Ultra-Curated Threat Intelligence
1:04
CrowdSec's Alpaca Odyssey!
1:04
9 ай бұрын
Learn how to install CrowdSec
22:53
Say hello to the CrowdSec Academy!
32:01
Пікірлер
@wzot
@wzot 2 күн бұрын
Great beginners tutorial, and overall great product! Thanks!
@nonodev96
@nonodev96 16 күн бұрын
Muy buen taller, explicado y directo al grano, se agradece mucho la pista de audio en Español, en mi camino a devops comentaré crowdsec en mis futuros trabajos. Gracias😀
@infinit3i
@infinit3i 2 ай бұрын
This is incredible, I love this! thank you CrowdSec!!
@horusofoz
@horusofoz 2 ай бұрын
Thank you for taking the time to create this valuable resource.
@crowdsec
@crowdsec 2 ай бұрын
My pleasure! - Laurence CrowdSec Support
@K1llerX
@K1llerX 2 ай бұрын
hi there, is this still working in may 2024? Thanks!
@crowdsec
@crowdsec 2 ай бұрын
Majority of it yes, however, the dependencies have grown a little you can see everything documentation here docs.crowdsec.net/docs/next/getting_started/install_source - Laurence CrowdSec Support
@Vein1986
@Vein1986 2 ай бұрын
Great success with posting video with topic and description in english but content is in french...
@imwacc0834
@imwacc0834 3 ай бұрын
What protects you from Fifth Colum? In this case "Fake Reviews"? Not hard to set up a bot net to say "Hey, this site is OK"
@SuperJuanRazo
@SuperJuanRazo 4 ай бұрын
Is it free or paid
@crowdsec
@crowdsec 4 ай бұрын
The Security Engine is free to use, we offer a freemium model via app.crowdsec.net/ but you dont have to use the console.
@seguridadinformatica8902
@seguridadinformatica8902 4 ай бұрын
Me llamo alejandro vengo instalando crowdsec en un ubuntu virtual , y todo se instala perfecto. luego instalo esenarios bouncers, todo tal cual esta en los videos. pero luego enrrolo y no detecta nada. yo lo pruebo tirando fuerza bruta o ddos a mi ip publica. pero nada funciona . Me ayudarias porque es una herramienta q me puede servir mucho.
@ChristianAllen-rm7so
@ChristianAllen-rm7so 4 ай бұрын
Amazing video Jack 🎉
@TeaGuyAJ
@TeaGuyAJ 4 ай бұрын
Is there any plans to add a bouncer for nginx proxy manager?
@crowdsec
@crowdsec 4 ай бұрын
Nginx proxy manager is already supported but we dont build it ourselves, we have a community member that manages a fork github.com/crowdsecurity/example-docker-compose/tree/main/npm
@NetBandit70
@NetBandit70 4 ай бұрын
Your audio sucks
@beatrizguiselle2575
@beatrizguiselle2575 5 ай бұрын
Im having an issue where since the new update internal (private ip) traffic is being blocked. Does the new update to 1.6 overwrite the custom files eg:mywhitelists.yaml?
@jeffreyr9773
@jeffreyr9773 6 ай бұрын
*Promo SM* 💃
@ernestogp5010
@ernestogp5010 6 ай бұрын
excelente, ya estoy pidiendo presupuesto para su implementación. esta iniciativa es perfecta poner lenguaje habla hispano.
@crowdsec
@crowdsec 6 ай бұрын
Since editing the video youtube has removed the chat replies! Here is a link to the workshop: killercoda.com/iiamloz/scenario/crowdsec-appsec All other links you will need are in the description!
@diefer8093
@diefer8093 6 ай бұрын
Good job bro
@enderst81
@enderst81 6 ай бұрын
This was a good video. I always pick up something when I see someone else do the same tasks. Like assigning the SSH port based on ram, that's a great idea. Keep them coming.
@enderst81
@enderst81 6 ай бұрын
Anyone know which mic he's using?
@crowdsec
@crowdsec 6 ай бұрын
It is HyperX QuadCast - USB Microphone, however, I am using a custom arm mount to my desk. Hope this helps!
@tolpacourt
@tolpacourt 6 ай бұрын
FYI nginx is no longer supported on Ubuntu Jammy 22.04.3 LTS. You need to install openresty (includes nginx core) for a bouncer to work. Or does the 1.5.x version install it for you?
@crowdsec
@crowdsec 6 ай бұрын
Nginx lua is not supported by Ubuntu from Jammy onwards. Within the video, we use 20.04, which was still LTS at the time. For package installation, you must use open resty moving forwards. However, if you still want to use nginx, then you must either compile your own or use a third-party repository.
