Hands on
Labs
Labeled simulations. Keyboard and touch. Not live packet captures or production firewalls.
DHCP DORA and rogue settings
Put Discover, Offer, Request, Acknowledge in order, then spot rogue DHCP versus starvation.
Simulated packet filtering
Apply display-filter style rules to a tiny authorized capture and read the conversation.
First-match firewall rules
Reorder rules with stated default-deny. A shadowed deny does not protect you.
Hot/warm/cold and RTO/RPO
Assign metrics and site classes from short business stories.
Attack-to-defense matching
Pair each mechanism with a fitting control. TTP is excluded.
VPN types and protocol numbers
Match client-to-site, site-to-site, split/full, and IKE/ESP/AH identifiers.
Guest, DMZ and internal flows
Allow only the necessary path. Public service in the middle; private data behind another boundary.