Expert · Lessons: 4
Network defense for a single computer
Firewalls, egress filtering, logging and detection applied to the one machine you must protect, and how to read what it tells you.
Knowledge Units: NDF, BNW, NSA Read the Knowledge Units
FireAI University is independent: it is not affiliated with, endorsed by or designated by the NSA or the NCAE-C program. We use their published Knowledge Units as a curriculum guide.
- 1 Defence in depth for one computer
Why network defense is built from layers rather than one strong wall, and what “default-deny” costs you in practice.
8 min - 2 Firewalls: stateful filtering and macOS’s options
How a stateful firewall decides what to let through, the difference between inbound and egress filtering, and the tools macOS gives you for each.
9 min - 3 Logging and detection
What is worth logging on one Mac, and the concrete signs — beaconing, DNS anomalies, unsigned binaries — that something needs a closer look.
10 min - 4 Responding: isolating a machine
What to do in the first minutes after you suspect a Mac is compromised: cutting its network access, preserving what happened, and who to call.
8 min
Free, no account, nothing tracked. Your progress stays in this browser.