1. Subnetting for Security and Operations
$ core idea: Subnetting is not just an exam skill. It affects broadcast scope, route design, ACL readability, and how easily you can isolate high-risk systems. Clear subnet boundaries make incident scoping faster and policy intent easier to understand.
$ defender angle: Defenders should be comfortable with CIDR notation, host counts, and summarization because SIEM alerts and firewall logs often reference IP ranges rather than hostnames. Misreading a range can lead to poor triage decisions.
$ prove understanding: Calculate subnets and understand host ranges, broadcast domains, and route summaries.