Course Overview
The two-day CSTRM course discusses the configuration of Juniper Networks Security Threat Response Manager (STRM) in a typical network environment. Key topics include deploying an STRM device in the network, configuring flows, running reports, and troubleshooting.
Through demonstrations and hands-on labs, students will gain experience in configuring, testing, and troubleshooting the STRM device. By the end of this course, students will be able to install, configure and perform network surveillance and define vulnerabilities using Security Threat Manager.
Course Topics
- Juniper Networks STRM
- STRM Key Benefits
- Offense Management
- Initial Configuration
- Network Capacity Planning
- Initial STRM Configuration
- Managing Users
- STRM Platform Configuration
- Configuring System Thresholds
- Backup and Restore
- Event Traffic Analysis
- Event Pipeline
- Flow Pipeline
- The STRM Dashboard
- Introducing Rules
- Search Tests and Filters
- Network Surveillance
- Local Networks View
- Threats View
- Applications View
- Geographic View
- Best Practices
- Offenses and Anomalies
- STRM Reporting
- Basic Tuning and Troubleshooting
Target Audience
Network engineers, technical support personnel, reseller support engineers, and others responsible for implementing
and or maintaining the Juniper Networks products covered in this course.
Course Outline
Day 1
Chapter 1: Course Introduction
Chapter 2: Product Overview
- STRM Overview
- Hardware
- Collection
- Operational Flow
Chapter 3: Initial Configuration
- A New Installation
- Administration Console
- Platform Configuration
- Deployment Editor
Chapter 4: Architecture
- Event Flow
- Network Flow
- The STRM Device Architecture
Chapter 5: Dashboard, Event Viewer, and Flow Viewer
- The Dashboard
- Event Viewer
- Rules
- Flow Viewer
Day 2
Chapter 6: Network Surveillance
- Network Surveillance
- Views Configuration
- Sentries
Chapter 7: Assets and Vulnerability Assessment
- Assets Interface
- Vulnerability Assessment
- Vulnerability Scanners
Chapter 8: Offense Manager
- Offense Manager
- Network Anomaly
Chapter 9: STRM Device Reports
- Reporting Functionality
- Reporting Interface
Chapter 10: Basic Tuning and Troubleshooting
- Basic Tuning
- Troubleshooting
This course is available as open-enrollment Classroom event, instructor-led Live Virtual Class, REAL-ILTâ„¢ or as part
of a custom Onsite Training for up to 16 students.
Prerequisites
This course assumes that students have basic networking knowledge and experience in the following areas:
- Understanding of TCP/IP operation
- Understanding of network security concepts
- Experience in network security administration