Skip to content
← All courses

Expert · Lessons: 4

Network defense for a single computer

Firewalls, egress filtering, logging and detection applied to the one machine you must protect, and how to read what it tells you.

Knowledge Units: NDF, BNW, NSA Read the Knowledge Units

FireAI University is independent: it is not affiliated with, endorsed by or designated by the NSA or the NCAE-C program. We use their published Knowledge Units as a curriculum guide.

Start the course

  1. 1 Defence in depth for one computer

    Why network defense is built from layers rather than one strong wall, and what “default-deny” costs you in practice.

    8 min
  2. 2 Firewalls: stateful filtering and macOS’s options

    How a stateful firewall decides what to let through, the difference between inbound and egress filtering, and the tools macOS gives you for each.

    9 min
  3. 3 Logging and detection

    What is worth logging on one Mac, and the concrete signs — beaconing, DNS anomalies, unsigned binaries — that something needs a closer look.

    10 min
  4. 4 Responding: isolating a machine

    What to do in the first minutes after you suspect a Mac is compromised: cutting its network access, preserving what happened, and who to call.

    8 min

Free, no account, nothing tracked. Your progress stays in this browser.