Saturday, April 7, 2018

FireEye Cheat Sheet


Maintaining FireEye NX Appliances:

First it is highly recommended you remove retired guest images so you can backup your appliance.
    • guest-images purge retired-version
Then backup the appliance. You can back up locally or to a remote location. If you don't need to keep the events you can just do a basic config backup and not the fedb. Two ways to do it... via web or cli... I will show you from commandline. Remove  +fedb to just backup your config.
    • backup profile full to local prefix NXAPPLIANCENAME - Full local backup
    • backup profile config+fedb to scp://UID:PASS@BACKUPSERVE/ - Remote config and fedb backup
Make sure content updates are occurring.
If you have a CMS make sure your NX is connected to it.
Rotate your password regularly. 60-90 days.

No comments:

 Today I was released from Elara Caring. I'm not entirely sure how to feel. I feel in one way relieved because the place was very un org...