How to use CrowdSec on OPNSense including a NAXSI WAF integration.

Поделиться
HTML-код
  • Опубликовано: 22 ноя 2024

Комментарии • 12

  • @JasonsLabVideos
    @JasonsLabVideos 2 года назад +7

    These videos are just so GOOD!!!

  • @StanVadenZA
    @StanVadenZA Год назад +1

    Your OPNsense videos made me subscribe no questions asked. Keep up the amazing work

  • @petarsimovic5628
    @petarsimovic5628 2 года назад +2

    wow, I like open source security software :)

  • @AnFr33
    @AnFr33 3 месяца назад

    Nice! I will deploy this. Thank you! I'm subscribed

  • @xm4rcell0x
    @xm4rcell0x Год назад

    Hi! Thanks for your amazing videos about OPN!!
    As you know, is there a possibility to implement WAF on HAProxy as on Nginx?

  • @nikkova2007
    @nikkova2007 2 года назад +2

    Thx man!

  • @theblowupdollsmusic
    @theblowupdollsmusic 2 года назад

    Great video! Could the Wazuh install also create rule sets in real time for bad actors?

    • @ls111cyberEd
      @ls111cyberEd  2 года назад

      Thanks for watching! Interesting question, I have never tried something like this and maybe it can be done, however, it may not be needed as Wazuh already has the ability to perform active responses to block threats, achieving similar results as CrowdSec. I have linked the user manual below covering this if you would like to try it.
      documentation.wazuh.com/current/user-manual/capabilities/active-response/index.html

    • @theblowupdollsmusic
      @theblowupdollsmusic 2 года назад

      @@ls111cyberEd Thank you! I will check those resources out. Active response is ideal to isolate the compromised end points.

  • @getoutmore
    @getoutmore Год назад +1

    Does this basically replace ZenArmor?

    • @ls111cyberEd
      @ls111cyberEd  Год назад +3

      Hi, thanks for watching! Zenarmor and Crowdsec are two different products. Zenarmor is useful if you need to filter egress network traffic, deep packet inspection, application/web content filtering etc. Whereas CrowdSec is a community-fed malicious IP address database that can be used to block bad actors trying to for example brute force attack your systems, or like in the case of the video trying to run SQL injection attacks on your unsanitized input fields.

  • @QuantumByteHub
    @QuantumByteHub Год назад

    hsa this been updated recently?