Cisco Training Courses

Insoft has been serving IT community with official Cisco training offering since 2010. Find all the relevant information on Cisco training on this page.

View More

Cisco Certifications

Experience a blended learning approach that combines the best of instructor-led training and self-paced e-learning to help you prepare for your certification exam.

View More

Cisco Training Catalogue

Explore a wide variety of the Cisco courses, across different countries as well as online courses.

Browse Catalogue

Cisco Learning Credits

Cisco Learning Credits (CLCs) are prepaid training vouchers redeemed directly with Cisco that make planning for your success easier when purchasing Cisco products and services.

Have CLCs and want to redeem them?

Cisco Continuing Education

The Cisco Continuing Education Program offers all active certification holders flexible options to recertify by completing a variety of eligible training items.

View More

Cisco Digital Learning

Certified employees are VALUED assets. Explore Cisco official Digital Learning Library to educate yourself through recorded sessions.

Browse CDLL Catalogue

Cisco Business Enablement

The Cisco Business Enablement Partner Program focuses on sharpening the business skills of Cisco Channel Partners and customers.

View More

Fortinet Technical Certifications

The Fortinet Network Security Expert (NSE) program is an eight-level training and certification program to teach engineers of their network security for Fortinet FW skills and experience.

View More

Fortinet Technical Courses

Insoft is recognised as Fortinet Authorized Training Center in selected locations across EMEA.

View More

Fortinet Training Catalogue

Explore the full Fortinet training catalogue. The program includes a wide range of self-paced and instructor-led courses.

Browse Catalogue

Official ATC Status

Check our ATC Status across selected countries in Europe.

View More

Fortinet Services Packages

Insoft Services has developed a specific solution to streamline and simplify the process of installing or migrating to Fortinet Products.

Browse Packages

Prepforce Bootcamp

The only comprehensive source available today to prepare for Fortinet NSE 8 certification globally.

View More

Microsoft Training

Insoft Services provides Microsoft training in EMEAR. We offer Microsoft technical training and certification courses that are led by world-class instructors.

View More

Technical Training

The evolution of Extreme Networks Technical Training provides a comprehensive progressive pathway from Associate to Professional accreditation.

View More

Technical Certification

We provide comprehensive curriculum of technical competency skills on the certification accomplishment.

View More

Courses Catalogue

Find all the Extreme Networks online and instructor led class room based calendar here.

View More

ATP Accreditation

As an authorised training partner (ATP), Insoft Services ensures that you receive the highest standards of education available.

View More

Consulting package

We provide innovative and advanced support for designing, implementing and optimising IT solutions. Our client-base includes some of the largest Telcos globally.

Solutions and services

Globally recognised team of certified experts helps you make a smoother transition with our pre-defined consultancy, installation and migration packages for a wide range of Fortinet products.

About Us

Our training portfolio includes a wide range of IT training from IP providers, including Cisco, Extreme Networks, Fortinet, Microsoft, to name a few, in EMEA.

View More
  • +44 20 7131 0263
  • JSPES – Juniper Service Provider Edge Security

    Duration
    3 days
    Delivery
    (Online and onsite)
    Price
    Price Upon Request

    This three-day course discusses edge security concepts for the service provider network. It discusses security for 5G networks on the main GPRS interfaces. Key topics include deploying an SRX Series device in different parts of the service provider network, implementing carrier-grade NAT, distributed denial of service (DDoS), malware inspection, command-and-control (C&C) prevention, IPsec tunnels, 5G security, control plane hardening, and BGP hardening. Additional topics include deploying MX-SPC3 card, configuring and verifying IPsec VPNs, and carrier-grade NAT, with unified services framework on MX Series platforms.

     

    Students will gain experience in configuring, testing, and troubleshooting Junos OS through demonstrations and hands-on labs. This course is based on Junos OS 21.1R1.11.

    • Define the general security architecture for 4G and 5G networks.
    • Configure data plane security protections.
    • Explain DoS and DDoS attacks.
    • Describe BGP flowspec in protecting against DDoS attacks.
    • Explain the Corero solution for DDoS attacks.
    • Describe the use of stateful firewalls.
    • Explain the use of ALGs in stateful security firewalls.
    • Explain how to secure BGP on Junos devices.
    • Describe how to use IPsec to secure traffic.
    • Explain the new Internet of Things (IoT) threat to networks.
    • Describe AutoVPN IPsec architectures.
    • Explain the use and configuration of carrier-grade NAT on SRX devices.

     

    Additional objectives for self-study:

    • Describe SPC3 for MX Series platforms.
    • Configure and verify IPsec VPN with unified services framework using MX-SPC3.
    • Configure and verify carrier-grade NAT with MX-SPC3.
    • Troubleshoot some common issues with MX-SPC3.

