Security Refresh

Application for the training

The course teaches the participants the fundamentals of TCP/IP networks, the threats related to its architecture, and the basic technologies of network perimeter defense.

This course is recommended for:

Everyone wishing to update their TCP/IP network knowledge, to understand the weaknesses of the TCP/IP architecture, and the attacks exploiting these weaknesses. To determine whether you should take the Security Refresh course, see the test available at the BalaBit website .

The course aims to draw the attention of the participants understanding the basics of networks to the network-related threats. This course also covers the skills necessary for taking the BalaBit Certified Zorp Associate (BCZA) course.

Course description

The participants receive an overview of the concepts of the TCP/IP protocol, and its functions, characteristics and use in Linux networking. Following that, the better and lesser-known attack methods and prevention strategies are discussed.

The course is recommended for system and network administrators interested in configuring networking on Linux, and the main network attack and prevention methods.

Upon successful completion attendees will be able to:

  • Understand the concepts of TCP/IP networks
  • Know the basic services of such networks
  • Know and understand the attack methods related to TCP/IP networks
  • Know the basic prevention methods and defensive techniques against these attacks
  • Have an overview about the concepts of the current perimeter defense technologies

Prerequisites

  • General IT knowledge, basic TCP/IP knowledge.

Topics covered

Module: TCP/IP networks, Linux and security

  • Concepts of the IPv4 protocol stack, layers, point-point connections, Ethernet networks
  • The IP layer
  • Protocols of the Transport layer
  • Protocols of the Application layer
  • Networking administration on Linux (interface, routing settings)
  • Troubleshooting and analyzing tools
  • Packet filtering on Linux
  • Attack methods in the different layers of TCP/IP

Module: Firewalls

  • Evolution of perimeter defense technologies
  • Packet filters
  • Stateful packet filters
  • Bastion hosts
  • Socks firewall
  • Proxy firewalls
  • Transparent proxy firewall
  • Modular proxy gateway (Zorp)

Duration

One days from 9:00 to 17:00, including lunch.