Palo Alto Networks NGFW-Engineer 시험 개요:
| 인증 벤더: | Palo Alto Networks |
| 시험명: | Palo Alto Networks 공인 차세대 방화벽 엔지니어 |
| 시험 번호: | NGFW-Engineer |
| 지원 언어: | 영어 |
| 실제 시험 문항 수: | 60-85 |
| 응시료: | $250 USD |
| 관련 자격증: | Palo Alto Networks 공인 네트워크 보안 전문가 Palo Alto Networks 공인 네트워크 보안 분석가 |
| 합격 점수: | 860/1000 |
| 시험 시간: | 90 minutes |
| 시험 형식: | 객관식, 시나리오 기반 |
| 자격증 유효 기간: | 2년 |
| 샘플 문제: | Palo Alto Networks NGFW-Engineer 샘플 문제 |
| 응시 방법: | 온라인 감독 시험 또는 Pearson VUE를 통한 대면 시험 |
| 전제 조건: | Palo Alto Networks NGFW에 대한 실무 경험이 필수적입니다. 권장 교육: EDU-210 (Firewall Essentials: Configuration and Management) 및 Panorama: NGFW Management. |
| 공식 요강 URL: | https://www.paloaltonetworks.com/services/education/network-security |
Palo Alto Networks NGFW-Engineer 시험요강:
| 주제 | 소개 |
|---|
| 주제 1 | - PAN-OS Networking Configuration: This section of the exam measures the skills of Network Engineers in configuring networking components within PAN-OS. It covers interface setup across Layer 2, Layer 3, virtual wire, tunnel interfaces, and aggregate Ethernet configurations. Additionally, it includes zone creation, high availability configurations (active
- active and active
- passive), routing protocols, and GlobalProtect setup for portals, gateways, authentication, and tunneling. The section also addresses IPSec, quantum-resistant cryptography, and GRE tunnels.
|
| 주제 2 | - Integration and Automation: This section measures the skills of Automation Engineers in deploying and managing Palo Alto Networks NGFWs across various environments. It includes the installation of PA-Series, VM-Series, CN-Series, and Cloud NGFWs. The use of APIs for automation, integration with third-party services like Kubernetes and Terraform, centralized management with Panorama templates and device groups, as well as building custom dashboards and reports in Application Command Center (ACC) are key topics.
|
| 주제 3 | - PAN-OS Device Setting Configuration: This section evaluates the expertise of System Administrators in configuring device settings on PAN-OS. It includes implementing authentication roles and profiles, and configuring virtual systems with interfaces, zones, routers, and inter-VSYS security. Logging mechanisms such as Strata Logging Service and log forwarding are covered alongside software updates and certificate management for PKI integration and decryption. The section also focuses on configuring Cloud Identity Engine User-ID features and web proxy settings.
|
참조: https://www.paloaltonetworks.com/services/education/palo-alto-networks-ngfw-engineer