Palo Alto Networks Essentials 2 Training Course

WestconGroupPalo Alto Networks

Essentials 2 Extended Firewall Management

Course Code: ITIC1202
Duration: 2 days (Daytime course)

Thursday – Friday 9:00AM-5:00PM

Price: $2200 incl.GST

Course delivered by Westcon Group.

Extended Firewall Management is the next-level follow-on course to Palo Alto Networks™ Installation, Configuration, and Management (PAN-EDU-201). Extended Firewall Management expands on 201 course topics, while introducing many new features and functions of Palo Alto Networks Next-Generation firewalls.

Course Objectives

Successful completion of this two-day, instructor-led course will enhance the student’s understanding of how to install, configure, manage, and perform basic troubleshooting on the entire line of Palo Alto Networks Next-Generation firewalls. Additionally, students will be instructed on the basics of implementing and managing GlobalProtect and Active/Active High Availability. Students will gain an in-depth knowledge of how to optimize their visibility and control over applications, users, and content.

Target Audience

Security Engineers, Network Engineers, and Support staff


  • Completion of Firewall Installation, Configuration, and Management (201) or equivalent experience is highly recommended
  • Students must have a basic familiarity with networking concepts including routing, switching, IP addressing, and basic port-based security concepts.


Course Outline

Module 0 – Overview

Module 1 – Administration & Management

  • Password Management
  • Certificate Management
  • Log Forwarding


Module 2 – Interface Configuration

  • VLAN Objects
  • QoS


Module 3 – Layer 3

  • NAT
  • Policy Based Forwarding
  • Routing Protocols (OSPF)


Module 4 – App-ID™

  • Defining new Application Signatures
  • Application Override


Module 5 – Content-ID™

  • Custom Threat Signatures
  • Data Filtering
  • DoS Protection
  • Botnet Report


Module 6 – User-ID™

  • Captive Portal
  • Terminal Server Agent
  • Dynamic Address Objects


Module 7 – VPN

  • Overview
  • Configuring the Portal, Gateway, and Agent
  • Host Checks
  • Logs


Module 8 – High Availability

  • Configuring Active/Active HA