Brandon

@_alias454

linux, infosec, BRO ids, splunk, graylog, salt, log junkie, recovering sysadmin

https://github.com/alias454
Vrijeme pridruživanja: prosinac 2016.

Tweetovi

Blokirali ste korisnika/cu @_alias454

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @_alias454

  1. proslijedio/la je Tweet
    30. sij
    Odgovor korisnicima

    I have learned one thing, the second I think I'm an expert, I know absolutely nothing, the true masters understand how little they actually know. I have ideas, but those ideas can be changed.

    Poništi
  2. proslijedio/la je Tweet
    25. sij

    (A few) Ops Lessons We All Learn The Hard Way -- a Twitter 🧵:

    Prikaži ovu nit
    Poništi
  3. 22. sij

    shit; architecture too ;)

    Prikaži ovu nit
    Poništi
  4. 22. sij

    Thanks for the feedback. To add to this I am looking more for on site training providers. The general realm is blue team related. Nothing specific just looking for ideas in the Cloud, SIEM, Containers, Architecture space.

    Prikaži ovu nit
    Poništi
  5. 22. sij

    What are some good alternatives to SANS training? The 7k price tag is a bit hard to swallow.

    Prikaži ovu nit
    Poništi
  6. 21. sij

    Switching over to kvm for my lab hypervisor has been interesting so far. Def a lot more typing then I expected. Other than that so far so good though.

    Poništi
  7. 20. sij

    echo 'db = db.getSiblingDB("{{ database }}"), db.createUser({ user: "{{ admin_user }}", pwd: "{{ admin_passwd }}", roles: [{ role: "root", db: "{{ database }}" }] });' | mongo

    Prikaži ovu nit
    Poništi
  8. 20. sij

    Turns out, the thing I was missing was setting the db to a specific value. The db = db.getSiblingDB("{{ database }}") bit was the part I had been missing to make it work properly. The getSiblingDB() method is akin to using "use database" from within the mongo shell.

    Prikaži ovu nit
    Poništi
  9. 20. sij

    I spent way too much time working out user creation from the cli with mongo. I eventually figured it out though. The main problem was users being created in the "test" db as part of the automation. I read several blogs and articles trying to figure out what I was doing wrong.

    Prikaži ovu nit
    Poništi
  10. 20. sij

    As I was upgrading my lab and rolling out salt with python3 support, I was running into an issue where the old mongo formula worked with py2 but not py3. I decided it would be better to drop the requirement for the salt mongodb module and just use the cli

    Prikaži ovu nit
    Poništi
  11. 20. sij

    Updated the mongodb Salt formula, removing the reliance on pip and pymongo among other things.

    Prikaži ovu nit
    Poništi
  12. 19. sij

    Updated graylog salt formula to support v3.1 deployments

    Poništi
  13. proslijedio/la je Tweet
    14. sij

    Going to this year? If so make sure to stop by the Wisconsin Hacker History village and say hello!

    Poništi
  14. 11. sij

    600GB 15k drives showed up today so once installed, it should be GTG for a couple of years. Cost for server, rail kit, and xtra HDDs is about $750 total.

    Prikaži ovu nit
    Poništi
  15. proslijedio/la je Tweet
    6. sij

    As Bruce Schneier writes, "Once the technology is in place, there will always be the temptation to use it. And it is poor civic hygiene to install technologies that could someday facilitate a police state."

    Prikaži ovu nit
    Poništi
  16. proslijedio/la je Tweet
    Odgovor korisnicima

    A siem done right take 12 months. The infrastructure budgeting, the software budgeting and procurement. The installation. The log source identification and associated correlation rule selection and creation. Creating measurements for success around these. Training a team.

    Poništi
  17. proslijedio/la je Tweet
    21. pro 2019.
    Odgovor korisnicima

    Fully agree. SIEM architecture engineering and operationalization is a demanding on for an architect. Consumes full time for a lead achiever for 12 to 18 months.

    Poništi
  18. proslijedio/la je Tweet
    4. sij

    “First off, not convinced that the iPhone is tracking your every move? Head over to Settings > Privacy > Location Services > System Services > Significant Locations and look for yourself.”

    Poništi
  19. proslijedio/la je Tweet
    30. pro 2019.

    I'm giving away a free training seat to one of my mailing list subscribers *tomorrow*. You can sign up for it here: Volume is <1 e-mail per month and is primarily new course announcements, new research, blog posts, and occasional giveaways like this.

    Poništi
  20. proslijedio/la je Tweet
    26. pro 2019.

    New Year's Resolutions for ICS Security

    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·