    DAY 1

    1. Course Introduction

     

    2. Security Challenges for Service Providers

    • Describe limitations of security devices
    • Describe BGP security threats
    • Describe DDoS attack threats
    • Explain IP address depletion challenges
    • Describe 5G security challenges

     

    3. Juniper Networks Solutions for Service Providers

    • Describe Juniper Networks’ security solutions for the service provider challenges

     

    4. Stateful Firewalls

    • Describe stateless firewall filters
    • Describe stateful firewall policies
    • Describe screens and ALGs
    • Explain asymmetrical routing

     

    Lab 1: Configure stateful firewalls

     

    5. 5G Architecture

    • Describe security insertion points
    • Describe 5G network evolution

     

    6. DDoS Protection

    • Explain DDoS history and common protections
    • Describe SRX DDoS protection
    • Describe BGP flowspec
    • Describe Corero with MX DDoS protection

    Lab 2: DDoS Protection

     

    DAY 2

    7. Carrier-Grade NAT

    • Explain IPv4 address exhaustion
    • Describe source NAT
    • Describe CGNAT
    • Describe NAT64

     

    Lab 3: CGNAT

     

    8. Juniper Connected Security for Service Providers

    • Describe SecIntel security
    • Describe a use case for IoT protection
    • Explain Encrypted Traffic Insights

     

    Lab 4: Implementing Juniper Connected Security

     

    9. IPsec Overview

    • Describe the IPsec and IKE protocols
    • Configure site-to-site IPsec VPNs
    • Describe and configure Proxy IDs and Traffic selectors
    • Monitor site-to-site IPsec VPNs
    • Describe IPsec use with gNodeB devices

     

    Lab 5: Implementing IPsec VPN

     

    10. Scaling IPsec

    • Describe and implement PKI certificates in Junos OS
    • Describe AutoVPN
    • Describe SecGW firewall use case for scaling IPsec

     

    Lab 6: Configuring AutoVPN

     

    DAY 3

    11. GPRS and GTP

    • Describe how to secure GTP tunnels
    • Describe the GPRS protocol
    • Describe the GTP
    • Explain how Roaming Firewall secures GTP

     

    12. SCTP

    • Describe the SCTP Protocol

     

    13. Securing the Control Plane

    • Explain how to secure the control plane on Junos devices
    • Describe how the loopback filter works to secure the control plane
    • Explain how to protect the control plane from DDoS attacks
    • Describe how to secure the IGP against attacks

     

    Lab 7: Configure Control Plane Protections

     

    14. Securing the BGP Protocol

    • Describe how to secure the BGP
    • Describe BGP security features
    • Describe BGP dampening

     

    Lab 8: Configure BGP protections

     

    SELF-STUDY MODULES

    15. SPC3 for MX Series Platforms

    • Identify the main components of SPC3
    • Describe the unified services framework

     

    16. IPsec VPN with SPC3 on MX Series Platforms

    • Describe USF for IPsec
    • Provide configuration and verification examples for the IPsec P2P mode
    • Provide configuration and verification examples for the IPsec Traffic Selector mode
    • Describe the software architecture of MX-SPC3
    • Describe PowerMode IPsec
    • Describe Fat Core
    • Describe the unified services framework

     

    17. CGNAT with SPC3 on MX Series Platforms

    • Describe carrier-grade NAT coverage on Juniper MX Series
    • Configure and verify NAT for Next-Gen Services

     

    18. Troubleshooting MX-SPC3

    • Describe some common problems and solutions related to MX-SPC3

    Individuals responsible for implementing, monitoring, and troubleshooting Juniper security components

    • TCP/IP networking and security knowledge
    • Introduction to Juniper Security course, or equivalent knowledge

    This three-day course discusses edge security concepts for the service provider network. It discusses security for 5G networks on the main GPRS interfaces. Key topics include deploying an SRX Series device in different parts of the service provider network, implementing carrier-grade NAT, distributed denial of service (DDoS), malware inspection, command-and-control (C&C) prevention, IPsec tunnels, 5G security, control plane hardening, and BGP hardening. Additional topics include deploying MX-SPC3 card, configuring and verifying IPsec VPNs, and carrier-grade NAT, with unified services framework on MX Series platforms.

     

    Students will gain experience in configuring, testing, and troubleshooting Junos OS through demonstrations and hands-on labs. This course is based on Junos OS 21.1R1.11.

    • Define the general security architecture for 4G and 5G networks.
    • Configure data plane security protections.
    • Explain DoS and DDoS attacks.
    • Describe BGP flowspec in protecting against DDoS attacks.
    • Explain the Corero solution for DDoS attacks.
    • Describe the use of stateful firewalls.
    • Explain the use of ALGs in stateful security firewalls.
    • Explain how to secure BGP on Junos devices.
    • Describe how to use IPsec to secure traffic.
    • Explain the new Internet of Things (IoT) threat to networks.
    • Describe AutoVPN IPsec architectures.
    • Explain the use and configuration of carrier-grade NAT on SRX devices.

