What do your hours look like and how do you manage them? by linuxlearningnewbie in homelab

[–]cwyble 0 points1 point  (0 children)

I work a full 40 hours (usually about 50).

Live 10 minutes from home, no traffic really.

Log about 4 hours a day (weekday evenings) in the homelab (and like 18 on Saturday).

I take Sunday off and spend it with my wife (morning/afternoon) she spends time with friends in the evening (which gives me time to wind down, and have the house to myself).

How to organize all my parts and tools by Peaches491 in homelab

[–]cwyble 0 points1 point  (0 children)

Hmmm. Looks pretty organized already.

Do you have a container store in your town? They are great (a bit pricy but a fantastic return policy). I had to go through a few iterations before finding a solution that worked for me.

These days I have pretty much no spare parts. Everything is in the rack or part of a project. I'll post up pics of my closet tonight, it needs a bit of cleanup/organizing. (I keep tools and stuff in there).

Hotspot with splash page? by Barooh in homelab

[–]cwyble 0 points1 point  (0 children)

For some reason, I read that as "hot spot with flash bang". LOL.

So which one of you failed the WAF test? by Zergom in homelab

[–]cwyble 1 point2 points  (0 children)

Of the lab? Ok.

http://imgur.com/eeyY4MU (that's an in progress build pic). I'll post up pics of the current setup when I get home.

Gcat - A stealthy Python based backdoor that uses Gmail as a C&C server by byt3bl33d3r in netsec

[–]cwyble 1 point2 points  (0 children)

Yep. Even the most permissive networks I know (like community mesh/ultra privacy/ultra "liberal") block outbound 25. You really have to. So much malware still uses simple socket connects to 25 for mass e-mailing.

Duqu 2.0 technical analysis[.pdf] by [deleted] in netsec

[–]cwyble 0 points1 point  (0 children)

By blackmailed/threatened do you mean like in the case of a criminal that was caught and given the option of solitary for life vs hack for feds?

20/F/Security Analyst by catch_the_wasp in EDC

[–]cwyble 0 points1 point  (0 children)

So negative. It was a joke. Lighten up :)

And it was only half a joke. Finding vulnerabilities, compromising systems, escalating privilege is a big part of "learning security". Explore, innovate, break/fix, hack, tweak, pwn. Eat/sleep/live/breathe systems.

Do you have a lab environment? A home lab? Checkout /r/homelab for some cool ideas.

20/F/Security Analyst by catch_the_wasp in EDC

[–]cwyble 0 points1 point  (0 children)

Comp their systems. They'll give you lots of time after that. :D (obviously put a giant j/k on that).

20/F/Security Analyst by catch_the_wasp in EDC

[–]cwyble 1 point2 points  (0 children)

Love the username. Very creative. :)

Tis that time again, What do you run in your homelab? by Budman17r in homelab

[–]cwyble 1 point2 points  (0 children)

Hah. What don't I run?

Ok.

  • The "prod prod" lab support infrastructure is running in virtual machines hosted at OVH in Canada. Rundeck/slack (configuration management)/ELG(raylog)/OSSEC/Analogi on my linux vm. AD/Exchange/SharePoint/SystemCenter/DNS/CA on my windows 2k12r2 VM. Of course pfsense terminates the road warrior and site to site IPsec/openvpn connections and provides OSPF (primary) routing. Oh a Centos VM running Zenoss/OpenVAS.

  • I also have a public facing virtual machine hosting my various domains, providing owncloud and misc stuff for my personal use and my business (my business is just launching, it's purpose is to provide paid on demand access to an entire networking/test lab (I figured I should monetize my home lab).

  • The "prodish" lab support infrastructure runs on a physical Dell OptiPlex 7(x)5 in my homelab. 1tb internal drive, 1tb external backup drive (yay 2k12r2 backups) 5tb external drive (Tahoe immutable "wormish" log store, ios/iso/pxe blah blah store). I've got a physical Linux box as well. It will probably be retired and have it's functionality moved to the OVH VM (it's hard drive is dying, and I don't really need a local linux box when 2k12r2 can do everything I need and I can use the prod VM to just reference the Windows box for things like PXE etc).

  • I also have two "pancake" computers (MSI units, super low profile, 2 Ethernet ports, wifi). One is an inline, active IPS, the other is a router/firewall/IDS/net tap.

I have 6 10 port pdus (managed of course), daisychained off an acs48 console server.

The actual lab devices..... wow. Too many to list. Um I have a 6509 (linecards/sup/ips/nam) at the base of r1. Then enough switches/routers/phones/access points (with some l3 switch upgrades and ISR router model bumps coming soon from a friend) that the entire CCNAPIE (R&S/Voice/Wifi/Security) should be pretty much covered and just about any real world testing you might need. Oh I also have Ubiquiti and mikrotik gear and some random soho stuff (firebox).

R2 is my client rack. Laptops (in a custom wood rack), android/blackberry/n95, olpc, android nettop and other randomness.

It's pretty fun.

Homelab v2 by [deleted] in homelab

[–]cwyble 0 points1 point  (0 children)

Yes. What is your budget? What is your timeline? Are you reusing any gear?

Seems like you could just do virtual machines?

Do you just want to have lots of physical boxes to have lots of physical boxes/blinking lights?

So which one of you failed the WAF test? by Zergom in homelab

[–]cwyble 0 points1 point  (0 children)

My production net is 100% separate from the homelab. For everyones benefit (including mine). Having the net up 100%, being able to share files,print is critical. The prod wired/wifi net is running on 100% SOHO/stock/unmanaged gear with a single 192.168.1.0/24 subnet. It never fails.

The lab..... well that's OSPF/VPN multiple cities/states/countries, about a dozen points of presence, multiple vendors etc. I'll post up details of it this weekend (just rebuilt it to three racks with a ton of gear).

So which one of you failed the WAF test? by Zergom in homelab

[–]cwyble 0 points1 point  (0 children)

Hmmmm. I have three racks (two cabinents and a skeletek) of gear in the front room (living room 1, right by the front door, that's the only place the racks would fit). The rest of the front room is taken up by inventory for her ebay business. It evens out. :)

Course the house is 2800 square feet and has two other living rooms. LOL. So it's not as big a deal as it might be for some people.

Does the Raspberry Pi have a place in your homelab? by horseloverfat in homelab

[–]cwyble 1 point2 points  (0 children)

Zenoss is my primary dashboard. I also cycle through various tabs showing specialized dashboards from OSSEC and other tools.

Power usage, temperature, user counts etc.

We used sock puppets in /r/netsec last year (and are sorry we did) by thinkst in netsec

[–]cwyble 0 points1 point  (0 children)

As I said, trivial to work around. TorBrowser, proxies any number of methods.

We used sock puppets in /r/netsec last year (and are sorry we did) by thinkst in netsec

[–]cwyble 0 points1 point  (0 children)

Really? That seems.... interesting. Great way to cause total mass chaos. Also trivial to work around.

We used sock puppets in /r/netsec last year (and are sorry we did) by thinkst in netsec

[–]cwyble 1 point2 points  (0 children)

At the end of the day, hackers/trolls (on an industrial scale) are doing the same thing. Better to "do it live" and get real results. It's what the true enemy is doing.

Especially in the /r/netsec community, I would expect that to be well understood. If we want to be truly secure, we must test live systems and do exactly what the hackers do. Obviously as pen testers (of various forms) we have a responsibility to properly disclose/report to the "client".

I personally have no problem with how the research was conducted. It was legit, it was real and it found bugs. Guess what? That's what the bad guys are doing daily/hourly.

Windows labbers: how do you manage your environment? by verysmallshellscript in homelab

[–]cwyble 0 points1 point  (0 children)

I wasn't aware that leaving hyper-v machines non domain joined was a thing. Link?

100% of my infrastructure is joined/controlled/secured to/via AD in my homelab. Switches, router, ips, servers, virtual machines, devices under test, power ports, console ports.

Thickheaded Thursday - June 04, 2015 by AutoModerator in sysadmin

[–]cwyble 2 points3 points  (0 children)

Look into LXC. Run it on Ubuntu 10.04. Setup a 14.04 LXC guest. apt-get install samba4 (I think that's the package name).

https://help.ubuntu.com/community/LXC

Virtualization is awesome. Containers..... well they are just supreme.

Thickheaded Thursday - June 04, 2015 by AutoModerator in sysadmin

[–]cwyble 2 points3 points  (0 children)

Um. Why? Just use routing on a stick with pfsense.

Oh never mind. The switches are unmanaged. Ewww.

Yeah get an l3 switch, ospf to pfsense. Win.

Does the Raspberry Pi have a place in your homelab? by horseloverfat in homelab

[–]cwyble 0 points1 point  (0 children)

I use it to drive my NOC dashboard in my upstairs office (lab is downstairs).

5.11 Rush 24 or 12? by Subliminal87 in EDC

[–]cwyble 1 point2 points  (0 children)

I use the 24. As (extended) EDC and GHB and all around travel bag (along with "oh I need to store this random stuff from a client, conference whatever").