@Roberto.P
@Roberto.P 6 ай бұрын
Hi! is there a step by step guide to install CrowdSec on OpenWRT? I tried to install it on my router that uses OpenWRT, but the bouncer doesn't work. Thanks!
@nerdon2
@nerdon2 7 ай бұрын
This project is so cool. I just wanted to let you know that I just learned about you from PC security channels "has Windows become spyware" and I'll definitely take a closer look at crowdsec when I set up my own server.
@crowdsec
@crowdsec 7 ай бұрын
That's great to hear :)
@Resulok
@Resulok 7 ай бұрын
Hi , could you please share what distribution do you using for streams ?:)
@crowdsec
@crowdsec 7 ай бұрын
We always use debian 12 as our primary demostration distribution
@3rett115
@3rett115 7 ай бұрын
Starts at 11:50
@crowdsec
@crowdsec 6 ай бұрын
Sorry we have just edited the video to cut out the long stream intro! Thank you for allowing people to skip this before this change ♥
@robkage
@robkage 7 ай бұрын
This is awesome. I'm about to deploy servers for a small business and will be deploying crowdsec, Could we ave a Windows set up and config please? So many of us are still stuck in this space. Thanks in advance and what an awesome project guys.
@sbme1147
@sbme1147 8 ай бұрын
Don’t speak Spanish but glad to see it explained in another language ( well, even though took 4 yrs in High School )!!
@QuantumByteHub
@QuantumByteHub 8 ай бұрын
great video and well explained, thank you
@Poiisonfire
@Poiisonfire 8 ай бұрын
we need some videos for windows please ! its time to make it simple
@Altair123
@Altair123 9 ай бұрын
Muy útil ! gracias me ha ayudado mucho!
@crowdsec
@crowdsec 8 ай бұрын
Nos alegramos mucho @Altair123!
@SolaAesir
@SolaAesir 9 ай бұрын
Actually starts at 4:25
@SolaAesir
@SolaAesir 9 ай бұрын
It would be really nice to get a guide on how to set up the tarpit like you mentioned. Assume SSH, EndlessSSH, and a base Crowdsec are installed, how do you go from there to automatic blocking of attackers against your other services? I know Crowdsec is mostly targeted more at professionals, but as a homelabber I don't mind sharing my logs too much and I'm only running a couple of services so I can be confident anything else is an attack. Give us some quick and easy ways to flag bad actors and you'll get more clean data more quickly. I don't have the energy to dive into the minutia of Crowdsec like it's my job, but give me some quick and easy recipes (i.e. 5-10 minute videos) to capture high quality data and I'll happily set them up, especially if I'm protecting my other services at the same time.
@crowdsec
@crowdsec 9 ай бұрын
Yes! and our support specialist has arranged a live stream on KZfaq for this topic kzfaq.info-l0E0oIo6no If you cannot make it for the time directly because its on KZfaq it will automatically be uploaded as a reply.
@user-qn4yb1qs8j
@user-qn4yb1qs8j 9 ай бұрын
Great one! See you all next year.
@bizkurt99
@bizkurt99 9 ай бұрын
👍🏻
@tboogs74
@tboogs74 11 ай бұрын
Doesn’t work in promox shell
@crowdsec
@crowdsec 10 ай бұрын
Hey we didn't try a proxmox shell in particular any issues you are hitting if you head over to our discord.gg/crowdsec you can get help from the team.
@MussaDinani
@MussaDinani 11 ай бұрын
X
@crowdsec
@crowdsec 10 ай бұрын
x.com/Crowd_Security 🤔🤔🤔
@omargonalfa
@omargonalfa Жыл бұрын
I'm interested in getting tech support for a project similar to this one. Please inform me if this is possible, and I fully intend to pay for your support services.
@sujenrios2902
@sujenrios2902 Жыл бұрын
thank you so much
@crowdsec
@crowdsec 10 ай бұрын
You're welcome!
@jamesdim
@jamesdim Жыл бұрын
Amazing open source project!
@crowdsec
@crowdsec Жыл бұрын
Thanks for the support!
@jamesdim
@jamesdim Жыл бұрын
Great tutorial! Thank you! Recommended to anyone starting with crowdsec.
@WallaceRoseVincent
@WallaceRoseVincent Жыл бұрын
Thanks, I needed this. I am paying attention.
@omargonalfa
@omargonalfa Жыл бұрын
I installed Crowdsec and Integrated it with Kubernes like your doc explain. Can Crowdsec capture incidents such as container escape? if so how?
@crowdsec
@crowdsec Жыл бұрын
We recently added the ability to send K8s audit logs to be parsed by crowdsec docs.crowdsec.net/docs/next/data_sources/kubernetes_audit these logs are needed for CrowdSec to detect such attacks
@omargonalfa
@omargonalfa Жыл бұрын
I need assistance with installing CrowdSec on an Oracle Linux machine that is not connected to the internet.