     

    Additional objectives for self-study:

    • Describe SPC3 for MX Series platforms.
    • Configure and verify IPsec VPN with unified services framework using MX-SPC3.
    • Configure and verify carrier-grade NAT with MX-SPC3.
    • Troubleshoot some common issues with MX-SPC3.

    DAY 1

    1. Course Introduction

     

    2. Security Challenges for Service Providers

    • Describe limitations of security devices
    • Describe BGP security threats
    • Describe DDoS attack threats
    • Explain IP address depletion challenges
    • Describe 5G security challenges

     

    3. Juniper Networks Solutions for Service Providers

    • Describe Juniper Networks’ security solutions for the service provider challenges

     

    4. Stateful Firewalls

    • Describe stateless firewall filters
    • Describe stateful firewall policies
    • Describe screens and ALGs
    • Explain asymmetrical routing

     

    Lab 1: Configure stateful firewalls

     

    5. 5G Architecture

    • Describe security insertion points
    • Describe 5G network evolution

     

    6. DDoS Protection

    • Explain DDoS history and common protections
    • Describe SRX DDoS protection
    • Describe BGP flowspec
    • Describe Corero with MX DDoS protection

    Lab 2: DDoS Protection

     

    DAY 2

    7. Carrier-Grade NAT

    • Explain IPv4 address exhaustion
    • Describe source NAT
    • Describe CGNAT
    • Describe NAT64

     

    Lab 3: CGNAT

     

    8. Juniper Connected Security for Service Providers

    • Describe SecIntel security
    • Describe a use case for IoT protection
    • Explain Encrypted Traffic Insights

     

    Lab 4: Implementing Juniper Connected Security

     

    9. IPsec Overview

    • Describe the IPsec and IKE protocols
    • Configure site-to-site IPsec VPNs
    • Describe and configure Proxy IDs and Traffic selectors
    • Monitor site-to-site IPsec VPNs
    • Describe IPsec use with gNodeB devices

     

    Lab 5: Implementing IPsec VPN

     

    10. Scaling IPsec

    • Describe and implement PKI certificates in Junos OS
    • Describe AutoVPN
    • Describe SecGW firewall use case for scaling IPsec

     

    Lab 6: Configuring AutoVPN

     

    DAY 3

    11. GPRS and GTP

    • Describe how to secure GTP tunnels
    • Describe the GPRS protocol
    • Describe the GTP
    • Explain how Roaming Firewall secures GTP

     

    12. SCTP

    • Describe the SCTP Protocol

     

    13. Securing the Control Plane

    • Explain how to secure the control plane on Junos devices
    • Describe how the loopback filter works to secure the control plane
    • Explain how to protect the control plane from DDoS attacks
    • Describe how to secure the IGP against attacks

     

    Lab 7: Configure Control Plane Protections

     

    14. Securing the BGP Protocol

    • Describe how to secure the BGP
    • Describe BGP security features
    • Describe BGP dampening

     

    Lab 8: Configure BGP protections

     

    SELF-STUDY MODULES

    15. SPC3 for MX Series Platforms

    • Identify the main components of SPC3
    • Describe the unified services framework

     

    16. IPsec VPN with SPC3 on MX Series Platforms

    • Describe USF for IPsec
    • Provide configuration and verification examples for the IPsec P2P mode
    • Provide configuration and verification examples for the IPsec Traffic Selector mode
    • Describe the software architecture of MX-SPC3
    • Describe PowerMode IPsec
    • Describe Fat Core
    • Describe the unified services framework

     

    17. CGNAT with SPC3 on MX Series Platforms

    • Describe carrier-grade NAT coverage on Juniper MX Series
    • Configure and verify NAT for Next-Gen Services

     

    18. Troubleshooting MX-SPC3

    • Describe some common problems and solutions related to MX-SPC3

    Individuals responsible for implementing, monitoring, and troubleshooting Juniper security components

    • TCP/IP networking and security knowledge
    • Introduction to Juniper Security course, or equivalent knowledge
      Upcoming Dates
      Date on Request

    Follow Up Courses

    Filter
    • 2 days
      Date on Request
      Price on Request
      Book Now
    • 4 days
      Date on Request
      Price on Request
      Book Now
    • 5 days
      Date on Request
      Price on Request
      Book Now
    • 2 days
      Date on Request
      Price on Request
      Book Now
    • 4 days
      Date on Request
      Price on Request
      Book Now
    • 1 days
      Date on Request
      Price on Request
      Book Now
    • 2 days
      Date on Request
      Price on Request
      Book Now
    • 3 days
      Date on Request
      Price on Request
      Book Now
    • 3 days
      Date on Request
      Price on Request
      Book Now
    • 4 days
      Date on Request
      Price on Request
      Book Now

    Know someone who´d be interested in this course?
    Let them know...

    Use the hashtag #InsoftLearning to talk about this course and find students like you on social media.