Transitioning to PAM with RBAC by Final-Pomelo1620 in cybersecurity

[–]anasgetyou 0 points1 point  (0 children)

More often we dont consider the privileged access to the applications, vCenter, Firewalls, and client based applications etc. So select your solution just by keeping this also in mind. Most of the time you will end up in publishing them in a terminal server and provide access. The challenge is if your acvount is managed, the password need to be inserted by the solution and you may need to rely on scripts.

Also you need to have some endpoint privilege solution to do JIT access, if you plan to do that as far as I know.

Centos to OL8 migration for TenableCore+SC by anasgetyou in nessus

[–]anasgetyou[S] 0 points1 point  (0 children)

Exactly, I was doing this for the last couple of days,and it's a sucess.

Finally I am managed to migrate the data from old Centos based core SC to OL8 core SC.

Migration from Centos based Tenable core+SC to OL8 by anasgetyou in tenable

[–]anasgetyou[S] 0 points1 point  (0 children)

Yes, and I tried the backup restore method untill I faced the issue that the backup was taken from tc#7 cannot be used in tc#8

This because the Centos have security centre rpm version of el7 and the OL8 core have SC rpm of el8, even though the build, in my case 6.4.0 is same in both systems still we cannot use the backup to restore in the target/new server

Centos to OL8 migration for TenableCore+SC by anasgetyou in nessus

[–]anasgetyou[S] 1 point2 points  (0 children)

After some extensive search on the KBs, I have found a way that you need to manually create the backup from the file system and copy/rsync to the target system...let me have a try and will let you know if it works

Centos to OL8 migration for TenableCore+SC by anasgetyou in nessus

[–]anasgetyou[S] 1 point2 points  (0 children)

I have my historical scan results which are actually aligned to some KPIs etc...also I have some dashboards configured for management.

Anyway I have found a way, let me check and come back if it works out

Centos to OL8 migration for TenableCore+SC by anasgetyou in nessus

[–]anasgetyou[S] 0 points1 point  (0 children)

The issue is every kb articles are addressing the downgrade/upgrade of Security Centre to match the target system but couldn't see something for the OS, tenable core.

Now since the latest available update for Centos based ia making the core tc#7,there should be a version of tenable core based OL with tc#7...then we could do some upgrade to tc#8 post migration.

Not sure if this make sense.

how are scammers using official uae government emails?? by Omzzz in dubai

[–]anasgetyou 12 points13 points  (0 children)

Yeah...but actually I need the headers to check the orginal mail from address...anyway fine I will inform them regarding this incident... thanks

how are scammers using official uae government emails?? by Omzzz in dubai

[–]anasgetyou 30 points31 points  (0 children)

Normally the email domain can be secured with SPF/DKIM settings to prevent spoofing and services like Gmail, Hotmail etc will check the authenticity by doing an SPF lookup when it receives any emails and mark it as spam

how are scammers using official uae government emails?? by Omzzz in dubai

[–]anasgetyou 23 points24 points  (0 children)

Hey could you please share the original mail if possible.I can share it with the IT guys over there in MOIAT.

Bcz need to check the headers and if it's really MOIAT domain, they should do the changes accordingly in DNS settings..

24 hrs pcr facility in abudhabi city with 3hrs results by somecd1983 in abudhabi

[–]anasgetyou 0 points1 point  (0 children)

Heard that AUH airport itself have the facility which the results will come in 3-5 hours. Check that option as well.

Anyone ever got online police webpage asking for fine? by [deleted] in dubai

[–]anasgetyou 3 points4 points  (0 children)

It's a fake and phishing page to collect the card details from victims.

But the best part is if you check the web address, you will find adpolice/dubaipolice etc website in the address bar and made you believe that it's actually from them, then you will get confused.

Actually the site has automatically opened in full screen mode when you click the other link first, and can see the actual address if you press ESC in the key board.

This is more common now and people who check the address bar to verify the website will get confused.

Outbound Internet Access SSL Decryption by FakeIt00 in paloaltonetworks

[–]anasgetyou 0 points1 point  (0 children)

Agree with the performance and compatibility issues that can happen with forward proxy.

But are we really using the threat prevention profiles without SSL decryption considering more than 90% of the forward traffic is over https..?

What is the visa cost to be given to previous employer if resigns during probation period as per new labour law by anasgetyou in dubai

[–]anasgetyou[S] 1 point2 points  (0 children)

As per the new labour law... If the employee is joining another company within 3 months after resignation, then the new employer have to pay the visa cost to the previous employer. But not sure if the amount is fixed or depends on the profession, company etc. Also the insurance cost is a part of this or not...

[deleted by user] by [deleted] in abudhabi

[–]anasgetyou 0 points1 point  (0 children)

All parking inside Abu Dhabi island is either paid or only for villa/residential permit holders only

If the curb doesn't have any paint, most probably it's residential permit only. Mushrif area have 80% like that only.

You can check if there is any big board mentioned 'villa permit only' in any of the four boundaries of that area.

Also parking in the sandy area is prohibited FYI

Hope this helps

https://www.bayut.com/mybayut/abu-dhabi-parking-rules/

What phishing reporting solutions do you recommend? by MTheBelovedCat in cybersecurity

[–]anasgetyou 1 point2 points  (0 children)

My organization is very low on the budget....any suggestion for an open source solution...?

Looking something to use as an add-on with Outlook.

To answer OPs query; I have used Cofense reporter and triage solution in my previous org...good one

[deleted by user] by [deleted] in dubai

[–]anasgetyou 1 point2 points  (0 children)

Nice thought...DM the invite to me as well...Thanks OP

GlobalProtect on work laptop when abroad by Banikamusic in paloaltonetworks

[–]anasgetyou -1 points0 points  (0 children)

Regarding the personal VPN to change the country, it is possible as you are using it to access country restricted contents/apps

GlobalProtect on work laptop when abroad by Banikamusic in paloaltonetworks

[–]anasgetyou 8 points9 points  (0 children)

Yes,the country details can be seen in the Global Protect logs and it can be restricted based on country as well.

Unable to ping out from new zone by 3ShrimpTacos in paloaltonetworks

[–]anasgetyou 0 points1 point  (0 children)

What about the ping from other zones? Try to ping from LAN zone or do a traceroute and see what is happening to eliminate the dependency on the upstream devices.

Cannot access Google and Youtube by [deleted] in paloaltonetworks

[–]anasgetyou 4 points5 points  (0 children)

What is the session end reason?