• Enterprise Linux Security Episode 7 – ELevate

    Remaining on legacy Linux distributions can lead to additional security risks as time goes on, and migrating to a newer and better supported distribution can be a very difficult endeavor for most administrators. In this episode, Jay and Joao are joined by Jack from AlmaLinux, and we talk about ELevate – a tool that can be used to migrate from a distribution in the Enterprise Linux family to another Enterprise Linux distribution. This helps alleviate some of the burden of distro migration, and as a community project it’s also a great project to get started with contributing to an open-source project.

    YouTube player

    Episode downloads

  • Enterprise Linux Security Episode 6 – Image Defaults

    Although there’s no such thing as a “perfect” deployment image, including some sane defaults into your images and templates can save you a lot of work down the road, and also give you the opportunity to include more secure defaults. In this episode, we’ll discuss deployment image defaults as well as some recent news.

    YouTube player

  • Enterprise Linux Security Episode 4 – Supply Chain Attacks

    When you write software, there’s no reason to reinvent the wheel – shared libraries and other resources exist to enable you to create applications while avoiding redundant work. Unfortunately, sometimes the software supply itself chain is attacked, which would mean that your application contain malware or security threats you didn’t account for. In this episode of Enterprise Linux Security, Joao and I discuss supply chain attacks, as well as some ways to mitigate this threat.

    YouTube player
    (more…)
  • Enterprise Linux Security Episode 3 – Linux Distro Migrations

    Migrating your servers from one Linux distribution to another can be a daunting task, even moreso if it’s a migration you’re doing because of unforeseen events or changes within the ecosystem. In this video, Jay and Joao discuss the challenges when it comes to migrating Linux distributions, and the effect this has on security.

    YouTube player

    Ogg version

    MP3 version

    MP3 version (low)

    OS Migration Checklist

  • Live-patching QEMU with QEMUCare

    Rebooting is a pain, and in some organizations, downright tedious. Shuffling virtual machines between hosts in a cluster is even more tedious, and when it’s time to install patches, that’s what many administrators are forced to do. In this video, I check out QEMUCare, which aims to live-patch QEMU to avoid VM shuffling. In particular, we’ll look at installing ePortal (which deploys the patches) and also an example scenario.

    YouTube player
    (more…)
  • Enterprise Linux Security – Episode 02: Attack Vectors

    YouTube player
  • Enterprise Linux Security – Episode 01: Common Vulnerabilities & Exposures (CVEs)

    In episode 1 of the Enterprise Linux Security Podcast, Jay and Joao talk about CVEs: Common Vulnerabilities and Exposures. It’s an important topic to understand in the world of security, and we’ll talk about what this means, how they’re classified, and much more!

    YouTube player

    Check out additional episodes in this podcast here.

  • Special “SysAdmin Day” 2021 Panel Discussion

    System Administrator Appreciation Day is a special day of recognition that occurs on the last Friday of July each year. SysAdmin Day is intended to bring recognition to all the hard work that System Administrators perform to keep our systems running. In this video, I discuss SysAdmin Day (as well as many other topics surrounding the line of work) with Joao Correia from CloudLinux, and Brian from Admin Magazine. This was an awesome discussion, so don’t miss out!

    I had a chance to sit down with Joao Correia from CloudLinux and Brian Osborn from Admin Magazine to talk about System Administrators Appreciation Day, System Administration in general, and why we need to help our Admins feel more appreciated it.

    YouTube player
    (more…)
  • New Podcast: Enterprise Linux Security

    Enjoy the first episode of a brand new, bi-weekly podcast. Joao and I will get together in each episode and talk about all things Linux Security, with a focus on the Enterprise.

    YouTube player