Unit 1 - Build Standards and Compliance
- https://csrc.nist.gov/projects/risk-management/about-rmf
- https://www.open-scap.org
- https://excalidraw.com
Unit 2 - Securing the Network Connection
- https://www.activeresponse.org/wp-content/uploads/2013/07/diamond.pdf
- https://ciq.com/blog/demystifying-and-troubleshooting-name-resolution-in-rocky-linux/
- https://docs.rockylinux.org/gemstones/core/view_kernel_conf/
- https://public.cyber.mil/stigs/downloads/
Unit 3 - User Access and System Integration
- https://man7.org/linux/man-pages/man8/pam_access.8.html
- https://docs.rockylinux.org/books/admin_guide/06-users/
- https://docs.rockylinux.org/guides/security/authentication/active_directory_authentication/
- https://docs.rockylinux.org/guides/security/pam/
Unit 4 - Bastion Hosts and Airgaps
- https://github.com/het-tanis/stream_setup/blob/master/roles/bastion_deploy/tasks/main.yml
- https://aws.amazon.com/blogs/security/tag/bastion-host/
- https://aws.amazon.com/search/?searchQuery=air+gapped#facet_type=blogs&page=1
- https://github.com/het-tanis/prolug-labs/tree/main/Linux-Labs/210-building-a-bastion-host
- https://killercoda.com/het-tanis/course/Linux-Labs/210-building-a-bastion-host
- https://killercoda.com/het-tanis/course/Linux-Labs/204-building-a-chroot-jail
Unit 5 - Updating Systems and Patch Cycles
- https://www.redhat.com/en/blog/whats-epel-and-how-do-i-use-it/
- https://wiki.rockylinux.org/rocky/repo/
- https://sig-core.rocky.page/documentation/patching/patching/
- https://docs.rockylinux.org/books/admin_guide/13-softwares/
- https://httpd.apache.org/
- https://killercoda.com/het-tanis/course/Ansible-Labs/102-Enterprise-Ansible-Patching
- Linux InfiniBand Drivers
Unit 6 - Monitoring and Parsing Logs
- https://www.fluentd.org/architecture
- https://landscape.cncf.io/guide#observability-and-analysis--observability
- https://docs.aws.amazon.com/wellarchitected/latest/framework/sec_detect_investigate_events_app_service_logging.html
- https://get.influxdata.com/rs/972-GDU-533/images/Customer%20Case%20Study_%20Wayfair.pdf
- https://catalog.workshops.aws/well-architected-security/en-US/3-detection/40-vpc-flow-logs-analysis-dashboard/1-enable-vpc-flow-logs
- https://killercoda.com/het-tanis/course/Linux-Labs/108-kafka-to-loki-logging
- https://kafka.apache.org/uses
- https://grafana.com/docs/loki/latest/reference/loki-http-api/#query-logs-within-a-range-of-time
- https://killercoda.com/het-tanis/course/Linux-Labs/102-monitoring-linux-logs
- https://grafana.com/docs/loki/latest/get-started/architecture/
- https://killercoda.com/het-tanis/course/Linux-Labs/206-setting-up-rsyslog
- https://aws.amazon.com/blogs/security/logging-strategies-for-security-incident-response/
- https://sre.google/sre-book/monitoring-distributed-systems/
- https://jvns.ca/blog/2019/06/23/a-few-debugging-resources/
- https://google.github.io/building-secure-and-reliable-systems/raw/ch15.html#collect_appropriate_and_useful_logs
- https://grafana.com/docs/loki/latest/query/analyzer/
Unit 7 - Monitoring and Alerting
- https://grafana.com/docs/grafana/latest/panels-visualizations/configure-thresholds/
- https://prometheus.io/docs/alerting/latest/configuration/
- https://killercoda.com/het-tanis/course/Linux-Labs/110-fail2ban-with-metric-alerting
- https://killercoda.com/het-tanis/course/Linux-Labs/109-fail2ban-with-log-monitoring
- Log data analysis - Use cases ยท Wazuh documentation
- Security Information and Event Management (SIEM). Real Time Monitoring | Wazuh
- https://docs.google.com/document/d/199PqyG3UsyXlwieHaqbGiWVa8eMWi8zzAn0YfcApr8Q/edit?tab=t.0
- https://microsoft.github.io/code-with-engineering-playbook/observability/log-vs-metric-vs-trace/
- https://www.sans.org/blog/the-ultimate-list-of-sans-cheat-sheets/
- https://www.sans.org/information-security-policy/
- https://promlabs.com/promql-cheat-sheet/
Unit 8 - Configuration Drift and Remediation
- https://sre.google/books/
- https://en.wikipedia.org/wiki/Configuration_management
- https://google.github.io/building-secure-and-reliable-systems/raw/ch14.html#treat_configuration_as_code
- https://killercoda.com/het-tanis/course/Ansible-Labs/12-Ansible-System-Facts-Grouping
- https://killercoda.com/het-tanis/course/Ansible-Labs/19-Ansible-csv-report
- https://killercoda.com/het-tanis/course/Ansible-Labs/16-Ansible-Web-Server-Env-Deploy
- https://killercoda.com/playgrounds/scenario/ubuntu
Unit 9 - Certificate and Key Madness
- https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-57pt1r5.pdf and
- https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-52r2.pdf/
- https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-57pt1r5.pdf/
- https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-207.pdf
- https://killercoda.com/killer-shell-cks/scenario/certificate-signing-requests-sign-k8s
- https://killercoda.com/killer-shell-cks/scenario/certificate-signing-requests-sign-manually
- https://killercoda.com/het-tanis/course/Linux-Labs/212-public-private-keys-with-ssh
- https://spiffe.io/pdf/Solving-the-bottom-turtle-SPIFFE-SPIRE-Book.pdf
- https://killercoda.com/het-tanis/course/Linux-Labs/211-setting-up-rsyslog-with-tls
Unit 10 - Recap and Final Project
Misc
- https://docs.ansible.com/ansible/latest/getting_started/index.html
- https://github.com/ProfessionalLinuxUsersGroup/psc/blob/main/src/assets/deploy/ansible-playbook.yml
- Git Pages workflow
- mdBook
- overleaf.com
- https://www.overleaf.com/
- https://gdpr.eu/what-is-gdpr/
- https://www.hhs.gov/hipaa/for-professionals/security/laws-regulations/index.html
- https://www.youtube.com/watch?v=eHB8WKWz2eQ&list=PLyuZ_vuAWmprPIqsG11yoUG49Z5dE5TDu
- worksheet
- lab
- bonus
- intro
- template pages wiki
- https://git-scm.com/book/en/v2/Git-Tools-Stashing-and-Cleaning
- https://www.atlassian.com/git/tutorials/saving-changes/git-stash
- great write-up on this procedure
- https://git-scm.com/book/en/v2/Git-Branching-Rebasing
- original repository link
- GitHub CLI
- freeCodeCamp's Git and GitHub Crash Course (1hr)
- Fireship's How to use Git and Github (12m)
- ByteByteGo's Git Explained in 4 Minutes (4m)
- https://git-scm.com/doc
- Git
- https://www.cisecurity.org/cis-benchmarks
- https://owasp.org/www-project-top-ten/
- https://www.nist.gov/
- https://public.cyber.mil/stigs/srg-stig-tools/
- https://killercoda.com/
- https://github.com/ProfessionalLinuxUsersGroup/psc/