Elektrine lite

← Feed

Dave Pimlott

quikkie@infosec.exchange

<p>Pom in Oz, I stare at firewall logs for a living. Recently promoted to senior tech, still don&#39;t know what I&#39;m doing so faking it until I make it. Outside of work: computer games, scuba diving, martial arts and natural movement.</p>

Posts

  • Post #3888072

    @stilgherrian@eigenmagic.net it costs less to renew a UK passport and have it shipped to Australia than an Australian passport shipped inside Australia. I&#39;m at a loss to explain how that&#39;s the case.

  • Post #3808158

    Does anyone else use Tenable for vulnerability management and are you also getting extremely old vulnerabilities being reported on your &quot;Californian Place Name&quot; firewalls - not San Francisco. It&#39;s weird as the report says that not all firewalls are impacted, but all of them are running the same version. This year we&#39;ve had the icmp timestamp vulnerability and today found a predictable TCP Initial Sequence Number (dating from 1995). That can&#39;t be right... #Tenable #Vulne...

  • Post #3526475

    If you are planning to install pan-os 11.1.15 I can recommend you don&#39;t. Initially all was okay but now our account manager is saying there&#39;s a global issue that Palo Alto Networks are currently managing. I have a bugid but as it&#39;s not public I&#39;m not sure I can share the number. #PaloAltoNetworks #panos

  • Post #2675493

    @cR0w @Viss rough edges? Yeah, later versions are better but not littlesnitch great.

  • Post #2675492

    Apologies for the vagueness of this post, why should become obvious. So there&amp;#39;s a place that uses 802.1x to enhance security (which is a good thing!), and last night some work was carried out on it. It is now more than 12 hours after the change and end user devices still aren&amp;#39;t connecting to the network after the work was completed. I am guessing that the business continuity plans are going to be exercised/updated...

  • Post #2675491

    @patcharcana easy 🤣 I say this as the user of a suitable rule to catch $external_phishing_vendor emails @da_667 occasionally posts a rant that includes detection methods

  • Post #2675490

    @da_667 @patcharcana cheers, I couldn&amp;#39;t remember the details but I knew someone who would ♥️

  • Post #2675489

    Very occasionally I come out with a phrase that on later reflection is a &amp;quot;banger&amp;quot; The most recent example was a junior engineer upset at making a mistake (understandable) and my reply was &amp;quot;I promise you that I have made way more, and bigger, mistakes than you have&amp;quot; said in an open office within earshot of the rest of the team. And in doing that trying to normalise that occasional mistakes are okay and even expected. While is true that I likely wouldn&amp;#3...

  • Post #2675488

    Today&amp;#39;s entry from the lunacy files: ASD suggests blocking Windows phone and Linux in your Azure conditional access policies. An unnamed entity didn&amp;#39;t look at their sign in logs and nearly stopped their vulnerability management platform from accessing resources in Azure. 🤦 :dumpster_fire_gif: