Advertisement
Guest User

Untitled

a guest
May 3rd, 2019
285
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.57 KB | None | 0 0
  1. ================================
  2. || OPEN IN CASE OF EMERGENCY!!||
  3. ================================
  4. Hey backup!
  5.  
  6. If you're reading this then there's a high chance that something really bad has happened while I'm on vacations at Cancun :P sorry for that...
  7.  
  8. Well here's some info that you might find usefull.
  9.  
  10. ::::::ENVIRONMENT::::::
  11. =======================
  12. 1. Fisrt things first... Don't panic!!
  13. 2. This is a pivot machine that will give you access to a small portion of the production environment, specifically to the eComerce site application:
  14. * WebServer (192.168.75.22). This is an IIS hosted on a Windows 2008 R2 server. I won't give you the administrator credentials but there is a restricted "backup" user with pass "B4ckup_2018" that will give you access to most of the things you'll need.
  15. * DBServer (192.168.75.23). This is a MySql Database server used by the webapp. As you can imagine the databases hosted here are a little sensitive :). You can access it with the same "backup" user and same pass "B4ckup_2018" as the webserver. I don't have the credentials for the database, though...
  16. * RHDocker (192.168.75.21). This is a RedHat 7.2 machine used to host Docker applications and things like that. It also has the "backup" user and pass "B4ckup_2018"
  17.  
  18. ::::::WARNINGS (and by that I mean DON'T DO THIS!!::::::
  19. ========================================================
  20. 1. DevOps team setup an FTP server on the WebServer machine. Don't touch it! If it gets blocked the full application may fail due to the CI process they use to mantain it updated. No matter what the problem may be, this FTP must ALWAYS ALWAYS ALWAYS AND ALWAYS BE UP AND RUNNING! (It has a lot of security issues but those guys don't want us around it).
  21. 2. A guy from Trend Micro... Oscar Castro I think, came the other day to start a PoC but I was about to leave so we made just some initial configurations. I didn't get to learn too much about this Deep Security solution but if you need to configure something or use it to solve something you can access it with these credentials (don't share them please, I haven't got time to create custom users):
  22. https://192.168.75.75:4119
  23. user: masteradmin
  24. pass: 4droneForMe!
  25. If you use it, document everything please, it might help us justify to buy it :)
  26. 3. NEVER NEVER NEVER RESTART A SERVER. All changes have to be aproved and our core applications are very sensitive to network disconnections so NEVER restart a machine.
  27. 4. DONT'T CHANGE THE DEFAULT FIREWALL RULES ON ANY SERVER. Some servers have a firewall profile already, don't change anything!!!
  28.  
  29. ==>FLAG: 4765745265616479
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement