Overview

The Palo Alto Networks Firewall Training at Zoom Technologies is a complete, hands-on program that takes you from network security fundamentals to confident administration of Palo Alto Next-Generation Firewalls — the industry's leading enterprise security platform. Starting with firewall essentials and Palo Alto's Single-Pass Parallel Processing (SP3) architecture, you'll configure every major capability live in a virtual lab you build yourself on VMware Workstation: zones and interfaces, routing, NAT, security policies, App-ID™, Content-ID™ threat prevention (Antivirus, Anti-Spyware, URL Filtering, WildFire™), User-ID™, SSL decryption, IPSec Site-to-Site VPN, and log monitoring. By the end, you'll be able to deploy, configure, secure, and troubleshoot a Palo Alto NGFW in a real enterprise environment — with a curriculum closely mapped to the PCNSA certification exam objectives.

Curriculum

Palo Alto Networks Firewall Training

2 Week

Module 1: Network Security Fundamentals

  • Network security technologies 
  • Firewall vs. Next-Generation Firewall  

Module 2: Firewalls

  • What is a firewall
  • Types of firewalls
  • Designing network security with firewalls

Module 3: Next-Generation Firewalls (NGFW)

  • What is a next-generation firewall
  • Difference between a traditional firewall and an NGFW

Module 4: Introduction to Palo Alto Networks

  • What is Palo Alto 
  • Palo Alto packet flow 
  • Single-Pass Parallel Processing (SP3) architecture
  • Control Plane and Data Plane 

Module 5: Deploying Palo Alto in a Lab (Hands-On)

  • Importing the Palo Alto VM into VMware Workstation
  • Setting up the lab environment and configuring VMware virtual network adapters
  • Mapping virtual network adapters to Palo Alto network interfaces 

Module 6: Initial Configuration

  • Configuring the management interface and first-time login to the GUI dashboard
  • Hostname, timezone, NTP, DHCP, DNS, and DNS Cache Proxy configuration
  • Service route configuration

Module 7: Zones & Interfaces

  • Inside and Outside security zones
  • Interface deployment modes: Layer 2, Layer 3, TAP, and Virtual Wire

Module 8: Routing

  • Virtual router

         ◦ Default routing for Internet-bound traffic 

         ◦ Static routes for internal and branch networks 

Module 9: Network Address Translation (NAT)

  • Dynamic NAT
  • Dynamic IP & Port NAT (Source NAT / PAT) 
  • Static NAT
  • Destination NAT (port redirection)

Module 10: Security Policies

  • Building the security rulebase
  • Policy ordering, shadowing, and best practices for a clean rulebase

Module 11: Content-ID™ — Threat Prevention

  • Antivirus profiles
  • Anti-Spyware profiles
  • Vulnerability Protection
  • URL Filtering
  • File Blocking and WildFire™
  • Data Filtering
  • Zone Protection
  • DoS Protection

Module 12: SSL Inspection (Decryption)

  • Generating and deploying trusted certificates
  • Configuring decryption policies to inspect HTTPS/SSL traffic

Module 13: App-ID™ — Application Identification

  • The App-ID process
  • Building application-based security policies

Module 14: User-ID™ — Identity-Based Control

  • Local user authentication
  • User-ID Agent deployment
  • LDAP / Active Directory integration
  • Captive Portal for unidentified users 

Module 15: VPN

  • IPSec Site-to-Site VPN

Module 16: Log Monitoring

  • Traffic, Threat, URL, and System logs — reading, filtering, and investigating
  • Using logs for day-to-day operations, troubleshooting, and incident response 

Course Schedule

Course Schedule

Palo Alto Networks Firewall Training

17 Aug 2026

08:00 PM to 10:00 PM

(IST - GMT +05:30)

2 Weeks

2 Hrs/Day

Sunday off

Online

For Online Training Students

  • Instructions will be Provided to do Lab Practicals with your PC at Home
  • You will receive a link to your email in an hour after the class from Webex to Download the Recorded Videos..
  • All our study materials are available for free access on our online portal for registered students


Imp. Note

  • Fees once paid will not be refunded or adjusted against other courses / batches / students under any circumstances whatsoever.
  • Organization reserves the right to expel any student during the training period.
  • In case, a student fails to attend the given batch the amount given will be forfeited against his / her name.


FAQ'S

What is US-Council Certification and how does it differ from other cybersecurity certification?

US-Council Certification is a set of comprehensive programs aiming to create cybersecurity experts capable of defending against cyber threats. Unlike other cybersecurity certification, which focuses on ethical hacking, US-Council provides a broader approach towards cybersecurity education and awareness, including proactive defense strategies and security testing services.

Why should I choose US-Council for my cybersecurity certifications?

Choosing US-Council for your cybersecurity certification ensures that you receive thorough education and awareness about the latest security measures and cyber threats. With certifications from US-Council, you gain access to free white papers, the opportunity to become an authorized partner, and insights from informative live webinars, all tailored to help you secure or perish in the face of cybercrime.
CCNA Cisco Security Course slider with text Preview this course
Duration : 2 Weeks
Mode Of Training : Online
Placement Assistance : Yes
Certificate : Yes

Introductory Limited Period Offer

INR 15,000

Price: 9,900

All prices are subject to an 18% Goods and Service Tax (GST) Charge. Rate quoted in U.S. dollars subject to change according to Foreign Exchange rates.

Once you make the payment, kindly contact our course counsellor at priya@zoomgroup.com to schedule the course as per your convenience from the available slots.