Divested Business Firewall Separation
Separate companies sharing a building must not share network access
Scenario
Following a corporate divestiture, what used to be one company operating from one office building is now legally two separate, independent companies — for a transition period, both still occupy the same building and, for cost reasons, continue sharing the same physical network cabling and core switching infrastructure. Legal and compliance have been explicit: from a data-separation standpoint, the two companies' networks must now be treated as if they belong to entirely unrelated third parties, with zero reachability between them in either direction, despite the shared physical infrastructure.
Learning objectives
- acl
- nftables
- least privilege
Topology and configuration
This environment contains 4 devices (3 Hosts, 1 Router). You configure and troubleshoot the networking skills listed above.
Curriculum topics
Environment
Subnetica labs run FRRouting and Linux networking with Cisco-like syntax, not Cisco IOS. Commands and behavior may differ from Cisco devices.
Addressing is regenerated on every attempt and the environment is graded automatically.
Ready to practice?
Sign in or create an account before launching this lab. Viewing this preview never starts or reserves infrastructure.
