Saturday, April 7, 2018

FireEye Cheat Sheet


Maintaining FireEye NX Appliances:

First it is highly recommended you remove retired guest images so you can backup your appliance.
    • guest-images purge retired-version
Then backup the appliance. You can back up locally or to a remote location. If you don't need to keep the events you can just do a basic config backup and not the fedb. Two ways to do it... via web or cli... I will show you from commandline. Remove  +fedb to just backup your config.
    • backup profile full to local prefix NXAPPLIANCENAME - Full local backup
    • backup profile config+fedb to scp://UID:PASS@BACKUPSERVE/ - Remote config and fedb backup
Make sure content updates are occurring.
If you have a CMS make sure your NX is connected to it.
Rotate your password regularly. 60-90 days.

Clear DNS on MAC


Clear DNS Cache-MacOSX
dscacheutil -flushcache;sudo killall -HUP mDNSResponder

Use dig to see if dns responds with block page address 146.112.61.*

 Today I was released from Elara Caring. I'm not entirely sure how to feel. I feel in one way relieved because the place was very un org...