Sunday, July 14, 2019

Reviewing Firewall Logs Zedlan Firewall

PreConfiguration File
This file contains details of the software and virtual machine configuration changes required to support the Perimeter Defences course.  Each requirement
is noted in the relevant course module, but you may wish to pre-load the software to avoid having to wait when working through each video.  All software
is downloaded to and installed in Windows unless otherwise noted.
Video Title Item Details
01_04 Reviewing Firewall Logs Zedlan Firewall
Analyser

Download from http://www.zedlan.com/win_firewall_log_analyser.php and install on Windows

01_07 Managing rules with
Firewall Builder

Firewall Builder Download from http://www.fwbuilder.org/ and install on Windows

01_08 Port Testing Port Tester Download from https://sourceforge.net/p/porttester/wiki/Home/ and install on Widows
03_01 Installing GNS3 GNS3 Download from https://www.gns3.com/ and install on Windows host system
03_02 Obtaining network
device images

3745
asa

If you have a CISCO account, download the appropriate images from
http://www.cisco.com/c/en/us/support/index.html
3745.bin If you do not have a CISCO account, you may be able to download the 3745 image from
http://protechgurus.com/download-gns3-ios-images/
asa.zip If you do not have a CISCO account, you may be able to download the asa image from
http://www.mediafire.com/file/ssadit26tl3llms/asa.zip

04_02 Protecting API services
with the WSO2 Gateway

WSO2 API
Manager

Download from http://wso2.com/products/api-manager and install on Ubuntu

04_04 Running the Cowrie
Honeypot

Cowrie sudo apt-get update
sudo apt-get upgrade 
sudo apt-get install git python-dev python-openssl openssh-server python-configparser python-
pyasn1 python-twisted python-crypto python-gmpy2 authbind 
sudo apt install python-pip 
sudo nano /etc/ssh/sshd_config
Change the current port from 22 to 8022 and save  
sudo service ssh restart
sudo adduser cowrie
cowrie
sudo touch /etc/authbind/byport/22 
sudo chown cowrie /etc/authbind/byport/22 


sudo sudo chmod 777 /etc/authbind/byport/22
su cowrie
cd
git clone https://github.com/cowrie/cowrie.git
cd cowrie
mv cowrie.cfg.dist cowrie.cfg 
nano cowrie.cfg 
Change the port specification from 2222 to just 22
nano start.sh 
Set AUTHBIND_ENABLED to yes
pip install –r requirements.txt –upgrade
pip install pycrypto

05_04 Detecting intrusions
with Security Onion

Security Onion Download from https://securityonion.net and install onto a Ubuntu system

No comments:

Post a Comment

Remote Hybrid and Office work