Bert's repositories
cribl-geoipupdate
Keep your Maxmind Database files up to date in Cribl Cloud
noisemaker
Python scripts for generating noisy and suspicious network traffic.
ksql_for_zeek
Downloading, Installing, and Configuring Zeek IDS to send its logs to Apache Kafka for analysis with KSQL.
zeek-tcpreplay-kafka
A Docker image with tcpreplay streaming a pcap to a dummy NIC, monitored by Zeek, which sends its output to Apache Kafka.
cp-all-in-one-community-with-zeek
Confluent Community with streaming Zeek data and ksqlDB
ksql-udf-asn
ksqlDB example UDF for looking up the Autonomous System Number (ASN) and Organization for an IP address.
stream_app
Splunk Stream App
covid_test_demo
Supplemental files to use when running through a demo/workshop that focuses on Covid testing data
cribl-workshops
Create custom Cribl workshops with Cribl Stream and Edge
csv_to_ldif
Scripts to create virtual Duo training environment
garagedoor
A Clout IoT project that will send me a text message when my garage door opens or closes.
mfa_for_the_pwned
Pull user emails from Duo; check emails against haveibeenpwned.com; if email has been pwned, move it to a restricted MFA group
ngids_datagen
Generate random data from your Bertronix 2000 Firewall and send them to Apache Kafka
oracle_cdc
Bert's customized Bridge to Cloud demo using Oracle CDC
Pi_Eyes
Hacking on Adafruit Pi_Eyes to accept input from Luxonis OAK-D AI camera
spring_break
Python and Arduino code to send measurements from an ultrasonic rangefinder to Splunk and/or Apache Kafka in real time.
ssh_pub_key
Bert's Public Key for SSH logins
syslog-replay
Read a pcap file that contains UDP syslog and replay it to an adjacent running Docker container.
zeek-tcpreplay
Use tcpreplay to slowly feed arbitrary pcaps to Zeek via dummy0 NIC. Impress your friends.