How to Build a Home Lab for Infosec with Ralph May | 1 Hour
Вставка
- Опубліковано 19 чер 2024
- Join us in the Black Hills InfoSec Discord server here: / discord to keep the security conversation going!
📄 Learn penetration testing with Ralph May from Antisyphon
Training: www.antisyphontraining.com/ha...
📄 View Our Live Training Course Calendarwww.antisyphontraining.com/tr...
📄 Live Training Course Catalog
www.antisyphontraining.com/co...
📄 Pay-What-You-Can Course Catalog
www.antisyphontraining.com/pa...
📄 On-Demand Training Course Catalog
www.antisyphontraining.com/on...
📄 Antisyphon Training Roadmap
www.antisyphontraining.com/tr...
00:00 - FEATURE PRESENTATION
00:27 - WhoAMI
01:22 - Warnings
03:05 - Why a Home Lab?
05:14 - Goals of a Home Lab
05:57 - Homelab Parts
06:47 - Network
07:15 - Internet
07:55 - Firewall
09:04 - Firewall Options
13:32 - Firewall Diagram
14:27 - Switch
15:29 - Switch Options
15:56 - WiFI
17:18 - Wifi Hardware
17:41 - Storage
18:45 - Storage RAID
20:54 - Storage Types
21:29 - Storage Local Vs NAS
23:00 - Storage NAS Build
25:03 - Storage NAS Buy
26:26 - Compute
27:53 - Compute X86-64
28:40 - Compute AMD Desktop
29:45 - Compute AMD Laptop
30:52 - Compute ARM
32:40 - Compute RAM
33:51 - Compute PCI
34:50 - Compute GPU
36:07 - Compute Management
37:33 - Compute Laptop
38:15 - Compute Mini PC / Desktop
38:55 - Compute Server
39:35 - Compute Options
43:41 - Hardware Deals
44:17 - Virtualization / Containers
46:06 - Automation
47:07 - Applications
47:30 - AD Lab
48:02 - Detection Lab
48:25 - Self Hosted
49:29 - IDS / IPS
49:48 - Security Distro
50:27 - Logging
50:57 - HELK
51:24 - Cloud
51:58 - Cloud Providers
52:10 - Cloud Lab
53:49 - Cloud on the Cheap
54:17 - Community
54:37 - Recap
55:34 - Questions and Closing
Description: In this Black Hills Information Security (BHIS) & Antisyphon webcast, we will learn all about home labs, what they are, recommendations on what to buy, and what you can do with them.
The world of home labs can be as simple as one computer and as complex as a cluster in a server rack. The wildest thing is what you can do with these home labs and how they can help you learn IT concepts firsthand.
On top of running stuff at home, we will discuss how to use the cloud to augment your home lab and when it makes the most sense.
Slides for this webcast:
www.blackhillsinfosec.com/wp-...
Black Hills Infosec Socials
Twitter: / bhinfosecurity
Mastodon: infosec.exchange/@blackhillsi...
LinkedIn: / antisyphon-training
Discord: / discord
Black Hills Infosec Shirts & Hoodies
spearphish-general-store.mysh...
Black Hills Infosec Services
Active SOC: www.blackhillsinfosec.com/ser...
Penetration Testing: www.blackhillsinfosec.com/ser...
Incident Response: www.blackhillsinfosec.com/ser...
Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: www.backdoorsandbreaches.com/
Play B&B Online: play.backdoorsandbreaches.com/
Antisyphon Training
Pay What You Can: www.antisyphontraining.com/pa...
Live Training: www.antisyphontraining.com/co...
On Demand Training: www.antisyphontraining.com/on...
Educational Infosec Content
Black Hills Infosec Blogs: www.blackhillsinfosec.com/blog/
Wild West Hackin' Fest UA-cam: / wildwesthackinfest
Active Countermeasures UA-cam: / activecountermeasures
Antisyphon Training UA-cam: / antisyphontraining
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) - Wild West Hackin' Fest: wildwesthackinfest.com/
Help us share the knowledge with the infosec community! Give us your Likes to help others find our videos. Share this video with your friends. We want to grow big for 2023, so tell us in the comments which topics you want to see from BHIS this coming year! Thank you, we appreciate you all!
Watching this in Jan '23. Great video! Thanks for recording and uploading. You've given a lot of content to think about as I go down the home lab path!
Some options I use/have used in the past that I wanted to add:
Firewall: installed on bare metal or VMs there is also Sophos XG Home that is also free, it's less lightweight than something like pfsense/opnsense so you WILL lose performance if you don't throw fast single core CPUs (not an issue if you have
Bro love the video. Appreciate your time and excellent concept. Just subbed
I don't think this should be called a "how to setup", it's more or less just an introduction/presentation.
Very good video. Lots of info in an hour. Great presentation. Thank you!
gr8 video was on the live stream but had to leave so finishing up. Been working on my homelab which seems like forever
Man this is great information my home lab has a mix of things from different companies, i have a ubiquity router, netgear switch, motorola modem lol.
