Skip to main content
AD Academy

Topic map

No fixed order — jump straight to the topic you need. Marks are saved in your browser.

Read: 0 / 890%

Move your progress to another device

Progress lives in this browser only. Copy the code and paste it on your other device.

Your transfer code

Paste a code from another device

Table of contents

Filter by group

CCNA — Cisco Networking Fundamentals

OSI/TCP-IP model, Switching and VLAN, Routing, IPv4/IPv6 addresses, Network services and security — The basis for the CCNA 200-301 exam.

1

OSI and TCP/IP Model

The seven layers, what happens in each layer, and how it helps troubleshoot problems.

2

Switching, VLAN and Trunk

MAC Table, VLANs, 802.1Q, Access vs. Trunk and STP.

3

IPv4 Addresses and Subnetting

Classes, CIDR, Subnet Calculation and VLSM — The most tested topic in CCNA.

4

Routing: Static, OSPF and Default Route

How a router chooses a route, routing table, static and dynamic routing.

5

Network Services: DHCP, DNS, NAT, and NTP

The services that run every enterprise network — and also every Active Directory environment.

6

Network Security in CCNA: Port Security, ACL, and 802.1X

Basic protections on the switch and router, and why they are also important for Active Directory.

7

IPv6: Global Unicast and Link-Local

Address structure, address types, SLAAC, and why IPv6 is important even in the AD world.

8

STP and RSTP: Root Bridge Election and Port Roles

How switches prevent loops, who is elected Root, and how to read show spanning-tree.

9

EtherChannel: LACP and PAgP

Uniting several cables into one logical link — more bandwidth and redundancy without loops.

10

OSPFv2: Router ID, Hello and DR/BDR

Dynamic routing that updates itself: how neighbor adjacency is built, who is elected DR, and how to diagnose issues.

11

ACL: Standard vs. Extended and Rule Order

Where to place an access list, why order is critical, and what the implicit deny any is.

12

Port Security, SSH and Device Hardening

Closing the entrance door: MAC restriction, encrypted management, and disabling unnecessary services.

Module progress0%

Active Directory Basics

What is AD, what are Domains, Forests and Trees. Main objects and general structure.

Incident Response

What to do once the Domain has already been breached: detection, containment and recovery.

Network security: Fortinet

Infrastructure security foundations, firewall evolution, FSSO, AAA, 802.1X, detection and practical lab appendices.

1

Infrastructure security devices

Defense in depth, L2/L3/L7 and the CIA triad.

2

Firewall evolution — from stateless to NGFW

State tables, proxy firewalls, IDS/IPS and FortiGate.

3

What are FortiGate and FortiOS?

Intro to Fortinet's NGFW, the FortiOS operating system and the Security Fabric concept.

4

Firewall policies and objects

How a policy is built, the order it is evaluated in, and why objects save dozens of rules.

5

NAT on FortiGate: SNAT and VIP

Outbound address translation, IP pools and publishing an internal server with a Virtual IP.

6

VPN: IPsec site-to-site and SSL VPN

Connecting two offices and remote employee access, including the IPsec negotiation phases.

7

Security profiles and SSL inspection

AntiVirus, IPS, web filter, application control and Certificate vs Deep Inspection.

8

Logs and troubleshooting

A clear workflow: from the GUI log to CLI sniffer and debug flow.

9

FSSO — how the firewall knows who is who in AD

Mapping user-to-IP from DC logon events and firewall policies driven by AD groups.

10

FortiAuthenticator — RADIUS, TACACS+ and MFA with AD

An AAA server synced with AD: RADIUS for users, TACACS+ for admins, plus a second factor.

11

802.1X and NAC — only authenticated devices get in

Port-level authentication, EAP-TLS vs PEAP, dynamic VLAN assignment and the Evil Twin trap.

12

A network view of the course attacks — what Fortinet adds

What the network layer sees versus DC logs, and how segmentation limits lateral movement.

For the curious

Optional — feel free to skip. The core topics are above.

13

The ICAO/NATO spelling alphabet

Accurate voice communication of technical identifiers.

14

Envario lab rules

Session planning, RDP, protecting the environment and support.

Module progress0%