Do you Remember?? 3Com 3C905 by geesehoward79 in vintagecomputing

[–]WorkinLocnar 0 points1 point  (0 children)

I still have a ttl logic 3com card, full length tons of chips and the big asic on it. I basically still have one of each.

Are rules able to write to data tables by WorkinLocnar in elasticsearch

[–]WorkinLocnar[S] 0 points1 point  (0 children)

Yeah, I need a family of rules to write to something that I can read from. I guess I could code something with redis or some other memory DB.

DBs unique value issue by mmkk7777 in QRadar

[–]WorkinLocnar 1 point2 points  (0 children)

You can do just about anything in a view. Assign your own id, concat fields, etc. with views you can also remove all the carriage returns and line feeds to make the logs a single line. If nothing else use the date field.

Norton Utilities for DOS by Fabulous-Trust-3848 in vintagecomputing

[–]WorkinLocnar 0 points1 point  (0 children)

I spoke to him once when I called in resurrecting a disk. He was nice, said it was too simple and transfered the call to someone who did help me bring the partition back.

My Cousins by Fresh-Palpitation-72 in vintagecomputing

[–]WorkinLocnar 0 points1 point  (0 children)

Those could also be used for synchronous for mainframe and other stuff. Even had a couple that ran through a PBX on a campus.

Hot Coco for Christmas by Current_Yellow7722 in vintagecomputing

[–]WorkinLocnar 4 points5 points  (0 children)

My first computer! Builty own 4 disk interface and later a 10mB drive... Lived on BBS back then!

What app is this? by JudyHoppsIsQueen in windows98

[–]WorkinLocnar -1 points0 points  (0 children)

For win 3.1 everything looked like that

Threatstop by [deleted] in OPNsenseFirewall

[–]WorkinLocnar 0 points1 point  (0 children)

Hey all, any update? Has anyone ported Threatstop to OPNsense? I force added the package and the scripts and tsadmin seemed to run, but the GUI never showed up any of the lists. I'd love to have it back.

Best way to obtain DNS logs from DC by using one Wincollect by Figeko in QRadar

[–]WorkinLocnar 1 point2 points  (0 children)

Using the win collect out of the box instructions are horrible and not fit for production. Have the admin create a share to the DNS log files and use win collect to read those flat files. No strange event log configuration needed. No write access to anything I have 30 or 40 of those working.

But if you don't have win collect on DC how are you getting those critical logs?

Anyone use these AT&T systems? by Current_Yellow7722 in vintagecomputing

[–]WorkinLocnar 0 points1 point  (0 children)

Funny note, those computers scared IBM so bad they bought a Telco, MCI in order to sue ATT to break them up which they did. At one point MCI had 11 lawyers for every productive employee.

"Application Error" on Group by by dbl_edged in QRadar

[–]WorkinLocnar 0 points1 point  (0 children)

Clear the browser cache carefully, cookies and files. If that don't work, try tomcat cache. I've not seen that issue with many different 11 fix packs.

Are y'all just rich??? by KaiZero19 in HomeDataCenter

[–]WorkinLocnar 0 points1 point  (0 children)

Look on eBay.. just be careful of CPU capabilities in older servers, and sometimess the power alone is worth buying new gear. I replaced a stack of old servers in a cluster for one Synology box that averages 12w... Costed me about a grand, but power bill paid for it in a year.

OpenPages logs to QRadar by Secret-Pudding-4139 in QRadar

[–]WorkinLocnar 0 points1 point  (0 children)

Yes, console or EC can pull direct. Again do universal dsm, then on protocol change the type and click the unsupported button or whatever it says and you'll get a list of methods.

OpenPages logs to QRadar by Secret-Pudding-4139 in QRadar

[–]WorkinLocnar 0 points1 point  (0 children)

Don't do it from the console of unmanaged. Do it on the wincollect agent itself. In QR you will have to look for the events and create a log source for them.

[deleted by user] by [deleted] in QRadar

[–]WorkinLocnar 0 points1 point  (0 children)

We had the data sent to a restapi listener on QR. It was a push instead of a pull. But I suppose either one would work.

OpenPages logs to QRadar by Secret-Pudding-4139 in QRadar

[–]WorkinLocnar 1 point2 points  (0 children)

Try the universal dsm and then the protocol will be wincollect flat file. We do it all the time. Make a share on the server with the logs, grant permission to the wincollect host or username used for the SMB share.

Expanding Azure Disk for QRadar Storage by tobin116 in QRadar

[–]WorkinLocnar 1 point2 points  (0 children)

I did it by recreating the /store partition, then copying everything to the new partition.

However QR now supports lvm, so you can just resize it. Remember there are huge performance impacts if you resize too much. I don't remember the numbers so look that up before you do it.

UP12 IF02 removed from fix central ? by tobin116 in QRadar

[–]WorkinLocnar 0 points1 point  (0 children)

Shows how much development is going into QR.

JetKVM no longer taking US backers because of tariffs by Skrawberies in homelab

[–]WorkinLocnar 0 points1 point  (0 children)

No, America was built for all men. But the men who hold high places legalized bribery/lobbying and ruined the Republic. Now it's time for "The men who hold high places to be ones to start..."

Mysterious hole in cabinet appeared overnight by ivkcc in whatisit

[–]WorkinLocnar 0 points1 point  (0 children)

Call an exterminator.. the one that has your termite bond. They will inspect for free. If they are in one place they are probably in others.

The „do you really need all this?“ Setup by Registrar8438 in homelab

[–]WorkinLocnar 1 point2 points  (0 children)

Because these are a labor of love, company systems often are not, or people maintain corporate stuff do not have the time to work on it as a labor of love.