How to Build a Home Lab for Infosec with Ralph May | 1 Hour

แชร์
ฝัง
  • เผยแพร่เมื่อ 22 พ.ค. 2024
  • Join us in the Black Hills InfoSec Discord server here: / discord to keep the security conversation going!
    📄 Learn penetration testing with Ralph May from Antisyphon
    Training: www.antisyphontraining.com/ha...
    📄 View Our Live Training Course Calendarwww.antisyphontraining.com/tr...
    📄 Live Training Course Catalog
    www.antisyphontraining.com/co...
    📄 Pay-What-You-Can Course Catalog
    www.antisyphontraining.com/pa...
    📄 On-Demand Training Course Catalog
    www.antisyphontraining.com/on...
    📄 Antisyphon Training Roadmap
    www.antisyphontraining.com/tr...
    00:00 - FEATURE PRESENTATION
    00:27 - WhoAMI
    01:22 - Warnings
    03:05 - Why a Home Lab?
    05:14 - Goals of a Home Lab
    05:57 - Homelab Parts
    06:47 - Network
    07:15 - Internet
    07:55 - Firewall
    09:04 - Firewall Options
    13:32 - Firewall Diagram
    14:27 - Switch
    15:29 - Switch Options
    15:56 - WiFI
    17:18 - Wifi Hardware
    17:41 - Storage
    18:45 - Storage RAID
    20:54 - Storage Types
    21:29 - Storage Local Vs NAS
    23:00 - Storage NAS Build
    25:03 - Storage NAS Buy
    26:26 - Compute
    27:53 - Compute X86-64
    28:40 - Compute AMD Desktop
    29:45 - Compute AMD Laptop
    30:52 - Compute ARM
    32:40 - Compute RAM
    33:51 - Compute PCI
    34:50 - Compute GPU
    36:07 - Compute Management
    37:33 - Compute Laptop
    38:15 - Compute Mini PC / Desktop
    38:55 - Compute Server
    39:35 - Compute Options
    43:41 - Hardware Deals
    44:17 - Virtualization / Containers
    46:06 - Automation
    47:07 - Applications
    47:30 - AD Lab
    48:02 - Detection Lab
    48:25 - Self Hosted
    49:29 - IDS / IPS
    49:48 - Security Distro
    50:27 - Logging
    50:57 - HELK
    51:24 - Cloud
    51:58 - Cloud Providers
    52:10 - Cloud Lab
    53:49 - Cloud on the Cheap
    54:17 - Community
    54:37 - Recap
    55:34 - Questions and Closing
    Description: In this Black Hills Information Security (BHIS) & Antisyphon webcast, we will learn all about home labs, what they are, recommendations on what to buy, and what you can do with them.
    The world of home labs can be as simple as one computer and as complex as a cluster in a server rack. The wildest thing is what you can do with these home labs and how they can help you learn IT concepts firsthand.
    On top of running stuff at home, we will discuss how to use the cloud to augment your home lab and when it makes the most sense.
    Slides for this webcast:
    www.blackhillsinfosec.com/wp-...
    Black Hills Infosec Socials
    Twitter: / bhinfosecurity
    Mastodon: infosec.exchange/@blackhillsi...
    LinkedIn: / antisyphon-training
    Discord: / discord
    Black Hills Infosec Shirts & Hoodies
    spearphish-general-store.mysh...
    Black Hills Infosec Services
    Active SOC: www.blackhillsinfosec.com/ser...
    Penetration Testing: www.blackhillsinfosec.com/ser...
    Incident Response: www.blackhillsinfosec.com/ser...
    Backdoors & Breaches - Incident Response Card Game
    Backdoors & Breaches: www.backdoorsandbreaches.com/
    Play B&B Online: play.backdoorsandbreaches.com/
    Antisyphon Training
    Pay What You Can: www.antisyphontraining.com/pa...
    Live Training: www.antisyphontraining.com/co...
    On Demand Training: www.antisyphontraining.com/on...
    Educational Infosec Content
    Black Hills Infosec Blogs: www.blackhillsinfosec.com/blog/
    Wild West Hackin' Fest TH-cam: / wildwesthackinfest
    Active Countermeasures TH-cam: / activecountermeasures
    Antisyphon Training TH-cam: / antisyphontraining
    Join us at the annual information security conference in Deadwood, SD (in-person and virtually) - Wild West Hackin' Fest: wildwesthackinfest.com/

ความคิดเห็น • 56

  • @BlackHillsInformationSecurity
    @BlackHillsInformationSecurity  ปีที่แล้ว +5

    Help us share the knowledge with the infosec community! Give us your Likes to help others find our videos. Share this video with your friends. We want to grow big for 2023, so tell us in the comments which topics you want to see from BHIS this coming year! Thank you, we appreciate you all!

