In this 3-day class, you will learn to deploy, configure, and troubleshoot Fortinet s web application firewall: FortiWeb. Instructors explain key concepts of web application security, and lead lab exercises where you will explore protection and performance features. Through traffic and attack simulations with real web applications in the lab, you will learn how to distribute load from virtual servers to real servers while enforcing logical parameters, inspecting flow, and securing HTTP s
Cena kurzu: 2.100,00 EUR/Kurz * Cena včetně DPH: 2.541,00 EUR/Kurz
Program kurzu
Goals After completing these modules, you will be able to:
Understand application-layer threats
Fight defacement & DoS
Prevent zero-day attacks without disrupting live traffic
Give apps ex post facto compliance with OWASP Top 10 for 2013 & PCI DSS 3.0
Discover vulnerabilities in your servers & hosted web apps for tailored, efficient protection
Configure FortiGate together with FortiWeb for stronger HTTP and XML application security
Prevent accidental scan circumvention, yet allow FTP, and SSH
Configure blocking & reporting for an external FortiADC/FortiGate & FortiAnalyze
Choose the right operating mode
Balance load among a server pool
Enforce SSL/TLS, authentication, & sophisticated access control for naked” apps
Train FortiWeb to defend your specific apps.
Blacklist suspected hackers, DDoS participants, and content scrapers
Troubleshoot traffic flow, including for FTP/SSH.
Diagnose false positives & cust * After completing these modules, you will be able to:
Understand application-layer threats
Fight defacement & DoS
Prevent zero-day attacks without disrupting live traffic
Give apps ex post facto compliance with OWASP Top 10 for 2013 & PCI DSS 3.0
Discover vulnerabilities in your servers & hosted web apps for tailored, efficient protection
Configure FortiGate together with FortiWeb for stronger HTTP and XML application security
Prevent accidental scan circumvention, yet allow FTP, and SSH
Configure blocking & reporting for an external FortiADC/FortiGate & FortiAnalyze
Choose the right operating mode
Balance load among a server pool
Enforce SSL/TLS, authentication, & sophisticated access control for naked” apps
Train FortiWeb to defend your specific apps.
Blacklist suspected hackers, DDoS participants, and content scrapers
Troubleshoot traffic flow, including for FTP/SSH.
Diagnose false positives & customize signatures
Optimize performance
Outline
WAF Concepts
Basic Setup
Integrating External SIEM
Integrating Front-End SNAT & Load Balancers
DoS & Defacement
Signatures, Sanitization, & Auto-learning
SSL & TLS
Authentication & Access Control
PCI DSS 3.0 Compliance
Caching & Compression
Rewriting & Redirects
Troubleshooting
Prerequisites
Knowledge of OSI layers & HTTP protocol
Basic experience with HTML, JavaScript, and a server-side dynamic page language such as PHP
Basic experience with FortiGate port forwarding
Study materials The price includes the authorized materials. Certification This prepares you for the FortiWeb Specialist Exam. This course is part of preparation for the NSE6 certification exam .
Cíl školení - poznámka ke kurzu Goals After completing these modules, you will be able to: Understand application-layer threats Fight defacement & DoS Prevent zero-day attacks without disrupting live traffic Give apps ex post facto compliance with OWASP Top 10 for 2013 & PCI DSS 3.0 Discover vulnerabilities in your servers & hosted web apps for tailored, efficient protection Configure FortiGate together with FortiWeb for stronger HTTP and XML application security Prevent accidental scan circumvention, yet allow FTP, and SSH Configure blocking & reporting for an external FortiADC - FortiGate & FortiAnalyze Choose the right operating mode Balance load among a server pool Enforce SSL - TLS, authentication, & sophisticated access control for naked” apps Train FortiWeb to defend your specific apps. Blacklist suspected hackers, DDoS participants, and content scrapers Troubleshoot traffic flow, including for FTP - SSH. Diagnose false positives & customize signatures Optimize performance
Podrobnosti o kurzu
Kurz je určen pro
Audience Anyone who is responsible for day-to-day management of a FortiWeb appliance.
Pořadatel kurzu
DataScript s.r.o.
Další organizační náležitosti k danému školení
Prerequisites Knowledge of OSI layers & HTTP protocol Basic experience with HTML, JavaScript, and a server-side dynamic page language such as PHP Basic experience with FortiGate port forwarding Study materials The price includes the authorized materials. Certification This prepares you for the FortiWeb Specialist Exam. This course is part of preparation for the NSE6 certification exam .
Obchodní podmínky
Objednavateli bude zaslána závazná přihláška k podpisu. Poté bude účastník na školení registrován. Objednavatel uhradí částku kurzovného za výše uvedeného posluchače na základě faktury vystavené poskytovatelem.