Please fill up the below form
and our Career Consultant will
contact to you in next 12 hours!
Live Practice Labs

Our live access labs provide full console access to a self-paced study lab environment. This is an ideal place to re-work lab exercises from class or to experiment with advanced configuration from your home or hotel room. Find out which works for you and get a downloadable eKit when you enroll.

|
|
Who should attend Prerequisites
Course Outline
UNIT 1:Firewall Concepts
UNIT 2: Chain Management Usage of Default Tables:- Filter - NAT - Mangle Explore Chains in the default tables - INPUT: For packets send to this host - OUTPUT: For packets send from this host - FORWARD: For packets send through this host - PREROUTING: For DNAT - POSTROUTING: For SNAT UNIT 3: Usage of Iptables Command - List rules- Flush rules - Append rules UNIT 4: Packet Matching & Handling - Source/Dest IPs, Source/Dest Ports- Packet matching/handling based on - TCP streams - UDP datagrams - ICMP Traffic UNIT 5: Match Handling - Iptables Target Write rules with the below targets for packet handling-REJECT -LOG -ACCEPT -DROP -SNAT -DNAT -REDIRECT UNIT 6: ICMP Types echo-requestecho-reply LAB Exercises: LAB 1: Drop ICMP Packets for inbound and outbound LAB 2: Denying SSH Connection for port 22 LAB 3: Protect against Spoofed Addresses LAB 4: Configure Outgoing TCP/UDP Connections LAB 5: Writing rules to match packets based on layer-2 addresses UNIT 7: State Maintenance - Stateful Firewall Concept: Stateless Connection / Statefull ConnectionTypes of states: - NEW - ESTABLISHED - RELATED - INVALID List kernel modules to support the stateful firewall Deploying stateful TCP inspection UNIT 8: Iptables Logging Access Control Entry (ACEs) to perform loggingLog traffic Implement catch-all ACE Label the log entries UNIT 9: Iptables Statistics Packet counts & bytes traversing the various chainsReset all counters UNIT 10: Packet Routing Linux RouterForward chain Write ACEs to permit routing Talk: IPTables/Netfilter Recent Module UNIT 11: Network Address Translation (NAT) - Iptables Masquerading:Usage: POSTROUTING Usage: Source NAT (SNAT) Usage: PREROUTING Usage: Destination NAT (DNAT) UNIT 12: Configure Port Forwarding: - Usage: sysctl- sysclt.conf UNIT 13: Demilitarized Zone (DMZ) Configuration - Port Address Translation (PAT) rules to permit inbound traffic- DMZ forwarding (Routing) LAB Exercises: Creating user defined chainsZero packet counts & bytes - bandwidth usage monitoring Allowing access to ssh in day time: 9am to 6pm Allowing DNS Access To Your Firewall Allowing WWW And SSH Access To Your Firewall Deploy Transparent Proxying UNIT 14: Linux advanced routing It is implemented in two parts:1. Rules 2. Routing tables UNIT 15: The Tools ip commandiproute2 tc command cbq.init Marriage of iproute2, iptables, kernel UNIT 16: Linux Quality of Service Using the traffic control and netfilter infrastructure to manage bandwidth more effectively and how to collectstatistics to aid with that process. ![]() Trainings
|





