3.6 Installing CentOS

Video Activity
Join over 3 million cybersecurity professionals advancing their career
Sign up with
Required fields are marked with an *
or

Already have an account? Sign In »

Time
6 hours 28 minutes
Difficulty
Intermediate
CEU/CPE
7
Video Transcription
00:00
>> Welcome back to the summary course
00:00
in building your InfoSec Lab.
00:00
I'm your host and Instructor, Kevin Hernandez.
00:00
In our last few lessons,
00:00
we actually went over
00:00
the installation of several next-gen firewalls.
00:00
To be more precise,
00:00
we looked at both IP fire and P of sense.
00:00
In today's lesson, we're going to install CentOS,
00:00
which is a pre requirement in order to install QRadar,
00:00
one of our SIEMs.
00:00
For the purposes of this lab,
00:00
the version of CentOS that is
00:00
required to run QRadar Version
00:00
7.3.1 is CentOS 7.5,
00:00
which is provided directly
00:00
through IBM in its own website.
00:00
Some important steps is you have the option
00:00
also to disable IPV6 during the installation.
00:00
This will greatly reduce
00:00
the complexity off the QRadar installation.
00:00
You won't see the step taken
00:00
during the installation as this is not explicitly
00:00
mentioned during the QRadar installation
00:00
nor its installation guide.
00:00
However, after successfully installing QRadar in
00:00
several instances between both my lab
00:00
and other people's labs,
00:00
I noticed that performing this minor task
00:00
greatly reduces the complexity
00:00
and therefore my recommendation to you.
00:00
Now let's get started. Now let's talk about QRadar.
00:00
If you want to install QRadar Community Edition Version
00:00
7.3.1,
00:00
and you look very carefully
00:00
into the community editions documentation,
00:00
you'll be able to notice something very peculiar.
00:00
Right here on Page 2,
00:00
installing an operating system
00:00
for QRadar Community Edition,
00:00
you see that you either have to install CentOS or
00:00
Red Hat Linux version
00:00
7.5 in order to run QRadar Community Edition.
00:00
This is where it gets tricky.
00:00
If you go to, let's say the CentOS,
00:00
and you come to download CentOS,
00:00
you have a DVD and minimal ISO.
00:00
If you go to this DVD, you can see that all of
00:00
these are Version 7.6.
00:00
Now, I personally tried
00:00
installing QRadar in Version 7.6,
00:00
and I spent hours troubleshooting
00:00
and it became basically next to impossible.
00:00
I even came across
00:00
this small installation guide in the developers form,
00:00
or a person submits
00:00
the following recommendations in
00:00
order to get it installed.
00:00
Even when I tried this,
00:00
it still was near impossible getting
00:00
QRadar to fully installed in 7.6.
00:00
Now what happens is I came back to CentOS and I spent
00:00
countless hours looking like such as
00:00
if [inaudible] you try alternate downloads.
00:00
Right here I was able to find a 7.5 version supposedly.
00:00
But once I click,
00:00
you can see there's nothing in there.
00:00
Therefore, I went in a while hunt.
00:00
To be honest, I was able to find
00:00
an old version of this page,
00:00
but all the mirror links were completely gone.
00:00
I wanted to wild this chase.
00:00
However, in desperation, I wanted to
00:00
look for more information regarding
00:00
QRadar or if there's a new version that came out,
00:00
that's a Part 7.6,
00:00
and scrolling up and down,
00:00
I noticed this over here.
00:00
Literally once you click CentOS 7.5, let's download it.
00:00
Now this is the minimalist version,
00:00
it's not the full version.
00:00
I want you to be aware of that.
00:00
What this means you will not have a [inaudible]
00:00
less to manually installing,
00:00
so please be aware of that.
00:00
But it should be more than enough to install QRadar.
00:00
Let's go ahead and install QRadar.
00:00
Let's go ahead and login in into
00:00
our VMware and rewrite here.
00:00
You can see right now we have a PF sense and IP fire.
00:00
Let's create a new VM, create a new virtual machine.
00:00
Now, if you remember correctly
00:00
from our prior videos right here,
00:00
QRadar requires a minimum of 110 gigabytes.
00:00
I personally thought maybe 60 gigs
00:00
might work because we're not
00:00
>> going to have too much data.
00:00
>> However, QRadar itself requires a 80 gigs installation,
00:00
otherwise installation will fail.
00:00
Let's make sure we at least assign
00:00
100 gigs to this operating system.
00:00
Even though our hard drive is
00:00
256, it should be more than enough.
00:00
Now let's call this CentOS. Let's pick Linux.
00:00
Here we have CentOS Version 7. Hit Next.
00:00
Again, our prior installations,
00:00
let's select the default drive as it is the only one we
00:00
have available at the moment, and hit next.
00:00
Here are VM options.
00:00
You can see we have the adapters.
00:00
We can always add our newest adapter that
00:00
we just configured recently.
00:00
Here we have to change it.
00:00
Before you change a number on the left side,
00:00
make sure you switch to gigabytes first.
00:00
Let's assign six gigs,
00:00
