Course : CCSA, Check Point Certified Security Administrator R82, certification

Practical course - 4d - 28h00 - Ref. CPH
Price : 2460 € E.T.

CCSA, Check Point Certified Security Administrator R82, certification



New course

The course aims to teach you how to install and configure Check Point R82, deploy security policies, manage licenses and administrators, monitor logs and traffic, implement HTTPS decryption, control applications and filter URLs, perform backups and upgrades, manage site-to-site VPNs, and understand standalone threat prevention. It also includes preparation for the CCSA certification exam and implementation of a high-availability cluster.


INTER
IN-HOUSE
CUSTOM

Practical course in person or remote class
Disponible en anglais, à la demande

Ref. CPH
  4d - 28h00
2460 € E.T.
En option :
Dynamique.Model.Bean_FormationOption
Certification : 300 € HT




The course aims to teach you how to install and configure Check Point R82, deploy security policies, manage licenses and administrators, monitor logs and traffic, implement HTTPS decryption, control applications and filter URLs, perform backups and upgrades, manage site-to-site VPNs, and understand standalone threat prevention. It also includes preparation for the CCSA certification exam and implementation of a high-availability cluster.


Teaching objectives
At the end of the training, the participant will be able to:
Installing and configuring Check Point R82
Deploy and manage security policies
Implement address translation (NAT)
Manage licenses and contracts
Manage multi-site environments
Controlling administrative access
Monitor logs and network traffic
Configure HTTPS inspection and HTTP/3 support
Apply application control and URL filtering
Implementing VPNs and threat prevention

Intended audience
System/network/security technicians, administrators and engineers.

Prerequisites
Good knowledge of TCP/IP. Basic knowledge of IT security.

Practical details
Hands-on work
Practical exercises: Installation of Check Point R82. SmartConsole installation. Creating objects. Creating a security policy.

Course schedule

1
Introduction to Check Point R82 architecture: Initial configuration

  • Check Point products and R82 news.
  • Introducing Gaia OS.
  • Three-tier architecture, Software Blades and Check Point Infinity.
  • Standalone vs. distributed modes.
  • Presentation of the SIC protocol.
  • CLI: command line interface.
  • SmartConsole Web.
Exercise
Installation of Gaia in R82 on the management server and main gateway.

2
Security policy management

  • Getting started with SmartConsole R82.
  • Package inspection.
  • Object creation and rules.
  • Inline layers" policies (under rules).
Exercise
SmartConsole installation. Create objects. Create a security policy.

3
Address Translation (NAT)

  • NAT static, dynamic, manual.
  • ARP and routing issues.
  • NAT rule implementation.
Exercise
Set up automatic static NAT, Hide and manual transaction rules.

4
Remote site and license management

  • License types and management via SmartUpdate.
  • Multi-site deployment and Policy Packages.
  • Ordered Layers and policy sharing.
Exercise
Installation d’une passerelle distante, création d’une politique de sécurité (Policy Pack), et de règles de base pour le site distant. Création et partage d’une « Ordered Layer ».

5
Administrator management

  • Permission profiles.
  • Concurrent sessions and administrator management.
Exercise
Creation of a new "Permission Profile" with limited authorizations.

6
Logs, monitoring and troubleshooting

  • Connection tracking and alerts.
  • Monitoring tools (CPView, SmartView Monitor).
  • Introduction to troubleshooting (tcpdump, zdebug).

7
HTTPS inspection. Application control, URL filtering and maintenance

  • Outbound/Inbound rules.
  • Certificate and SNI management.
  • Advanced HTTPS inspection features.
  • App Control, URL Filtering, DNS Filtering. User Check.
  • Backups (local and cloud), CPUSE, updates. The cpconfig command.
Exercise
Mise en oeuvre de l’inspection HTTPS.Filtrage Web et Applications : créer et partager la politique de « Filtrage Web et Applications » en tant que « Inline Layer » et « Ordered Layer ». Restauration de la configuration d’une passerelle.

8
Site-to-site VPN, threat prevention and high availability

  • VPN architecture, IKE/IPSec, VPN routing.
  • ClusterXL and redundancy (bonus).
Exercise
Utilisation de VPN-IPSec Inter-sites (Shared Secret) et VPN-IPSec Inter-sites (Certificats).

9
Threat prevention

  • Autonomous Threat Prevention (AI, ThreatCloud).
Exercise
Implementation of Autonomous Threat Prevention.

10
Clustering

  • ClusterXL and redundancy.
Exercise
Implementation of ClusterXL in HA mode.


Options
Certification : 300 € HT
The certification is issued by Check Point Software Technologies. It validates the fundamental skills needed to administer Check Point security solutions. It lasts 90 minutes, and is based on a 90-question MCQ in English.
The certification option comes in the form of a voucher or invitation that will allow you to take the exam at the end of the training course.

Dates and locations
Select your location or opt for the remote class then choose your date.
Remote class

Dernières places
Date garantie en présentiel ou à distance
Session garantie

REMOTE CLASS
2026 : 24 Mar., 16 June, 29 Sep., 8 Dec.

PARIS LA DÉFENSE
2026 : 24 Mar., 16 June, 29 Sep., 8 Dec.