objects – ICA, SIC, Managed, Static, and Variable Objects
- Chapter 10: Working with Network Address Translation
- Part 3: Introduction to Practical Administration for Achieving Common Objectives
-
Chapter 11: Building Your First Policy
- Defining the access control policy structure
-
Creating rules for the firewall/networking layer
- Defining hosts for broadcast addresses
- Creating rules for DHCP traffic
- Configuring rules for noise suppression
- Configuring rules for core services
- Configuring rules for privileged access
- Rules that have corresponding entries with an empty threat prevention profile
- Configuring internal access rules
- Configuring DMZ access rules
- Configuring rules for access to updatable objects
- Configuring rules for probes
- Non-optimized rules
-
Creating the APCL/URLF layer and rules
- Enabling APCL/URLF in the properties of the cluster
- Creating an outbound CA certificate for HTTPS inspection and enabling HTTPS Inspection in the properties of the cluster
- Configuring the HTTPS Inspection policy
- Distributing and installing the outbound CA and ICA certificates to the client machines
- Changing the website categorization to Hold mode
- Using Identity Awareness and access roles
- Summary
-
Chapter 12: Configuring Site-to-Site and Remote Access VPNs
- An introduction to site-to-site VPN capabilities
- Configuring a remote gateway and creating its policy
- Building a site-to-site VPN using gateways managed by the same management server
- An introduction to Check Point remote access VPN solutions
-
Configuring a remote access IPSec VPN
- Cloning a policy
- Creating local user templates, groups, users, and access roles
- Configuring a gateway or cluster for remote access
- Configuring global properties for remote access
- Configuring a VPN community for remote access
- Configuring access control policy rules for remote access
- Configuring a DHCP server for a remote access Office Mode IP range
- Preparing remote client
- Testing a remote access VPN
- Summary
- Chapter 13: Introduction to Logging and SmartEvent
- Chapter 14: Working with ClusterXL High Availability
- Chapter 15: Performing Basic Troubleshooting
- Appendix: Licensing
- Other Books You May Enjoy
Product information
- Title: Check Point Firewall Administration R81.10+
- Author(s):
- Release date: August 2022
- Publisher(s): Packt Publishing
- ISBN: 9781801072717
You might also like
book
Cisco ASA: All-in-One Next-Generation Firewall, IPS, and VPN Services, Third Edition
Cisco® ASA All-in-One Next-Generation Firewall, IPS, and VPN Services, Third Edition Identify, mitigate, and respond to …
book
CCNP Enterprise Advanced Routing ENARSI 300-410 Official Cert Guide
Trust the best selling Official Cert Guide series from Cisco Press to help you learn, prepare, …
book
Network Security, Firewalls, and VPNs, 3rd Edition
Network Security, Firewalls, and VPNs, third Edition provides a unique, in-depth look at the major business …
book
Nmap Network Exploration and Security Auditing Cookbook - Third Edition
A complete reference guide to mastering Nmap and its scripting engine, covering practical tasks for IT …