  • @tbard
    @tbard ปีที่แล้ว +18

    Some options I use/have used in the past that I wanted to add:
    Firewall: installed on bare metal or VMs there is also Sophos XG Home that is also free, it's less lightweight than something like pfsense/opnsense so you WILL lose performance if you don't throw fast single core CPUs (not an issue if you have

  • @coloradopatrick
    @coloradopatrick ปีที่แล้ว +6

    Watching this in Jan '23. Great video! Thanks for recording and uploading. You've given a lot of content to think about as I go down the home lab path!

  • @jirayahatake
    @jirayahatake ปีที่แล้ว +19

    I don't think this should be called a "how to setup", it's more or less just an introduction/presentation.

  • @devohnmitchell
    @devohnmitchell ปีที่แล้ว +17

    I'm IT and looking to get into CyberSecurity. A question that was asked on a Job Interview was, "Tell Me about Your Home Network". From that question I realized that I needed to invest in HomeLab and hadn't put in time and money into developing my Home Network and segmenting my network more. Thanks for the Video.

    • @MygenteTV
      @MygenteTV ปีที่แล้ว +7

      Um Oh this is odd, what position were you applying for?

    • @julianod9426
      @julianod9426 ปีที่แล้ว +2

      ​@@MygenteTVmy thoughts as well!

    • @MygenteTV
      @MygenteTV ปีที่แล้ว

      @@julianod9426 yeah he never said what it was

    • @NYYstateofmind
      @NYYstateofmind ปีที่แล้ว

      You could just as easily talk about how your home network works

  • @possumwizard
    @possumwizard วันที่ผ่านมา

    This is super cool, thanks so much for sharing. I'm trying to break into the field and this will help me cobble all my project ideas together!

  • @prettyboylatino7324
    @prettyboylatino7324 ปีที่แล้ว +3

    Bro love the video. Appreciate your time and excellent concept. Just subbed

  • @keybordeur8308
    @keybordeur8308 6 หลายเดือนก่อน

    Very good video. Lots of info in an hour. Great presentation. Thank you!

  • @1xtra299
    @1xtra299 ปีที่แล้ว +14

    THANK YOU RECORDING AND UPLOADING THIS! Got stuck in a work meeting :(

    • @BlackHillsInformationSecurity
      @BlackHillsInformationSecurity  ปีที่แล้ว +5

      You're welcome! We record & publish all of our webcasts!

    • @MajesticBlueFalcon
      @MajesticBlueFalcon ปีที่แล้ว +2

      @@BlackHillsInformationSecurity I swear when I become rich I will make it my purpose in life to give you guys a tithing. You guys seriously deserve every cent you make from donations.

    • @MISTYEYED.
      @MISTYEYED. ปีที่แล้ว +1

      Yeah, a lot of content creators act like we can watch this stuff right when it happens.
      No regard.
      Thank you for uploading.

    • @BlackHillsInformationSecurity
      @BlackHillsInformationSecurity  ปีที่แล้ว +2

      Pay it forward! Buy someone worthy an Antisyphon training course or something. ;)

    • @MajesticBlueFalcon
      @MajesticBlueFalcon ปีที่แล้ว

      Will do!

  • @AdHdEntertainmentLLC
    @AdHdEntertainmentLLC ปีที่แล้ว

    gr8 video was on the live stream but had to leave so finishing up. Been working on my homelab which seems like forever

  • @SavageScientist
    @SavageScientist ปีที่แล้ว +5

    Man this is great information my home lab has a mix of things from different companies, i have a ubiquity router, netgear switch, motorola modem lol.

  • @markh3684
    @markh3684 ปีที่แล้ว +4

    Once you start hearing the um's, it's hard to hear anything else

  • @jdkingsley6543
    @jdkingsley6543 ปีที่แล้ว +4

    What a gem of a video, I was fortunate enough to build my home label with some older stuff, I just wanted to learn the basics. I one tip I tell folks is you dont have to break the bank.
    My lab consists of 5 machines, two of which are mac and the rest a combo of windows, windows server and Linux. An assort of switches, and a few watch dog firewalls. Most of my money went into software like burpsuite and virtual machine licenses.

    • @francis2k488
      @francis2k488 ปีที่แล้ว

      Nice. I mostly use virtual labs and am now ready for some hardware.

    • @okekeobi9885
      @okekeobi9885 ปีที่แล้ว

      What was the objective for your home lab, and do you mind sharing your complete set up?

  • @bbqworld2103
    @bbqworld2103 ปีที่แล้ว +1

    Great video, thanks!

