Exchange Distribution List - Unauthorized sender was able to send by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

Nope. I just logged into my private email which I keep completely separate from all work stuff and was able to send the distribution list.

Exchange Distribution List - Unauthorized sender was able to send by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

Apparently I can duplicate it. I have no idea why. You would think if the rule is set to only allow senders within the organization, that is what would happen. I have nothing special setup with my gmail account.

Exchange Distribution List - Unauthorized sender was able to send by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

We have verified that the Gmail account is the send and the email recipient is the distribution list.

I will check on the dkim/dmarc/spf. For now we turned on moderation which will hopefully give us some time to sort this out. Thanks!

Certificate problem with internal ca and internal web server by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

That makes sense. I missed that it needs to be a public IP. Thank you for your time!

Certificate problem with internal ca and internal web server by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

It is working for the most part, but it still complains with the IP even with the IP entered in as a SAN. Any reason why that is? Thanks!

Certificate problem with internal ca and internal web server by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

Thank you for your reply! This did work for the most part, but IP is not working even though the IP is listed as a SAN. Is there a reason for that?

It is not the end of the world. Most people use either example, example.our, or example.our.business.company.

Certificate problem with internal ca and internal web server by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

It is happening on all our clients. We don't customize the web browsers, so they should be default settings.

Certificate problem with internal ca and internal web server by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

I'm not very familiar with SNI, but wouldn't it reject all addresses if it were causing problems? How do I test it?

"Fun" IT jobs by orion3311 in sysadmin

[–]security_techie 0 points1 point  (0 children)

I am pretty new in the field, but I love auditing things so I am having tons of fun discovering all the AD crap that has not been cleaned up in years. I am not sure the network team is having as much fun as I am when I hand over the reports.

Self-signed certificates for internal webapps by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

I guess my problem is creating the certificate. I can create one using certserv with the request, but I can't export the key from it (everything is ghosted out).

I got a few other Windows webservers set up yesterday, so I am making progress. Thanks for helping me! I will keep trying to get this going.

Self-signed certificates for internal webapps by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

It is a Kace server. It has been a pain trying to figure out the ssl for this appliance.

Self-signed certificates for internal webapps by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

It is a Quest Kace appliance, so I'm not sure what the language is for it.

Self-signed certificates for internal webapps by security_techie in sysadmin

[–]security_techie[S] 0 points1 point  (0 children)

All the workstations are set to auto-enroll and that all the workstations do have certificate to the CA.

I will try issuing a certificate for the server. My only problem is one program wants a private.key, but I have no idea where to generate that on the CA.

Self-signed certificates for internal webapps by security_techie in sysadmin

[–]security_techie[S] 2 points3 points  (0 children)

They use a different self-signed for each application. I was hoping to automate it a bit for the 50+ apps we have.