20250502 - notes

This commit is contained in:
Petar Cubela
2025-05-02 09:40:37 +02:00
parent 0cb3f588fa
commit 41e3cc1e7f
5 changed files with 116 additions and 43 deletions

View File

@@ -37,7 +37,7 @@
"state": {
"type": "markdown",
"state": {
"file": "diary/2025-04-29.md",
"file": "diary/2025-05-02.md",
"mode": "source",
"source": true,
"backlinks": true,
@@ -52,31 +52,7 @@
}
},
"icon": "lucide-file",
"title": "2025-04-29"
}
},
{
"id": "6afce9769f210b2e",
"type": "leaf",
"state": {
"type": "markdown",
"state": {
"file": "projects/kwa/firewall_migration/20250317_first-meeting.md",
"mode": "source",
"source": true,
"backlinks": true,
"backlinkOpts": {
"collapseAll": false,
"extraContext": false,
"sortOrder": "alphabetical",
"showSearch": false,
"searchQuery": "",
"backlinkCollapsed": false,
"unlinkedCollapsed": true
}
},
"icon": "lucide-file",
"title": "20250317_first-meeting"
"title": "2025-05-02"
}
},
{
@@ -150,9 +126,33 @@
"icon": "lucide-file",
"title": "possible-impovements"
}
},
{
"id": "6afce9769f210b2e",
"type": "leaf",
"state": {
"type": "markdown",
"state": {
"file": "projects/w&h-Projekt/20250430-ap-in-garten.md",
"mode": "source",
"source": true,
"backlinks": true,
"backlinkOpts": {
"collapseAll": false,
"extraContext": false,
"sortOrder": "alphabetical",
"showSearch": false,
"searchQuery": "",
"backlinkCollapsed": false,
"unlinkedCollapsed": true
}
},
"icon": "lucide-file",
"title": "20250430-ap-in-garten"
}
}
],
"currentTab": 4
"currentTab": 1
}
],
"direction": "vertical"
@@ -328,13 +328,17 @@
"templater-obsidian:Templater": false
}
},
"active": "33e939315b6ac8f0",
"active": "b865e0663684cf60",
"lastOpenFiles": [
"projects/OPNsense/STANDARDS/Monthly-Time.md",
"projects/OPNsense/STANDARDS/Feature-Capability.md",
"projects/OPNsense/STANDARDS/possible-impovements.md",
"diary/2025-04-29.md",
"diary/2025-05-02.md",
"projects/w&h-Projekt/20250430-ap-in-garten.md",
"projects/OPNsense/STANDARDS/possible-impovements.md",
"projects/OPNsense/STANDARDS/Feature-Capability.md",
"projects/OPNsense/STANDARDS/Monthly-Time.md",
"projects/kwa/firewall_migration/20250317_first-meeting.md",
"projects/w&h-Projekt",
"diary/2025-04-30.md",
"projects/OPNsense/Schulungen/Untitled",
"projects/OPNsense/unknown/opnsense-proposal-draft.md",
"projects/OPNsense/Initial-Notes/OPNsense-approxminated-service-time.md",
@@ -356,17 +360,13 @@
"projects/OPNsense/opnsense-utm-features/opnsense-lets_encrypt.md",
"projects/OPNsense/Initial-Notes/OPNsense_IDS-and-IPS.md",
"projects/kwa/firewall_migration/20250414-preparation.md",
"projects/kwa/firewall_migration/20250318-OPNsense_Migration.md",
"archive/APSA",
"todo.md",
"projects/OPNsense/Cluster/20250307-cluster-test-on-sg310.md",
"files/Pasted image 20250429110706.png",
"projects/win10_2_win11",
"projects/sbx/manuals",
"projects/ssr/202504-4architekten",
"projects/sbx/firewall-std",
"archive/boschmann+feth",
"files/discopharma/discopharma-infra.drawio.png",
"files/discopharma"
"files/discopharma/discopharma-infra.drawio.png"
]
}

