SPL or KQL?π€
If you're in a SOC or doing detection engineering, which one is actually running your daily operations right now?
Are you strictly writing SPL, fully relying on KQL, or stuck translating between both?
#Cybersecurity#SIEM#Splunk#MicrosoftSentinel#InfoSec#SOC #Microsoft
I set up Tailscale across my devices to solve it:
β’ Zero exposed ports: RDP remains enabled locally on Windows, but port 3389 stays completely closed on my router. Traffic only flows over Tailscale's encrypted WireGuard mesh tunnel.
β’ MagicDNS: I connect directly using machine hostnames (rdp workstation) instead of memorizing IP addresses, accessing my desktop from my laptop or phone on the go.
β’ No firewall hassle: Works seamlessly across NAT and strict network setups without poking holes in the router boundary.
It took about 15 minutes to configure, but knowing port 3389 isn't sitting wide open on public scanners makes a huge difference.
#Cybersecurity #NetworkSecurity #Tailscale #RemoteAccess #Infosec #ZeroTrust
I finally closed port 3389 on my router for good. π§΅@Tailscale
I wanted seamless remote desktop access to my setup, but opening RDP directly to the public internet always felt like playing Russian roulette with automated scanners and brute-force bots. Port forwarding was a security trade-off I wasn't willing to keep making. β¬οΈ
@the_codewala You could use @ZorinOS π€
It offers multiple desktop layouts, including specific modes that replicate Windows 10 and Windows 11 interfaces
Wrapped up the @Azure Fundamentals
AZ-900 curriculum on Microsoft Learn. π§΅
Going through these modules provided a solid technical baseline for how physical systems architecture translates into Microsoftβs cloud control plane. β¬οΈ