Back to course
Intermediate90 to 180 minutesInstructor visible
Network Security Intermediate lab 2
A learner provisions an isolated network security environment and completes a guided operational task.
Business context
Ultiblob uses this exercise to train network security engineer candidates on realistic private-cloud lab operations rather than static videos.
Technical objective
Configure the core network security services, verify health, and record the result in the lab progress view.
Student instructions
- 1Open the lab workspace and review the topology map.
- 2Launch the required templates and wait for all provisioning checks to complete.
- 3Complete the configuration task in the course module.
- 4Run validation and capture the result for instructor review.
- 5Create a snapshot before any risky troubleshooting or failure exercise.
Troubleshooting
- If access fails, confirm the bastion session is active and the instance is not expired.
- If validation fails, inspect the lab event log before rerunning the check.
- If configuration drifts, restore the latest clean snapshot and repeat the module task.
Cleanup
- Export notes or reports required by the instructor.
- Restore or delete temporary snapshots created during the exercise.
- Use the teardown action when the module is complete or allow the TTL policy to expire the lab.
Launch flow
Provisioning readiness
Waiting for launch
Click Launch lab to start the provisioning flow and watch each stage complete.
0%
- Request accepted
- Capacity reserved
- Templates queued
- Validation running
- Workspace ready
firewall-rules-active
Pendingsiem-receiving-logs
Pendingrouting-path-works
PendingRequired templates
- pfSense or equivalent firewall/router - defined
- Kali/security workstation - defined
- SIEM/logging node - defined
- Ubuntu Server 24.04 - available
Validation checks
- Firewall rules active: Allowed path works and denied east-west path is blocked.
- SIEM receiving logs: A generated test event appears in the tenant security index.
- Routing path works: Traffic follows the intended lab path and reaches the expected service.
Expected result
The lab reaches Healthy state for Firewall rules active, SIEM receiving logs, Routing path works.
Reset policy: Student can reset to the last clean snapshot; instructor can force reset from admin view. Teardown policy: Automatic teardown at TTL expiry with manual instructor override for cohorts.