DISQUS

DISQUS Hello!  The comments on this profile are unclaimed and thus are unverified.

Do they belong to you? Claim these comments.

ghost16825's picture

Unregistered

Feeds

aliases

  • ghost16825
  • ghost16825
  • ghost16825

ghost16825

4 months ago

in Problems with Check Point, NAT, and SIP on dmiessler.com | grep understanding
Er....are you serious?
So you mean you can't create an inbound port forwarding rule? (which on most devices implies that the outbound source ports will be preserved)
Also are you sure the device doesn't have any SIP Application Layer Gateway functionality enabled?

5 months ago

in The Cloud: Reducing Security To Way Above Where It Is Today on dmiessler.com | grep understanding
Apologies in advance for the lack of structure in what I'm about to write.

One thing that came to mind when reading your article which I thought was more important was the effect of being in 'the Cloud' with regard to security monitoring.

Do the consequences of having a dramatic reduction in visibility with regard to security monitoring outweigh the benefit of increased security that may come with a shift to 'the Cloud' ?

I would say yes. (Although I have not pondered the question for long enough)

Discuss.
1 reply
Daniel Miessler's picture
Daniel Miessler I would say that having logical access to a SEM console is the same whether it's onsite or 2000 miles away, so you shouldn't lose any visibility if everything is configured correctly.

10 months ago

in XHTML 1.0 Strict Validation on danielmiessler.com | grep understanding

This page is not valid XHTML 1.0 Strict! :)

10 months ago

in XHTML 1.0 Strict Validation on dmiessler.com | grep understanding

This page is not valid XHTML 1.0 Strict! :)

1 year ago

in Capturing Traffic Once and Making That Traffic Available to Multiple Tools on danielmiessler.com | grep understanding

Yeah, that was a good post on Richard's blog - it's a concept that everyone wants, but the implementation may get slightly tricky.


Just on Richard Bejtlich's stuff - I feel the need to point out that perhaps you're overlooking the power of session data. In fact that's one of the big things I learnt after reading one of his books. I used to think of network capture mainly in terms of full-content capture; now I think that session data alone, is highly underrated.

1 year ago

in Capturing Traffic Once and Making That Traffic Available to Multiple Tools on dmiessler.com | grep understanding

Yeah, that was a good post on Richard's blog - it's a concept that everyone wants, but the implementation may get slightly tricky.


Just on Richard Bejtlich's stuff - I feel the need to point out that perhaps you're overlooking the power of session data. In fact that's one of the big things I learnt after reading one of his books. I used to think of network capture mainly in terms of full-content capture; now I think that session data alone, is highly underrated.

1 year ago

in Starbucks Goodness on dmiessler.com | grep understanding

Yuck!
I'm not sure if you can call the stuff Starbucks sells 'coffee'...

1 year ago

in Starbucks Goodness on danielmiessler.com | grep understanding

Yuck!
I'm not sure if you can call the stuff Starbucks sells 'coffee'...

1 year ago

in Port Mirroring on a Cisco 3550 Switch on danielmiessler.com | grep understanding

Also fyi:


http://taosecurity.blogspot.com/2007/12/expert-commentary-on-span-and-rspan.html

1 year ago

in Port Mirroring on a Cisco 3550 Switch on dmiessler.com | grep understanding

Also fyi:


http://taosecurity.blogspot.com/2007/12/expert-commentary-on-span-and-rspan.html

1 year ago

in Read This if You Believe in Man-Made Global Warming on dmiessler.com | grep understanding

I happen to share many of the same sentiments as exabyte, but if I had written them I perhaps would have done so in a more er...tactful way.

1 year ago

in Read This if You Believe in Man-Made Global Warming on danielmiessler.com | grep understanding

I happen to share many of the same sentiments as exabyte, but if I had written them I perhaps would have done so in a more er...tactful way.

1 year ago

in Why CISSPs *DO* Need to Be Decently Versed in Technology on dmiessler.com | grep understanding
I agree.

(I would be hesitant in saying GSEC is a "good" technical certification, but I don't think this is relevant to the discussion -- and I may simply have a wrong perception of it.)

1 year ago

in Why CISSPs *DO* Need to Be Decently Versed in Technology on danielmiessler.com | grep understanding
I agree.

(I would be hesitant in saying GSEC is a "good" technical certification, but I don't think this is relevant to the discussion -- and I may simply have a wrong perception of it.)

1 year ago

in Should CISSP’s Know Basic Networking? on danielmiessler.com | grep understanding
Shhhhhh, some managers are going to get offended.

1 year ago

in Should CISSP’s Know Basic Networking? on dmiessler.com | grep understanding
Shhhhhh, some managers are going to get offended.

1 year ago

in Sabayon Linux on danielmiessler.com | grep understanding
Just for your information:

Sabayon Linux is not simply just an overlay based on the Gentoo tree, with binaries. There are major differences, a lot of which pose unique problems to Sabayon users.

1 year ago

in Sabayon Linux on dmiessler.com | grep understanding
Just for your information:

Sabayon Linux is not simply just an overlay based on the Gentoo tree, with binaries. There are major differences, a lot of which pose unique problems to Sabayon users.

1 year ago

in Newport Beach, CA on dmiessler.com | grep understanding
Your camera skills / camera settings are shocking.
There, I said it. (Feel free to send abuse/death threats to the appropriate address)

1 year ago

in Newport Beach, CA on danielmiessler.com | grep understanding
Your camera skills / camera settings are shocking.
There, I said it. (Feel free to send abuse/death threats to the appropriate address)

2 years ago

in iPhone Nmap Results on danielmiessler.com | grep understanding
Correction: *note the improvements

2 years ago

in iPhone Nmap Results on dmiessler.com | grep understanding
Correction: *note the improvements
Returning? Login