Enable ipv6 when available, folks! This setting is available from the logon screen too. Solved it for me, got STRAIGHT in once that setting was changed.
Thanks a lot to @vildravn for pointing this out to me! 🥳💕🤟
Just got around to implementing AD accountExpures checks in the few places where it's ignored.
Sad to see "There is no plan today to sync password expiration state (or disabled or lockout state, for that matter) from on premises AD to AAD" when finding out what others do
So I get you're supposed to put Packetbeat on application servers but it turns out it works just as well on your routers, just deployed it to all of our routers :) #elasticsearch
Monday off to a good start, some light code review when...
Why pay for not 1 (Jira) but 2 (Gitlab) bits of project management software to track software issues when you can use EXCEL AND STORE THE SPREADSHEET IN THE GIT
Why are people like this?
Just dragged our ELK stack up to 7.0 from 6.5 and I'm unimpressed with @elastic cluster.max_shards_per_node being set to 1000, we generate about 1000 shards per month and on our 4 node cluster that works really well for us.
Just had an email land in my inbox that contained the following:
"1) Are you able to patch these vulnerabilities in the software?
OR
2) Would you be able to put the software into a Docker?"
Where has this attitude/belief come from?
It's too early in my morn... life for this
A remarkable admission from @ICOnews - its #cookies consent process has been wrong (‘doesn’t meet the required GDPR standard’) and it’s being urgently changed. [In fact, it’s probably not been to the required standard since 2011.] #gdpr#pecr
Well we can now store public SSH keys in AD, and make them machine specific as well.
SSH also prompts for a MFA token that validates against our generic 2FA server that currently is setup for YubiKeys or TOTP.
Leaving me with triple authentication: key -> password -> MFA
So I'm assuming the way to handle SSH public keys in Windows is sign them with a CA, feels like a missed opportunity to not involve AD more into this; stick keys under a user attribute so something like that
Just because a story is online, doesn’t mean it’s true. The internet is great, but it can be used to spread misleading news and content.
Make sure you know what you’re sharing. Don’t feed the beast. Use the S.H.A.R.E checklist.
#CYBERUK19 was my first CyberUK and it was amazing! Met some great people across public and private sectors :) Looking forward to next year's which I'll definitely be attending
How do you deal with developers that can't grasp the concept of, 'if you change the password of the user connecting to the DB, you can no longer use the old password, you must use the new one'
....are you saying that a plane crashed because Boeing made them pay for downloadable content? ...it sounds like you're saying airline safety systems have DLC. nytimes.com/2019/03/21/busin…
Open Distro for Elasticsearch looks pretty exciting. Field level security for free? Yes please. Wonder if this can be built into debs... opendistro.github.io/for-ela…#Elasticsearch