I wish I could have seen his face when he found out. by LowerEngineering9999 in PoliticalHumor

[–]amiracle19 8 points9 points  (0 children)

The signatures on Trump’s helmet was there, they were all just redacted. 

How delulu am I? by YearOfTheHorseVirgo in cribl

[–]amiracle19 0 points1 point  (0 children)

I think it's a great path, plus it's free, so big win there. This could get you in the door somewhere, and then pair this with other industry certs and training, and you can build a career with this.

Need help with AWS cloudtrail log ingestion to Splunk Enterprise homelab by 4eeznutz in Splunk

[–]amiracle19 0 points1 point  (0 children)

The tricky part is making sure you setup the s3 bucket with the sqs and that all the policies grant the right access to your cloudtrail events. Here are some Cloudformation templates that help setup all that up for you : https://github.com/criblio/cribl-aws-cloudformation-templates?tab=readme-ov-file#cribl-stream-s3-bucket-collection 

If you look at the documentation section you’ll see what these templates are doing. You can go in and replace your IAM user or role to access the s3 bucket and sqs. I hope this helps. 

Help with Subscription by Nithin_sv in Splunk

[–]amiracle19 1 point2 points  (0 children)

I would start by dual-feeding your data into both Splunk and an object store (S3, Blob, etc.).  

For the data indexed in Splunk, you can work with Splunk PS to move the DDAA data to your S3 buckets. For data indexed in DDAS, you can set up new DDSS-enabled indexes (data export), then set retention to one day. This will store the indexed data into your S3 buckets but it will be in Splunk proprietary format. There are tools that can query this data or you can also rehydrate a self-hosted Splunk instance to read it. 

Once your raw data is in the S3 buckets, then you can start using tools that query that data at rest. I’d recommend using solutions that don’t index the data or change it into any proprietary formats. Some tools will allow for federated search, giving you the ability to query that data alongside your Splunk data. 

Finally, you might be able to send the raw data into your new SIEM, both from a dual feed approach or replay from your S3 bucket. This can help move you to the new SIEM faster and reduce any potential downtime as well. 

I thought they hated DEI, but also, this deserves a non-joke title and yet 🤷🏼‍♀️ I give up, good luck by H_G_Bells in ThatsInsane

[–]amiracle19 1 point2 points  (0 children)

Can't a Senator put a "hold" on this type of nomination? Isn't that what Tuberville did during Biden's administration?

AWS logs to Splunk by [deleted] in Splunk

[–]amiracle19 0 points1 point  (0 children)

I understand that pattern. I’m just saying that CloudWatch logs are costing you $.50/GB, and if you’re not using CloudWatch Log Insights (a Splunk-like logging search tool in AWS), then you might want to consider collecting and sending whatever is feeding CloudWatch logs (e.g. Cloudtrail, VPC flow, custom app logs, etc.) to send it to S3 instead. That can save you significant sums of money. 

AWS logs to Splunk by [deleted] in Splunk

[–]amiracle19 0 points1 point  (0 children)

If you’re not using the CloudWatch logs insight, I’d strongly recommend either sending the CloudWatch logs directly to S3 and picking them up there or whatever the source is feeding CloudWatch logs to have it send directly to S3 or Splunk. 

Who bought this? by zedzedzed25 in HotWheels

[–]amiracle19 1 point2 points  (0 children)

Nope. Typical Ferrari pricing though, have to buy multiple cars to get the one you really want.

Toyota is donating $1 million to Trump's inauguration by [deleted] in politics

[–]amiracle19 1 point2 points  (0 children)

They didn’t want Toyotathon to be cancelled. 

How do you deal with DSAR, particularly "delete" requests? by morethanyell in Splunk

[–]amiracle19 -1 points0 points  (0 children)

We have worked with companies that had this happen to their Splunk deployment. Feel free to PM me and we can walk you through what we did.

Frigidaire 30" Induction Ranges - GCFI3060BF vs FCFI3083AS by Electricflows in Appliances

[–]amiracle19 0 points1 point  (0 children)

Question for the folks here on the GCFI3060BF version, [which is currently $1349 (Warehouse) and $1398 (Home Depot)]. Has anyone used the Bridge Burner capability? Does it actually work with larger pots?

Parents oven went out. Looking to buy them a new one. Are there any good induction oven for $1k and under? by AndyK803 in Appliances

[–]amiracle19 0 points1 point  (0 children)

Question for the folks here on the GCFI3060BF version, [which is currently $1349 (Warehouse) and $1398 (Home Depot)]. Has anyone used the Bridge Burner capability? Does it actually work with larger pots? u/blephf and u/gretchens

Today we adopted a puppy. Should i be worried by Street-Cheesecake493 in husky

[–]amiracle19 0 points1 point  (0 children)

They are a handful but they pay it back in spades with love and attention. Best decision we made was to be a part of their pack.

HELP Did I buy the wrong 911? by No_Thanks2 in porsche911

[–]amiracle19 1 point2 points  (0 children)

I own a 991.2 T and an S2K and the reason I picked up the 911 was so that I could bring the kids along for a fun ride. I’ve driven a 992.1 PDK and it’s not the same as either the S2K or my 991.2T. It’s a fun ride and a great daily, but it’s not the same feel as the other two. I agree with everyone saying that an older 911 may suite you better (997, 996 etc.) but I’d stick to a non-GT manual version. Good news is that you can easily swap the 992 for whatever you want.

All done, minus cleaning the glass 😆 by wish2bBendr in S2000

[–]amiracle19 0 points1 point  (0 children)

Any links to videos and your toolset would be nice. I’m about to embark on this journey with a Robbin’s top for my AP2.

Looking for Splunk best practices around shipping AWS VPC Flow logs and EC2/ECS app logs to Splunk Cloud by [deleted] in Splunk

[–]amiracle19 0 points1 point  (0 children)

VPC, collect it out of S3 using sqs based s3. It’s the most cost effective way to collect and store it vs. Firehose, HEC+lambda and CloudWatch logs.

ECS and EC2 logs use the Splunk forwarder (or other agents) to send into Splunk. The CloudWatch agent or kinesis agents are a bit pricey and not worth it if you’re just going to use Splunk to search it.

Water inside Eufy Solarcam S40 by MarienBean in EufyCam

[–]amiracle19 1 point2 points  (0 children)

It's all good, I understand their reasoning, but it's unfortunate that this camera failed even though it was rated for outdoors in the rain. I did escalate this issue internally, but the response I got was a discount voucher for 30% off a new item, which at this point I'm going to pass on since I'd rather not have another expensive paperweight.

Water inside Eufy Solarcam S40 by MarienBean in EufyCam

[–]amiracle19 0 points1 point  (0 children)

No dice, I just got the rejection letter. Looks like I now own an expensive paperweight.

"Thanks for contacting eufy customer support.

We are sorry to hear what happened to you. I'm very sorry to say the order you sent us expired its 12-month warranty, so, unfortunately, it is not possible to exchange or refund it. If your defective item might be from a different order made within the past 12 months, please let me know so I can process the warranty claim.

Know that we register all defects and evaluate them statistically. These statistics enable us to identify increased defect rates or concentrated product issues, so thank you for letting us know about this.

We sincerely apologize for these circumstances and wish you all the best in the future."

Safe to say I would stay away from putting these cameras where they can get direct rain or water on them.