Osquery – Open source device management and security tools

Published: 2021-03-23

Mat X and JD talk to Zach Wasserman, a MDOYVR 2018 Speaker, about Osquery,  and FleetDM, an Open Source Software project for device management with security at its core.

Hosts:

Mat X and JD

Guest:

Zach Wasserman

Links:

Zach W (Twitter)

Exploring osquery – Zach W (MDOYVR 2018)

Osquery

Linux foundation

Fleet (Osquery device management)

Try Fleet (GitHub setup instructions)

Osquery Slack

Osquery packs:

Fleet-aware with Jonathan Haenchen

Published: 2021-03-13

Mat X and JD talk to Jonathan Haenchen, a MDOYVR 2019 Speaker, about Salt stack, Chef, and working for a company that embraces Open Source Software.

Hosts:

Mat X and JD

Guest:

Jonathan Haenchen

Links:

QGIS

ITIL

The Phoenix Project

Salt PSU GitHub report (Wes Whethstone)

Chef configuration management

Salth stack open source configuration management

SimpleMDM

Apple buys Fleetsmith

Let’s Encrypt (free certificates)

Fleet – open source device management with OSquery

OSquery open source project

Julia Evans DNS lookup tool

MunkiReport plugins (create your own modules for this munki reporting tool)

Blue team (computer security)

munki pkg (make packages of folders of stuff to deploy via munki or other tools)

Recipe robot (make recipes for Autopkg)

autopkg (automation framework to download software for munki)

MDOYVR 2021 Call for Speakers

Published: 2021-03-09

Mat X and JD talk about the call for speakers for MDOYVR 2021, burned out employees, and better acceptance within the MacAdmins community.

Hosts:

Mat X and JD

Links:

MDOYVR:2021 Call for Speakers

Test in production  (Honeycomb)

Quinny Pig advice for burned out employees  

AWS updates Macs to macOS Big Sur

WebKit (Apple’s web engine)

NCSA Mosaic Web Browser

Lynx Web Browser

Mail Tracker Blocker

Autopkg update now with more YAML!

YAML linter (validate your code!)

Autopkgr update

JASON json utility 

TLA (three letter acronym)

TLA expansion

2021 Conferences:

MDOYVR – June 9-11, 2021

JNUC 2021 – ?

MacSysAdmin 2021 – ?

Wasabi – AWS-compatible cloud storage.

Getting SaaS-y with Brian Wilkins

Published: 2021-03-02

Mat X and JD are joined by Brian Wilkins to discuss SaaS integration, CPE and the ways WFH has changed meeting and team collaboration.

Hosts:

Mat X and JD

Guest:

Brian Wilkins

Glossary:

SaaS – Software as a service

CPE – Client platform engineer

WFH – Work from Home

IdPIdentity Provider

SQLStructured query language (database)

DR – Disaster Recovery (offsite data and backup systems)

MFAMulti factor authentication

2FA Two factor authentication (Apple)

AWS – Amazon Web Services

NVR – Network video recorder

DocsisCable network protocol

Links:

M1 Macs internal storage issues?

Western digital RED drives (PDF)

Xserve setup guide (PDF)

Disaster recovery data (Archiware blog post)

1password for Business (password vault)

Tailscale (wireguard based mesh VPN)

Secrets management for DevOps

Lucid Chart (diagramming tool)

Lucid Spark (white boarding)

AWS (Amazon web services) status dashboard 

Synology NVR (surveillance station)

QNAP tiered data

Postlab – working locally with cloud copies

Slack keyword notifications

Munki repo clean 

WorkSpace One endpoint management

Chef enterprise automation

Google’s Plan B (macOps) mac remediation tool

Okta auth for Google

It’s Always DNS

Published: 2021-02-24

Mat X and JD discuss DNS and Name Registrars, Backup strategies, VPN & file sharing strategies, and more this week.

Hosts:

Mat X and JD

MacDevOps:YVR 2021 conference info:

Attendee info for MDOYVR 2021

Buy Tickets for MacDevOps:YVR 2021 – June 9-11, 2021

Sponsor info for MDOYVR:2021

Links:

BackBlaze B2 Outage

Julia Evans (Wizard zines) – How to pick a DNS registrar

Julia’s DNS lookup tool

DNS meme

Cold Weather: Microwave burrito analogy

Nudge open source tool for enforcing macOS updates

Apple Watch 5 / SE Battery Woes

Graham Pugh’s erase install script (Presentation)

Tailscale (mesh VPN) <– easy Wireguard setup

Ed Marczak’s wireguard  talk (MacSysAdmin 2020)

Wireguard (secure VPN)

 

Episode 50 with Martin, Ofir & Nick

Published: 2021-02-16

Mat X and JD talk with Martin, Ofir & Nick for the 50th episode. From Icicles to iMac G3 towers, from Canada to the UK, this episode covers a wide gamut of topics with guests from around the world.

