██████╗███████╗██████╗ ██████╗ ███████╗██████╗
██╔════╝██╔════╝██╔══██╗██╔══██╗██╔════╝██╔══██╗
██║ █████╗ ██████╔╝██████╔╝█████╗ ██████╔╝
██║ ██╔══╝ ██╔══██╗██╔══██╗██╔══╝ ██╔══██╗
╚██████╗███████╗██║ ██║██████╔╝███████╗██║ ██║
╚═════╝╚══════╝╚═╝ ╚═╝╚═════╝ ╚══════╝╚═╝ ╚═╝
cerber@XXXXXX:~$
./identify --host cerber.host --verbose --threat-model
Probing transport layer..................... TLS 1.3 / AES-128-GCM
Initializing XXXX authentication layer......... OK
Loading threat model......................... ACTIVE
Scanning actor profile....................... UNKNOWN ENTITY
Querying XXXXXXXXXXX................... WATCHING
Verifying XXXX topology..................... EXTERNAL NODE
Checking standing orders..................... LOADED
─────────────────────────────────────────────────────────────
THIS NODE IS A XXXXXXXX
─────────────────────────────────────────────────────────────
cerber@XXXXXX:~$
sysctl cerber.status
cerber.node.type = external-gateway
cerber.node.level = XXXXXX
cerber.transport = TLS 1.3 enforced
cerber.actor.auid = computing...
cerber.actor.status = UNIDENTIFIED
cerber.audit.logging = ON · all requests recorded
cerber.ddos.shield = active · nginx + fail2ban + ufw
─────────────────────────────────────────────────────────────
cerber@XXXXXX:~$
cat /etc/cerber/motd
XXXXXX · external gateway · trust boundary enforcement
all traffic is observed · all actors are fingerprinted
unauthorized access attempts are logged and actioned
intrusion probes trigger immediate permanent bans
there is no anonymous here
─────────────────────────────────────────────────────────────
cerber@XXXXXX:~$
XXXX --status --verbose
| ● |
XXXX |
ONLINE |
4 nodes · last sync <25s |
| ● |
auth |
ONLINE |
cerber v2 · ring gating active |
| ● |
XXXXXX |
ACTIVE |
standing orders loaded · watching |
| ● |
tunnel |
ONLINE |
wg handshake <25s · encrypted |
| ● |
you |
UNKNOWN |
no credentials presented |
─────────────────────────────────────────────────────────────
cerber@XXXXXX:~$
cat /etc/cerber/endpoints.d/public
// [ACCESS RESTRICTED] ring authorization required to view endpoints
// authenticate: cerber.host/#t=<ring-token>
endpoint[0]
XXXXXXXXXXXXXXX
········ [CLASSIFIED]
endpoint[1]
XXXXXXXXXXXXXXXXXXX
····· [CLASSIFIED]
// ring token accepted · endpoints unlocked
─────────────────────────────────────────────────────────────
cerber@XXXXXX:~$
// access restricted · authenticate via cerber.host/#t=<ring-token> to elevate view