Great, now I am looking at hardware firewalls on ebay for a side project to do
Conversation
Notices
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:06 JST kajer
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:02 JST kajer
also, 1GB of DDR2 400
let me check my stash
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:02 JST kajer
Okay, now we are getting something
Found a stash of 2gb pc2 reg ecc
Got the date up to 2024
The old CMOS battery was cooked
-
Embed this notice
Ryan Castellucci :nonbinary_flag: (ryanc@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:02 JST Ryan Castellucci :nonbinary_flag:
@kajer why is it so fabulous?
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:03 JST kajer
Moved the motherboard onboard VGA to disable, and viola
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:03 JST kajer
oh snap - we can make this a dual xeon board
https://www.supermicro.com/products/archive/motherboard/x6dlp-eg2
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:03 JST kajer
So I set the cmos date to 2024, and then got the no-vga beep code...
After finding that the CMOS reset jumper was never installed, I got the CMOS back to default
Booted an opnsense iso .. nope
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:03 JST kajer
oh fuck, 32bit xeon.... wow
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:04 JST kajer
Ooo, what is this?
I see something promising
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:04 JST kajer
So the data plane is basically a big pcie network card?
Also PCI? This shit is older than I thought
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:04 JST kajer
I'm in... First order of business would be to image the drive I guess
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:04 JST kajer
And this is why we keep old shit laying around
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:05 JST kajer
2x PA-220
2x PA-4020ugh
I guess I will start the teardown threads soon...
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:05 JST kajer
Nice thing about ebay local pickup, i might have both of the 4020 firewalls tonight.
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:05 JST kajer
Yes! Ha ha Yes!
-
Embed this notice
Ryan Castellucci :nonbinary_flag: (ryanc@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:48 JST Ryan Castellucci :nonbinary_flag:
@kajer that's a password an idiot would use on their luggage
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:49 JST kajer
A minor annoyance, all screws are stainless. My magnetic driver has no effect. Nice build quality I guess.
I just want to boot an OS so I can see WTF the dataplane board shows up as in LSPCI
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:49 JST kajer
I seem to be ignoring the obvious... replacing the motherboard with something not 3000 years old.
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:49 JST kajer
I got an X11 generation motherboard installed with some minor chassis modification. With the ASIC card installed, the server wont post. no beeps, no vga, no anything.
Going to stop fucking around with the hardware, and start to disassemble the disk image i took,
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:49 JST kajer
$1$hwrbwjlu$/Tr8NgIA4oKuqpC.1pnk3.:aaaaaaaaaa
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Thursday, 21-Nov-2024 19:31:50 JST kajer
omg, i can finally take an image
turns out, when using bad ssds that still test "okay" from a NAS... are actually bad.
who knew
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 02:51:45 JST kajer
-
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 03:00:52 JST kajer
@ryanc My guess is: It's a custom bios that supports some sort of additional PCIe expander.
Given the issue that the ASIC card won't let me POST on another newer motherboard, but that is just a guess.
In conversation permalink -
Embed this notice
Ryan Castellucci :nonbinary_flag: (ryanc@infosec.exchange)'s status on Friday, 22-Nov-2024 05:34:50 JST Ryan Castellucci :nonbinary_flag:
@kajer never change
In conversation permalink -
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 05:34:51 JST kajer
I dug in to the OS a little bit last night after doing hardware stuff. The OS is based on RHEL but can't quite tell which version.
I am thinking I clone the HDD back to another disk, but inject a root password in to the shadow file so I can login to the underlying OS before PanOS takes over getty.
In conversation permalink -
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 05:34:51 JST kajer
If I do manage to boot a vanilla RHEL, I might be able to pillage some device /asic drivers out of the rpm library I found in the disk I mounted.
In conversation permalink -
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 05:34:51 JST kajer
put everything back, but with a video card installed. Managed to stop GRUB in an attempt to get single user mode.
Grub has a MD5crypt password (hashcat -m 500)
yay
I can either change it on disk, or... CRACK IT
In conversation permalink -
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 05:34:51 JST kajer
cool, cool... not in the rockyou.txt I have
Time to fire up my CMIYC cluster... my laptop 940MX won't be up to the abuse I have planned.
In conversation permalink -
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 05:34:52 JST kajer
I was unsuccessful in getting a different OS on the existing motherboard.
PXEboot results in continuous beeping just after trying to get the pxelinux.0 file
Booting FreeBSD11 results in a partial load of the kernel until something beeps and the boot hangs.
Booting various i386 linux is the same, something causes a short beep and the boot process hangs.
I swapped the X6 motherboard with a X11, but with the ASIC installed, the MB won't post.
In conversation permalink -
Embed this notice
kajer (kajer@infosec.exchange)'s status on Friday, 22-Nov-2024 05:59:56 JST kajer
@ryanc <3
In conversation permalink
-
Embed this notice