Tag: automation

Nanitor is the internal auditor for patching

Nanitor as the internal auditor on our patching. unattended-upgrades does the patching; Nanitor proves it ran, and disagrees when it did not. A real bind9 vulnerability appeared on a Debian host on Thursday evening, the timer closed it by Friday morning, and Nanitor recorded every step. The timeline, the ISO 27001 controls behind it, the customer pattern where the auditor disagrees with the patcher, and the escalation path when 24 hours is too slow.

Continue reading...

Automating daily SecOps metrics with Nanitor and Slack

A practical guide on how we use a simple Python script to fetch key security metrics from the Nanitor API and post them to Slack, turning ISMS controls into daily, actionable team insights.

Continue reading...

Releasing version 2.0.0 of the Nanitor Puppet agent

Version 2.0.0 of the Nanitor Puppet Agent module. What changed, how it lays out on Debian 12 and Alma Linux 9, and the dependency-ordering lessons from getting it production-ready.

Continue reading...