Azure Lab Part 2: ForensicsVM & Linux Logging
12/2/2025 • 8 min readBuilding a tiny Ubuntu ForensicsVM, locking down SSH, and wiring Syslog into Log Analytics with Azure Monitor Agent. Part 2 of my Azure lab series.
latest: Azure Lab Part 2: ForensicsVM & Linux Logging
short, practical essays for security engineers and analysts alike.
Building a tiny Ubuntu ForensicsVM, locking down SSH, and wiring Syslog into Log Analytics with Azure Monitor Agent. Part 2 of my Azure lab series.
How I structured my personal Azure tenant, subscription, and roles to support both AZ-500 studying and a small forensics lab. Part 1
Why I turned an idle Raspberry Pi into a honeypot that ships to Azure Log Analytics, plus the tiny set of commands/aliases I’ll actually use.
Notes on how Azure (crime scene) and Colima/Docker (toolbox) fit together, plus a minimal cheat sheet for daily commands and setup patterns.
OpenPGP basics, why to encrypt reports and sign what you publish, and how to cleartext-sign your security.txt.