<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: what OS is PA built on in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171269#M54208</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Interesting viewpoint bpry thanks for sharing. Can you give some examples of the linux tools that you use?&lt;/P&gt;</description>
    <pubDate>Fri, 11 Aug 2017 13:53:38 GMT</pubDate>
    <dc:creator>jdprovine</dc:creator>
    <dc:date>2017-08-11T13:53:38Z</dc:date>
    <item>
      <title>what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171129#M54178</link>
      <description>&lt;P&gt;Does security management require alot of linux, unix and ubuntu knowledge and software?s&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2017 21:05:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171129#M54178</guid>
      <dc:creator>jdprovine</dc:creator>
      <dc:date>2017-08-10T21:05:15Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171150#M54182</link>
      <description>&lt;P&gt;PANOS is built upon Fedora Linux.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Aug 2017 22:17:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171150#M54182</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2017-08-10T22:17:36Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171230#M54189</link>
      <description>&lt;P&gt;PAN-OS runs on redhat &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;for the PAN-OS perspective you don't need to worry about linux knowledge as the underlying OS is not exposed to the user.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In a broader sense, as a security manager it's probably good to get acquainted with linux a bit so you get a sense what kind of environment you're dealing with and to keep tabs on your admins (are they running everything in root, are they sandboxing processes, are they keeping services patched,...)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ubuntu is a good candidate to play with as it's very user friendly and has plenty of online resources &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 07:59:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171230#M54189</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2017-08-11T07:59:39Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171257#M54201</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So are you a security manager reaper? Do you find everything regarding security done with linux, unix and ubuntu or is there a wider variety of choices? I am not a security manager just a systems engineer. I have learned linux, I am not an expert but I have built and configured some.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 12:57:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171257#M54201</guid>
      <dc:creator>jdprovine</dc:creator>
      <dc:date>2017-08-11T12:57:17Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171259#M54202</link>
      <description>&lt;P&gt;In my previous job I was everything combined &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; (they only had one guy to do everything security and networking related)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;some basic linux skills and understanding initially helped me better understand what the database guys were doing and helped me convince them they were doing it wrong &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; later on it helped me better implement a couple of bastion servers (a couple of bind DNS boxes we needed as external DNS to our company)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;maybe if your team is larger and you can delegate to a teamlead there's really no need for much linux knowledge but it's not a bad skill to posess, keeps people on their toes if you can drop a 'so did you CHROOT that bind9 you just deployed?' &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 13:13:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171259#M54202</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2017-08-11T13:13:53Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171262#M54204</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But really using linux for security is a preference not a necessity to do security. &amp;nbsp;We are not a large team and they just formed a new security group of 2 based on the fact that linux experience made one guy more qualified to be in security.&lt;/P&gt;&lt;P&gt;We also use bind for DNS but I am not sure how we got on this subject LOL and it has be in place for over 4 years.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 13:21:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171262#M54204</guid>
      <dc:creator>jdprovine</dc:creator>
      <dc:date>2017-08-11T13:21:16Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171263#M54205</link>
      <description>&lt;P&gt;I have to agree with Reaper that Linux/Unix is the base for a majority of the security products out there. Some I have seen as just software installed onto an OS of your choice. Very few have custom sourced base code.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think the reasoning is that you can really strip down linux to only the little pieces you want and its not licensed so there is no worry of that added cost of support (can be added) or developing base code.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However just because someone knows Linux, doesnt make them more qualified. I think its more of a mindset as I have seen some windows systems so locked down that it was very secure. Also most vendors put their own spin onto the GUI so you cant even get into the base shell to run the basic commands.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 13:29:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171263#M54205</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2017-08-11T13:29:16Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171266#M54206</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27580"&gt;@OtakarKlier&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I agree and that was my thought as well, that linux knowledge does not make you more qualified to be a security person because the products may be based on linux but that does not mean that they allow or require you to know linux to use them and most are not set up to modify them, they are a ready made package deal&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 13:42:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171266#M54206</guid>
      <dc:creator>jdprovine</dc:creator>
      <dc:date>2017-08-11T13:42:19Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171268#M54207</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/18719"&gt;@jdprovine&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Depending on how in depth you're getting with security and certain aspects of analysis on different Malware/Spyware sample or stuff like that I almost really would call Linux a necessity. Not only because of the tools available, but because of the threat of doing some of that on a Windows box would actually be.&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can do everything you would need to on a Windows box, but the time that it would take to do so would be inefficient and someone doing the same alaysis on a Linux box would be more efficient.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 13:51:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171268#M54207</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-08-11T13:51:12Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171269#M54208</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Interesting viewpoint bpry thanks for sharing. Can you give some examples of the linux tools that you use?&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 13:53:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171269#M54208</guid>
      <dc:creator>jdprovine</dc:creator>
      <dc:date>2017-08-11T13:53:38Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171270#M54209</link>
      <description>&lt;P&gt;&lt;A href="http://www.kali.org" target="_blank"&gt;www.kali.org&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;securityonion.net&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;They are two good ones to take a peak at.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 13:55:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171270#M54209</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2017-08-11T13:55:41Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171271#M54210</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/18719"&gt;@jdprovine&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;If your just getting started I would really recommend spinning up a REMnux and Cuckoo and giving them a go. They're pretty well documented, likely the best documented outside of the entire Kali distro. REMnux is it's own distro so it can be installed directly from it's OVA and Cuckoo last I checked still needed to be actually installed on an exsiting Linux install, they may have released it as it's own distro by now though I'm not sure.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Once you get involved in it and start working on forums you'll here other tools mentioned that you can look into; but I would recommend running with those two to start.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 11 Aug 2017 14:14:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171271#M54210</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-08-11T14:14:00Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171311#M54219</link>
      <description>I feel the underlying question is a bit loaded&lt;BR /&gt;A good working knowledge of Linux is certainly an asset in the role of a security manager, but so is windows and a host of other operating systems and even types of deployments and software packages&lt;BR /&gt;The more knowledge at a top level (mile wide, inch deep), the stronger the security manager, But I wouldn't say exclusive deep knowledge in Linux makes you a qualified security person</description>
      <pubDate>Fri, 11 Aug 2017 17:41:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171311#M54219</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2017-08-11T17:41:33Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171445#M54235</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was approaching a situation where the justification for creating &amp;nbsp;a security position for an individual was justified by tgat person(not me) that the linux experience qualifies them above other for the position to which I disagreed. I believe the same way that you do that a wide variety of experiences make a good security person.&amp;nbsp;&lt;/P&gt;&lt;P&gt;So what type of access does a security person usually have? Access to manage anything or limited access?&lt;/P&gt;</description>
      <pubDate>Mon, 14 Aug 2017 12:55:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171445#M54235</guid>
      <dc:creator>jdprovine</dc:creator>
      <dc:date>2017-08-14T12:55:52Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171446#M54236</link>
      <description>&lt;P&gt;I guess it will depend a bit on the size of the team and the actual background of the manager.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Typically they would probably rely on reporting tools (reporting from the PANW itself and reporting tools like splunk/crystalreports/siem/...) to gain insight in the actual security situation rather than raw access to appliances or servers, that's the task of the admins.&lt;/P&gt;
&lt;P&gt;A good (basic) working knowledge helps in assessing what needs to be done and how to hold the admins accountable to do their jobs properly, deeper knowledge improves that accountability but would still not really be part of the manager's job unless the team is so small the manager is also the admin and just needs to swap hats&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;A manager needs to be able to understand the environment and outline best practices based on a deep understanding of how security works, cysber kill chain etc.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;an anecdote: in my previous company our database guy was an absolute linux guru but had no clue about 'security' as it only impeded on his core business of making the databases run smoothly&lt;/P&gt;</description>
      <pubDate>Mon, 14 Aug 2017 13:21:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171446#M54236</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2017-08-14T13:21:24Z</dc:date>
    </item>
    <item>
      <title>Re: what OS is PA built on</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171448#M54237</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The size of the team is two and they were taking from the systems administration group and still have full access to everything on the network. &amp;nbsp;But in previous the security people as you said relied on reporting tools and woked with the admins to correct the security issues they did not have the access to make changes on the systems.&lt;/P&gt;&lt;P&gt;I have been the primary person dealing with the security related to the Palo alto&lt;/P&gt;&lt;P&gt;I like your anecdote it certainly makes a point in my question concerning linux and security.&lt;/P&gt;&lt;P&gt;I do think that it is interesting that the PA is based on a version of linux and most of the time whe TAC remotes in they prefer the CLI to the GUI interface for troubleshooting&lt;/P&gt;</description>
      <pubDate>Mon, 14 Aug 2017 13:31:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-os-is-pa-built-on/m-p/171448#M54237</guid>
      <dc:creator>jdprovine</dc:creator>
      <dc:date>2017-08-14T13:31:35Z</dc:date>
    </item>
  </channel>
</rss>

