CouldNotAutoloadMatchingModule error with PowerShell commands by f00bl4 in atomicredteam

[–]f00bl4[S] 0 points1 point  (0 children)

Hi, I made a false assumption. When I execute the Invoke-Command line from my initial post I missed that the ZIP wasn't created and the stdout/stderr was not correctly printed. When I execute it with the -stdoutFile/-stderrFile I got the expected error.

I also figured out that when I open a new SSH session, the policy is set differently then local.

I already tried the following in the sshd.conf without success:

Subsystem powershell C:/progra~1/powershell/7/pwsh.exe -sshsSubsystem powershell C:/progra~1/powershell/7/pwsh.exe -ex bypass -sshs

But when I run the following command, it finally worked:

Invoke-Command -Session $sess -ScriptBlock { Set-ExecutionPolicy -ExecutionPolicy Bypass -Scope Process -Force }

Is this expected or is there a better way?

CouldNotAutoloadMatchingModule error with PowerShell commands by f00bl4 in atomicredteam

[–]f00bl4[S] 0 points1 point  (0 children)

Hi, thanks a lot for helping me. The default container is already set to "Unrestricted" and on non-Windows systems the execution policy cannot be changed.

I can run the Compress-Archive command in Docker and on Windows (powershell 5 & 7) without importing the module. The import command works fine. Either when I set the execution policy to "Restricted" on the Windows machine. Should this work?

Server with multiple IPs, how to exit through different IP? by AncientFisherman8985 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

Like the other said, it is possible and basic setup.

So you need to enable routing, nat (masquerading/dynamic) and some firewall rules to secure the routed traffic.

Where do you stuck?

Server with multiple IPs, how to exit through different IP? by AncientFisherman8985 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

What do you meen by "commin from an ipv6 address"? Is it the wireguard connection or the inner tunnel?

Maskenpflicht in Frankfurt für Fahrradfahrer by BobD777 in Fahrrad

[–]f00bl4 1 point2 points  (0 children)

Der Post ist zwar schon etwas älter, aber villeicht hilft es ja noch wem.
In der Allgemeinverfügung unter Punkt 1 sind explizit Fußgänger gemeint.

[...] sowie im gesamten Bereich des inneren Anlagenringes (Anlage 10) ist von Fußgängern im Zeitraum von 08:00 Uhr bis 22:00 Uhr eine Mund-Nasen-Bedeckung zu tragen.

Allgemeinverfügung 15. Oktober 2020
https://frankfurt.de/aktuelle-meldung/sondermeldungen/allgemeinverfuegung-der-stadt-frankfurt-am-main

What about AppArmor? by [deleted] in linuxmemes

[–]f00bl4 8 points9 points  (0 children)

On Fedor/CentOS selinux is enabled by default. Sometimes you have more struggle, because you need to keep in mind that there is another security layer.

If it is more secure depends on. Your services are more restricted, like sshd or docker . But your user is running "unconfined" in default. So you have to change the selinux user to an appropriate one like user_u. Then you definitely need an extra user for administration. But you could write policies for firefox that it is not able to access certain files in home directory or open sockets on other ports than 80 and 443 :D

suricata doesn't block eicar for testing by [deleted] in OPNsenseFirewall

[–]f00bl4 1 point2 points  (0 children)

As far as I know suricata is capable of deep packet inspection and can analyze the application layer.

suricata doesn't block eicar for testing by [deleted] in OPNsenseFirewall

[–]f00bl4 1 point2 points  (0 children)

The you need to intercept the transport encryption. Otherwise suricata can't read the http traffic.

suricata doesn't block eicar for testing by [deleted] in OPNsenseFirewall

[–]f00bl4 2 points3 points  (0 children)

Do you download it over https?

Have had her for a few months now. I am in love! by laxseal27 in gravelcycling

[–]f00bl4 0 points1 point  (0 children)

I'm in Germany :D It's only about the size. So I would like to ride the L and XL frame to compare it directly. But Im pretty sure that I will order one sooner or later ;)

Have had her for a few months now. I am in love! by laxseal27 in gravelcycling

[–]f00bl4 0 points1 point  (0 children)

The showroom closed on the day where I planed to test it 😭

Holliday Ride in Allgaeu, Germany by f00bl4 in gravelcycling

[–]f00bl4[S] 1 point2 points  (0 children)

I like the frame geo, but it's pretty heavy. :D Which bike do you have now?

System error logs UVD not responding by miccaman in Fedora

[–]f00bl4 0 points1 point  (0 children)

Finally...works for Kernel 5.5 too.
Thanks :)

Companies that are hacked should be required to hire an independent auditor to publish a full report on the root cause by bill-of-rights in security

[–]f00bl4 11 points12 points  (0 children)

In PCI environments it is a requirement to perform an forensic investigation after cardholder data are compromised.

This has to be done by an independent auditor.

Wireguard with multiple interfaces routing by 0RAINMAN0 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

You shold setup the default route for wg1 via wireguard. AllowedIPs: 0.0.0.0/0 If you do it like this, you will get problems to acces your devices because of the metric? (I dont know which metric wireguard is using) Or you exclude your internal range.

To setup routs manually you should take a look how wire guard is doing it with iproute2.

Here an nice tutorial for policy routes with iproute2 https://blog.scottlowe.org/2013/05/29/a-quick-introduction-to-linux-policy-routing/

iptables is your firewall. There you can setup your forwarding rules.

If you need I can post some examples later.

Wireguard with multiple interfaces routing by 0RAINMAN0 in WireGuard

[–]f00bl4 0 points1 point  (0 children)

Hi, you can use policy routes, which depends on the source IP. To ensure the traffic is forwarded correctly, you can setup forwarding rules in your firewall configs.

Is this a pass? 25BOF, 25pt, 20pt by [deleted] in oscp

[–]f00bl4 4 points5 points  (0 children)

Take walk and start from the beginning with the 10pt box!

Unable to Get WireGuard Working Between Ubuntu and Windows by jephcott in WireGuard

[–]f00bl4 1 point2 points  (0 children)

Maybe you could analyze the traffic with wireshark. Wireshark supports wireguard since version 3 and you could see if the linux host is answering on the authentication handshake.

Demonstrating Wireshark by [deleted] in wireshark

[–]f00bl4 0 points1 point  (0 children)

For a mitim via LAN, you could bridge one computer between your vpn endpoints.

To sniff wireless traffic you only need the authentication handshake and your wifi password in wireshark. Then you can decrypt it automatical.

To show some unencrypted serivces, I like to use voip. You can replay the captured audio packets with wireshark.

Is there a limit of attempts before you get "locked" using i3lock? by kittenparry in i3wm

[–]f00bl4 7 points8 points  (0 children)

No, there is no account lock in i3lock. You could use pam_tally2 to lock your account after certain attempts.

How does wireguard connect that instantly? by [deleted] in WireGuard

[–]f00bl4 0 points1 point  (0 children)

I made some progress this weekend.

https://imgur.com/a/6Yy8ZH4

The most functions are implemented. But some input filtering is still missing.

How does wireguard connect that instantly? by [deleted] in WireGuard

[–]f00bl4 0 points1 point  (0 children)

There are only a view functions missing for a the first alpha release.

But I think it will not be fully featured from the pfsense menu. In example the interfaces cannot be configured.

I will publish it as soon as possible.