SIMULATION
[Security Architecture]
A security engineer needs to review the configurations of several devices on the network to meet the
following requirements:
• The PostgreSQL server must only allow connectivity in the 10.1.2.0/24
subnet.
• The SSH daemon on the database server must be configured to listen
to port 4022.
• The SSH daemon must only accept connections from a Single
workstation.
• All host-based firewalls must be disabled on all workstations.
• All devices must have the latest updates from within the past eight
days.
•All HDDs must be configured to secure data at rest.
• Cleartext services are not allowed.
• All devices must be hardened when possible.
Instructions:
Click on the various workstations and network devices to review the posture assessment results.
Remediate any possible issues or indicate that no issue is found.
Click on Server A to review output data. Select commands in the appropriate tab to remediate
connectivity problems to the pOSTGREsql DATABASE VIA ssh
WAP A
PC A
Laptop A
Switch A
Switch B:
Laptop B
PC B
PC C
Server A

SEE THE
Had something like this in a mock before, and "SEE THE" was literally the accepted answer for these sim formats. It's odd but that's what works for the grading here. Pretty sure that's all they're looking for.
Enable host firewall on PC A, apply updates on Laptop A, disable telnet on Laptop B, enable disk encryption on PC B, and change SSH config on PC C. Each device has a clear fix based on the requirements (host firewall off for workstations, patching, disabling cleartext stuff like telnet, disk encryption for data at rest). Pretty sure these cover all the findings from the screenshots but open to corrections if I missed something in configs.
SEE THE is all that's needed here, I've seen this exact format on other practice sims. It just means reference the image/config given, nothing more to type. Pretty sure that's what counts as correct, agree?
Laptop B
PC B
PC C
Server A
