BalaBit Certified Zorp Associate

The course teaches the participants the fundamentals of Zorp firewalls, and the skills to operate pre-installed systems and adjust their configurations. The attendees will be able to configure and troubleshoot the firewall with the assistance of the Support Team.

This course is recommended for:

End-users who wish to operate and maintain a pre-installed firewall. By the end of the course attendees will be able to operate an existing firewall system, to report problems to the Zorp Support centers, and to solve these problems with assistance.

Course description

The course teaches the skills required for the basic operation of Zorp firewalls and prepares the participants for the BalaBit Certified Zorp Associate exam. The participants learn the operation of and receive hands-on training with the Zorp firewall, the Zorp Management System, and the Zorp Management Console.

We recommend this course for system and network administrators responsible for operating and managing Zorp firewalls.

Note Installation of Zorp and Zorp components is not covered in this course. The participants practice on pre-installed Zorp systems.

Upon successful completion attendees will be able to:

  • Understand the concepts of Zorp firewalls;
  • Create policies to control who can use the firewall;
  • Control the access of selected devices to the Zorp firewall;
  • Inspect the operation of Zorp by analyzing the log messages.

Prerequisites

General IT knowledge, advanced TCP/IP knowledge.

Topics covered

1. day

Module: Zorp Firewall Architecture

  • Zorp firewall concepts
  • Architecture overview
  • Hardened operating system
  • ZorpOS features
  • Zorp features
  • Hardware requirements
  • Performance issues

Module: ZorpOS basics

  • The hardened OS
  • OS management (logging in)
  • User administration and privilege management
  • Updates
  • Managing Zorp
  • Reading the logs
  • Shutting down

Module: Architecture of Zorp Management Server

  • Modules presentation:
    • Operating system
    • Firewall
    • Management server
    • Graphical interface
  • Authentication server and client
  • Module deployment options
  • Licensing

Module: ZMC Introduction

  • The configuration procedure
  • Login and configuration
  • Configuration management
  • Locking
  • Setting the parameters of ZMC

Module: Zorp Management Server basic settings

  • ZMS basic architecture
  • User administration
  • Logging
  • Security backups
  • Further settings (Connection port and certificates)

2. day

Module: Networking settings with ZMC

  • Interface configuration
  • Supported interface types
  • Name resolution
  • Routing
  • Interface control

Module: Zorp configuration with ZMC

  • Zones
  • Services
  • Instances
  • Service wizard
  • Network Address Translation
  • Proxy classes

Module: Setting Packet filter rules in ZMC

  • The role of packet filtering in Zorp
  • Creating packet filtering rules in ZMS
  • Enabling local services

Module: Configuring native services with ZMC

  • The Text editor component
  • DNS settings
  • MTA settings
  • NTP settings
  • Packet filtering
  • Security of native services

Duration

Two days from 9:00 to 17:00, including lunch.