IT Techy Minds -- We run and explore the IT

Hacker Methodology

Its very important to understand the hacker methodology and build security on these levels in order to protect your system or corporate network.

Many Ethical hacker names these steps with different words but overall background concept it almost same.

if you are a ethical hacker then you need to write a contract with company before performing any penetrate testing. its does not matter what level of testing you are doing but it has to be officially approved by authorised person. (wireless penetrate testing,webserver, network , System or application).

 

undefined

Phases of Ethichal Hacking

1. Reconnaissance : In this phase of analysis , Ethical hacker gather information about system in passive mode without giving any alert to System .

2. Scanning : Ethical hacker perform active scanning to system by using tool like Nmap (free tool), Nessus(its paid tool). there is high chance that you will alert system administrator.

3. Identify Volunerability: identify the application version or Os version used in system and find the volunerability mentioned in Rapid7 or exploitdb.com database for more details and how to exploit system

4. Gain Access : Get access to system by exploiting the open volunerabilty of system. open session with target device and get access to files, folders and sensitive informations.

5. Maintain access : this is very important phase , dangerous hacker mostly extend their access to multiple system in this phase and maintain it. it may be one system get fixed but their spread access into network system so loosing one access to system does not much affect them. being a ethical hacker its reposbilities to close these gaps for black hat hackers.

6. Report : In this final phase , Ethical hacker submit a report back to company so they can fix the risk areas.

once all the testing is completed , ethical hacker must clear all the logs and traces of penetrate testing from performed system.

 

follow my linked in group https://www.linkedin.com/groups/14529294/

Thanks

Webmaster

 

 

 

Storefront cannot be upgraded because the following folders are in use

Hello Users,

I have noticed this error very frequently while upgrading storefront from 2203 LTSR CU2 to 2203 LTSR CU3 version.

Storefront cannot be upgraded because the following folders are in use by another program. Close the program and try again:

C:\inetpub\wwwroot\Citrix\apps\App_Data

undefined

Here is quite easy solution to handle this.

Answer:

1. Open Task Manager

2. Find the process Explorer.exe

3. Kill the process

4.  as explorer.exe is stopped, we would not be able to browse to the path through explorer

5. in Task manager -- Under File-- Run new Task

6. Enter the path for storefront binary -- Run the Installer.

7. Storefront installation should work fine now.

8. Post upgrade start the explorer.exe process from Task manager-- under file -- Run new Task

9. Reboot the machine and test the storefront application afterwards.

Everything should work fine :)

Thanks

Amit Gupta

Procedure for Upgrading CVAD from 1912 to 2203 CU1 with differ-2 scenarios

Here is step by Step procedure for upgrading Virtual apps and Desktop environment from 1912 to 2203 CU1.

 

Scenario Covered:

1. SQL Server requirements and how to do DB upgrade activity

2. Upgrade OS on Citrix application Servers.

SQL Part: in short if you are running 1912 Site DB on SQL Server 106 SP2 or any higher version then you dont need to take action since 2203 CU1 minimum DB requirements is SQL Server 2016 SP2 (Express, Standard, and Enterprise Editions.).

in case you are running old then minimum SQL version . 

more details refer to Citrix live docs https://docs.citrix.com/en-us/citrix-virtual-apps-desktops/2203-ltsr/system-requirements.html

Please follow below procedure. 

1. Setup supported Sql Server 

2. move DB connection to new SQL Server (https://ittechyminds.com/index.php?controller=post&action=view&id_post=16)

3. Upgrade ExpressLocalDB on Delivery controllers (https://docs.citrix.com/en-us/citrix-virtual-apps-desktops/2203-ltsr/upgrade-migrate/upgrade.html#replace-sql-server-express-localdb)

4. upgrade the Citrix site to 2203 CU1 now :)

 

Citrix license Server is quite simple to change:

1. Setup new Server 2202 OS

2. Install Citrix license 2203 CU1 or 2 application on Server

3. allocate and install license to new Server

4. change config in Citrix application to new license Server (Site, PVS, App layering and PVS as applicable).

Upgrade OS from 2012 , 2016 or 2019 to 2203 Server Citrix Storefront controllers.

1. 1912 CUX don't support 2203 Server OS.

2. Upgrade Storefront to 2203 CU1 or 2 from 1912 CUX version.

3. Setup Server with 2203 OS.

4. Install 2203 CU1 or 2 Storefront application on these Server

5. Join new 2003 Server to Server Group.

6. Make changes in NetScaler for new Servers.

7. ensure config is replicated to new Servers.

8. Verify new Storefront Servers are working as expected

9. Remove 2019 Os Delivery controllers from Server Group.

10. Verify everything is working fine internally and externally if used.

11. Decom old Servers.

 

 

Upgrade OS from 2012 , 2016 or 2019 to 2203 Server Citrix Delivery controllers.

1. 1912 CUX don't support 2203 Server OS.

2. Upgrade Site to 2203 CU1 or 2 from 1912 CUX version.

3. Setup Server with 2203 OS.

4. Install 2203 CU1 or 2 delivery controller on these Server

5. Join new 2003 Server to Site.

6. Make changes in storefront for delivery controllers , STA and STA on netscalers if used.

7. verify VDA are getting registered to new DDC and make registry changes for VDA

8. once all the VDAs are enrolled to new DDC Servers.

9. Remove 2019 Os Delivery controllers from Site

10. Verify everything is working fine internally and externally if used.

11. Decom old Servers.

 

 

Citrix SIA Service (Citrix Secure Internet Access)

Hello,

Citrix SIA is one Saas cloud based Service from Citrix Vendor.  SIA ensures protection to Web & Saas base applications. when we say Web and Saas Apps means all the internet traffic which is going in or out from client machine.

undefined

                                              Diagram from Citrix Docs

 

Citrix SIA Service consist of following components working under one Umbrella.

1. Secure Web Gateway

2. Firewall

3. CASB (Cloud Access security Broker)

4. DLP (Data Loss prevention)

5. Sandox 

6. Malware Protection.

Citrix deliver a SASE Architecture. (Secure Access Service Edge) where All the Services are delivered via one Vendor with tight integration  Citrix CVAD, SD-WAN, Citrix Workspace Secure Access and third party SD-WAN solutions , Splunk, Microsoft CAS other security products.

Citrix SIA qualities which makes it different from other vendors solutions.

1. Comprehensive security :- web Gateway, Firewall, CASB, DLP, IDP,malware protection, SSL Packet inspection.

2. Unified managment : Single Vendor solution and tight integration with SD-WAN, CVAD, Analytics and CSWA .

3. single phase architecture

4. 100 plus Point of presense

5. 10 Plus malware engine feeds : best 10 security feeds under one price umbrella.

6. Higher performance (Auto Scale in)

7. Dedicated instance per customer. 

Few benefits of SASE 

1. Single Vendor solution which reduces resolution time

2. better managebility

3. Lower down the cost of solution

4. better performance

5. lower down the handling time 

6. less complexity

We will be publishing another article for explaning each Citrix SIA Component deeply.

thanks for reading and keep studying.

Thanks

Amit Gupta

 

Newer posts → Home ← Older posts