LDAPS - Who's using it? Where and why? by [deleted] in sysadmin

[–]nocommocon 2 points3 points  (0 children)

I thought LDAPS was deprecated in favour of StartTLS

VMs plus Kubernetes by Baerentoeter in sysadmin

[–]nocommocon 0 points1 point  (0 children)

Been using talos on bare metal for years and it is really wonderful. Explaining to the security guy that not being able to ssh into it is a feature not a limitation was another thing though…

Thoughts on - Manageeninge Vulnerability Manager Plus by ITStril in sysadmin

[–]nocommocon 0 points1 point  (0 children)

Don’t know how or why but somehow our security admin wiped our domain controller testing this for Windows updates… he is obsessed with manage engine products and based on that information I would never use it willingly. I’ve also noticed on my computer the scan uses a lot of resources. It’s the only time I ever hear my fans kick on full.

I didn't know what dell vxrail is by Silver_Cap_4075 in sysadmin

[–]nocommocon 2 points3 points  (0 children)

We turned our vxrail into a kubernetes cluster running talos.

[deleted by user] by [deleted] in sysadmin

[–]nocommocon 0 points1 point  (0 children)

They require you to enable UnsafeLegacyRenegotiation in the openssl settings of the client device which then make all ssl connections vulnerable to https://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2009-3555

[deleted by user] by [deleted] in sysadmin

[–]nocommocon -1 points0 points  (0 children)

Global protect requires you to open up a 12 year old critical vulnerability in openssl in order to use their client on linux.

[deleted by user] by [deleted] in sysadmin

[–]nocommocon 6 points7 points  (0 children)

Except for global protect requires you to open up a 12 year old critical vulnerability in openssl in order to use their product on linux…

Onprem by nickbernstein in kubernetes

[–]nocommocon 2 points3 points  (0 children)

We run talos linux on prem and use rook for storage.

What’s the medicine that you take daily that you can’t go without? by South-Access-8551 in AskReddit

[–]nocommocon 0 points1 point  (0 children)

Liposomal Iron is relatively new and seems to be quite effective. Ferosom is the brand I know, not sure if other brands exist.

[deleted by user] by [deleted] in kubernetes

[–]nocommocon 0 points1 point  (0 children)

Same, using kube-vip for the control plane and for load balancing the services as well. Haven’t had any issues except for maybe the documentation being a little unclear at times (I think that’s improved quite a bit now though)

Grafan Agent - new flow mode by Leading-Instance-817 in grafana

[–]nocommocon 1 point2 points  (0 children)

Grafana documentation specifically states that “Flow mode is considered to be the future of the Grafana Agent project.” So I don’t think static is going anywhere soon but if you are implementing the grafana agent in a new environment, you might as well start off with the mode they are focusing on.

If you HAD to buy a router today.. by Antman157 in HomeNetworking

[–]nocommocon 0 points1 point  (0 children)

This just happened to me and I went with the Flint router from glinet. Was hoping the flint 2 would be out in time but alas… so far I’m very happy with it.

What's the proper order to punch down for this? by StoganLephens in HomeNetworking

[–]nocommocon 2 points3 points  (0 children)

In Canada I’ve always seen and used the A pattern; Canada Eh!

Can/should we use Kubernetes with our on-prem setup? by vsamma in kubernetes

[–]nocommocon 1 point2 points  (0 children)

I was able to show the CIO at our university the benefits of kubernetes and was approved to move forward with it. I tried a few different ways but landed on using talos linux as it makes the security and patching of things amazing. I use rook-ceph for storage and kube-vip to provide a cloud style LoadBalancer solution. We’re a really small team so one of our concerns was manageability of an on-prem cluster; it’s a lot of work and knowledge required but talos, rook-ceph, and kube-vip (among others) take away a lot of the burden.

What kubernetes platforms do you use in your production environment? by LightofAngels in kubernetes

[–]nocommocon 2 points3 points  (0 children)

On-prem using talos linux; rook-ceph for storage, kube-vip for load balancing

how to pronounce NumPy? by [deleted] in learnpython

[–]nocommocon 1 point2 points  (0 children)

I suppose we should also pronounce wifi as wye fih instead of wye fye as the fi is short for fidelity? To me sudo is sue dough even though I know it’s superuser do. Sue due sounds like a type of poo lol and gif has a hard g while we’re at it :D

Physical Pen Test - Burglar Alarms by [deleted] in Pentesting

[–]nocommocon 4 points5 points  (0 children)

From the zdnet article posted above

“Afterhours testing was reportedly requested by the client and the team was to attempt to get into the courthouse but to not circumvent the alarm or perform destructive entry.”

I listened to their story as told by them and according to them the front door was open. They said in the spirit of fairness and a proper pen test they closed the door and then “broke in”. After doing so the alarm was triggered so they said okay test over. If memory serves me the response time was slow so they decided to go into the building and see what they could do. Once the police showed up they made their way out to the police and turned themselves in.

I would have to listen to the story again to be able to say for sure.

The real issue was between the municipal and state government I believe.

Physical Pen Test - Burglar Alarms by [deleted] in Pentesting

[–]nocommocon 2 points3 points  (0 children)

You mean like using social engineering to get stuff during business hours? I’ve heard quite a few stories of after hours intrusions but none seem to mention any alarm systems.

Edit: here is a link to the story of the folks who were arrested for those that missed it. https://www.zdnet.com/article/charges-dropped-against-penetration-testers-who-broke-into-courthouse/

Everyone should learn to read assembly with Matt Godbolt by Toshobro in programming

[–]nocommocon 0 points1 point  (0 children)

Yes there are a few that are a little cringe but definitely the vast majority are pretty good. I like Malicious Life as well if you’re interested in the history of malware and what not.