    • @bbqworld2103
      @bbqworld2103 ปีที่แล้ว

      Could this be done on an older windows 7-8 laptop? Thanks

  • @cyrusdeath
    @cyrusdeath ปีที่แล้ว +8

    Nice video! I work in telcom, as I may get shivers with some of the gear your mentioning, here's my suggestions in a nutshell:
    I am biased as I prefer the more enterprise/carrier grade stuff, but Ill try to remain neutral :)
    1. Recommended min ISP Bandwidth: 25d / 10u (latency

  • @MygenteTV
    @MygenteTV ปีที่แล้ว +4

    Im only 5 seconds into your video and I already subscribed to your channel. You can tell when a person knows his stuff. Im always open to learn new stuff from others. I had been doing bug bounty for a decent time and now for job requiring doing the oscp, hope to learn new stuff from you

    • @HorribleEdgar
      @HorribleEdgar ปีที่แล้ว

      wow you could get that from him just saying "alright everybody were going to". because thats all that is said in the first 5 seconds lol

    • @MygenteTV
      @MygenteTV ปีที่แล้ว

      @@HorribleEdgar and as you can see I wasn't wrong

  • @Felix-ve9hs
    @Felix-ve9hs ปีที่แล้ว +1

    58:10 In my experience, Intel Desktop PCs use about 30W and Ryzen PCs about 50W at Idle.
    100-120W would be more in the range of a Dell PowerEdge R710 / R720.
    The Mini-PCs usually draw about 10W at Idle, a Raspberry pi even under 5W.

  • @tigerscott2966
    @tigerscott2966 9 หลายเดือนก่อน

    Nice Lab...
    Let me get my pen and paper...
    Class is in session...
    thanks...

  • @thatguyinelnorte
    @thatguyinelnorte 11 หลายเดือนก่อน +2

    Even though there is a huge range of products, it would be nice to have a low-end list of items and estimated pricing... What I've seen looks like > $5,000 for all "recommended" parts... so I either missed something, or I'm not the intended audience...

  • @Random-ch9my
    @Random-ch9my ปีที่แล้ว +1

    Just wanted to mention that Mikrotik (not Microtik) routeros is open-source, not closed source.

  • @danielstellmon5330
    @danielstellmon5330 ปีที่แล้ว +1

    the "best way" is the way that does what you need, you can use, and WILL use. The reset is opinion.

  • @YukisomeVideo
    @YukisomeVideo ปีที่แล้ว

    Can i follow this tutorial using an linux / window instance on aws ?

  • @Bargemanos
    @Bargemanos ปีที่แล้ว

    Just a typo i guess, but its OPNsense, without the E in open as shown in the video in the firewall part.

  • @fision8090
    @fision8090 ปีที่แล้ว

    I'm here to prove the minefield point and ask why you didn't mention the glorious kvm virtualization method? /s

  • @rationalbushcraft
    @rationalbushcraft ปีที่แล้ว +1

    I looks to me like you can heat your house with that equipment. jk I have access to all the enterprise equipment I could ever use. But my philosophy is I don't want to use that much electricity. For me I use a Lenovo mini with a large SSD drive that I run ESXi on. That really does most all I need for a home lab. Rarely do I need more than two or three vms at a time for testing.

  • @rashondricevans6282
    @rashondricevans6282 ปีที่แล้ว

    Where is the link to the Tiny Lab you mentioned?

  • @snoozeyoulose9416
    @snoozeyoulose9416 ปีที่แล้ว +1

    Not sure why I was shared this in recommendations but interesting. The best I can tell, a home lab is a hardware sandbox for hardware testing at an infrastructure/network level and the software that accompanies or aligns with it. The ability to throw various relevant things at it in regards to what could be considered attacks or vulnerabilities security wise to discover weaknesses. Network testing. Would be curious for feedback on this extremely limited understanding.

  • @ripits_62
    @ripits_62 ปีที่แล้ว

    Network topology diagrams?

  • @egan5166
    @egan5166 ปีที่แล้ว

    what’s the best way to get official windows licenses for testing (i.e. AD Lab) these days? msdn use to do subscriptions way back in the day…

    • @Chorrbs
      @Chorrbs ปีที่แล้ว +3

      MS will let you use server OS trial for 180 days. There's github scripts out there to get around this or you can just tear it down and rebuild every 180 days.

  • @barry3792
    @barry3792 ปีที่แล้ว +1

    Great work! Veteran to veteran, hey no disrespect but I'm having a hard time getting past your ascending inflection at the end of most sentences which seems to be mainstream these days 😖. But I'm sub'n anyway, thanks.

  • @sweetlulu4306
    @sweetlulu4306 ปีที่แล้ว

    I noticed the firewall chart didn't include firewalla

  • @imsethtwo
    @imsethtwo 2 หลายเดือนก่อน

    loved the video but the uhms and uhs were unbearable at some points lol

  • @mridontclickbaitftw4366
    @mridontclickbaitftw4366 ปีที่แล้ว

    How to build a full-sized spider web

  • @TinkerTech
    @TinkerTech ปีที่แล้ว +5

    Not trying to be nasty. I really liked the video. But you got carried away with "um". You have a great cadence, clear voice and the content in general was informative. Just try to work on that 1 thing

  • @scottt5570
    @scottt5570 4 หลายเดือนก่อน +2

    Umm, ugh, umm, uhh, umm, ugh, umm, uhh, umm 😳 got half way, cant listen to you saying umm anymore