as recommended by our minimum specs.
00:00
Let's assign two CPU cores.
00:00
Regarding to hard drive,
00:00
you know 16 gigs not enough.
00:00
Let's assign a 100 gigabytes.
00:00
Now remember, this will only be
00:00
utilized while the system is up.
00:00
Therefore, we can also install other variants or
00:00
other OSs that might be working together with the CPUs.
00:00
Now we have CD drive,
00:00
come down, let's pick the image
00:00
>> like in prior instances.
00:00
>> Now be careful you don't pick a wrong version here.
00:00
Let's be real careful about that.
00:00
If you see both of them
00:00
are dot six even though it doesn't say it.
00:00
Let's go down to the one we
00:00
just downloaded, and let's bring it up here.
00:00
Due to the time here,
00:00
I'm going to add a little five next to it just so I
00:00
can recognize it better in there.
00:00
Let's close it, and let's find that image in here.
00:00
Once we find it, we're going to pick it.
00:00
You see, almost clicked the wrong one.
00:00
But you can also tell the last digits,
00:00
which is a slightly older version.
00:00
Open, and let's wait for it to upload it.
00:00
This an OS image,
00:00
so it might take a little bit longer than
00:00
IP fire and PF sense.
00:00
However, it is still the minimalists version
00:00
instead of the full version,
00:00
so it should not take as long as
00:00
a full blown four gigs upload.
00:00
However, let's give it a second.
00:00
It's fully completed.
00:00
Let's make it sure like the proper version is again.
00:00
This five really helps, and hit Select.
00:00
Make sure everything's set correctly, 600 lane network.
00:00
Looks fine to me. Let's hit Next.
00:00
Verify again. Everything looks good.
00:00
Let's hit Finish. The VM should be there now.
00:00
Now let's go ahead and start
00:00
DOS and select install Center 7.
00:00
Press Enter to begin installation.
00:00
Let's have the services start.
00:00
There we go. Into the installation there.
00:00
Let's pick English as a language and
00:00
English as keyboard, and hit Continue.
00:00
Let's wait for it to load our settings.
00:00
It's going to look for keyword language, installation,
00:00
source, software selection, etc.
00:00
Let's go here. Select hard drive, hit Done.
00:00
Next we're going to Host Name, make
00:00
sure we select the proper one.
00:00
If you're not sure which is which,
00:00
you can always come here to the Noachian.
00:00
CentOS, and right here under network arts,
00:00
you can identify which is which.
00:00
BA is our primary one,
00:00
so let's select that one.
00:00
Turn it on, so drag-and-drop, go figure.
00:00
[LAUGHTER] Let's make sure we take a snippet of
00:00
that for future use and references.
00:00
Just go back to our document,
00:00
QRadar, CentOS really, hit Save.
00:00
Go back to the installation, hit done.
00:00
I'll make this a little bit bigger
00:00
>> so it's easier to see.
00:00
>> Say the disk, select it.
00:00
Done. Here we go.
00:00
We'll try to partition select it.
00:00
That it looks it's about ready.
00:00
Americans, local media,
00:00
you can always go to suffer selection.
00:00
Here, if you choose a DVD version
00:00
or able to choose or pick the DVD version,
00:00
you're going to actually select it.
00:00
For example, to SMTP e-mail oldest features as well.
00:00
Sadly, I was unable to find out version currently.
00:00
Let's begin the installation.
00:00
Now as you see after the progressing,
00:00
you have the option to create
00:00
users as well as a root password.
00:00
I'm going to go ahead and show you the screens,
00:00
full name, username, password,
00:00
and confirm the password.
00:00
For example, if you go first and last
00:00
name you can see it's F to show on the last name,
00:00
it's a current format and also the password.
00:00
You can select to make an administrator or not.
00:00
Let me go pause the video and fill this up myself.
00:00
Once done, you will see that it will
00:00
say administrator under your name.
00:00
Then the same thing for a root password,
00:00
you just put a repressor the root account obviously.
00:00
Let me fill that up as well and continue the video.
00:00
After that you can see the both root password is
00:00
set and the administrator will show up.
00:00
Normally this error you're seeing
00:00
on the screen where you are not able to
00:00
see everything is when you tap out of the screen,
00:00
which is what happened when we took the screenshot,
00:00
but don't be too concerned.
00:00
Let's give it a few minutes for
00:00
it to finish the installation.
00:00
Let's complete it. You will see
00:00
the Complete icon right here on top of the blue line.
00:00
Hit Complete on this boot on the little blue box
00:00
, and that's it.
00:00
Once the system is rebooted,
00:00
centers should be installed.
00:00
It's properly loading. Here's where you log in.
00:00
There we go. What have we learned today?
00:00
Basically, we install CentOS, to be precise,
00:00
Version 7.5 minimalists,
00:00
which is a requirement for QRadar.
00:00
Talking about QRadar, in
00:00
our next lesson we'll be actually installing QRadar.
00:00
Hope to see you soon. Have a great day.
Up Next