Course Description
In this course, students will learn how to configure, monitor, tune, and troubleshoot advanced intrusion prevention features on FortiGate.
This four-day workshop combines selected FortiOS Administrator, Network Security Support Engineer, and FortiAnalyzer Analyst content with custom advanced IPS modules. Students will begin with the core FortiGate administration skills required to support IPS deployments, including system and network settings, logging and monitoring, firewall policies, NAT, routing, and certificate operations. Students will then examine intrusion prevention, application control, traffic flow, security profiles, network defense, DoS protection, custom IPS signatures, Snort rule conversion, and IPS architecture and performance.
In interactive labs, students will configure a FortiGate device under test, generate traffic, monitor FortiGate dashboards and logs, create DoS policies, detect and block TCP SYN flood anomalies, enable application control, analyze application traffic, capture packets, and create and apply custom signatures. The lab environment also includes FortiAnalyzer for log analysis and security event review.