// course
Firewall Policy Workshop
Rule hygiene, object naming, and change windows modeled on real ticket flows.
7,800,000 VND (informational)
Overview
Translate vague requests into explicit five-tuple policies, then walk rollbacks. Uses a virtual appliance farm — no live customer traffic.
Included focus areas
- Virtual appliance pairs with snapshot restore
- Ticket parsing drills from anonymized samples
- Object naming rubric enforced in reviews
- Logging enablement without noise storms
- NAT hairpin edge cases in a contained lab
- Peer review on two change plans
- Mentor office hours on Sundays
Outcomes
- Author a two-stage change with rollback cues
- Demonstrate log correlation for a blocked flow
- Critique a noisy rule set and propose trims
Lead mentor
Duy Anh Le
Security operations background; emphasizes least privilege wording.
FAQ
Concepts transfer; lab UI resembles common enterprise UIs without endorsing a vendor.
Experience notes
The rollback paragraph in my change plan was the first time a lead said “ship it” without edits.
NAT hairpin lab felt mean — in a helpful way.