how2itsec
Pages
(Move to ...)
Home
▼
(Move to ...)
Startseite
▼
Proxmox Update 8 to 9 does not boot anymore - black screen
›
Problem After I updated my Asus/Intel NUC from proxmox v8.4.14 to 9.1.6, it did not boot anymore. I followed the instructions of https://pve...
Azure Linux Ubuntu not fully upgraded
›
Using apt-get update && apt-get upgrade -y on your Ubuntu VM in Azure sometimes does not upgrade all packages: root@hostname6:~# ...
Disabled Transparent Huge Pages with created systemd service
›
In some applications (e.g. Splunk) you need to disable Transparent Huge Pages THP . When your systems are running in a managed environment ...
Surface 2 Pro Install Linux Ubuntu 24.04 LTS
›
Windows 10 support ended. Microsoft Surface 2 Pro devices can't officially be updated to Windows 11. This guide shows how to switch to L...
Powershell Website "Ping" using the winsystems web proxy
›
If you want to monitor/check (every 10s) continuesly if a website (in this exampe http://www.google.de ) is reachable using powershell and ...
Ansible Remote Shell Examples
›
To execute remote commands or get access to a remote server using ansible, you can do: source =prdeu4spl002 destination = prdus1ans105 aut...
Add a CA certificate to GitLab running in a podman container
›
Adding a CA certificate to GitLab which is running in a podman container (also works with docker containers, just replace podman with docker...
Backup GitLab running in a Container and encrypt the backup
›
Many Gitlab instances run in a docker or podman container. The following is a bash script which fetches the gitlab-configs and the gitlab-d...
Splunk Version 9.4.4 shows error while starting - VM CPU Flags are missing
›
Problem When you update your Splunk to e.g. version 9.4.4 and get this error while starting splunk: Migrating to: VERSION=9.4.4 BUILD=f...
Update Nginx ProxyManager docker container guide
›
Commands Backup your container Check which version your Nginx ProxyManager is currently running by: docker exec -it nginx_app_1 /bin/bash Ch...
Splunk SearchHead Cluster Artifact Proxying - Splunk internally sharing cached search results
›
When the same search is run twice in a splunk cluster, is it using a cache for the results or searching the data a second time? A splunk se...
Splunk UseCase for attacks against FortiGate Firewall management interfaces
›
If you are using Splunk as your SIEM you can try to detect attacks against your FortiGate firewalls by using the following SPL query: index...
Splunk alert for buckets which are not correctly replicated
›
The following shows a splunk savedsearch/alert which searches for Splunk buckets which are not correctly replicated to all indexers. Exampl...
How to bring relatives & friends to use a password manager
›
After about two years of effort, here's my personal experience report on "How do I get my relatives/friends to use a password manag...
Windows Persistence Map v0.1
›
Mitres Att&ck framework writes about persistence TA0003 : " The adversary is trying to maintain their foothold. " There are m...
Edge browser internal debug tools - example network traffic
›
Microsoft Edge browser has some internal tools: edge://edge-urls/ Example usage net-export - debugging network traffic edge://net-export/ ...
Update Nextron Aurora lite EDR Agent
›
To manually update Nextrons Aurora Lite EDR agent, follow the steps: https://aurora-agent-manual.nextron-systems.com/en/latest/usage/upgrade...
Nextron Aurora EDR agent shows \Pr Error
›
Problem During start of Nextrons Aurora EDR lite agent the programm shows the following error message: PS C:\Program Files\Aurora-Agent...
Azure Managed Identities (technical service accounts)
›
Explaination Azure Managed Identities = technical service accounts Password is automatically managed, as it was the case in managed service ...
Cribl - Change values to lowerCase
›
Some logs (e.g. Microsoft Azure) sometimes are not fully normalized to all lowercase characters. You can use Cribl to adjust those values by...
Filter logs in Splunk - example filtering monitor probe checks
›
When running Splunk you want to filter logs, for example to get rid of the many health check probe querys from your monitoring system. Examp...
‹
›
Home
View web version