Get in Touch

Course Outline

Introduction

  • Overview of Palo Alto Networks' next-generation firewalls

Utilising Tools and Resources

  • Core troubleshooting methodologies
  • Information and support options
  • Employing status monitoring tools
  • Utilising maintenance mode

Understanding Flow Logic

  • Session flow and app-ID
  • Flow logic overview
  • TCP sessions and states
  • Tracing packet flow

Packet Captures and Packet-Diagnostics Logs

  • Comprehending packet capture concepts
  • Configuring packet captures
  • Employing debug-level diagnostic log features
  • Interpreting flow-basic output
  • Utilising hardware assistance and offloading

Host-Inbound and Transit Traffic

  • Troubleshooting transit traffic
  • Blocking tor
  • Troubleshooting host-inbound traffic

Using System Services

  • Identifying performance issues
  • Using baseline service performance
  • Performance troubleshooting use cases
  • Utilising system services daemons
  • Gathering additional data

Certificate Management and SSL Decryption

  • Verifying SSL decryption via the certificate chain
  • Accessing the site via IP versus FQDN
  • Addressing missing intermediate CA
  • Excluding URLs / certificates
  • Utilising client authentication and SSL decryption exclusion
  • Navigating external factors that complicate SSL decryption

User-ID

  • User-ID mapping flow
  • Troubleshooting User-ID

GlobalProtect

  • Utilising connection sequence
  • Troubleshooting GlobalProtect

Support Escalation and RMAs

  • Case management
  • Handling hardware failure and return merchandise authorizations (RMAs)
  • Managing escalation and support events

Summary and Next Steps

Requirements

  • Foundational knowledge of network and security concepts

Audience

  • Security professionals
  • Cybersecurity analysts
  • Administrators
 21 Hours

Related Categories