@crowdsec
@crowdsec Жыл бұрын
Please join our discord so we can try help (because you need to have some way to get files downloaded or mounted to your machine) discord.gg/crowdsec
@omargonalfa
@omargonalfa Жыл бұрын
I need assistance with installing CrowdSec on an Oracle Linux machine that is not connected to the internet.
@crowdsec
@crowdsec Жыл бұрын
Please join our discord so we can try help (because you need to have some way to get files downloaded or mounted to your machine) discord.gg/crowdsec
@apigoterry
@apigoterry Жыл бұрын
Good day. Been using crowdsec since March of 2023. I would like to ask how would i know if im sharing my blacklist IPs and how would i also know if im getting other blacklist IPs shared by other members of the community?
@crowdsec
@crowdsec Жыл бұрын
Hey ! If you check the crowdsec.log file you should be able to see the following lines time="26-05-2023 06:23:42" level=info msg="capi metrics: metrics sent successfully" mean your local decision have been sent to central API. time="26-05-2023 04:33:30" level=info msg="Starting community-blocklist update" means the blocklist is being updated. If you dont see these then there might a confiuration issue and we suggest to join our discord.gg/crowdsec Commands ran to check log files: sudo grep update /var/log/crowdsec.log sudo grep metrics /var/log/crowdsec.log
@davidadams421
@davidadams421 Жыл бұрын
Very interesting. I liked the fact you went through most things at a high level, which is exactly what an overview should be. Sometimes you just need to know 'what are the boundaries of a thing' to avoid becoming overwhelmed. Great job.
@nixeverything
@nixeverything Жыл бұрын
whelp, it is in chocolatey and i installed crowdsec and bouncer. working great. Easy install, but do still go through the windows install on the site to plug in the log stuff prior to installing the bouncer.
@dbishop9085
@dbishop9085 Жыл бұрын
why is nginx even being used here? it is not usable out of the box anymore and not discussed at all. this is not beginner level.
@crowdsec
@crowdsec Жыл бұрын
Hey Laurence here from the video. Nginx is just an example application which is just the default install from ubuntu which is the default image provided by killercoda. Sorry you feel this is not beginner level, anything in particular you felt was difficult or not explained well from the point of view of Crowdsec.
@dbishop9085
@dbishop9085 Жыл бұрын
@@crowdsec hey Lawrence, I really liked the video other than nginx as you can't install a your nginx bouncer due to the lua dependencies required are not supported anymore from what I understand. Is there a video or documentation explaining how to address this issue? Getting any answers on discord for the few posts I have made hasn't been super helpful, particularly when trying to set up parent and child agents.
@crowdsec
@crowdsec Жыл бұрын
​@@dbishop9085 Yes, ubuntu 22.04 dropped support for nginx lua. So it means you would have to use openresty moving forward. This is a decision from the ubuntu team so we cannot force them to support a package. In their owns words "Just use openresty as it's a drop in replacement" I am quite active on the discord are you experiencing any issues?
@dbishop9085
@dbishop9085 Жыл бұрын
@@crowdsec "are you experiencing any issues? "lol I have plenty of them. I am trying to learn how to effectively use crowdsec with child agents. I have a million little questions, but my main one to stay on point here is, where can I get some information on how to best move to openresty either by replacing nginx or adding a module maybe? I am pretty lost and do realize it has nothing to do with crowdsec - only that using nginx in current videos is somewhat misleading as it isn't mentioned that 22.04 does support nginx lua. Any help for this hurdle would be appreciated. Re: Discord - I have a question open in discord right now that I opened nearly 24 hours ago without any response at all. Thanks again for the reply!
@crowdsec
@crowdsec Жыл бұрын
@@dbishop9085 I understand your point about 22.04 but we are not using that version here and to be completely honest its for beginners we dont need to add all little details it will just confuse people. Most of openresty is compatible with nginx as it is nginx under the hood it just comes with lua support out of the box rather than it being a module. Discord is community support its not a service desk so expecting it to be that it is not. From the times you seem to be online I also believe our timezones are rather different we are CET. However, I will continue the conversation on discord
@NoneYa-gp6qq
@NoneYa-gp6qq Жыл бұрын
Im having a hard time finding the info, but I run ssh on a non-standard port. How do I configure the ssh scenarios over the default port and the one I've created?
@crowdsec
@crowdsec Жыл бұрын
No need, we read the logs from syslog (or auth.log if your distro does that) and it doesn't matter what port you are running on.
@jean-michelb7290
@jean-michelb7290 Жыл бұрын
thank you so much !!