完成本科目,你便可建設到下列的網路環境:

課堂由導師以實戰形式教授課程理論及進行眾多的商業實習。
1. NetScreen Products Introduction
Description of Juniper Networks and NetScreen Firewalls
Juniper Security Products Offerings
2. Juniper Firewall Core Technologies
Zones
Virtual Routers
Policies
Virtual Private Networks
Virtual Systems
Packet-Flow Sequence
Jumbo Frames
3. Initial Connectivity
Accessing the Device using a Console Connection
Accessing the Device using a WebUI
Accessing the Device using TELNET
Default Device Settings
4. Device Management
ScreenOS Upgrade Procedures
To Check existing firmware version
Upgrading ScreenOS from WebUI
Performing Upgrade through CLI and TFTP Server
Performing Upgrade through Boot Loader and TFTP Server
Special Boot-ROM or Boot-Loader Requirements
Resetting Password and Factory Default settings
Setting Administrative Interface Options
Levels of Administration
Password Policy
Secure Shell (SSH)
Saving Configuration
Loading Configuration
Last Known Good configuration
5. Layer 3 Operations
Viewing Interface Configuration
Configuring Security Zone Interfaces
Addressing an L3 Security Zone Interface
Secondary IP Address
Subinterface
Interface Modes
Loopback Interface
Initial Environment
About Static Routing
How Static Route works
Usage of Static Routes
Configuring Static Routes
Policy Based Routing (PBR)
Configuring Default Gateway Route
Routing Information Protocol (RIP)
Border Gateway Protocol (BGP)
Open Shortest Path First (OSPF)
6. Inspection Policy
Building Blocks for Policies
Policies Overview
Three Types of Policies
Policy Set List
Defining Policy
Policies Applied
Policy Verification
Re-Ordering Policies
7. Advanced Policy Configuration
Advanced Policy Options
Counting Option
Traffic Alarm
Traffic Log
Authentication Users
External Authentication Servers
RADIUS (Remote Authentication Dial-In User Service)
Infranet Authentication (Optional)
8. Network Address Translation
Introduction to Address Translation
Directional Nature of NAT-src and NAT-dst
Implementing NAT-src
Implementing NAT-dst
Mapped-IP (MIP)
Virtual-IP (VIP)
9. VPN Concepts
Introduction to Virtual Private Networks
IPSec concepts
Modes
Protocols
Key Management
Security Associations (SA)
Tunnel Negotiation
10. VPN Configuration Guideline
Cryptographic Options
Route-Based and Policy Based Tunnels
Packet Flow: Site-to-Site VPN (Route-Based)
Packet Flow: Site-to-Site VPN (Policy-Based)
Tunnel Configuration Guidelines
Tunnel Configuration Guidelines (cont.)
Implementing Policy-Based Site-to-Site VPN
Implementing Route-Based Site-to-Site VPN
Dynamic IKE Gateways (Optional)
11. Dialup VPN
Policy-Based Dialup VPN– Dynamic Peer configuration
Bi-directional Policies for Dialup VPN
NAT Traversal
12. Attack Detection and Defense Mechanisms
Protecting a Network
Reconnaissance Deterrence (反勘察)
IP Address Sweep
Port Scan
Network Reconnaissance Using IP Options
Operating System Probes
Evasion Techniques
IP Spoofing (偽裝)
IP Source Route Options
|