0:00–0:40
Structured Review
0:40–1:40
VM Health Check
1:40–2:00
Exam Walkthrough
0:00 – 0:40Structured Review · 40 min

Cumulative Q&A and command reference — the most important command from each week

Quick-fire command reference (20 min)

Open Q&A (20 min)

0:40 – 1:40VM Health Check · 60 min

Verify every service from every week is running correctly before the final exam

Students work through this checklist independently. The instructor circulates to assist with anything that isn't working. A service that isn't running on exam day cannot be fixed during the exam — fix it now.

Week 1 — SSH and NAT

Week 2 — NTP and Logging

Week 3 — DHCP and DNS

Week 4 — Nginx

Week 5 — VPN

Week 6 — Docker

Instructor note: Any service that isn't working today needs to be fixed today. The exam uses these VMs — a broken service going into Week 7 is a problem the student will face during the exam, not the instructor. Use the remaining time productively: fix whatever is broken.
1:40 – 2:00Exam Walkthrough · 20 min

Final exam format and expectations

Exam topic coverage at a glance

WeekKey topics for examMost likely practical scenario
1SSH key auth, sshd_config, fail2ban, NATRestore broken SSH config, verify fail2ban
2tcpdump/mz, IPTables/NFTables/UFW rule syntax, NTP stratum/ntpq, rsyslog facilities/severity, logrotateImplement a firewall spec, or diagnose broken rsyslog
3DORA process, dhcpd.conf, DNS record types, zone file syntax, secondary DNSBuild a zone from spec, verify with dig
4DNS views, Nginx server blocks, SSL, nginx -t, access.log/error.logDiagnose broken Nginx using logs
5IKE phases, ipsec.conf/secrets, PKI, WireGuard [Interface]/[Peer]Configure WireGuard from spec
6Container vs VM, docker run flags, docker-compose YAML, proxy_passDocker container with compose, verify running
← Day 4 Week 6 Overview Week 7 →