Management High Availability
This section introduces the purpose, architecture and deployment considerations associated with management-level high availability.
- Purpose of Management High Availability
- Key components
- Deployment considerations
Lab Activities
- Deploy Management High Availability
- Configure high availability settings
- Validate failover behaviour
- Test high availability functions
Advanced Policy Management
This section focuses on advanced configuration options that can make security policies more flexible and dynamic.
- Enhancing security policies with advanced object types
- Creating dynamic objects for gateway-updatable policies
- Manually defining NAT rules
- Configuring management behind NAT in distributed environments
Lab Activities
- Use updatable objects
- Configure NAT for server objects
- Configure NAT for network objects
- Configure management behind NAT for branch office connectivity
Site-to-Site VPN
Participants explore secure connectivity between distributed networks using site-to-site VPN technologies.
- Site-to-site VPN concepts and deployment models
- VPN communities
- VPN traffic flow analysis
- Pre-shared key authentication
- Certificate-based authentication
- Link selection
- ISP redundancy
- Tunnel management behaviour
Lab Activity
- Configure a site-to-site VPN using internally managed security gateways
Advanced Security Monitoring
This section examines tools used to analyse security activity, events, alerts and compliance information in greater depth.
- Purpose and capabilities of SmartEvent
- Compliance Blade functionality
- Event analysis
- Alert configuration
- Pattern monitoring
- Compliance reporting
Lab Activities
- Configure a SmartEvent Server
- Configure events and alerts
- Run SmartEvent reports
- Activate the Compliance Blade
- Review best-practice settings and alerts
- Validate regulatory compliance scoring
Upgrades
Participants examine supported methods and workflows for upgrading Check Point components.
- Supported upgrade methods
- Upgrade workflows and considerations
Lab Activities
- Upgrade a security gateway
- Use the Central Deployment tool to install hotfixes
Advanced Upgrades and Migrations
This section focuses on management server upgrades and database migration processes.
- Exporting a management database
- Importing a management database
- Upgrading a management server by deploying a new release or appliance
Lab Activities
- Prepare for an advanced upgrade with database migration in a distributed environment
- Perform an import of a primary Security Management Server
ElasticXL Cluster
Participants examine ElasticXL Cluster architecture and its use for improving scalability and high availability.
- Purpose of ElasticXL Cluster
- Design approach
- Deployment considerations
- Operational behaviour
Lab Activity
- Deploy an ElasticXL Security Gateway Cluster
Exams and Assessments
This course is designed to prepare participants for Certification Exam 156-315.82.
No formal certification examination is delivered as part of the course itself. Instead, participants complete:
- Practical lab tasks
- Structured exercises
- Realistic operational scenarios
to reinforce advanced administration skills and validate practical capability.
Hands-On Learning
A significant portion of the course is delivered through advanced hands-on laboratories. Participants work through realistic tasks across:
- High Availability management
- Advanced policy configuration
- NAT
- Site-to-site VPN
- SmartEvent
- Compliance Blade
- Gateway upgrades
- Hotfix deployment
- Management server migration
- Database migration
- ElasticXL Cluster deployment
Instructors support participants throughout the exercises with configuration guidance, troubleshooting assistance, validation and advanced operational insights.