To be announced
On-site- Schedule
- To be announced
- Format
- On-site
- Duration
- 12 weeks · 48 hours
- Language
- Confirm with advisor
Create account & apply
This comprehensive course is designed for IT professionals, Network and Cybersecurity engineers looking to deepen their expertise in network security and Palo Alto NGFW based on legacy PCNSA/PCNSE certifications. Through hands-on labs, in-depth lessons, and practical exercises, participants will gain a robust understanding of Network Security principles and how to use Palo Alto Next Generation Firewall to protect their network and securely improve its functionality. By the end of the course, participants will be equipped to gain knowledge related to network security, configure and optimize Palo Alto from scratch according to best practices, troubleshoot and resolve network and security problems.
Modules stay collapsed for quick scanning. Open any module to inspect its topics.
Information and Network Security Basics (standards, terminology)
Next-Generation Firewall (NGFW)
Palo Alto Networks Security Platform Overview
NGFW Core Components and Deployment Architecture
Management Interfaces (GUI, CLI, API)
Initial Setup Wizard and Licensing
Interface Types and Zone-Based Architecture
Static Routing
Virtual Routers
Dynamic Routing (OSPF, BGP)
Routing Troubleshooting Tools
Lab: Static Route, OSPF, and BGP Configurations
Security Policy Rules
Application Identification (App-ID)
App-ID Use Cases
Lab: App-ID Based Policy Configuration
User-ID Concepts
User Mapping Techniques
Policy Enforcement with User-ID
Lab: User-ID Configuration and Testing
Source and Destination NAT
Static vs Dynamic NAT
Policy-Based Forwarding (PBF)
Lab: NAT and PBF Scenarios
Address and Service Objects
Dynamic Address Groups
Tags and Usage in Policies
Lab: Using Tags and Dynamic Groups
Importance of Decryption
SSL Forward Proxy & Inbound Inspection
Certificate Management
Lab: SSL Decryption Setup
Antivirus, Anti-Spyware, Vulnerability Protection
File Blocking
URL Filtering
Lab: Threat Prevention Configuration
WildFire Overview
File Analysis Flow
Security Policy Integration
Lab: WildFire Monitoring
Log Types and Filtering
Application Command Center (ACC)
Custom Reports
Lab: Logs and ACC Troubleshooting
HA Modes and Concepts
Configuration and Synchronization
Failover Testing
Lab: HA Setup
GlobalProtect Overview and Modes
Authentication, Portals, and Gateways
Split Tunneling and HIP Profiles
Lab: GlobalProtect Setup
IPSec Architecture and Crypto Profiles
Tunnel Interfaces and Routing
VPN Troubleshooting
Lab: IPSec Tunnel Configuration
Security Best Practices
Zero Trust Architecture
Common Pitfalls and Fixes
Lab: Real-World Scenario Implementation
Core Service Configuration (Routing, NAT, Policies)
User-ID, GlobalProtect, Threat Prevention
End-to-End Traffic Simulation and Monitoring
Only current, open groups are shown.
Course delivery is supported by practitioners across engineering, architecture and production backend development.
“The program helped me connect individual skills into the way real teams design, build and deliver software.”
See real graduate stories from the Ingress community.
Explore graduate resultsWe use one Portal account for applications, assessments and future learning progress. You will not need to email your details or select the training again.
Questions first? Talk to an advisorCreate or sign in to your Portal accountYour contact details stay connected to one student profile.
Confirm your application detailsNetwork Security with Palo Alto is preselected.
Submit your applicationThe admissions team receives it immediately and can follow up from the Portal.
SELECTED TRAININGNetwork Security with Palo AltoOn-site
Continue in Ingress Portal Already registered? The Portal will let you sign in instead.