GRR Rapid Response: remote live forensics for incident response
Sanh Phan Van
How can I enable it? There are not much resources about GRR.
Sanh Phan Van
what is the actual issue you see? In order to make Rekall (so AnalyzeClientMemory and MemoryCollector) work, you need to enable it during installation or with the config_updater. Note that Rekall is not supported in GRR at this time
@grrrrrrrrr How to "enable it during installation or with the config_updater" ?
have you gone through the installation process? It will ask you a few questions at some point, one is about Rekall.
Hi @mbushkov I have tried it but its not showing any of the client. on my client system the GRR files are created, but its not able to fetch on back to GRR server. If you have any video tutorial or any document kindly share it Thank you,
Hi All, If anyone of you have GRR configuration installation video, kindly share it? Thanks in advance.
Hi all, i am facing an issue while configuring grr.
error is ERROR:2019-04-02 04:11:14,021 2376 MainProcess 140316268869376 MainThread mysql_advanced_data_store:592] OperationalError: (2006, 'MySQL server has gone away'). This may be due to an incorrect MySQL 'max_allowed_packet' setting (try increasing it). Retrying
@a4vnd_gitlab , do you see this issue right away or just when clients are repacked? Can you post a more detailed log?
@mbushkov when clients are repacked
Have you tried increasing max_allowed_packet setting in MySQL?