 |
Describe Check Point’s unified approach to
network management, and the key elements
of it |
 |
Design a distributed environment |
 |
Install the Security Gateway version R75 in a
distributed environment |
 |
Perform a backup and restore the current
Gateway installation from the command line |
 |
Identify critical files needed to purge or backup,
import and export users and groups and add or
delete administrators from the command line |
 |
Deploy Gateways using sysconfig and cpconfig
from the Gateway command line |
 |
Create and configure network, host and
gateway objects |
 |
Verify SIC establishment between the Security
Management Server and the Gateway using
SmartDashboard |
 |
Create a basic R
that includes pe
users, external s
outbound use |
 |
Evaluate existing policies and optimize the rules
based on current corporate requirements |
 |
Maintain the Security Management Server
with scheduled backups and policy versions
to ensure seamless upgrades with minimal
downtime |
 |
Use Queries in SmartView Tracker to monitor
IPS and common network traffic and trouble-
shoot events using packet data |
 |
Centrally manage users to ensure only
authenticated users securely access the
corporate network either locally or remotely |
 |
Using SmartView Monitor, configure alerts
and traffic counters, view a Gateway’s status,
monitor suspicious activity rules, analyze tunnel
activity and monitor remote user access |
 |
Centrally manage users to ensure only
authenticated users securely access the
corporate network either locally or remotely |
 |
Manage users to access the corporate LAN by
using external databases |
 |
Use Identity Awareness to provide granular level
access to network resources |
 |
Acquire user information used by the Security
Gateway to control access |
 |
Define Access Roles for use in an Identity
Awareness rule |
 |
Implement Identity Awareness in the Firewall
Rule Base |
 |
Configure a pre-shared secret site-to-site VPN
with partner sites |
 |
Configure permanent tunnels for remote access
to corporate resources |
 |
Configure VPN tunnel sharing, given the
difference between host-based, subunit-based
and gateway-based tunnels |
|