Linux14: Emergency Firewall Edit

Containment often means editing a configuration file directly, under time pressure, without breaking anything else in it

Objective

Learner can open a text file in a terminal editor, change specific fields safely, save, and verify the result

Mission

A malicious IP has been confirmed active against app-srv-03. Edit ~/cases/case-1042/firewall-rules.conf: change the status field for RULE-114 from disabled to active, and update its target_ip field to 203.0.113.77. No other rule should be touched

Commands you may need to solve this lab

nanovimcat

Questions

Machine Offline

Isolated container is offline

Click "Start Machine" to boot your sandbox instance and choose your preferred interface