FORTINET: FortiWeb WAF Administration

FORTINET: FortiWeb WAF Administration
  • Lectures: 33
  • Students: 4

Fortinet FortiWeb WAF Administration – Complete Hands-On Training (Self-Paced)

 Course Description:

This Fortinet FortiWeb WAF Administration course is a comprehensive, self-paced training designed to help IT and security professionals deploy, configure, manage, and troubleshoot FortiWeb Web Application Firewall solutions effectively.

The course covers both theoretical concepts and practical administration tasks, enabling learners to protect web applications against common and advanced threats such as SQL injection, XSS, bots, and OWASP Top 10 vulnerabilities. You will gain hands-on knowledge of FortiWeb architecture, deployment modes, security policies, signatures, traffic inspection, logging, and monitoring.

By the end of this course, you will be able to confidently administer FortiWeb in real-world enterprise environments, implement strong web application security controls, and optimize WAF policies for performance and protection.

This is a pre-recorded, self-paced course, allowing you to learn anytime and progress at your own speed.

Who This Course Is For:

This course is ideal for:

  • Network  & Security Engineers
  • SOC Analysts and Security Analysts
  • Firewall & WAF Administrators
  • Network Administrators working with Fortinet products
  • Cybersecurity professionals managing web application security
  • IT professionals preparing for Fortinet WAF–related roles
  • Students and professionals looking to specialize in Web Application Firewall (WAF) technologies

 Prerequisites:

To get the most out of this course, learners should have:

  • Basic understanding of networking concepts (TCP/IP, HTTP/HTTPS)
  • Fundamental knowledge of web applications and web security
  • Familiarity with firewalls and security devices (FortiGate knowledge is a plus)
  • Basic understanding of cybersecurity concepts

No prior hands-on experience with FortiWeb is required

 

Course Topics:

 Module 1-NGFW Vs Web Application Firewall

Module 2-FortiWeb Overview

Module 3-FortiWeb Deployment

Module 4-Performing initial configuration

Module 5-Setting up Lab (eve-ng)

Module 6-Configuring Traffic Flow to the Web Servers through FortiWeb

Module 7- Understating VS , Pool and Health Monitors

Module 8 – Load balancing methods and Persistence

Module 9-HTTP Content Routing

Module 10-Fortiweb Operation Modes

Module 11-Server Policy and Web Protection Profile

Module 12-SQL Code Injection Attack

Module 13-URL Encryption Policy

Module 14-Link Cloaking

Module 15 – Hidden Field Manipulation

Module 16- XSS and CSRF Protection

Module 17-Man in the Browser Protection

Module 18-Syntax Based Detection

Module19-Limiting File Uploads and Web Shell Detection

Module20-HTTP Allow Method Policy

Module21-URL Access Policy

Module22-IP Protection (IP List, GeoIP and IP Reputation)

Module23-User Tracking Policy

Module24-DOS Protection

Module25-Bot Mitigation

Module26-Web Acceleration and Web Caching

Module27-Web Vulnerability Scan

Module28-SSL Offloading

Module29-Packet capture

Module30-Backup and Restore

Module31-Logs and Reports

Module32-Sequence of Scans

 

 

  • Module 1 - NGFW Vs Web Application Firewall 0/1

  • Module 2 - FortiWeb Overview 0/1

  • Module 3 - FortiWeb Deployment 0/1

  • Module 4 - Performing initial configuration 0/1

  • Module 5 - Setting up Lab (eve-ng) 0/1

  • Module 6 - Configuring Traffic Flow to the Web Servers through FortiWeb 0/1

  • Module 7 - Understating VS , Pool and Health Monitors 0/1

  • Module 8 - Load balancing methods and Persistence 0/1

  • Module 9 - HTTP Content Routing 0/2

  • Module 10 - Fortiweb Operation Modes 0/1

  • Module 11 - Server Policy and Web Protection Profile 0/1

  • Module 12 - SQL Code Injection Attack 0/1

  • Module 13 - URL Encryption Policy 0/1

  • Module 15 - Hidden Field Manipulation 0/1

  • Module 16 - XSS and CSRF Protection 0/1

  • Module 17 - Man in the Browser Protection 0/1

  • Module 18 - Syntax Based Detection 0/1

  • Module 19 - Limiting File Uploads and Web Shell Detection 0/1

  • Module 20 - HTTP Allow Method Policy 0/1

  • Module 21 - URL Access Policy 0/1

  • Module 22 - IP Protection (IP List, GeoIP and IP Reputation) 0/1

  • Module 23 - User Tracking Policy 0/1

  • Module 24 - DOS Protection 0/1

  • Module 25 - Bot Mitigation 0/1

  • Module 26 - Web Acceleration and Web Caching 0/1

  • Module 27 - Web Vulnerability Scan 0/1

  • Module 28 - SSL Offloading 0/1

  • Module 29 - Packet capture 0/1

  • Module 30 - Backup and Restore 0/1

  • Module 31 - Logs and Reports 0/1

  • Module 32 - Sequence of Scans 0/1

Admin bar avatar
Manoj Verma - CCIE # 43923 is a highly experienced senior technical instructor and Network/ security consultant. He has been in the networking industry for more than 19 years, with a focus on networking and security for the past 15 years. He has assisted thousands of engineers in obtaining their various certifications starting from CCNA to CCIE, CCSA, CCSE, PCNSE, F5, etc. and learning the latest and cutting-edge technologies.  He started his career as a system administrator and then switched to the networking and security domain. During the job, he realized that he is gifted with a passion for teaching and sharing his knowledge, as he used to teach his colleagues and friends. In his classroom training, he always starts with explaining the theory on a certain topic and then gives away a short note of key points and finally end with lab implementation. Now a day, driving down to the training institute to attend classroom training sessions is not feasible for everyone owing to the workflow, odd working hours and rotational shifts, especially for working professionals and those who are living in different cities and countries. He started getting multiple requests from lots of students to launch an online training module in the same way as he teaches in his classrooms. Keeping all this in mind, he designed this self-paced training module which replicates classroom training. He has brought his years of classroom teaching experience, and years of real-world enterprise and service provider experience in designing training modules. For a better understanding of technologies and in-depth knowledge, reading books or short notes is necessary and to witness the theoretical information in live, practical knowledge is required so he has included both which is very unique in the IT training sector.

There is no review for this course

Price

$140.00

Rating

Not enough ratings to display

Leave a Reply

Select your currency
USD United States (US) dollar
X