PlAwAnSaI
Administrator
- Samba เป็น Software ที่ช่วยให้สามารถ Share File และเครื่องพิมพ์บน Linux ให้กับระบบปฏิบัติการ Windows:
itguest.blogspot.com/2011/04/file-sharing-samba.html - เจาะลึก Snoc กับบริการ Cloud สำหรับป้องกัน DDoS โดยเฉพาะ ที่ทุกองค์กรควรให้ความสนใจ:
www.techtalkthai.com/snoc-cloud-ddos-protection-service-for-enterprise-and-ecommerce-websites - Snoc เปิดตัว Solution Version 3.0 พร้อมให้บริการ Web Application Firewall และ DDoS Protection:
www.techtalkthai.com/snoc-introduces-snoc-3-0 - เผย...ตลาดมืด Online รับยิง DDoS!!:
www.techtalkthai.com/ddos-dark-market - นิ่งไปสามวิ! DDoS ติดโผ Datacenter Outage:
www.techtalkthai.com/data-center-outage-by-ponemon - จะรู้ได้อย่างไรว่าเรากำลังถูกโจมตีแบบ DDoS:
www.techtalkthai.com/how-to-know-you-are-under-ddos-attack - Introduction, Build the DDoS response plan with Checklist, How do you know when they DDoS you!, DDoS Mitigation Technique:
www.snoc.co.th/wp-content/uploads/2015/09/Ebook-Final-V1.pdf - App VS Volume รู้ยัง! ตัวไหนโดนงัดมาใช้บ่อยสุด:
www.snoc.co.th/infographics/app-vs-volume-attack - Attack of the year 2014: รู้ยัง! ว่าตัวไหนน:
www.snoc.co.th/infographics/attack-of-the-year-2014 - X-Forwarded-For (XFF):
www.keycdn.com/support/x-forwarded-for - TCP 3-Way Handshake:
www.facebook.com/networks365/posts/1690091114560337 - www.icez.net/blog/69510/ddos-tcp-fin-flood
- th.wikipedia.org/wiki/อินเทอร์เน็ตบอต
- URL vs URI:
www.bloggang.com/viewdiary.php?id=zkaru&month=08-2009&date=08&group=3&gblog=8 - Basic Cryptography - Digital Certificate & SSL:
kungfusecurity.wordpress.com/2011/08/28/basic-cryptography-5-digital-certificate - Cache คืออะไร:
itnews4u.com/How-to-Clear-Cache-Browser.html - Penetration Tester:
- app.cybrary.it/browse/course/comptia-linux-plus
- app.cybrary.it/browse/course/comptia-security
- app.cybrary.it/browse/course/ethical-hacking
www.techworm.net/2016/07/10-youtube-channels-learning-ethical-hacking-course-online.html - EC-Council CHFI
- Security Operations Center (SOC) Analyst - Add below:
- app.cybrary.it/browse/course/comptia-network-plus
- app.cybrary.it/browse/course/comptia-casp
- Cyber Security Engineer - Add below:
- app.cybrary.it/browse/course/comptia-cloud-plus
- app.cybrary.it/browse/course/cisco-ccna
- app.cybrary.it/browse/course/comptia-cysa-2018
- app.cybrary.it/browse/course/cissp
- app.cybrary.it/browse/course/cism
- app.cybrary.it/browse/course/project-management-professional
- app.cybrary.it/browse/course/isc2-certified-cloud-security-professional-ccsp
- www.facebook.com/longhackz
- หลักแห่งการออกแบบระบบอย่างมั่นคงปลอดภัย (Secure Design Principles):
medium.com/incognitolab/64a5ba0c6142 - Example Attacks:
- blog.endace.com/2013/08/27/ddos-attacks-on-port-0-does-it-mean-what-you-think-it-does
- www.techtalkthai.com/blacknurse-dos-attack-server-firewalls
- notebookspec.com/ทำความรู้จักกับ-distributed-denial-of-service-ddos/36287
- arit.rmutsv.ac.th/th/blogs/80-sql-injection-คืออะไร-757
- www.thaicert.or.th/downloads/presentations/20150507_Seminar_Dataone_.pdf
- PA-200, PA-3000, PA-5000, and PA-7000 models are the Palo Alto Networks next-generation firewall models.
- Control and data planes are found in Palo Alto Networks single-pass platform architecture.
- The strength of the Palo Alto Networks firewall is its Single-Pass Parallel Processing (SP3) engine.
- PA-5280 new firewall model was introduced with PAN-OS® 8.1 with double the data-plane memory.
- Palo Alto Networks firewall are built with a dedicated out-of-band management port that has Labeled MGT by default, Passes only management traffic for the device and cannot be configured as a standard traffic port, and Administrators use the out-of-band management port for direct connectivity to the management plane of the firewall attributes.
- Can revert the candidate configuration to the running configuration, Clicking Save creates a copy of the current candidate configuration, and Choosing Commit updates the running configuration with the contents of the candidate configuration.
- Firewall administrator accounts can be individualized for user needs, granting or restricting permissions as appropriate.
- Firewall administration can be done using web interface, Panorama, command line interface, or XML API.
- Service routes can be used to configure an in-band port to access external services.
- Virtual routers provide support for static routing and dynamic routing using OSPF, RIPv2, and BGP protocols.
- Layer 3, Tap, and Virtual Wire interface types are valid on a Palo Alto Networks firewall.
- Intrazone traffic is allowed by default but interzone traffic is blocked by default.
- A Virtual Wire (vwire) interface sometimes called a Bump in the Wire or Transparent In-Line, no support for routing or device management, and support NAT, Content-ID, and User-ID.
- A Layer 3 interface can be configured as dual stack with both IPv4 and IPv6 addresses.
- Source Zone, Username, URL, and Application items are possible network traffic match criteria in a Security policy on a Palo Alto Networks firewall.
- Universal type of Security policy rules is the default rule type.
- The intrazone-default and interzone-default rules can be modified.
- dynamic IP, dynamic IP/Port, and static are names of valid source NAT translation types.
- Logging on intrazone-default and interzone-default Security policy rules is disabled by default.
- Logs can be forwarded to Email, Syslog, Panorama, or SNMP the Remote Logging Destinations.
- A log can be exported to CSV format.
- A Report Group must be sent as a scheduled email. It cannot be downloaded directly.
- A SaaS application that formally approve for use on network is sanctioned of application.
- only one firewall actively processes traffic, no increase in session capacity and throughput, and supports Virtual Wire, Layer 2, and Layer 3 deployments attributes describe an active/passive HA firewall configuration.
- configuration synchronization, heartbeats, and hellos are types of traffic flow across the HA Control link.
- On a firewall with dedicated HA ports, Data link describes the function of the HA2 port.
- A Backup Control link helps prevent split-brain operation in a firewall HA cluster.
- heartbeats and hellos, internal health checks, link and path groups are failure detection methods in a firewall HA cluster.
- A Security policy rule displayed in italic font indicates The rule is disabled condition.
- A Server Profile enables a firewall to locate a server with remote user accounts server type.
Last edited: