Using MindMap application when doing pentest or ctf! Up for you to decide. #MindMaps #freesoftware #kali #linux4hackers #linux #infosec #hacking #pentest #pentesting #redteam @kalilinux #ctf #bugbountytips @insilmaril

I was thinking about a nice and easy way to save a penetration test and come up with this.Use a MindMap application.There is a alot of MindMap application out there. I am running Linux on my machine so I ended up with VYM. ( https://www.insilmaril.de/vym/ )The nice thing about VYM is that it is free […]

How to get autocompletion working great instead of good in powershell for linux. #powershell #pwsh #pwsh-preview #linux @ubuntu @powershell #autocompletion

My colleague @Schillman told me that you can get better autocompletion in powershell for linux. I thought that was interesting thing to try. Soon Sebastian will see the light in the tunnel and convert to a real operating system like linux and we will get more interesting things from him. This is what you can […]

Configure Office365 as a Service Provider in a federation and use Fortinet as Identity Provider. @Fortinet #fortinet #SAML @Office365 #federation @AzureSupport #cloud #cloudsecurity # #fortinet

Hi, a hole different topic today. On the table is federation. In this case we want a third party solution to handle authenticate to Office365. Then we can control all the login function in our own product. Federation talks a specific language that is called SAML ( Security Assertion Markup Language ).More information regarding SAML […]

Install PowerShell on Ubuntu 20.04 and add support for AzureAD. #powershell @ubuntu #linux @Microsoft @Azure #linux-guy-try-windows

Hi I want t run PowerShell on my Ubuntu machine and also add support for Azure. Because soon I will try to set up some federation in Azure. Below is from Microsofthttps://docs.microsoft.com/en-us/microsoft-365/enterprise/connect-to-microsoft-365-powershell?view=o365-worldwideIt is in Swedish but It says that Ubuntu 20.04 is not supported. I will be supported in the 7.1 release. The screenshot is […]

Installing Crowdsec on my hacking rig. How to block unwanted connections. Like bruteforce attacks on ssh. @Crowd_Security @DanielMiessler #hacker #bruteforce #ssh #cybersecurity #Security

I was reading on Daniel Miessler website and got really excited about his article about replacement to fail2ban. https://danielmiessler.com/study/crowdsec/?mc_cid=970356fcef&mc_eid=fa6207cba8 ). Please subscribe to his newsletter, really nice reading. Daniel explains this application in detail and I want to show how I did the installation on my machines. Some difference are there. I wont say it […]

Installing Microsoft Edge dev version on ubuntu 20.04. @MicrosoftEdge @EdgeDevTools @ubuntu #linux #ubuntu

Finally (can I say that?) it is edge time on Linux. Really straight forward to get Edge on you Ubuntu 20.04. But I will put this out anyway! This is a dev version so there will be functions that will not work yet. Download package from Microsoft: https://packages.microsoft.com/repos/edge/pool/main/m/microsoft-edge-dev/ Install from cli sudo apt-get install ./microsoft-edge-dev_88.0.673.0-1_amd64.deb […]

Install LogonTracer in my hacking rig. #blueteam @jpcert_en #LogonTracer #ubuntu #linux #infosec #logging #hacking @Docker #logontracer @neo4j

It is time to test LogonTracer from @jpcert_en you can get your copy from https://github.com/JPCERTCC/LogonTracer From the website:LogonTracer is a tool to investigate malicious logon by visualizing and analyzing Windows active directory event logs. We start with a new installation of ubuntu. The servername for this is Logon. The installation is not in this post. […]

Installing Security Onion 2.3 in my hacking rig. @securityonion #opensource @Elasticsearch #zeek #grafana #qsquery #wazuh #thehive #playbook #kibana #squert #snort #cortex #fleet #suricata #logstash @BHinfoSecurity @elastic @TheHive_Project @grafana

I must thank @BHinfoSecurity to get my interest in this. There webinars is great, especially 30 minutes before the real webinar begins.Now lets get started. As you have seen I did installation of 16.04 version before. My mistake, to tired! No I have to do this again with the new version. Like 16.04 version this […]

Installing Security Onion 16.04 in my hacking rig. @securityonion #opensource @Elasticsearch #zeek #kibana #squert #snort @BHinfoSecurity @debthedeb

Hi, now after some other installations in my “lab” it is time to look at logging. I got really inspired by webinars from BlackHills, so a big shout out to them. They are doing great work to spread there knowledge to others!And soon I WILL get my backdoor and breaches card game! I do not […]

Hachcat benchmark numbers with a VM with Tesla M60 card PCI passthru. #ubuntu #linux4hackers #hashcat #linux #infosec #hacking #pentest #pentesting #redteam #invida #teslam60

I am running hashcat in a VM (ubuntu 20.04) with a PCI passthru NVIDIA TeslaM60 card. This is my first rig with a graphics card so I have no referense to the numbers below. But here is my benchmark test so you can compare. Running Cuda so I can access all memory on the card. […]

How to access internal machines with ssh tunneling. Tunnel rdp thru a jumpstation with ssh. #infosec #hacking #pentest #pentesting #redteam #linux4hackers #kali #parrotos #linux #linux4hackers #ssh

This is follow up of the previous post regarding my rig. How do I access this where ever I am? I use SSH tunneling for that. If I loose connection for some reason I always use tmux on the target so I can reconnect to the same session as before. We start with a picture, […]

How did I create hacking rig for ethical hacking. Based on VMware with Tesla M60. #infosec #hacking #pentest #pentesting #redteam #hackthebox #tryhackme #linux4hackers #ctf #kali #parrotos #linux #godaddy #linux4hackers

My goal with this project was to create a hacking rig that I can use when doing hackthebox, tryhackme and other ctf:s. I was lucky to get my hands on a server with Tesla M60 card. My other goal was also to have a server that I can use in phishing tests, and show others […]

Knowledge Update 2020-08-20

Hi!Welcome to the first of many (I hope) knowledge updates from me. My goal is so gather information in one post instead of many posts.Most of this information are from third party and I do not have the time to source review everything. But still I like of sharing my thoughts to you.This first knowledge […]

How to get IPv6 and IPv4 support with proxychain4 running kali. #hack #kali #linux #infosec #hacking #pentest #pentesting #redteam #proxychain4

I wanted to use proxychain with IPv6, ended up with this configuration. If you have not install proxychain4 do that now! Tor configuration file add below /etc/tor/torrc Proxychain4 configuration file. Add the information below in the file under [ProxyList] /etc/proxychain.conf Restart tor with Check if you have IPv6 support with proxychain. Then surf to site […]

If you are attending “Getting Started in Security with BHIS and MITRE ATT&CK with @strandjs” next week and running Linux and VirtualBox. How to import the machine? @BHinfoSecurity @WWHackinFest @debthedeb #cybertraining #hackers #CyberSecurity #infosec

I am running Kali and VirtualBox. When running Virtualbox there are some issues. If the machine that you are running AMD this perhaps works. I am running INTEL so that sucks. INTEL + VirtualBox + Wsl v2 = Do Not Work For Me. There is a problem running wsl v2 in VirtualBox with Windows 10.Not […]

How to disable systemd-resolved. Problem to get resolve.conf updated with NetworkManger #ubuntu #networkmanager #linux #INVIDGruppen

When you running systemd-resolved you have entry in /etc/resolv.conf that points to nameserver 127.0.0.53. When you troubleshoot sometimes you do not want this. This is how I did it: Disable systemd-resolved 2. Edit network-manager settings files /etc/NetworkManager/NetworkManager.conf and dns=default 3. Delete old resolve.conf file 4. Reboot and test or try

Powershell and Vmware PowerCLI, get-vm exception has been thrown by the target of an invocation. How to fix and add proxy in powershell. Add PSGallery as a repo.#vExpert #VMware #powershell #vmwarepowercli

Uninstall PowerCLI from VMware (we add it later from PSGallery) Start Powershell Set tls security to 1.2 [Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12 Set http proxy [Environment]::SetEnvironmentVariable(“HTTP_PROXY”, “proxy.invid.se:3128”, [EnvironmentVariableTarget]::Machine) Set https proxy [Environment]::SetEnvironmentVariable(“HTTPS_PROXY”, “proxy.invid.se:3128”, [EnvironmentVariableTarget]::Machine) Now that we have internet connection you can try in powershell, just for confirmation. wget https://invid.se Now it is time to register PSgallery […]

Spam-test. Test if your email adress / domain are on any blacklist or if anything is wrongly configured. Check for spf,dkim and other stuff. #pentesting #blueteam #cybersecurity #spam #tester

This is a simple way to test if your email security is ok. Open a web browser and access https://mail-tester.com and copy the destination email on the page. Then send a email to that address that you got from the page Then go back to the web page and press Then check your score. (wait […]

Buffer Overflow, how do I prepare for Penetration Testing Professional V5 buffer overflow part. @eLearnSecurity #bufferoverflow #infosec #hacking #pentest #pentesting #redteam #hackthebox #INVIDGruppen #INVID

I am  not a programmer from the beginning so I struggle a lot with buffer overflow part of the PTP course. I can not turn back  time 25 years and start study programming so how do a old dog learn buffer overflow? This is what I do. Watch Videos, I learn faster if someone tells […]

How to set up juice-shop @ heroku for free. Then begin hacking your own web application. @heroku @owasp #infosec #hacking #pentest #cybersecurity #webhacking

I was watching a YouTube video from https://twitter.com/thecybermentor  and wanted to spread the word to my 2 followers. This is a great way to get started with web application hacking. You will set up your own environment in seconds. After the deployment go to https://pwning.owasp-juice.shop/  and do the 95 challenges. Step1 Create a free account […]

Create file with hostnames from website with cewl, then scan the webserver for vhosts with Metasploit vhost_scanner to find hidden virtual hosts on webserver. #infosec #hacking #pentest #pentesting #redteam #hackthebox #ctf #linux4hackers

We start to collect possible hostnames from websites with Cewl cewl http://10.10.10.1 -w cewl.txt You can also use some other switches like -d = deph to look on the website for words -m = minimum wordlengh -w = outputfiel So that the final command can look like this: cewl http://10.10.10.1 -d 5 -w cewl.txt When […]

Copy vswitch vlan from one host to another with powershell. @VMware #vExpert #esxi #VMware

This simple powershell scripts copy vlans from one server to another. With this script I needed to manually create the vmotion network after. But all other vlans was ccreated. Start Powershell In this case I was running linux. pwsh Set-PowerCLIConfiguration -InvalidCertificateAction Ignore -Confirm:$false Connect-VIServer cmdlet Connect-VIServer at command pipeline position 1 Supply values for the […]

Terminator + tmux = perfect match? Starting and attaching tmux sessions from terminator automatic with bash. @kalilinux #kali #kalilinux #linux#linux4hackers #linux #tmux #terminator #infosec #hacking #pentest #pentesting #redteam

My goal was to start Terminator, that’s the terminal program I use and the reattach to tmux sessions in the three windows that I have. If I close terminator and started it again I wanted the tmux sessions to reattach to the old ones. And I i close tmux I wanted the same tmux windows […]

How to import missing key from all the repository in a one liner. @kalilinux #kali #kalilinux #linux #gpgkey #NO_PUBKEY

You get this error when you apt-get update The following signatures couldn’t be verified because the public key is not available: NO_PUBKEY 1A1C1C101311121 How to import missing gpg key from all the repository in a oneliner. Thanx to https://www.linuxuprising.com/2019/06/fix-missing-gpg-key-apt-repository.html sudo apt update 2>&1 1>/dev/null | sed -ne ‘s/.*NO_PUBKEY //p’ | while read key; do if […]

CORE-IT is a FREE virtual conference hosted by Chappell University. The online event begins March 24th at 9 am Pacific Time. #wireshark #nmap #darknet @torproject #kismet #tcp #dns @LauraChappell https://www.engagez.net/coreit1#lct=entrance

I got an email regarding a  free Virtual Conference 2020! Could be something real nice! https://www.engagez.net/coreit1#lct=entrance Agenda here: https://coreit.s3.amazonaws.com/CORE-IT_Agenda-v1f.pdf Click to access CORE-IT_Agenda-v1f.pdf Click to access CORE-IT_Agenda-v1f.pdf Click to access CORE-IT_Agenda-v1f.pdf Click to access CORE-IT_Agenda-v1f.pdf

Fishing with Raspberry Pi, Kali, Auto connect to VPN, Auto register domain with GoDaddy, Automatic SSL cert with Letsencrypt, Run Golang, Run Gophish @letsencrypt @golang @kalilinux @GoDaddy #kali #raspberrypie #linux #infosec #hacking #pentest #pentesting #redteam #gophish

This is just for demo, I used root as user, you should perhaps consider other user to do this. Installation of Kali Download Kali Image https://www.offensive-security.com/kali-linux-arm-images/ Flash the SDCARD with etcher on you Kali box or any other burning program. Put the sdcard in the PI and boot OpenVPN Autostart Download opvpn conf file from […]

How to exploit Active Directory ACL based privilege escalation path with Bloodhound and aclpwn.py. Then collect the hashes, if you are lucky to get that level of access with secretdump.py #kali #kalilinux #hacking #pentest #pentesting #redteam

This was done from Kali box. Of course the Sharphound was ran on a compromised computer. Used application Bloodhound and Sharphound ( https://github.com/BloodHoundAD/SharpHound ) aclpwn ( https://github.com/fox-it/aclpwn.py ) Steps to do it Get output with sharphound and put that on our kali box use -all when run the Sharphound. Start neo4j and bloodhound import the […]

Microsoft change from ldap to ldaps. What will happen to my Vcenter with Integrated Windows Authentication (IWA) customers. #vcenter #vmware #ldap #ActiveDirectory

Integrated Windows Authentication (IWA) has also been tested by VMware Engineering and verified to be compatible with these changes. IWA uses different protocols and mechanisms to interact with Active Directory and is not affected by changes to the Active Directory LDAP servers. Where did I find this information: Microsoft https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV190023 Vmware https://blogs.vmware.com/vsphere/2020/01/microsoft-ldap-vsphere-channel-binding-signing-adv190023.html https://kb.vmware.com/s/article/2149697

How to turn of power management on the wifi in kali 2010.1 (or any other distro using NetworkManager). @kalilinux #kali #kalilinux #linux #NetworkManager

Sometimes there are issues with speed, performance, lost of connection to access points. This can be helpful in some configurations. Before: iwconfig wlan0 wlan0 IEEE 802.11 ESSID: Mode:Managed Frequency:5.26 GHz Bit Rate=6 Mb/s Tx-Power=20 dBm Retry short limit:7 RTS thr:off Fragment thr:off Power Management:on Link Quality=56/70 Signal level=-54 dBm Rx invalid nwid:0 Rx invalid crypt:0 […]

Kali 2020.1 XFCE. Unable to start any program from gui that requires root privilege. Synaptic just do not start. Firewall-applet just say unable to communicate. It starts fine from cli. @kalilinux #kali #kalilinux #linux

I just installed Kali weekly release (2020.1) with KDE and XFCE and all things seems to work very fine. But one thing with XFCE is that when I try to start things fron XFCE that use root permission it wont work. Strange errors or the applications just do nothing. gksu is no longer availble pkexec […]

Compile an exploit on ParrotOS for Windows 32bit. @ParrotSec #infosec #hacking #pentest #pentesting #redteam

I needed to compile an exploit in ParrotOS. Did not have a Windows machine at the moment. In this case it was MS03-26 for 32 bit. Before we begin we need to install some applications in ParrotOS sudo apt install mingw-w64 searchsploit ms03-026 searchsploit -m exploits/windows/remote/100.c x86_64-w64-mingw32-gcc 100.c -o shell.exe -lws2_32

Problem with Nimble plugin in VirtualCenter 6.7U3 or any other plugin. #VMWare #VirtualCenter #nimble #storage

How to completely remove and start from scratch regardning Nimble Plugin in Vcenter. W had the plugin that was in running mode 1 – Unregister the array from VC in Nimble 2- Clean the VC cache SSH to vcenter server shell service-control –stop vsphere-client service-control –stop vsphere-ui cd /etc/vmware/vsphere-client/vc-packages/vsphere-client-serenity rm -rf com.nimblestorage.* cd /etc/vmware/vsphere-ui/vc-packages/vsphere-client-serenity rm […]

How did my journey to Licensed Penetration Tester (Master) Certification begins and ends. My own thoughts. #LPTMaster #penetrationtesting #infosec #eccouncil @ReadynezSocial @ECCOUNCIL

My journey began 2018-07-09 at Readynez ( Örenäs Slott) a rely warm summer week for Sweden anyway, almost 30 degrees Celsius. Here is what I think about about the journey that I choose to take. CEH Course There is a lot talk about this course on social media. But for a beginner like me this […]

How to get VMware Remote Console on Kali 2019.4

Thanx to Dave Parker http://computersalad.blogspot.com/2018/09/using-vmware-remote-console-on-debian.html sudo su cd /usr/lib/vmware/bin mv vmrc vmrc.old Create a new vmrc file in /usr/lib/vmware/bin with this content #!/bin/bash LIBDIR=”/usr/lib/vmware/lib” BINDIR=”/usr/lib/vmware/bin” LD_LIBRARY_PATH=”” for dir in $(find ${LIBDIR} -type d) ; do LD_LIBRARY_PATH=”${dir}:${LD_LIBRARY_PATH}” done export LD_LIBRARY_PATH ln -s ${BINDIR}/appLoader /tmp/vmrc /tmp/vmrc $* rm -f /tmp/vmrc exit 0

Autostart links with OneGate, Tunnel, HTML5 and Web resources.

This is how you create autostart links with OneGate. If you are runing the lates version and https only, change http to https. Tunnel http://onegate.invid.se.se/mg-local/autostart?resource=mg-local&uri=/mg-local/jretestifneeded?path=https:/rdp-server01.onegate.invid.se/parameters?resource=rdp-server&port=33891&cpopup=no&client=/mg-local/terminalserver/terminalserver-wrapper.html&p1=TRUE&p2=TRUE&p3=TRUE&p4=FALSE&p5=TRUE&p6=1280&p7=1024&p8=TRUE&p9=TRUE&p10=&description=asdfvbm9taXNlcasdfasdfasdfw=&logintype=webtoken   HTML  http://onegate.invid.se/mg-local/autostart?resource=rdp-server&uri=/mgdev-gw&logintype=webtoken   Webresurs http://onegate.invid.se/mg-local/autostart?resource=www-server&uri=/page&formfill=false&logintype=webtoken

Get VM on what Datastore and what DRS group the VM is member of, export the result and email to you in a oneliner.

Special thanks to my better looking colleague @ http://blogg.schillman.se/ He is a powershell guru! I did this on Linux so I do not have the power to store username and password. But I know that you can do this if you are running Windows! If the vmware modules are not installed: Start powershell Set-PowerCLIConfiguration -InvalidCertificateAction:Ignore […]

Cloned vm is pionting to original vm disks, and you get error when powering on cloned vm, File system specific implementation of LookupAndOpen[file] failed.

(We are using old version of VCenter Server 6.5 Update 1e), Yes, we are about to upgrade! When you clone a machine in HTML5 it failes to powered on the cloned machine, this works when you are using Flash client. In HTML5 the cloned machine still points to the original vmdk files. In Flash it […]

Add & Remove VM from DRS Groups based on datastore. Using PowerShell Ubuntu 19.10 Budgie. Add-DrsVMtoDrsVMGroup and Remove-DrsVMFromDrsVMGroup

Thanks to Author: Tim Carman Twitter: @tpcarman Github: tpcarman PowerCLI: Add & remove VMs from DRS Groups based on datastore location Functions: Add-DrsVMtoDrsVMGroup Remove-DrsVMFromDrsVMGroup  install Powershell Get PowerShell to work with ubuntu 19.10 Budgie Create Powershell Profile Run it! sudo snap install powershell –classic export DOTNET_SYSTEM_GLOBALIZATION_INVARIANT=1 vi /home/USERNAME/config/powershell/Microsoft.PowerShell_profile.ps1 Paste the following in the file: $Hour […]

Getting Powershell to work with Ubuntu 19.10 (budgie). Couldn’t find a valid ICU package installed on the system

You get error like this: Process terminated. Couldn’t find a valid ICU package installed on the system. Set the configuration flag System.Globalization.Invariant to true if you want to run with no globalization support. Did not work with powershell preview sudo snap install powershell –classic export DOTNET_SYSTEM_GLOBALIZATION_INVARIANT=1 pwsh

Configure snmp for Esxi and Virtual Center Appliance

If you want to monitor your enviroment using snmp you can. I will recommend going to SNMPv3 not v2 like this….but I just wanted to try esxi: esxcli system snmp set –communities secret esxcli system snmp set –port 161 esxcli system snmp set –syslocation SERVERROOM esxcli system snmp set –enable true Virtual appliance: snmp.set –port […]

How to get vDocumentation to work in PowerShell

Start PowerShell as Administrator Install-Module -Name VMware.PowerCLI -Scope CurrentUser Install-Module ImportExcel -scope CurrentUser Install-Module vDocumentation -Scope CurrentUser Set-ExecutionPolicy Unrestricted Set-PowerCLIConfiguration -InvalidCertificateAction Ignore -Confirm:$false Connect-VIServer Then you are up and runnig Great work from Ariel Sanchez Mora  https://github.com/arielsanchezmora/vDocumentation Get-Module vDocumentation -ListAvailable | Format-List Get-ESXInventory Document host hardware inventory and host configuration Get-ESXIODevice Document information from HBAs, […]

VMware Converter 6.2 failed after 3% with error FAILED: An error occurred during the conversion: ‘BlockLevelVolumeCloneMgr::CloneVolume: Detected a write error during the cloning of volume \WindowsBitmapDriverVolumeId=[60-2A-FF-68-00-00-10-00-00-00-00-00]. Error: 37409 (type: 1, code: 2338)’

1 physical server to virtual with VMware Converter 6.2 failed after 3% with error. FAILED: An error occurred during the conversion: ‘BlockLevelVolumeCloneMgr::CloneVolume: Detected a write error during the cloning of volume \WindowsBitmapDriverVolumeId=[60-2A-FF-68-00-00-10-00-00-00-00-00]. Error: 37409 (type: 1, code: 2338)’ Source machine had Teaming configured and I just pulled out the cabels and put new one in […]

Strange performance charts after upgrade to 6.7 U2. algorithm newreno

After I upgraded a host to 6.7U2 from 6.5 I got som strange  performance chart, Realtime, 1 day for latency view.Looked like this: The answer it will be fixed in U3, at the moment I do not have the information when this will be released! 2019-06-20T11:04:00.034Z info hostd[2099465] [Originator@6876 sub=Libs opID=53a6b81e] NetstackInstanceImpl: congestion control algorithm: […]

Migrate to Virtual Center 6.7 when the Virtual Center is Virtulized on providers Virtual Center. Migrated Virtual Center has no ip connectivity to local ESXi host. Add extra nic to VirtualCenter is the soloution!

You need ip connectivity from the temp VC to the ESXi host that the upgraded VC is hosted. We want to upgrade VC-CUST (192.168.1.1), in this case migrate to 6.7 from 6.5. This CirtualCenter resides in hosted VirtualCenter VC-Provider. VC-Provider has NO ip connectivity to customer. VC-CUST has no IP connectivity to ESXI host (172.16.1.2) […]

CONFIGURING PURE1 VM ANALYTICS With Proxy settings

Please follow this great guide from Cody! https://www.codyhosterman.com/2018/10/configuring-pure1-vm-analytics-detailed-guide/ When you come to the point when you shall install or update something stop! Now it is time for proxy stuff. Apt proxy settings sudo vi /etc/apt/apt.conf.d/proxy.conf Acquire { HTTP::proxy “http://proxy.invid.se:8080”; HTTPS::proxy “http://proxy.invid.se:8080”; } Linux For other Linux stuff you want to add this in root users […]

Brocade San Switch – Commands to know

Show switchshow – Indicators like no light or In_sync will be displayed portshow <port> – Provides report on errors on a port porterrshow – provides gist of port errors, look for delta of counters portstatsshow <port> – Provides details of port errors portstats64show – Extension of portstatsshow when 32 bit counters do not suffice, look […]

Getting strange error when installing vcli 6.7on ubuntu 18.10

Getting some error when try to run ./vmware-install.pl vcli Path::Class 0.33 or newer Socket6 0.28 or newer IO::Socket::INET6 2.72 or newer Net::INET6Glue 0.603 or newer How I did: sudo apt install -y perl-doc libmodule-build-perl libssl-dev libxml-libxml-perl libsoap-lite-perl libuuid-perl sudo apt-get install libcrypt-ssleay-perl libcrypt-openssl-rsa-perl sudo cpan Devel::StackTrace Class::Data::Inheritable Convert::ASN1 Crypt::OpenSSL::RSA Crypt::X509 Exception::Class UUID::Random Archive::Zip Path::Class Try::Tiny […]

Upload file to datastore, certificate error.

To fix this Browse to VirtualCenter Down at the right bottom on page press Download trusted root CA Unpack the zip file Open Certmgr.msc Go to Trusted Root Certification Authorities Rightclick on Certificates and All Taska/ Import Import the certificates that you unzipped before Restart Browser Done!  

Upgrade 5.0.0 to 5.5 from CLI.

When you have upgraded to 6.5 and did not notice that you had a 5.0.0. server in the Virtual Center. You can upgrade the 5.0.0 host from CLI with some simple commands. Download the offline Bundle for 5.5 zip file Download the zip file to ESXi host with your tool. (Vsphere client, Winscp or scp) […]

Some nice For Dummies Books.

Will add more as I stumble upon them. Network Virtualization for Dummies https://secure.vmware.com/47785_REG?touch=1&src=so_5bbb4d89277ef&cid=70134000001CYBq&src=so_5a314d05e49f5&cid=70134000001SkJn Micro‐segmentation For Dummies https://www.vmware.com/content/dam/digitalmarketing/vmware/en/pdf/products/vmware-micro-segmentation-for-dummies-book.pdf NVMe over Fibre Channel For Dummies Brocade Special Edition http://media.wiley.com/assets/7359/40/9781119399711.pdf Firewalls for Dummies https://doc.lagout.org/Others/Firewalls%20For%20Dummies%2C%202nd%20Edition.pdf Next Generation Firewall for Dummies https://www.csuc.cat/sites/default/files/docs/ngfw_for_dummies_ebook.pdf Cybersecurity for Dummies https://www.paloaltonetworks.com/content/dam/pan/en_US/assets/pdf/education/cybersecurity-for-dummies.pdf Network Security in Virtualized Data Centers for Dummies http://gauss.ececs.uc.edu/Courses/c5155/pdf/netsec_virtdatacntr.pdf Virtualization for Dummies https://ssl.www8.hp.com/de/de/pdf/virtuallisation_tcm_144_1147500.pdf   […]

Create wildcard from lets encrypt from another machine. And convert to p12

You need to verify by dns, that’s what I read anyway. I was doing this from ubuntu 18.04 Install certbot: sudo add-apt-repository ppa:certbot/certbot sudo apt install python-certbot-apache Oneliners Certbot certonly –manual –preferred-challenges=dns –email roger.bergling@invid.se –server https://acme-v02.api.letsencrypt.org/directory –agree-tos -d *.portal.jkp.invid.se Add DNS txt vaule, you get this from above command Convert cert to p12: openssl pkcs12 […]

Update Manager is missing in the Flash or HTML5 gui. No errors, service is started. Unable to access Virtual Center from Linux Client.

One smash, two flies After upgrading from 6.5 vcsa to 6.7 without any problem, update manager is missing in the clients, both flash and html5. No errors on services, and everything looked fine. But when I from Linux client browse to virtualcenter adress I get: NET::ERR_CERT_INVALID And I am not able to proceed to the […]

Unable to migrate Virtual Center to 6.5 from 5.5. Certificate errors.

Easy one Uninstall VCenter Server from Windows Copy/Backup and  Remove C:\ProgramData\VMware\VMware VirtualCenter\SSL Reinstall same Virtual Center that was installed before.   Or you can follow this great blogg from Zlatko Mitev vCenter Self-Signed Certificates – Part 1 Some notifcation from me: OpenSSL 0.9.8 is requried http://gnuwin32.sourceforge.net/packages/openssl.htm Deploying and using the SSL Certificate Automation Tool 5.5 http://kb.vmware.com/selfservice/microsites/search.do?cmd=displayKC&docType=kc&docTypeID=DT_KB_1_1&externalId=2057340 […]

Windows 2008 R2 cleanmgr.exe how to fix without reboot.

If not have desktop expirence installed and want to clean up C: on Windows 2008R2. Then copy below files the you are able to run clenmgr whitout reboot. Yo need to overwrite, because the old files will be there. C:\Windows\winsxs\amd64_microsoft-windows-cleanmgr_31bf3856ad364e35_6.1.7600.16385_none_c9392808773cd7da\cleanmgr.exe to C:\windows\system32\ C:\Windows\winsxs\amd64_microsoft-windows-cleanmgr.resources_31bf3856ad364e35_6.1.7600.16385_en-us_b9cb6194b257cc63\cleanmgr.exe.mui to C:\windows\system32\en-us\ The you can run cleanmgr.exe

Schedule backup on DataCore nodes. Email,copy the backup job

Create Backup.ps1 file on every datacorenode. Under C:\backup Create backup.bat file on every datacorenode. Under C:\backup Schedule a task in Datacore to run below powershell script and the backup.bat on every node. The Powershell needs only on one node. The script solves that for you.   Backup.bat net use \\1.1.1.1\h$ /user:user password copy C:\Backup\* \\2.2.2.2\h$\Datacore\ […]

Upgrade Datacore manually

How to manually upgrade Datacore. Download the Datcore Software Do you have DCSAdmin Password? If you don’t, get it. If you have lost that password another blogpost is about to be done to explain howto change that. Connect to both nodes 1. Check System Health 2. Check version. Server Group DataCore Servers Version: 10.0.PSP5 Update […]

Locate firmware and disk model Ubuntu

apt-get install smartmontools smartctl –xall /dev/nvme0n1p2 smartctl 6.6 2016-05-31 r4324 [x86_64-linux-4.18.6-041806-generic] (local build) Copyright (C) 2002-16, Bruce Allen, Christian Franke, http://www.smartmontools.org === START OF INFORMATION SECTION === Model Number: PC401 NVMe SK hynix 512GB Serial Number: ES82N134010102J61 Firmware Version: 80003E00 PCI Vendor/Subsystem ID: 0x1c5c IEEE OUI Identifier: 0xace42e Controller ID: 1 Number of Namespaces: 1 […]

MobilityGuard Tips och Tricks

Create http headers Base 64 encode mgpwd X-TEST                     PARM{base64encode(PARM[mgpwd])} MD5 Sum on password X-TEST                      PARM{base64encode(PARM[mgpwd])} Saml Saml attribute to send in personal id if you login with e-id or webtoken definision by ldap1 attirubute under Database settings […]

Expand vmdk in webclient could not complete task

When expand the vmdk from webclient, it breaks and error message could not complete. Then the VM gets invalid in the inventory   Solution: See what datastore the vm resides Remove the invalid vm from inventory Browse the datastore that the invalid vm resides Add to inventory Power it on Works Power Down Expand the […]

Vsphere 6.7 Whats New small words

Full list: https://docs.vmware.com/en/VMware-vSphere/6.7/rn/vsphere-esxi-vcenter-server-67-release-notes.html The vSphere 6.7 release is the final release of vCenter Server for Windows In-Guest unmap with snapshots VMware is deprecating webplatform.js, which will be replaced with an improved way to push updates into partner plugin solutions without any lifecycle dependencies on vSphere Client SDK updates. If you have an existing plugin solution to the […]

Powercli Vsphere

Get VM list from a datstore Get-datastore | Where {$_.name -like ‘*DATASTORE01*’} | Get-VM Find snapshots Get-Snapshot -vm * -name “VEEAM BACKUP*” | Format-Table -property VM,Name Clear snapshots Get-Snapshot -vm * -name “VEEAM BACKUP*” | remove-snapshot   List VM and What Datastore get-vmhost |get-datastore|%{$ds=$_; $ds.Extensiondata.Vm|%{$_|select @{n=’vm name’;e={(Get-View -property name -Id $_.toString()).name}},@{n=’ds name’;e={$ds.name}} }}   List […]

The host returns esxupdate error code:12. cannot read or write to the database. check the update manager log files and esxupdate log files for more details.

When remmidate you get this error. I installed the patches that I can stage.   Stuck on Next step: esxcli network firewall unload esxcli software vib install -v http://vum.se:9084/vum/repository/hostupdate/vmw/vib20/tools-light/VMware_locker_tools-light_6.5.0-1.33.7273056.vib [DatabaseIOError] Failed to create temporary DB dir: [Errno 28] No space left on device: ‘/locker/packages/var/db/locker/profiles.new’ filename = /locker/packages/var/db/locker Please refer to the log file for more […]

Software Depo for HPE and Dell

Dell: https://vmwaredepot.dell.com/index.xml) HP: http://vibsdepot.hpe.com/getting_started.html#DepotContent   http://vibsdepot.hpe.com/index.xml – latest HPE Value-Add components (for VUM)   http://vibsdepot.hpe.com/hpe/<release date>/index.xml or http://vibsdepot.hpe.com/hpq/<release date>/index.xml – latest HPE Value-Add components for a specific release   http://vibsdepot.hpe.com/index-drv.xml – latest HPE and 3rd party device drivers used in the HPE Custom Image (for VUM)   http://vibsdepot.hpe.com/hpe/<release date>/index-drv.xml or http://vibsdepot.hpe.com/hpq/<release date>/index-drv.xml – latest HPE […]

The upgrade contains the following set of conflicting VIBs. When upgrading to 6.5

Scan the host with UpdateManager and look at the result: The upgrade contains the following set of conflicting VIBs QLogic_bootbank_scsi-qla2xxx_934.5.29.0-1OEM.500.0.0.472560 Emulex_bootbank_scsi-lpfc820_8.2.4.151.65-1OEM.500.0.0.472560 Emulex_bootbank_scsi-lpfc820_8.2.4.151.65-1OEM.500.0.0.472560 QLogic_bootbank_scsi-qla2xxx_934.5.29.0-1OEM.500.0.0.472560 Solution:   esxcli software vib list | grep qla2 scsi-qla2xxx 934.5.29.0-1OEM.500.0.0.472560 QLogic VMwareCertified 2014-11-11 ~ # esxcli software vib remove -n scsi-qla2xxx Wait it take some time Removal Result Message: The update […]

Create certificate for MobilityGuard against LDAP (AD or LDS)

Begär klientcertifikat Det följande har vi gjort från en windowsmaskin, det går kanske att använda linux och firefox men det har vi inte testat.  Men en windows-dator, surfa med internet explorer till: [http:///]http:///certsrv och logga in med det konto som MG ska använda. Välj följande:  Request Certificate -> Advanced certificate request -> Create and submit a […]

Vsphere 6.5 Migration error. Replace a Process Level Token privilege to the user

Replace a Process Level Token privilege to the user Error when you do the prechecks https://technet.microsoft.com/en-us/library/dn221975.aspx Login with your Administrator account on the Windows machine. Go to Control Panel and open the Administrative Tools. Open Local Security Policy and expand Local Policies.  Under User Rights Assignment, open the Replace a Process Level Token. Add service account name that is being used by the […]

Disable dnsmasq in ubuntu

Disable the systemd-resolved service and stop it: sudo systemctl disable systemd-resolved.service sudo service systemd-resolved stop Put the following line in the [main] section of your /etc/NetworkManager/NetworkManager.conf: dns=default Delete the symlink /etc/resolv.conf rm /etc/resolv.conf Restart network-manager sudo service network-manager restart

Patch or upgrade 5.5 get VIB VMware_bootbank_ehci-ehci-hcd_1.0-3vmw.550.3.95.4345813 requires xhci-xhci >= 1.0-3vmw.550.3.95, but the requirement cannot be satisfied within the ImageProfile

To resolve this issue, remove the xhci VIB file before upgrading the host. Connect to the affected ESXi host using an SSH session. For more information,  see Using ESXi Shell in ESXi 5.x and 6.0 (SOL-2003). Delete the xhci VIB file by running this command: esxcli software vib remove –vibname xhci-xhci

msg.snapshot.error-QUIESCING-ERROR” in vCenter Server

You get this when you clone a powered on vm. From: https://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=2069952   To resolve this issue, start the Windows Virtual Disk service: Log in to the Windows operating system as an Administrator. Click Start, type services.msc, and press Enter. Right-click the Virtual Disk service and click Start. If this does not resolve the issue, disable VMware snapshot provider in […]

Powercli 6.5 error with  add-pssnapin VMware.VimAutomation.Cor

They have chnage the way to app snapin! Get-Module -Name VMware.VimAutomation.Core -ListAvailable | Import-Module #add-pssnapin VMware.VimAutomation.Core     Error: add-pssnapin VMware.VimAutomation.Cor add-pssnapin : No snap-ins have been registered for Windows PowerShell version 3. At line:1 char:1 + add-pssnapin VMware.VimAutomation.Cor + ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ + CategoryInfo : InvalidArgument: (VMware.VimAutomation.Cor:String) [Add-PSSnapin], PSArgumentException + FullyQualifiedErrorId : AddPSSnapInRead,Microsoft.PowerShell.Commands.AddPSSnapinCommand

UpdateManager strange errors after migrate. interface com.vmware.vim.binding.integrity.baselinemanager is not visible from class loader

  From: https://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=2147284 Cautions: The following is a destructive task. Ensure you have working backups and/or snapshots of the vCenter Server Appliance 6.5 before proceeding.   Connect to vCenter Server Appliance 6.5 via SSH Run the shell command to switch to the BASH Shell:shell Stop the VMware Update Manager Service:service-control –stop vmware-updatemgr Run the following command […]

Error in Vsphere web Flash client. Cannot navigate to the desired location. Error details: An error occurred while activating extension vsphere.core.inventory.domainView. Invalid domain view id: vsphere.core.inventory.domainView

From: How to unregister vCenter plugin/extension using the MOB   1. Point your web browser to your vCenter server: https://VC-Server/mob and login. 2. Click on content: 3. Locate and click on ExtensionManager: 4. Click on the plugin you are interested in removing: 5. Record the plugin key id which will be used to remove the plugin: 6. Now, go […]

Virtual Center Appliance pre check failed Error: Source vCenter Server schema validation found an issue.

from the migration log: 2017-08-18 15:31:41.969Z| migration-assistant-5973321| E: ParsePreUpgradeOutput: Error: Failed to discover a system name that is compatible with both your VMware vCenter Server certificate and your VMware Single Sign-On certificate that can be used to migrate to a VMware vCenter Server Appliance with an embedded Platform Services Controller. 2017-08-18 15:31:41.969Z| migration-assistant-5973321| I: ParsePreUpgradeOutput: […]

Virtualcenter precheck migration from 5.5 to 6.5. Source vCenter Server schema validation found an issue.

Felmeddelande med Precheck vid migrering: Error: Source vCenter Server schema validation found an issue. 1 [42000](50000) [Microsoft][SQL Server Native Client 10.0][SQL Server]ERROR ! Missing constraints: VPX_ENTITY_LAST_EVENT.FK_VPX_LAST_EVENT_EVENT;   Testa först med detta sql script: alter table VPX_ENTITY_LAST_EVENT add constraint FK_VPX_LAST_EVENT_EVENT foreign key(LAST_EVENT_ID) references VPX_EVENT (EVENT_ID) on delete cascade Funkar inte detta måste följande göras: Please  follow […]

Using esxtop to identify storage performance issues

Using esxtop to identify storage performance issues Details This article provides information about esxtop and latency statistics that can be used when troubleshooting performance issues with SAN-connected storage (Fibre Channel or iSCSI). Solution The interactive esxtop utility can be used to provide I/O metrics over various devices attached to a VMware ESX host. Configuring monitoring using esxtop To monitor […]