THANK YOU RECORDING AND UPLOADING THIS! Got stuck in a work meeting :(
You're welcome! We record & publish all of our webcasts!
@@BlackHillsInformationSecurity I swear when I become rich I will make it my purpose in life to give you guys a tithing. You guys seriously deserve every cent you make from donations.
Yeah, a lot of content creators act like we can watch this stuff right when it happens.
No regard.
Thank you for uploading.
Pay it forward! Buy someone worthy an Antisyphon training course or something. ;)
Will do!
What a gem of a video, I was fortunate enough to build my home label with some older stuff, I just wanted to learn the basics. I one tip I tell folks is you dont have to break the bank.
My lab consists of 5 machines, two of which are mac and the rest a combo of windows, windows server and Linux. An assort of switches, and a few watch dog firewalls. Most of my money went into software like burpsuite and virtual machine licenses.
Nice. I mostly use virtual labs and am now ready for some hardware.
What was the objective for your home lab, and do you mind sharing your complete set up?
I'm IT and looking to get into CyberSecurity. A question that was asked on a Job Interview was, "Tell Me about Your Home Network". From that question I realized that I needed to invest in HomeLab and hadn't put in time and money into developing my Home Network and segmenting my network more. Thanks for the Video.
Um Oh this is odd, what position were you applying for?
@@MygenteTVmy thoughts as well!
@@julianod9426 yeah he never said what it was
You could just as easily talk about how your home network works
Great video, thanks!
Could this be done on an older windows 7-8 laptop? Thanks
Nice video! I work in telcom, as I may get shivers with some of the gear your mentioning, here's my suggestions in a nutshell:
I am biased as I prefer the more enterprise/carrier grade stuff, but Ill try to remain neutral :)
1. Recommended min ISP Bandwidth: 25d / 10u (latency
This is super cool, thanks so much for sharing. I'm trying to break into the field and this will help me cobble all my project ideas together!
Once you start hearing the um's, it's hard to hear anything else
Im only 5 seconds into your video and I already subscribed to your channel. You can tell when a person knows his stuff. Im always open to learn new stuff from others. I had been doing bug bounty for a decent time and now for job requiring doing the oscp, hope to learn new stuff from you
wow you could get that from him just saying "alright everybody were going to". because thats all that is said in the first 5 seconds lol
@@HorribleEdgar and as you can see I wasn't wrong
58:10 In my experience, Intel Desktop PCs use about 30W and Ryzen PCs about 50W at Idle.
100-120W would be more in the range of a Dell PowerEdge R710 / R720.
The Mini-PCs usually draw about 10W at Idle, a Raspberry pi even under 5W.
Even though there is a huge range of products, it would be nice to have a low-end list of items and estimated pricing... What I've seen looks like > $5,000 for all "recommended" parts... so I either missed something, or I'm not the intended audience...
Nice Lab...
Let me get my pen and paper...
Class is in session...
thanks...
Can i follow this tutorial using an linux / window instance on aws ?
I'm here to prove the minefield point and ask why you didn't mention the glorious kvm virtualization method? /s
Just wanted to mention that Mikrotik (not Microtik) routeros is open-source, not closed source.
Just a typo i guess, but its OPNsense, without the E in open as shown in the video in the firewall part.
Not sure why I was shared this in recommendations but interesting. The best I can tell, a home lab is a hardware sandbox for hardware testing at an infrastructure/network level and the software that accompanies or aligns with it. The ability to throw various relevant things at it in regards to what could be considered attacks or vulnerabilities security wise to discover weaknesses. Network testing. Would be curious for feedback on this extremely limited understanding.
the "best way" is the way that does what you need, you can use, and WILL use. The reset is opinion.
I looks to me like you can heat your house with that equipment. jk I have access to all the enterprise equipment I could ever use. But my philosophy is I don't want to use that much electricity. For me I use a Lenovo mini with a large SSD drive that I run ESXi on. That really does most all I need for a home lab. Rarely do I need more than two or three vms at a time for testing.
what’s the best way to get official windows licenses for testing (i.e. AD Lab) these days? msdn use to do subscriptions way back in the day…
MS will let you use server OS trial for 180 days. There's github scripts out there to get around this or you can just tear it down and rebuild every 180 days.
Where is the link to the Tiny Lab you mentioned?
Here you go: www.servethehome.com/introducing-project-tinyminimicro-home-lab-revolution/
Network topology diagrams?
I noticed the firewall chart didn't include firewalla
09:04 - Firewall Options
13:32 I meant diagram, my bad
Great work! Veteran to veteran, hey no disrespect but I'm having a hard time getting past your ascending inflection at the end of most sentences which seems to be mainstream these days 😖. But I'm sub'n anyway, thanks.
loved the video but the uhms and uhs were unbearable at some points lol
How to build a full-sized spider web
Not trying to be nasty. I really liked the video. But you got carried away with "um". You have a great cadence, clear voice and the content in general was informative. Just try to work on that 1 thing
Umm, ugh, umm, uhh, umm, ugh, umm, uhh, umm 😳 got half way, cant listen to you saying umm anymore