I like computers

Earth
Joined October 2009
Replying to @GossiTheDog
Auditors are the worst for this, have you ever tried explaining software defined storage to an auditor? None I've met seem to be able to grasp the concept of it. Also surprisingly, very few I've met have heard of SCCM!
Replying to @GossiTheDog
Are you not reporting it to relevant law enforcement? Don't think it's the same as a software vulnerability, especially when it's a EU company (gdpr)
We'll start our own site with blackjack and hookers
4
Replying to @SwiftOnSecurity
3019: everybody including me is an idiot
Replying to @GossiTheDog
Something like that should be CR, security write some powershell, get reviewed by Ops, approved, and executed by Ops rather than letting people just do stuff even if it is routine. But by then it's not too much to just automate the entire thing.
1
Replying to @GossiTheDog
Great in a world of no data caps However the real world makes this not so practical. Although my ISP doesn't count upland against my cap which is nice
Will do. I'm not on the named list of people that can open cases (public sector bureaucracy) so as soon as I can get one opened I'll email you. imran@chi.swan.ac.uk is my email btw
3
We do and I'd happily help test this fix.
1
1
Replying to @markmorow @NerdPyle
Looking forward to finding the other bugs in September :) Our environment is 2012R2, basically skipped 2016 as it just felt rough, in fact I decommissioned our last 2016 server yesterday.
1
1
Replying to @markmorow @NerdPyle
I tried adding a 2019 DC but LDAP nested group search over a certain size is broken. See social.technet.microsoft.com…
1
1
3
Just got around to implementing AD accountExpures checks in the few places where it's ignored. Sad to see "There is no plan today to sync password expiration state (or disabled or lockout state, for that matter) from on premises AD to AAD" when finding out what others do
Replying to @GossiTheDog
Will all of it be publicly readable or are there members only parts?
Replying to @Foone
That's why all my certificates are valid for 100 years. /s Can you not change the date on the devices?
Replying to @GossiTheDog
Isn't that wh CISP hosted by @NCSC is supposed to be, although I do find it rather lackluster
So I get you're supposed to put Packetbeat on application servers but it turns out it works just as well on your routers, just deployed it to all of our routers :) #elasticsearch
Replying to @GossiTheDog
Voted tomorrow as you might as well rip the plaster off now rather than later
Monday off to a good start, some light code review when... Why pay for not 1 (Jira) but 2 (Gitlab) bits of project management software to track software issues when you can use EXCEL AND STORE THE SPREADSHEET IN THE GIT Why are people like this?
1
Twitter mangled my tweet, look at cdn-aws.deb.debian.org/debia… and stick a 's' in the right place!
1
1
Replying to @nanotek911 @debian
The way the mirrors work mean all the mirrors running behind it would need a trusted certificate for security.debian.org However, do try deb.debian.org as that works differently, "deb deb.debian.org/debian-securi… stable/updates main contrib non-free"
2