Acceptance evidence
UniFi Route Troubleshooting: Routing Tables, Forwarding State, and Packet Paths
Trace a UniFi client flow through routing policy, forwarding state, observed egress and replies. Compare failure and recovery behavior without treating a routing-table entry as packet-path proof.
Patching Is Not Eradication: When An Edge Appliance Must Be Rebuilt
Decide whether supported remediation can restore trust in a compromised edge appliance. Coordinate containment, evidence preservation, configuration review and credential changes before rebuilding or reconnecting it.
Wi-Fi 7 MLO Reality Check: Client Type, WPA3, And IoT Breakage
Evaluate Wi-Fi 7 MLO by client radio mode, security settings and actual application behavior. Plan separate throughput, roaming and reconnect checks while preserving compatible, restricted access for legacy IoT devices.
When The Firewall Is Compromised, What Else Must Be Rotated?
Map firewall sessions, tokens, VPN secrets, certificates and connected identity services after compromise. Rotate affected trust in dependency order while separating confirmed exposure from systems that were merely reachable.
Brownout, Not Blackout: Multi-WAN Failover Tests That Matter
Test multi-WAN behavior when a link stays up but latency, loss, DNS or application reachability degrades. Measure detection, new connections, existing sessions and failback as separate outcomes.
Secure A LAN Model Server: Ollama And LM Studio Across VLANs
Define allowed clients, authentication and resource limits before exposing Ollama or LM Studio across VLANs. Evaluate each product's controls separately and check that direct backend access cannot bypass the intended path.
Your Network Configuration Is A Security Log
Use preserved configuration exports and normalized comparisons to detect changes in network access, routing and logging. Correlate differences with identity and runtime evidence; a clean diff does not prove a clean device.
Stop Binding Paid Wi-Fi Time To A Phone MAC Address
Design paid Wi-Fi access around recoverable vouchers or accounts rather than a phone's observed MAC address. Check private-address behavior, purchase recovery and duplicate-credit prevention on the actual devices and portal.
Coding Agents In Docker Sandboxes: Test The Boundary
Distinguish Docker Sandboxes from ordinary containers before assessing a coding agent. Review mounts, credentials, sockets and network controls with harmless boundary tests, without claiming isolation makes escape impossible.
The First 60 Minutes Of A Small-Office Cyber Incident
Organize the first hour around clean communications, safety-aware containment, backup protection and an evidence timeline. Prepare a responder handoff without confusing isolation or elapsed time with completed recovery.