Hosts:

Mat X and JD

Guests:

Martin (aka Nitrane), Ofir, and Nick

Links:

Montreal icicle review (Montreal Gazette)

NoMachine remote software

Web Checkout reservation software

Teradici PCoIP remote software

Rhino (3D)

Kernel Extensions and macOS (Apple)

MDM and KEXT profiles on M1 Apple Silicon Mac issue (Jamf CrowdStrike example)

SolarWinds supply chain attack

Water treatment plant TeamViewer hack

Malwarebytes hack

VLC. Apple Silicon M1 supported native software

Munki. Supported Architecture Pkginfo keys

MunkiReport Big Sur module fixes (issues filed by Ofir)

macOS 11 vs 10.16 (eclectic co blog post)

MunkiReport: making modules with “please make module”

LAIKA: job openings for Senior Systems Engineer ( IT)

Munki: Moving from Python to Swift (MDOYVR 2019 video presentation)

Sal reporting

iLOK licensing

Sassafras license server

P2V (Physical to virtual machine conversion)

Point Roberts (USA enclave in Canada)

Federated Apple IDs

Jump Desktop (remote software)

Stadia (Gaming)

Starlink (broadband for remote locations)

Boring Company (tunnels for Teslas)

Hyperloop (vacuum tube transportation)

Hospital Pneumatic tubes

The XY problem

Mac FUSE filesystem

SSH FUSE

Stow: Go Cloud volume mounter

COWs – Computers on Wheels

Copland (MacOS 8)

FreeNAS

Symply Thunderbolt Shared StorNext SAN

Axle AI media asset management (built in to Simply SAN)

QNAP Thunderbolt NAS

 

 

Open Source and Security with Patrick Wardle

Published: 2021-02-09

Mat X and JD talk with Patrick Wardle about his newly Open Source Objective-See Mac Security tools, Objective by the Sea 4.0 conference, and The Art of Mac Malware Analysis.

Hosts:

Mat X and JD

Guest:

Patrick Wardle (@objective_see / @patrickwardle)

Links:

Objective-See Mac Security Tools

Objective by the Sea 4.0 Conference

The Art of Mac Malware Analysis (Book)

Objective-See (blog)

Objective-See (GitHub)

Objective See (Patreon)

Kids in the Hall – The Beard

Chatting with Chat Bots

Published: 2021-02-02

Mat X and JD chat with Chris J. who says he’s not a chat bot. We talk about the new M1 MacBookPro laptop and why it’s better than a Core2Duo from 2010. We also discuss Tensor Flow and setting up a dev environment in GCP.

Hosts:

Mat X and JD

Guest:

Chris J

Links:

Mat’s blog post: Do You Know Where Your Files Are?

Mystery Science Theatre 3000

Scapple

Amazon Web Services (AWS)

Google Cloud Platform (GCP)

Unifi Design Center

Miro Endless Whiteboard

Rasa

Seiko watch

Seiko Divers Watch

Cartem’s Donuts

Cycliq Bike Cameras

Team America

Pigeon IP

Planning for Site Survival & Docker with Derek Fulmer

Published: 2021-01-26

Mat X and JD are joined by Derek Fulmer talking social media, and his journey from Mac nerd to Linux and Docker containerization nerd.

Hosts:

Mat X and JD

Guest:

Derek Fulmer

Links:

Hate5six – live stream. Building a freeNAS server for hardcore punk history

Derek Fulmer (Twitter)

iOS calculator app. (Pro tip : turn it sideways)

docker

Julia Evans. Wizard zines.  

CentOS Linux

Rocky Linux (CentOS repkacement?)

MacPorts (package management for Mac)

Site survivability and disaster recovery (US gov)

Google Beyond Corp (Zero trust networks)

 

 

Big Data in the Cloud with Seth Goldin

Published: 2021-01-19

Mat X and JD are joined by Seth Goldin to talk munki via Teraform and the limits of big data in the cloud.

Hosts:

Mat X and JD

Guest:

Seth Goldin

Links:

@sethgoldin on Twitter

Terraform

CDNs

Edge Server

Wade’s Munki AWS Middleware

Graham’s MDO Teraform Preso

Google Drive Data Transfer Limits

Aysiu’s Munki Serial Number Manifests

The XY Problem

Resolve (what is)

History of Resolve preso

History of Robertson drive

Nikola Tesla’s AC vs Thomas Edison’s DC