Incident Response with a Notebook
A timestamped timeline when dashboards lag
A timestamped timeline when dashboards lag
Packaging workflow so every analyst starts the same way
Ten years on: migration scars, defaults, and operator truth
Programmable networking and observability at the 2015 horizon
IDE, SATA, backups, and what actually survived production in the 2000s
Firewalls, monitoring, and when internet access becomes mandatory
Early betas, SuSE host, Windows NT guest, and the shock of local virtualization
Samba, printers, and mixed-network habits that linger longer than servers
Postfix, hostile traffic, and trust on weekdays
Netfilter hooks, tables, and operator-grade change discipline
Crosspoint, dial-up culture, and the beige-box Linux bridge
Policy routing and QoS when route stops being enough
Linux 2.2, chain logic, and migrating off ipfwadm habits
Edge policy on modest hardware before dedicated appliances
Practical TCP/IP for the one-box, one-CRT lab