____________________________PLAY ANN____________________________

____________________________PLAY OPENING MUSIC____________________________

[Keith] Welcome to the Mind Of Root. I'm Keith Albright

[Rich] and I'm Rich Niemeier.

[Steve] and I'm Steve Murawski.

[Keith] This is Episode 75 recorded on November 12th, 2008. Today's show is sponsored by Quest Software; Helping you rule your domain. And by Idera, the makers of PowerShellPlus?; THE Powertool for PowerShell.


Chit-Chat - What's going on with you?

[Steve]

  • This week is just flying by. Nothing too out of the ordinary, just keeping busy. I'm trying to spend more time scripting with PowerShell, but I keep getting drawn in to SQL, working with my databases.

[Rich]

[Keith]


Housekeeping Items

[Rich]

[Steve]

  • Well, the podcast has a Twitter account. Follow us at http://twitter.com/mindofroot. Updates will include blog posts, notices as to when we are recording live on Ustream, and, of course, when Keith is eating pancakes!

[Keith]

  • I screwed up the iTunes feed for last weeks show. I didn't get it fully fixed until Monday. I put the blasted Ampersand in AT&T and it screwed it all up. Of course, I fix it on Saturday but don't test until late Sunday night. Found I had put AT&T in the tags field as well.
  • Resumes are out for peer review. If you've gotten your assigned resume, please take the time to review and provide feedback to the other person. We had a decent turn out for this.
  • I'm going to give Twitter a try. I know I've made fun of it in the past...and I will continue to do so in the future, but thought I should at least try it.

____________________________READ IDERA AD COPY____________________________

This show is sponsored by Idera; automate your admin tasks FAST with PowerShellPlus? - THE Power Tool for PowerShell. Download a free 14-day trial at http://www.idera.com/PowerShellPlus

____________________________READ TPN PROMO____________________________

  • OSSEC Update[STEVE]
-Changing logging to MySQL?. Not that difficult.
-
-Link: http://
  • Just my luck.....MPC Corp filed for bankruptcy[KEITH]
-Citing..."unforeseen issues at integrating an acquisition and other manufacturing changes caused extensive losses"....Ahem..Gateway.
-Oddly, nothing on the MPC website about bankruptcy. Only news on their delisting from AMEX.
  • Photos: Cisco teams up with the Yankees[RICH]
-Photo by Marguerite Reardon/CNET News
- Caption by Marguerite Reardon
-
-16GB drive split into to 8 GB partitions. Windows XP on one and Ubuntu 8.10 on the other
-I was originally going to put Ubuntu on 4GB SD flash card (and I did), but GRUB is not happy when you remove the card and boot. So, I put my primary OS's on internal disk and will use the 4GB for storage.
-I'm also (re)building a BackTrack? 3 USB boot drive for tinkering.
-It was funny you mentioned SARA. As I was configuring Ubuntu, I referenced the Top 100 Network Security tools article and saw that in there.
-Backup to Disk Folder. Out of space. My full backup is about 250GB. First time trying the Disk Backup, I run out of disk on the first job.
-143GB backed up. 447GB on disk. One massive file. I'll have to dig into this further.
-My backups are taking too long, so my thought was to stage to disk then off-load to tape afterwards. Not looking too promising at this point with the setup I have.
-BTW, Steve - FreeNAS? or OpenFiler?? I've got OpenFiler? up and running on my flash-disk boot drive and twin 500GB drives for storage. I'm just going through the storage volume setup now, but thought you might have preferred FreeNAS? and may rebuild with that to test before I try to move to production.
-Link: http://
  • IT Crowd Season 3 to air soon[RICH]
- I know I am a freak about this show but, they are going for a third season maybe I'm not alone.
- Have you tried turning it on and off again?
- If you Google Google you will break the internet
-Link: http://
  • WPA Cracked....Sort of[KEITH]
-Not completely broken like WEP, but still not good.
-WPA2? believed to be safe from this attack. WPA2? implements 802.11i and the AES-based CCMP algorithm
  • On the Security Front[STEVE]
-SARA - Security Auditor's Research Assistant
-Includes a Co-Linux version
-Operates under Unix, Linux, MAC OS/X or Windows (through coLinux) OS'.
-Integrates the National Vulnerability Database (NVD).
-Performs SQL injection tests.
-Performs exhaustive XSS tests
-Can adapt to many firewalled environments.
-Support remote self scan and API facilities.
-Used for CIS benchmark initiatives
-Plug-in facility for third party apps
-CVE standards support
-Enterprise search module
-Standalone or daemon mode
-Free-use open SATAN oriented license
-Updated twice a month (we try)
-User extension support
-Based on the SATAN model
-Securix
-Live Network Security Monitoring CD for rapid deployment of sensors.
-
  • Watchguard firewall install problem[KEITH]
-Replacing Linksys router with WatchGuard? VPN firewall to connect a remote office to client's main site.
-Put WatchGuard? in place, refuses to get IP on WAN interface from Comcast. Keeps saying DHCP Not Active.
-Tried:
-Reboot both in order
-Crossover Cable/straight-through
-Hard code speed/duplex - all combos 10H/10F/100H/100F
-Put MAC address of Linksys on Watchguard interface
-Put Linksys back, works fine. Plug WAN1? into Linksys trust side and gets IP from DHCP.
-Did not have a hub/switch with me, but told the guy I'm working with to try putting a switch inline between the devices. I've done this before as a trick to get two devices to communicate. If A can talk to B and C can talk to B, then B can act as the intermediary.
-Link: http://
  • AT&T FAIL[STEVE]
-
-
-Link: http://

____________________________READ QUEST AD COPY____________________________

When it comes to scripting, you’re a warrior. But mighty warriors need mighty tools!

For awesome PowerShell scripting, nothing matches the might of Quest’s PowerGUI?. Versatile and easy to use, PowerGUI? helps you build commanding scripts that leverage PowerShell’s strength across the enterprise. Now, ruling your domain is easier than ever.

Is your scripting might equal to the challenge? Put the power in your hands. Visit www.quest.com forward slash mind of root and download PowerGUI today.


Listener Feedback

From listener....


____________________________PLAY SWEEPER____________________________

Website Picks

Rich - http://

Steve - http://

Keith - http://www.taggalaxy.com/ Interesting way to browse images on the web based on their tags

http://www.collegehumor.com/video:1886349 Hilarious spoof of The Matrix if Microsoft Windows was involved


Last Call

Anyone....Anyone....Buehler.....Buehler....


Closing

All right, well that is it for the show. For listener feedback; you can email us at Feedback [at] mindofroot.com or post a comment on the main site at mindofroot.com. If you use iTunes, you could write a review. If you just want to show us your listening, drop a pin on the Frappr map...there's a link on the show site.

Lastly, you can drop any show ideas or topic requests on the wiki. There is a link to the wiki on the main show site. If you would like to participate in the show; either through an interview, a segment contribution, or any other way, please let us know. We are also a member of the Techpodcast network. Check out some other great shows by going to Techpodcast.com.

Thanks everyone.