ainmosni, (edited ) to random
@ainmosni@berlin.social avatar

Do you, or any place you work with, still pay for ?

Boosts appreciated for reach.

kushal, to python
@kushal@toots.dgplug.org avatar
thomas, to security
@thomas@metalhead.club avatar

Brane Dump: Why Certificate Lifecycle Automation Matters - https://www.hezmatt.org/~mpalmer/blog/2024/01/30/why-certificate-automation-matters.html

By @womble

TL;DR: ACME certificate issuing reduces the risk of compromised certificates in the wild.

thomas, to infosec
@thomas@metalhead.club avatar

Are there already elegant solutions for distributing Let's Encrypt certificates to multiple hosts?

Of course, you can have each host request certificates individually, but then you run into ACME API limits at Let's Encrypt relatively quickly, depending on the number of hosts and simultaneous accesses.

I do not want to have to fiddle around.

SophosXOps, to random

Sophos X-Ops is raising the alarm to the industry, warning that threat actors appear to be using requests or complaints as a lure to convince front-desk workers to infect their own computers with password stealing . 1/

https://news.sophos.com/en-us/2023/12/19/inhospitality-malspam-campaign-targets-hotel-industry/

SophosXOps,

Many of the samples distributed in this campaign were digitally signed with valid assigned to bogus or shell companies, while others were signed with not-valid certificates that mimic well-known brands.

brnohat, to GNOME

Linux Desktop Migration Tool 1.3

I made another release of Linux Desktop Migration Tool. This release includes migration of various secrets and certificates.

https://enblog.eischmann.cz/2023/11/22/linux-desktop-migration-tool-1-3/

cendyne, to Nintendo
@cendyne@furry.engineer avatar
glynmoody, to random
@glynmoody@mastodon.social avatar

EU Tries To Slip In New Powers To Intercept Encrypted Web Traffic Without Anyone Noticing - https://www.techdirt.com/2023/11/03/eu-tries-to-slip-in-new-powers-to-intercept-encrypted-web-traffic-without-anyone-noticing/ outrageous move, done in secret; it must be stopped...

CGM,
@CGM@mastodon.scot avatar

@glynmoody "EU Tries To Slip In New Powers To Intercept Encrypted Web Traffic" - How does this affect the UK? Is it possible that Brexit could at last provide a genuine benefit by allowing us to avoid this surveillance? Or will gov.uk come up with something even worse?

aral, to Bulgaria
@aral@mastodon.ar.al avatar

🚨 Another EU mass surveillance attempt. Will kill privacy on web. Must not pass. 🚨

“[A]ll web browsers distributed in Europe will be required to trust the certificate authorities and cryptographic keys selected by EU governments.

These changes radically expand the capability of EU governments to surveil their citizens by ensuring cryptographic keys under government control can be used to intercept encrypted web traffic across the EU.”

https://last-chance-for-eidas.org

murb,
@murb@todon.nl avatar

@aral so in the future a DigiNotar would be able to continue to service EU citizens with crap certificates, because it would be a pain to Dutch government? https://en.wikipedia.org/wiki/DigiNotar

nickmurison, to random

The worst kind of fortune cookie

drsbaitso, to windows

Good Monday morning, Fediverse! I'm looking for my next role, hoping to get #FediHired.

Right now I'm a principal engineer and team lead for certificate infrastructure at a major US company. My day-to-day work focuses on PKI infrastructure/operations, Windows, and Active Directory. I get to help developers understand both the Why and How of the best practices for using certificates, along with keeping the certificate infrastructure humming along.

Working with Information Security, we've implemented company-wide multi-factor authentication for ~30,000 people. I've designed and executed migrating from on-prem PKI (Microsoft ADCS) to Certificates-As-A-Service, which reduced our total operating costs by about half. The includes dropping our datacenter footprint from multiple physical devices down to a couple of VMs.

Outside of the technical responsibilities, I'm mentoring and training junior/new teammates to build their skills and their confidence. Feedback from the management of our development and applications teams is that I've reinvigorated relationships and made certificate discussions something folks look forward to. And while nobody enjoys an outage, both managers and fellow individual contributors have told me that my calm, confident, and methodical presence is critical to both morale and quick resolution.

My current position doesn't offer much in the way of Azure exposure, but in my previous role I built out a Windows Virtual Desktop (now Azure Virtual Desktop, AVD) ecosystem from scratch when the pandemic first began and we had to send everyone to work from home on super-short notice. Nobody missed a day of work for lack of technical resources.

What I want from my next role is either a similar technical lead/principal level infrastructure/operations IC position or moving into management of a similar team.

If you're looking for a technical leader (with or without management responsibilities) to help shape and maintain your Windows/Active Directory environment, someone who can build relationships across a large organization, let's chat. DM me for email or Signal.

Current residence is in Syracuse, NY, but I'm open to relocation.

Boosts appreciated.

#Windows #ActiveDirectory #PKI #Certificates #CertificateManagement #CertificateServices #Operations #Azure #PowerShell #ADCS #Work #WorkFromHome #RemoteWork #FediHire

itnewsbot, to security

Windows feature that resets system clocks based on random data is wreaking havoc - Enlarge

A few months ago, an engineer in a data center in Nor... - https://arstechnica.com/?p=1961136

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • InstantRegret
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • tacticalgear
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • anitta
  • ethstaker
  • GTA5RPClips
  • modclub
  • tester
  • provamag3
  • osvaldo12
  • cisconetworking
  • everett
  • cubers
  • normalnudes
  • megavids
  • Leos
  • lostlight
  • All magazines