Firewalls
Cisco ASA:
Expertise in understanding the packet flow on ASA
Competent in the basic configuration of ASA and ASAv
Skilled in NAT (Network Address Translation) and Access Lists
Knowledge of security level concepts, Security Context, HA (Active Standby, Active Active Failover), and clustering
Experience in configuring IOS-based firewalls.
Palo Alto:
Proficient in understanding the packet flow
Skilled in NAT configuration and High Availability (HA)
Experienced in creating Access Policies, Application Filtering, Layer 7 Filtering, Content Filtering, and Clustering
Competent in configuring Contexting
Cisco FTD:
Proficient in NAT configuration and Access Lists
Knowledge of security level concepts, Security Context, HA (Active, Active-Active, Failover), and clustering
Expertise in configuring IOS zone-based firewalls.
Sophos:
Competent in Xstream TLS Inspection and Deep Packet Inspection
Skilled in Security Heartbeat, Advanced Web Protection, Advanced Threat Protection, Xstream SDWAN, Synchronized Security, Cloud Sandbox, NAT, VPN, Routing, and HA
Technical Skills
Hello! On this page, I want to share with you some of my technical skills in the world of networking and IT. I've got a mix of abilities, and I'd like to give you a glimpse of what I know:
IP Services:
Proficient in OSI Model
Strong understanding of TCP/IP Protocol, including IP, ARP, ICMP, TCP, UDP
Knowledge of DHCP and DNS
Skilled in NAT (Network Address Translation) and Access Control Lists (ACL)
Networking Skills
Routing Protocols:
Competent in Static Routing, including Default and Floating routes
Familiar with Dynamic Routing Protocols such as RIP, EIGRP, and OSPF
Switching Technologies:
Experienced with VLANs
Proficient in Dynamic Trunking Protocol (DTP) and VLAN Trunking Protocol (VTP)
Knowledgeable about Spanning Tree Protocol (STP), including CST, PVST, and RSTP
Expertise in EtherChannel, both PAgP and LACP
Skilled in HSRP (Hot Standby Router Protocol)
Proficient in CDP (Cisco Discovery Protocol) and LLDP (Link Layer Discovery Protocol)
VPN
Solid understanding of VPN technologies, including the basics of cryptography
Knowledge of NATT (Network Address Translation Traversal)
Proficient in configuring IPsec Profiles and Side-to-side VPNs
Experience with SSL VPNs, both for site-to-site and remote access
Familiarity with GRE (Generic Routing Encapsulation) and SD-WAN Orchestration
Tools
Proficient in using network analysis tools such as Wireshark, Network Scanner, and TCPDUMP
Experience in managing network connections and sessions with Conntrack
Knowledge of network vulnerability scanning tools and network monitoring tools

