
educationMay 9, 202625:20pending
Course 32 - Checkpoint CCSA R80 | Episode 9: Advanced Threat Prevention and Secure Site-to-Site Connectivity
About this episode
In this lesson, you’ll learn about: layered security, anti-spoofing, and VPNs in Check Point R801. Layered Security with Policy Packages
You can listen and download our episodes for free on more than 10 different platforms:
https://linktr.ee/cybercode_academy
- In Check Point R80, security is built in layers, not just a single rulebase
- Controls:
- Who can access what
- Uses:
- URL Filtering
- Application Control
- Protects against:
- Malware
- Exploits
- Zero-day attacks
- IPS (Intrusion Prevention System)
- Anti-Virus
- Threat Emulation (sandboxing)
- Even encrypted traffic is inspected using:
- HTTPS Inspection
- Attacks often hide inside:
- HTTPS
- Attackers fake source IP addresses
- Anti-spoofing in Check Point R80
- Firewall checks:
- Incoming interface
- Routing table
- If mismatch → traffic is dropped
- IP spoofing attacks
- Unauthorized access attempts
- Secure communication over:
- Public internet
- IPsec
- Every gateway connects to every other
- Central hub connects branches
- VPN Communities
- Networks included in VPN encryption
- Internal LAN behind each gateway
- Used to automatically build VPN tunnels
- Establishes secure channel
- Encrypts actual traffic
- H → Hashing
- A → Authentication
- G → Group (Diffie-Hellman)
- L → Lifetime
- E → Encryption
- Generates new encryption keys for sessions
- Even if one key is compromised:
- Past sessions remain secure
- Security is layered: Access Control + Threat Prevention
- HTTPS inspection reveals hidden threats
- Anti-spoofing protects against fake IP attacks
- VPNs secure communication over public networks
- IKE automates secure tunnel creation
- PFS ensures long-term encryption safety
- User access and application behavior
- Advanced threat detection and prevention
- Network integrity against spoofing
- Secure communication between sites
- Strong encryption with automated key exchange
You can listen and download our episodes for free on more than 10 different platforms:
https://linktr.ee/cybercode_academy
Get every episode summarized
Each time CyberCode Academy publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from CyberCode Academy

Course 42 - Mobile Malware Analysis Fundamentals | Episode 14: Architecture and...
CyberCode Academy
Sep 10, 202624:31completed

Course 42 - Mobile Malware Analysis Fundamentals | Episode 13: Designing and Arc...
CyberCode Academy
Sep 9, 202617:34failed

Course 42 - Mobile Malware Analysis Fundamentals | Episode 12: Dynamic Analysis...
CyberCode Academy
Sep 8, 202628:08completed

Course 42 - Mobile Malware Analysis Fundamentals | Episode 11: Dynamic Analysis...
CyberCode Academy
Sep 7, 202624:15completed