No Description

Brad Poulton 843c2cefb6 decom notes 3 years ago
archive 7d48bfe00b Streamlined Yubikey Notes 4 years ago
files 843c2cefb6 decom notes 3 years ago
images febf393c14 Latest notes. 5 years ago
.gitignore b96146e0b2 Re-commit due to Git merge error 4 years ago
ACM and PKI Notes.md 0d10018b7d notes 4 years ago
AFS Forcepoint Neuterage Notes.md fa1d5f8644 adds stuff 4 years ago
AFS Macbook Notes.md d3e7fb6a9f Format changes 4 years ago
AFS POP Notes.md fda1952319 little here and little there 5 years ago
AFS ServiceNow AWS Account Request.pdf b9c6d3b6da init 5 years ago
AWS CloudWatch Insights.md 783322d3eb Minor Renaming 5 years ago
AWS ECR Notes.md 5a1bbcc30c Format Updates 4 years ago
AWS NVME Notes.md d53fe8445e Major Clean UP 5 years ago
AWS New Account Setup Notes.md 58806f958f Format Changes 4 years ago
AWS Notes.md 6ef9ea809c Format Changes 4 years ago
AWS RDS Notes.md b668384523 RDS, Redhat, Salt, Splunk 3 years ago
AWS Web Application Firewall Add-on Notes.md adf1790c9c Format Updates 4 years ago
Aide Notes.md 5a1bbcc30c Format Updates 4 years ago
Architecture Notes.md c628d51361 VMray has its own account 5 years ago
Asset Inventory Notes.md c66d2e04ba Format Changes 4 years ago
Atlantis Notes.md d53fe8445e Major Clean UP 5 years ago
Azure Gov Application API Access Notes.md 080acb5e35 Add Azure API Access notes 4 years ago
Bastion.md 19d415a178 Various Artists 3 years ago
Break-Glass-Accounts.md 03d0e2552b Format changes 4 years ago
CA Notes.md b36675518e Format Updates 4 years ago
CIS Benchmark Notes.md 3acfc2e9a3 Format changes 4 years ago
CIS Benchmarks Audit.md 2d20389f50 Format changes 3 years ago
ClamAV notes.md a29b085ebb Format Changes 4 years ago
Collectd Notes.md 6b5b420d9c Format changes 4 years ago
Customer Search Head Notes.md 3393d9fc5d Note Updates 3 years ago
DNSSEC Notes.md 73be441111 Format Changes 4 years ago
Decommission C2 Notes.md 68afd029ff Adds Splunk Upgrade and Renaming 3 years ago
Decommission Customer Notes.md 843c2cefb6 decom notes 3 years ago
FedRAMP Notes.md 8557637aeb Migrates FedRAMP Notes to O365 4 years ago
Fluentd Notes.md 5a1bbcc30c Format Updates 4 years ago
GitHub Server Notes.md 4c2bc827a9 Update GHE backup instructions 4 years ago
GnuPG (gpg) Notes.md f4a76e1e0c Format Updates 4 years ago
Interconnects Notes.md 1d9be78630 Format Updates 4 years ago
Jenkins Notes.md 9b61411e06 Removed XDR Prefix 5 years ago
Jira Notes.md 0700466882 Minor updates to Jira and VMRay Notes 3 years ago
Keycloak Notes.md e3a92c8f30 Audit notes 4 years ago
LCP in Azure.md 9bf4bcf5e6 Format changes 4 years ago
MailRelay Notes.md 2cdb33f93d Create MailRelay Notes 3 years ago
New Customer Setup Notes - GovCloud.md 9e5e3ae948 okta, phantom, splunk, ma-c19 offboarding 3 years ago
New Customer Setup Notes - Legacy.md 733309a5ac New customer setup added for GC 4 years ago
OSContext Notes.md dce5743bc4 Format Changes 4 years ago
Okta Notes.md 5d3656c5a0 Splunk,openvpn,tenable 3 years ago
OpenSSL Notes.md 12be25f340 Updated YubiKey for Changes with New CA 4 years ago
OpenVPN Notes.md 5d3656c5a0 Splunk,openvpn,tenable 3 years ago
OpenVPN Upgrade Notes.md cfdcbb78f9 Format Changes 4 years ago
POP-LCP Node Notes.md 0d6bb72410 Notes Updates 3 years ago
Packer Notes.md bf3a5f4519 packer, phantom, portal, etc. 3 years ago
Packer Salt Master FIPS Notes.md 56416af4d0 Format changes 4 years ago
Patching Notes--CaaSP.md eb3b0dc7af patching, splunk , redhat 3 years ago
Patching Notes.md 75bbe5e96c Remove 'ma-c19' syntax 3 years ago
Phantom Notes.md 9e5e3ae948 okta, phantom, splunk, ma-c19 offboarding 3 years ago
Phantom Upgrade Notes.md 5d3656c5a0 Splunk,openvpn,tenable 3 years ago
Portal Lamba Notes.md 16dced5e2f Patching, Portal Notes 4 years ago
Portal Notes.md bf3a5f4519 packer, phantom, portal, etc. 3 years ago
Portal WAF Notes.md b36675518e Format Updates 4 years ago
Postfix Notes.md 3393d9fc5d Note Updates 3 years ago
Proxy Notes.md 19d415a178 Various Artists 3 years ago
Qualys Notes.md e90e1b7da1 Format Update 4 years ago
README.md 23005ceae4 Format Changes 4 years ago
RedHat Full Drive Notes.md 7d5a36e488 Portal, tenable, redhat 4 years ago
RedHat Notes.md fb425221d4 phantom, redhat 3 years ago
Reposerver Notes.md 19d415a178 Various Artists 3 years ago
SELinux Notes.md 4f6fe94ae9 some selinux notes 4 years ago
Salt Notes.md 3393d9fc5d Note Updates 3 years ago
Salt Upgrade Notes.md 5bc330a3c7 Reduces upgrade notes 3 years ago
ScaleFT Notes.md bb47c67f7d Format Changes 4 years ago
Sensu Go Migration Notes.md b36675518e Format Updates 4 years ago
Sensu Notes.md 027abcedf0 Format Changes 3 years ago
Sensu Upgrade Notes.md 2d20389f50 Format changes 3 years ago
Sophos Notes.md b36675518e Format Updates 4 years ago
Splunk AFS Thaw Request Notes.md c70188cc80 Updates patching notes 4 years ago
Splunk AWS App and Addon Notes.md d21e4de773 Updated yubikey/CA notes 4 years ago
Splunk MSCAS Notes.md 5c86974491 Format Changes 4 years ago
Splunk Maxmind Notes.md 4fec480175 splunk maxmind 5 years ago
Splunk Migration from Commercial to GovCloud - 1. Prep and Indexer Cluster.md 00af1301c6 Format Changes 4 years ago
Splunk Migration from Commercial to GovCloud - 2. Search Head.md b7c24601a0 Format Changes 4 years ago
Splunk Migration from Commercial to GovCloud - 3. Remaining Servers.md edaeebebed Format Changes 4 years ago
Splunk NGA Data Pull Request Notes.md 829a741f21 Format Changes 4 years ago
Splunk Notes.md 5d3656c5a0 Splunk,openvpn,tenable 3 years ago
Splunk Process List Whitelisting FedRAMP Notes.md 5c78b84333 Format Changes 4 years ago
Splunk SAF Offboarding Notes.md 9e5e3ae948 okta, phantom, splunk, ma-c19 offboarding 3 years ago
Splunk SmartStore Migration.md 425e5368e7 Update REST search 3 years ago
Splunk Upgrade Notes.md bf3a5f4519 packer, phantom, portal, etc. 3 years ago
Splunk ma-c19 Offboarding Notes.md 5d3656c5a0 Splunk,openvpn,tenable 3 years ago
Sudo Replay Notes.md 157e432b13 sudo replay notes 4 years ago
Teleport Notes.md 6015ab6474 Format Changes 4 years ago
Tenable Notes.md 5d3656c5a0 Splunk,openvpn,tenable 3 years ago
Terraform Notes.md 7bd998d4bd Format Changes 4 years ago
Terraform Splunk ASG Notes.md 8675129403 More great changes 5 years ago
Terragrunt Notes.md 51d027aedd Removed recommendation for tf plugin cache 4 years ago
ThreatQ Notes.md 1e1002b725 More TQ 3 years ago
VMRay Notes.md 0700466882 Minor updates to Jira and VMRay Notes 3 years ago
Vault Notes.md fc7e691d76 Format Changes 3 years ago
Vault Prod Refresh Notes.md 9b61411e06 Removed XDR Prefix 5 years ago
VictorOps Notes.md d53fe8445e Major Clean UP 5 years ago
VirtualBox Build Notes.md febf393c14 Latest notes. 5 years ago
Yubikey Notes.md 0831e7c53b Update formatting 4 years ago
Zscaler Notes.md 19d415a178 Various Artists 3 years ago
dnsmasq.md febf393c14 Latest notes. 5 years ago
duane-random.md 9f7aaa223b Format Changes 4 years ago
ePO Syslog Notes.md 25bc65916c Adds Notes 4 years ago
jira-sucks.md 1f5e78c97d Minor updates for jira 3 years ago
salt_splunk_HEC Notes.md 9b61411e06 Removed XDR Prefix 5 years ago
sftp Notes.md b36675518e Format Updates 4 years ago

