Check Point Firewall Administration R81.10+: A practical guide to Check Point firewall deployment and administration
暫譯: Check Point 防火牆管理 R81.10+: Check Point 防火牆部署與管理實用指南

Yakovlev, Vladimir

  • 出版商: Packt Publishing
  • 出版日期: 2022-08-29
  • 售價: $2,320
  • 貴賓價: 9.5$2,204
  • 語言: 英文
  • 頁數: 654
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 180107271X
  • ISBN-13: 9781801072717
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

相關主題

商品描述

Improve your organization's security posture by performing routine administration tasks flawlessly

Key Features

- Get a gradual and practical introduction to Check Point firewalls
- Acquire the knowledge and skills necessary for effective firewall administration, maintenance, and troubleshooting
- Create and operate a lab environment with gradually increasing complexity to practice firewalling skills

Book Description

Check Point firewalls are the premiere firewalls, access control, and threat prevention appliances for physical and virtual infrastructures. With Check Point's superior security, administrators can help maintain confidentiality, integrity, and the availability of their resources protected by firewalls and threat prevention devices. This hands-on guide covers everything you need to be fluent in using Check Point firewalls for your operations.

This book familiarizes you with Check Point firewalls and their most common implementation scenarios, showing you how to deploy them from scratch. You will begin by following the deployment and configuration of Check Point products and advance to their administration for an organization. Once you've learned how to plan, prepare, and implement Check Point infrastructure components and grasped the fundamental principles of their operation, you'll be guided through the creation and modification of access control policies of increasing complexity, as well as the inclusion of additional features. To run your routine operations infallibly, you'll also learn how to monitor security logs and dashboards. Generating reports detailing current or historical traffic patterns and security incidents is also covered.

By the end of this book, you'll have gained the knowledge necessary to implement and comfortably operate Check Point firewalls.

What you will learn

- Understand various Check Point implementation scenarios in different infrastructure topologies
- Perform initial installation and configuration tasks using Web UI and the CLI
- Create objects of different categories and types
- Configure different NAT options
- Work with access control policies and rules
- Use identity awareness to create highly granular rules
- Operate high-availability clusters

Who this book is for

Whether you're new to Check Point firewalls or looking to catch up with the latest R81.10++ releases, this book is for you. Although intended for information/cybersecurity professionals with some experience in network or IT infrastructure security, IT professionals looking to shift their career focus to cybersecurity will also find this firewall book useful. Familiarity with Linux and bash scripting is a plus.

商品描述(中文翻譯)

改善您組織的安全姿態,透過無瑕疵地執行例行管理任務

主要特點

- 漸進式且實用的 Check Point 防火牆介紹
- 獲得有效的防火牆管理、維護和故障排除所需的知識和技能
- 創建並操作一個逐漸增加複雜度的實驗環境,以練習防火牆技能

書籍描述

Check Point 防火牆是物理和虛擬基礎設施的首選防火牆、存取控制和威脅防護設備。憑藉 Check Point 的卓越安全性,管理員可以幫助維護其資源的機密性、完整性和可用性,這些資源受到防火牆和威脅防護設備的保護。本實用指南涵蓋了您在操作中流利使用 Check Point 防火牆所需的所有內容。

本書將使您熟悉 Check Point 防火牆及其最常見的實施場景,並展示如何從零開始部署它們。您將首先跟隨 Check Point 產品的部署和配置,然後進一步了解其在組織中的管理。一旦您學會如何規劃、準備和實施 Check Point 基礎設施組件,並掌握其運作的基本原則,您將被引導創建和修改逐漸增加複雜度的存取控制政策,以及加入額外功能。為了無誤地執行您的例行操作,您還將學習如何監控安全日誌和儀表板。生成詳細當前或歷史流量模式和安全事件的報告也將涵蓋在內。

