logo

F5 Course

course overview

Click to View dates & book now

Overview

In this 2-day course, students are provided with a functional understanding of how to deploy, test and maintain F5 SSL Orchestrator to optimize the SSL infrastructure, provide security devices with visibility of SSL/TLS encrypted traffic, and maximize efficient use of that existing security investment.

The course includes lecture, hands-on labs, and discussion about the importance of SSL visibility, how F5 SSL Orchestrator supports policy-based management, steering of traffic flows to existing security devices and centralizes the SSL decrypt/encrypt function through multi-layered security, dynamic service chaining, topology selections and security policies.

Course Topics

• Compare F5 SSL Orchestration to manual “daisy chaining” of security services

• Learn essentials of PKI and certificates, how to create a certificate signing request, and how to import certificates and private keys into BIG-IP

• Implement certificate forging in an SSL Forward Proxy deployment

• Understand HTTP, ICAP, L3/L2, and TAP security services

• Configure traffic classification and URL bypass within a security policy

• Define security services to include in a dynamic service chain

• Use the Guided Configuration to deploy an outbound Layer 3 transparent forward proxy

• Use the Guided Configuration to deploy an outbound Layer 3 explicit forward proxy

• Use the Guided Configuration to deploy an inbound Layer 3 reverse proxy

• Use the Guided Configuration to deploy an SSL Orchestration for an existing application

• Configure High Availability for SSLO devices

• Troubleshoot SSLO and traffic flow issues

Audience

This course is intended for network administrators and Security Operations responsible for installation, setup, configuration, and administration of the F5 SSL Orchestrator system.

Skills Gained

• Understand basic use cases for decryption and re-encryption of inbound and outbound SSL/TLS network traffic

• Create dynamic service chains of multiple security services

• Configure security policies to enable policy-based traffic steering

• Add SSL visibility to existing applications

• Deploy SSL Orchestrator configurations based on topology templates

• Troubleshoot an SSL Orchestrator deployment

Prerequisites

The following free web-based training courses, although optional, will be very helpful for any student with limited BIG-IP administration and configuration experience.

• Getting Started with BIG-IP web-based training

• Getting Started with SSL Orchestrator (SSLO) web-based training

The following general network technology knowledge and experience are recommended before attending any F5 Global Training Services instructor-led course:

• OSI model encapsulation

• Routing and switching

• Ethernet and ARP

• TCP/IP concepts

• IP addressing and subnetting

• NAT and private IP addressing

• Default gateway

The following course-specific knowledge and experience is suggested before attending this course:

• HTTP, HTTPS protocols

• TLS/SSL

Security services such as malware detection, data loss/leak prevention (DLP), next-generation firewalls (NGFW), intrusion prevention systems (IPS), and Internet Content Adaptation Protocol (ICAP)

Outline

F5 Networks is the leader in application security and availability. F5 Solutions ensure that applications are always secure and perform the way they should – anywhere, anytime, and on any device.

F5 Networks training courses will give you the knowledge needed to install and configure F5 Networks solutions including LTM, ASM, DNS, APM, AFM, AAM, Viprion, Big-IQ, iApps, and iRules.

F5 trainers bring to the classroom decades of extensive experience. All F5 Networks courses consist of Lectures, Labs, and Discussions and are available either in a classroom setting or as virtual live courses.

Network professionals intending to attend F5 Networks courses are required to be proficient with Basic PC operation and application skills, Windows OS & Basic Web Browser operation (HTTP).

 


Talk to an expert

Thinking about Onsite?

If you need training for 3 or more people, you should ask us about onsite training. Putting aside the obvious location benefit, content can be customised to better meet your business objectives and more can be covered than in a public classroom. Its a cost effective option. One on one training can be delivered too, at reasonable rates.

Submit an enquiry from any page on this site, and let us know you are interested in the requirements box, or simply mention it when we contact you.

All $ prices are in USD unless it’s a NZ or AU date

SPVC = Self Paced Virtual Class

LVC = Live Virtual Class

Please Note: All courses are availaible as Live Virtual Classes

Trusted by over 1/2 million students in 15 countries

Our clients have included prestigious national organisations such as Oxford University Press, multi-national private corporations such as JP Morgan and HSBC, as well as public sector institutions such as the Department of Defence and the Department of Health.