Palo Alto and Panorama - Hardening the Configuration

所在平台: Udemy

课程主页: https://www.udemy.com/course/palo-alto-and-panorama-hardening-the-configuration/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:Palo Alto与Panorama - 配置加固 课程概述:本课程基于国家安全局网络设备加固的建议,重点介绍如何通过加固网络设备减少网络基础设施遭到未经授权访问的可能性。恶意网络攻击者可能会利用设备管理和配置中的漏洞来在网络中建立持久存在。与仅针对标准终端的攻击者不同,现代对手越来越关注路由器和交换机等专用和嵌入式设备。通过管理路由协议、利用配置缺陷和向操作系统引入恶意软件,他们来实现这一目标。 在网络安全领域,加固设备意味着提高其安全性和抵御攻击的能力。通过减少攻击面及潜在攻击向量,加固网络设备的防火墙、路由器和交换机等,使得黑客更难入侵网络。同时,确保管理接口的安全,仅限于需要访问的管理员,以及设置管理账户的权限,使其只能够访问必需的配置部分。此外,还包括密码安全、内容与软件更新管理、漏洞修补、系统和配置日志消息的通知设置及监控。 课程中还介绍了实用的防火墙渗透测试,涵盖定位、调查和渗透特定防火墙的过程,以进入某一系统的内部受信网络。防火墙渗透测试被视为外部网络渗透测试的重要组成部分,课程中讨论了防火墙的定位、路径追踪、端口扫描、横幅抓取、防火墙枚举测试、防火墙策略和识别特定漏洞的方法,以及防火墙渗透测试过程和检查清单。 课程还介绍了行业中的最佳部署实践和一些真实场景,包括实用技巧与窍门。相信您在本课程中会学到许多,并收获颇丰。

课程评论(0条)

课程详情

As per Hardening Network Devices National Security Agency Cybersecurity Information, below points are covers in this Course.The possibility of unwanted access to a network's infrastructure is decreased by hardening network equipment. A malicious cyber actor might take advantage of flaws in device management and configurations to establish presence and maintain persistence within a network. Adversaries are increasingly focusing on targeting specialized and embedded devices, such as routers and switches, rather than only standard endpoints. They achieve this by managing routing protocols, exploiting configuration flaws, and introducing malware into the operating systems.In the cybersecurity world, that means making that device more secure and resilient to attacks. By hardening a device, you are making it more difficult to break into for hackers.Minimizing attack surface, or surface of vulnerability, and potential attack vectorsHardening the Firewall ConfigurationHardening the Network devices Firewalls, Routers and Switches etcThe possibility of unwanted access to a network's infrastructure is decreased by hardening network equipment.Management interface is kept secure, and access is limited to only those administrators that need access. Accessing internet resources from offline management Admin accounts also need to be set so they only have access to the sections of the configuration they need to access and use external authentication.Password securityKeep Content and Software Updates Current Patch vulnerabilitySet up notifications for system and configuration log messagesMonitor system and configuration logs Practical Firewall Penetration TestingFirewall penetration testing is the process of locating, investigating and penetrating a certain firewall in order to reach the internal trusted network of a certain system.Mostly considered to be a key part in external network penetration testing, firewall In this video we discussed the below points.Locating The FirewallConducting TraceroutePort ScanningBanner GrabbingFirewall Enumeration TestingThe Firewall PolicyFirewalkingHow to identify Firewall Specific VulnerabilitiesFirewall Penetration Test Process/ChecklistBelow Tools used during:NMAPHPING3FirewalkNetwork audit toolTracertTracerouteThis course also covered the Best Deployment practices Hardening Network Devices used in the industry and some real-world scenarios including the Tips and Tricks. You will definitely learn a lot in this course and will surely find this valuable.

课程标签

0人关注该课程

主题相关的课程