Something I regularly do, is review security against attacks and remediate if required. This example is a simple SQL injection attack. There is a few things in addition to code…
AZURE – Control Storage Access by Networks
We have a storage account, "StorageV2 (general purpose v2)" and its can be accessed initially from all networks. We now want to restrict the storage access to an approved network…
vSphere ESXi 6.7 Unable to talk between subnets between hosts
Configuration was : ESXi 6.7 - vSphere handling all the port groups tagged with VLANs Firewall - CISCO ASA Problem : New ESXi 6.7 hosts. A virtual machine if…
Learn NSX – VMware NSX for vSphere
Learn NSX – VMware NSX for vSphere -via Stephen Hackers Blog Learn NSX – VMware NSX for vSphere These are notes made during my study of VMware NSX for vSphere.…
Learn NSX Day 16 : Useful Commands & Errors
NSX Manager ( Open console of NSX Manager - try basic commands) List List sho? (displays commands starting with "sho") Privileged mode Privileged Mode Ping Ping Show Clock Time Show…
Learn NSX Day 15 : NSX Backups
Backup NSX Two options available Via NSX Manager backups Via NSX API Details required for backups Filename prefix Transfer protocol backup-details Topics : Learn NSX - Home Learn NSX…
Learn NSX Day 14 : Monitoring
Activity Monitor activity-monitor To monitor add VMs in to a activity monitoring security group (service composer) Enable data collection Then you can validate security policies are applied Monitor Traffic vDS…
Learn NSX Day 13 : Distributed Router and Distributed Logical Firewall
vDS (Distributed Switch) An interface on a distributed switch can connect to the rest of the network distributed-switch Advanced Settings distributed-switch-settings To implement: Enable OSPF OSPF Config uplink Add…
Learn NSX Day 12 : Spoof Guard
Spoof Guard A useful feature, help prevent rouge systems connecting in to your network by pretending to be another server. An approved list of authorized servers is generated on IP,…
Learn NSX Day 11 : NSX EDGE
Features edge HA – Loose the Primary node and the secondary takes over. Existing connection then need to reconnect. Load balancing – One option is to load balance based on…