Unifi Wireguard MDM Deployment on macOS

Wireguard is fabulous due to its speed, but there’s not much data available about how to deploy it using standard macOS tooling like MDM. In this case Mosyle MDM has a custom VPN profile, but it doesn’t support the method we need, so we need to use iMazing...

Zoho Desk and Zitadel SAML

This integration took 6 months of work, so I hope it helps someone else… Updated 25.9.2023 as some of these things have been fixed. I hope my edits make sense! Background- The Zoho Desk Knowledgebase is quite full featured but has some odd quirks, some that make...

Security Onion- Automating Mac host install for Fleet

Sadly this one took weeks because it involved Security Onion, Docker, Kolide Launcher, FleetDM and various bits that I obviously made up because I’m insane. If you just want the code, go here for the latest version What’s the problem? When you first...

LetsEncrypt for Security Onion

When doing a proof of concept for this amazing bundle of open source software, it became apparent that one small Achilles heel was the provisioning of a self-signed certificate as part of the install, which then leads to a number of ‘compromises’ with...

FleetDM automatically set labels and groups with Mosyle MDM

*Please note- FleetDM has a paid option called ‘Teams’ which does a vaguely similar thing. This is not an attempt to get around a paywall, we’re still evaluating FleetDM and so far it’s been pretty awesome. If you actually want the...

FleetDM and OSQuery on Ubuntu with Lego and LetsEncrypt

We’ve had some major issues running Munkireport recently, and while switching platforms mid ride is generally a really bad idea, I just wanted *something* to work and I had always wanted to try FleetDM, so… I still love Munkireport and it’s beautiful...