⏳ (15 minutes)

Architecture Review

In our architecture review, you may have noticed the safety system lives in the OT DMZ. That placement forces us to poke controlled holes from the DMZ into the Cell, which complicates DMZ hardening because we must allow the safety box to communicate with the Cell PLC securely. Let’s examine what this system actually does, and then evaluate a better approach to securing it.

<aside> <img src="/icons/chemistry_blue.svg" alt="/icons/chemistry_blue.svg" width="40px" />

Lab 2.3 Activities

</aside>

Explore the Safety System (hands-on)

  1. Access the box
  2. Observe its capabilities
  3. Map the trust paths

Guided Analysis

Likely Better Pattern

Relocate the safety system into the Cell network, then invert the data flows: