Syllabus CSP
                                                                                            
                                                                                                                                                            02
Network Security
ICT Network Security (Network security and component security)
- Holistic information security (Security Fabric).
 - Repeat basics of networks as reflected in information security (match between network drawing and the various tables in the equipment).
 - Segmentation
 - Segregation
 - NAT
 - Review common information security services and solutions. Review the basic concepts in network security - Perimeter, Zero Trust.
 
Introduction to Firewall
- Targeting based on network location.
 - Basic concepts - constitution / rules, session.
 - The principles of hardening communication and security equipment and practice in Fortigate systems - limiting management of selected interfaces, OOB, methods of automation and identity, turning off unnecessary services and protocols, changing defaults, Trusted hosts.
 
UTM - Information Security Engines
- Part 1: AV, Web Filtering, DNS Filtering, Geo Filtering, Cloud query, Containment, IOC.
 - Part 2: IPS, Application Control, Identity based FW, Threat Intelligence, Strong authentication.
 
Additional Services - Fortigate Firewall , Sandbox
- A VPN for SSL vs users and websites. IPSEC,
 - Xerox
 - Encryption\Decryption
 - Inspection methods
 - Basic sniffing
 - Credentials
 - Sandox
 
Wireless Network Security, Mail Relay
- Security standards on wireless networks
 - Known Tools and Attacks
 - Principles for Building a Secure Wireless Network
 - Wireless IPS
 - Mail Relay - Reputation, Time of click, DKIM