在本書結束時,您將獲得實施和輕鬆操作 Check Point 防火牆所需的知識。

您將學到的內容

- 理解不同基礎設施拓撲中各種 Check Point 實施場景
- 使用 Web UI 和 CLI 執行初始安裝和配置任務
- 創建不同類別和類型的物件
- 配置不同的 NAT 選項
- 處理存取控制政策和規則
- 使用身份識別來創建高度細緻的規則
- 操作高可用性叢集

本書適合誰

無論您是新接觸 Check Point 防火牆,還是希望跟上最新的 R81.10++ 版本,本書都適合您。雖然本書旨在為具有一定網路或 IT 基礎設施安全經驗的信息/網路安全專業人士而寫,但希望將職業重心轉向網路安全的 IT 專業人士也會發現這本防火牆書籍非常有用。熟悉 Linux 和 bash 腳本將是加分項。

作者簡介

Vladimir Yakovlev, CISSP, is an Infrastructure and Security Solutions Architect and CTO at Higher Intelligence LLC., a consulting company. An International Information Systems Security Certification Consortium’s community champion, speaker at international and regional conferences, he has worked with various Check Point products for over 20 years. He’s been awarded Member of the Year and a Contributor of the Year designations by peers and previously held the roles of Sr. V.P. Technology and CISO, responsible for design, implementation, and operation of multiple iterations of secure and resilient infrastructures in financial industry. Vladimir enjoys helping others and could be found in CheckMates, LinkedIn and ISC2 communities.

作者簡介(中文翻譯)

弗拉基米爾·雅科夫列夫(Vladimir Yakovlev),CISSP,是Higher Intelligence LLC.的基礎設施與安全解決方案架構師及首席技術官(CTO),該公司是一家顧問公司。他是國際資訊系統安全認證聯盟(International Information Systems Security Certification Consortium)的社群冠軍,並在國際及區域會議上擔任演講者,擁有超過20年的Check Point產品經驗。他曾獲得年度會員及年度貢獻者的榮譽,並曾擔任高級副總裁(Sr. V.P.)技術及首席資訊安全官(CISO),負責金融業多次安全且具韌性的基礎設施的設計、實施及運營。弗拉基米爾喜歡幫助他人,並活躍於CheckMates、LinkedIn及ISC2社群中。

目錄大綱

1. Introduction to Check Point Firewalls and Threat Prevention Products
2. Common Deployment Scenarios and Network Segmentation
3. Building a Check Point Lab Environment – Part 1
4. Building a Check Point Lab Environment – Part 2
5. Gaia OS, the First Time Configuration Wizard, and an Introduction to the Gaia Portal (WebUI)
6. Check Point Gaia Command-Line Interface; Backup and Recovery Methods; CPUSE
7. SmartConsole – Familiarization and Navigation
8. Introduction to Policies, Layers, and Rules
9. Working with Objects – ICA, SIC, Managed, Static, and Variable Objects
10. Working with Network Address Translation
11. Building Your First Policy
12. Configuring Site-to-Site and Remote Access VPNs
13. Introduction to Logging and SmartEvent
14. Working with ClusterXL High Availability
15. Performing Basic Troubleshooting

目錄大綱(中文翻譯)

1. Introduction to Check Point Firewalls and Threat Prevention Products

2. Common Deployment Scenarios and Network Segmentation

3. Building a Check Point Lab Environment – Part 1

4. Building a Check Point Lab Environment – Part 2

5. Gaia OS, the First Time Configuration Wizard, and an Introduction to the Gaia Portal (WebUI)

6. Check Point Gaia Command-Line Interface; Backup and Recovery Methods; CPUSE

7. SmartConsole – Familiarization and Navigation

8. Introduction to Policies, Layers, and Rules

9. Working with Objects – ICA, SIC, Managed, Static, and Variable Objects

10. Working with Network Address Translation

11. Building Your First Policy

12. Configuring Site-to-Site and Remote Access VPNs

13. Introduction to Logging and SmartEvent

14. Working with ClusterXL High Availability

15. Performing Basic Troubleshooting