When parsing through bro log files, the bro-cut command was simple. But now that files are being written in JSON format, it ain’t so easy. At least for me, as I can’t find any good resources yet on querying these files. But I have found a work around. So this is the example. I want…
Category: Linux
IPMI Finding the IP
If you are ever in need of finding the management cards IP address on a Linux box and have access to the OS, you can simply get it by running Of course, you need to run this with elevated privledges.
Security Onion – Out of Space
Running an instance of Security Onion, that originally started as the 14.05 version, but has been getting updates throught “sudo soup”. After running several months, I started to only have PCAPs for a couple of days, then only for 2 days, then for only the current day, then only for a short period before current…
User Shell
At some point you may need to check and/or change the shell a user is using. A good summary of information on this is at https://www.thegeekdiary.com/centos-rhel-how-to-change-the-login-shell-of-the-user/