I like computers

Earth
Joined October 2009
Bloody slow though, from 4 minutes using Docker build to 19 minutes!
1
Just stumbled across Google Kaniko, so much nicer for building containers!
1
2
Imran Hussain retweeted
WoW performing/better with IPv6 enabled – could that be the final breakthrough killer app the #IPv6 community has been waiting for for years? 😂
Enable ipv6 when available, folks! This setting is available from the logon screen too. Solved it for me, got STRAIGHT in once that setting was changed. Thanks a lot to @vildravn for pointing this out to me! 🥳💕🤟
5
9
1
18
Just got around to implementing AD accountExpures checks in the few places where it's ignored. Sad to see "There is no plan today to sync password expiration state (or disabled or lockout state, for that matter) from on premises AD to AAD" when finding out what others do
So I get you're supposed to put Packetbeat on application servers but it turns out it works just as well on your routers, just deployed it to all of our routers :) #elasticsearch
Monday off to a good start, some light code review when... Why pay for not 1 (Jira) but 2 (Gitlab) bits of project management software to track software issues when you can use EXCEL AND STORE THE SPREADSHEET IN THE GIT Why are people like this?
1
Just dragged our ELK stack up to 7.0 from 6.5 and I'm unimpressed with @elastic cluster.max_shards_per_node being set to 1000, we generate about 1000 shards per month and on our 4 node cluster that works really well for us.
1
Just had an email land in my inbox that contained the following: "1) Are you able to patch these vulnerabilities in the software? OR 2) Would you be able to put the software into a Docker?" Where has this attitude/belief come from? It's too early in my morn... life for this
Imran Hussain retweeted
A remarkable admission from @ICOnews - its #cookies consent process has been wrong (‘doesn’t meet the required GDPR standard’) and it’s being urgently changed. [In fact, it’s probably not been to the required standard since 2011.] #gdpr #pecr
13
95
30
129
Well we can now store public SSH keys in AD, and make them machine specific as well. SSH also prompts for a MFA token that validates against our generic 2FA server that currently is setup for YubiKeys or TOTP. Leaving me with triple authentication: key -> password -> MFA
So I'm assuming the way to handle SSH public keys in Windows is sign them with a CA, feels like a missed opportunity to not involve AD more into this; stick keys under a user attribute so something like that
Good to see stuff like this although the problem of unreliable but trusted sources males it all that much harder
Just because a story is online, doesn’t mean it’s true. The internet is great, but it can be used to spread misleading news and content. Make sure you know what you’re sharing. Don’t feed the beast. Use the S.H.A.R.E checklist.
#CYBERUK19 was my first CyberUK and it was amazing! Met some great people across public and private sectors :) Looking forward to next year's which I'll definitely be attending
2
Just had a red chest in #BorderlandsGOTY open and give me nothing...
How do you deal with developers that can't grasp the concept of, 'if you change the password of the user connecting to the DB, you can no longer use the old password, you must use the new one'
1
Open Distro for Elasticsearch looks pretty exciting. Field level security for free? Yes please. Wonder if this can be built into debs... opendistro.github.io/for-ela… #Elasticsearch
1
1
Got to start paying more attention to code.nsa.gov some pretty useful stuff on there
Imran Hussain retweeted
a "pen tester" is just someone who tests pens to make sure they are clicky and can write ok
15
225
10
937