README.md

Brads All Encompassing Compendium of the Entirety of XDR Knowledge

BAECEXD (pronounced "bake ext") is a set of notes about how to actually get things done in XDR. Since XDR is a rapidly evolving landscape, some of these notes are likely to be out of date, flawed, or just outright wrong. Use at your own risk.

Rules

  1. All files MUST follow the naming scheme. <Major Topic> <Minor Topic> Notes.md e.g. Salt Upgrade Notes.md . The first letter of each word should be capitalized.

  2. All files MUST follow the proper markdown format. ( work in progress )

    # <filename>
    <Description of notes or project>
         
    ## <Section Title>
    <Today's date>
         
    <arbitrary notes>
         
    ## <Section Title>
    <Today's date>
         
    <arbitrary notes>
    
    # Salt Notes.md
    Salt is the configuration management tool
    
    ## Section 1
    02/28/2020
    
    Salt sucks and we should use puppet.
    
    ## Section 2
    03/15/2020
    
    Salt version 2019.2.3 should always be made public on the internet. 
    
  3. To add a newline that is visible in markdown on the github website, add two newlines to the .md file. DO NOT add <br> or \ to the ends of lines. The primary place to view these files is in a text editor not on github website!

  4. Use three backticks to indicate a section of code or terminal output and single backticks to indicate technical commands or terms.

  5. When referencing other files use a link in the format See <file name> for more details. e.g. See Salt Notes for more details.

  6. For PRs, push directly to master unless they are major changes.

  7. Be kind and think about the engineer after you.