../psc8

ProLUG SEC Unit 8 đź”’

Original URL: https://trevorsmale.github.io/techblog/post/psc8/

Intro đź‘‹

Configuration drift is the silent enemy of consistent, secure infrastructure. When systems slowly deviate from their intended state, whether that be through manual changes, failed updates, or misconfigured automation, security risks increase and reliability suffers.1


Worksheet

Discussion Post 1

Read about configuration management2

Questions

What overlap of terms and concepts do you see from this week’s meeting?

Answer

Question

What are some of the standards and guidelines organizations involved with configuration management?

Answer

Question

Do you recognize them from other IT activities?

Answer

Discussion Post 2

Review the SRE guide to treating configurations as code. Focus down on the “Practical Advice” section 3

Question

Answer

Question

Answer

Question

Answer

Definitions

Lab đź§Ş

STIG Viewer – Change Management

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Monitoring Configuration Drift with AIDE

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

AIDE Test Run

Question

Answer

Question

Answer

Question

Answer

Remediating Drift with Ansible

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Question

Answer

Challenge: Custom Reporting

Question

Answer

Discord: https://discord.com/invite/m6VPPD9usw Youtube: https://www.youtube.com/@het_tanis8213 Twitch: https://www.twitch.tv/het_tanis ProLUG PSC Repo: https://github.com/ProfessionalLinuxUsersGroup/psc ProLUG PSC Book: https://professionallinuxusersgroup.github.io/psc/ ProLUG Book of Labs: https://leanpub.com/theprolugbigbookoflabs KillerCoda: https://killercoda.com/het-tanis



  1. Professional Linux User Group Security Engineering Unit 8 Web Book ProLUG, 2025. ↩︎

  2. Configuration Management Wiki Wikipedia, 2025. ↩︎

  3. Building Secure and Reliable Systems Web Book Google, 2025. ↩︎