VMware NSX Advanced Load Balancer: Web Application Firewall Security
COD: NSXALBWAFS
Categorie: VMware NSX
•NSX Advanced Load Balancer 18.2
Metodologia didattica
Il corso prevede laboratori didattici in cui ciascuno studente potrà lavorare ai fini di portare a termine esercizi formativi che forniranno esperienza pratica nell’utilizzo dello strumento, per ciascuno degli argomenti affrontati durante il corso.
Chi dovrebbe partecipare
- Amministratori di sistema esperti o amministratori di rete e professionisti della sicurezza
Conoscenze/Competenze in uscita
Al termine del corso, dovreste essere in grado di raggiungere i seguenti obiettivi:
- Descrivere l’architettura di NSX Advanced Load Balancer
- Descrivere i componenti e le funzioni principali di NSX Advanced Load Balancer
- Spiegare le caratteristiche e i vantaggi principali di NSX Advanced Load Balancer
- Descrivere l’architettura di NSX Advanced Load Balancer Web Applicatio Firewall
- Descrivere i componenti e le funzioni principali di NSX Advanced Load Balancer Web Application Firewall
- Spiegare le caratteristiche e i vantaggi principali di NSX Advanced Load Balancer Web Application Firewall
- Spiegare e configurare i costruttori di bilanciamento del carico locale, quali servizi virtuali, pool, monitor di salute e i relativi componenti.
- Comprendere e modificare il comportamento delle applicazioni sfruttando profili, policy e dataScript.
- Configurazione e personalizzazione del Web Application Firewall di NSX Advanced Load Balancer
- Descrivere e sfruttare le interfacce API REST di NSX Advanced Load Balancer e le relative funzionalità di automazione.
- Descrivere e configurare il monitoraggio delle applicazioni e dell’infrastruttura di NSX Advanced Load Balancer Web Application Firewall.
- Raccogliere informazioni rilevanti ed eseguire la risoluzione dei problemi di base delle applicazioni Web Application Firewall sfruttando gli strumenti integrati in NSX Advanced Load Balancer
Programma didattico
1 Course Introduction
• Introductions and course logistics
• Course objectives
2 Introduction to NSX Advanced Load Balancer
• Introduce NSX Advanced Load Balancer
• Discuss NSX Advanced Load Balancer use cases and benefits
• Explain NSX Advanced Load Balancer architecture and components
• Explain the management, control, data, and consumption planes and their respective functions
3 Introduction to NSX ALB Web Application Firewall
• Introduce the NSX Advanced Load Balancer Web Application Firewall
• Discuss NSX Advanced Load Balancer Web Application Firewall use cases and benefits
4 Virtual Services Configuration Concepts
• Explain Virtual Service components
• Explain Virtual Service types
• Explain and configure basic virtual services components such as Application Profiles, Network Profiles,
Pools and Health Monitors
5 Attacking and Defending Web Applications
• Introduce the processes and methodologies used when attacking and defending web applications
• Introduce the tools used to attack web applications
• Explain with examples terminology such as Reflected XSS and SQL injection
6 Profiles and Policies
• Explain and deep dive on Advanced Virtual Service creation
• Explain and deep dive on Application Profiles and Types such as L4, DNS, Syslog and HTTP
• Explain and configure advanced application HTTP Profile options
• Deep dive on Network Profiles and Types
• Explain and configure SSL Profiles and Certificates
• Explain and Configure HTTP and DNS policies
7 DDOS Protection
• Introduce the NSX Advanced Load Balancer rate limiting functionality
• Explain the NSX Advanced Load Balancer rate limiting functionality
• Hands on examples of rate limiting in action
8 Customizing Application Delivery with Datascripts
• Introduce the concept of datascripts to manipulate data
• Explain the various components and inspection points
9 IWAF Deep Dive
• Describe the building blocks of the iWAF implementation
• Explain the various iWAF components
• Introduce both Positive and Negative security models
• Explain the iWAF Policies, profiles and rule sets
10 IWAF Core Rule Set
• Explain the history and rationale of the core rule set
• Describe the NSX ALB (Avi) Core Rule Set
11 IWAF Custom Rules
• Describe the power and complexity available via custom rules
• Explain the rule language
• Implement various use cases
• Explain common errors and possible solutions
12 IWAF Operations
• Describe the iWAF application onboarding process
• Tuning the iWAF policies
• Working with iWAF logs and analytics
• Explaining false positive mitigation tactics
13 IWAF Best Practices
• Provide guidance on how to get the best results
Durata – 3 giorni
Erogazione – in Aula, On Site, Remoto
Requisiti PC e SW:
- Connessione Internet
- Web browser, Google Chrome
- Zoom
Language
Trainer: Italiano
Labs: Inglese
Slides: Inglese