View File

@@ -12,24 +12,33 @@ $i\hbar \frac{\partial}{\partial t} \Large{|}\psi \Large{>} = \hat{H} \Large{|}\
## Timestamps
- 08:45 - 09:00: [x] KWA OPNsense Firewall Regeln nachbessern
- 08:15 - 08:30: Ankunft, Kaffee
- 08:30 - 08:45: Privat
- 08:45 - 09:15: OPNsense Reporting/Monitoring
- 09:15 - 09:30: Besprechung mit Holger von Win10 zu 11 upgrades/fails
- 09:30 - 09:45: Ticketpflege
- 09:45 - 12:00: W&H: thilo info, Tlefonat mit Jan, AP holen, planen, Firewall pruefe, Switch, Ruckus pruefen
- 12:00 - 14:00: Vor Ort bei W&H
- 14:00 - 15:00: Anfahrt
- 15:00 - 16:00: Pause
- 16:00 - 16:30: VPN Problem bei Maccon mit Volker (T20250429.0020)
- 16:30 - 17:00: Ticketpflege
## Tuesday
- 09:15 - 10:30: TGA WebServer Protection zu Cloud
- 10:30 - 10:45: Rauchen
- 10:45 - 11:00: OPNcentral Lizenz einspielen und dokumentieren
- 11:00 - 11:30: KWA OPNsense IT-Glue Doku weiterverfassen
- 11:30 - 12:00: OPNsense cqse Angebot pruefen und besprechen
- 12:00 - 13:00: Pause
- 13:00 - 14:00: KWA: Unterstuetzung bei VPN Einrichtung auf iOS, Mail verfassen zu VW Ablage von Projekten auf NAS: pruefe Firewall Rules
- 14:00 - 14:30: SSR: VW home.asp ticket von annika. Pruefe VWLizenz Server
- 14:30 - 15:00: pause
- 15:00 - 15:30: OPNsense feature liste
## todo
### General
- [ ] Liste erstellen aller Projekte, die es gibt und neuem Mitarbeiter vorstellen
- [ ] handout fuer jeweils sophos und opnsense als vergleich
- [ ] verbraucherzentrale cybercns ueberpruefung - kw ab dem 16.01 wegen baldiger sicherheitspruefung

0
diary/2025-04-30.md Normal file
View File

56
diary/2025-05-02.md Normal file
View File

@@ -0,0 +1,56 @@
$i\hbar \frac{\partial}{\partial t} \Large{|}\psi \Large{>} = \hat{H} \Large{|}\psi \Large{>}$
![important](files/sbx/important.png)
### KWA OPNsense nacharbeit
- [x] backup via ftp to nas if possible --> backup via opncentral
- [ ] change ilo ip such that its in the mgmt net
- [ ] unifi cloud key mit cloud koppeln
- [x] Switch und APs in IT-Glue hinterlegen
- [ ] physische Beschriftung anpassen
## Timestamps
- 08:15 - 09:30: Ticketpflege
- 09:30 - 10:00: Meinen Windows Rechner pruefen auf wichitge Dateien
## todo
### General
- [ ] Liste erstellen aller Projekte, die es gibt und neuem Mitarbeiter vorstellen
- [ ] handout fuer jeweils sophos und opnsense als vergleich
- [ ] verbraucherzentrale cybercns ueberpruefung - kw ab dem 16.01 wegen baldiger sicherheitspruefung
- [=] filewave - integrate new admin user - integrated in filewave - need to be tested and then deployed on all macs
- [ ] kwa/ssr snmp karten fuer usv
- [ ] update filewave admin und central
### SBX
- [ ] backup on external drive for pve.lab.softbox.net
- [ ] check if possible to monitor vsphere passwd expiration
- [ ] create obsidian templates (Meetings, People, )
- [ ] sbx - opsreportcard summary for action plan
- [ ] fuege bharchitekten zu connectsecure hinzu
- [ ] erstelle connectsecure report fuer grasslfing
- [ ] cybercns bei heilmaier
- [ ] Fuer Synology Monitoring smtp einrichten wegen HyperBackups
#### OPNsense
1. check franke rieger firewall setup
2. replicate config on opncentral (IDS/IPS, OpenVPN, Web Proxy, antivirus, acme ground {needs specific manual how to setup on spot}, ...)
3. test management via opncentral
4. write manual for on-boarding
- setup wan manually
- couple to opncentral
- send generic config via opncentral
- use manual for missing specific configs
- check workings of everything

View File

@@ -0,0 +1,8 @@
## Base
- wlan: `$$2025-W&H-KG!!`
- gast: `$$2025-Guest-WuH??`
- adresse: Mauerkircherstraße 8, 81679
sqithc: 't8*rDCm$^BMh'