Windows Active Directory Lab
Active Directory is a set of Microsoft created services that work together to create a centralized administration server for a network, used to manage what computers, users, and groups have access to in an environment. Active Directory plays a big…
Windows Critical Security Dashboard & Alerts – Splunk
With my recent installation of Splunk in my HomeLab, I have been getting more and more comfortable with the query language it uses and parsing through logs. I have made multiple dashboards that are very useful for tracking user logons,…
Splunk Dashboard Creation and Querying
Since my last post on Splunk, I have been getting familiar with SPL, or the search processing language. This is what Splunk uses to refine and search through logs. In this post I am going to document the setup process…
Splunk SIEM Deployment and Configuration
I decided to install a Splunk server on my Homelab today and wanted to talk about my reasoning for this as well as its purpose. Splunk is a very popular data ingestion and log management tool commonly used in Cybersecurity…