iccaros

Linux Experts
  • Content Count

    1292
  • Joined

  • Last visited

Posts posted by iccaros

  1. Getting on a residential or business wifi connection that is unsecured is illegal.

    in California only and that has not been tested, under FCC rule (47 C.F.R. Section 1.4000) any thing transmitted over the air unencrypted is fair game. since this does not cover your transmissions people assume the states can rule, but it has not gone to court and since WIFI is operating at unregulated db levels for B and g and unregulated band for A,, I would not want to be on the states side.

  2. No when i went to install FC6 I typed in linux boot acpi=off So I don't know if anything is something else to turn off. I will think that hidd deals with anything else but bluetooth but I would like to know for sure.
    I am wondering if I should leave acpid on being that I had to shut ACPI off to get the dam thing installed. I also wonder if I need hidd running since I do not have any blue tooth stuff but I think I need it.
    Hi Buddy,

    I found this site with google, I hope this helps.

    Fedora Core 6 Services

    you turned off acpi in your BIOS right?

    This only allows the MotherBoard to control ACPI, acpid lets Linux control these functions

    and I believe the new real time clock and hard drive functions need this to run. so I would leave it on.

    as for hidd, go ahead and turn it off, I don't believe it effects anything but blue tooth..

    by the way this is some of the best ways to secure a server is to turn off what you do not need.

    hidd is blue tooth only

  3. I am wondering if I should leave acpid on being that I had to shut ACPI off to get the dam thing installed. I also wonder if I need hidd running since I do not have any blue tooth stuff but I think I need it.
    Hi Buddy,

    I found this site with google, I hope this helps.

    Fedora Core 6 Services

    you turned off acpi in your BIOS right?

    This only allows the MotherBoard to control ACPI, acpid lets Linux control these functions

    and I believe the new real time clock and hard drive functions need this to run. so I would leave it on.

    as for hidd, go ahead and turn it off, I don't believe it effects anything but blue tooth..

    by the way this is some of the best ways to secure a server is to turn off what you do not need.

  4. The Thunderbird problems may be just ubuntu's build. Try taking the version from the thunderbird site, I think its a tar.gz file (a zip) and just untar it in your home folder and double click the thunderbird file. it should run.

  5. no I have the same job, but my title has now changed to match the work I was doing, before my title was Administrator now its Engineer.

    but hte Degree will help me when moving to a new company as they do no know what skills I have as the people I work for now do, and its hard ot represent. My Pay has been based on Unix work adn the Lack of UNIX admin and System Designers.

    When I started Putting Linux/UNIX and Trusted (SELinux/Solaris) in my Resume, It goes into a company wide Database. As other parts of my company need UNIX people they would search the Database first to get already hired people the work first. It came to the Point I was attracting more work than 5 other MCSE's were getting, The great thing about SAIC when we were a Employee Owned company is that if you brought in the business they would compensate the added benefit, and as I got to the Point to where the devision I was working for could not handel the amount of work, they moved me to a Larger Division.

    in the end you find that UNIX skill are in high demand in a Enterprise environment. While Windows seams the norm in Small companies, in Large Compaines its a MIX, With more Database and website and Mail being UNIX and account control and Desktops being windows.

    I'll be glad to put in anyone resume, but keep in mind you must be wiling to submit for a Government Security Clearance for most of our work.

  6. Howdy!

    I just had an interview for a job yesterday at a local company. Their main issue is that they want to migrate from their current AIX Unix system, which they admit is old, to a more modern system. Being an MCSE, I naturally recomeneded Windows 2000/2003.

    I asked them about the size of the company. They have their corporate office here in town; they have sales agents over the rest of the country, that just VPN into the corporate office here in town.

    So I have like, no experience with AIX. :wacko: I know about some of the other distros of Linux:Red Hat 8, Knoppixx, DSL, Kubuntu, Ubuntu, Mandrake.

    Does anyone know of any sites where I can read up on AIX and it's structure, and what would be involved in migrating from AIX over to Windows? Exactly how old is AIX? The company will turn 40 years old this year. Time for a change, I think.

    Thanks a lot!

    Why would you recommend Windows for servers running AIX?

    Why replace AIx besides someone said it was old? which while having a Long history, the version they are running could be newer than windows 2003 server.

    The real question is, what is the business need to change the entire system?

    if I was asked this question the main goal would be to find what capability do they think they would get from upgrading. Most of the software that runs on Linux runs on AIX, or Solaris for that matter.

    if it for Cheeper servers Solaris 10 runs great on "intel" boxes.

    if they would like to take advantage of Outlooks collaboratives abilities, but not be locked in to one vendor (once you go exchange it hard to move off it, even when you want to move) http://www.scalix.com/, is the email system used by Comcast, AT&T, Verzon and SBC. it integrates with everything outlook does and lets you pick other clients besides outlook. http://www.zimbra.com/ looks interesting.

    with mono you can do 80% of any .NET implementation (SuSE 10.1 and above has more C# code in it than Vista), and SAMBA DFS is much better than Windows DFS which is nothing but a pointer to other shares.

    so again I would ask why the change?

    as for what it would take to change over form AIX to Windows. Simple

    All new servers (probably two for every one they have now), buy all new licenses and seat license for all the stuff they use. move from NFS to CIFS file shares. Since Windows Services for UNIX is the most usless thing I have ever used I would use SAMBA to share the NFS shares until you can move them to windows servers.

    Since Microsoft does not follow the LDAP standard correctly in AD you will need to script a transfer from the AIX LDAP controllers (assuming they are not using Novel directory services) to the AD servers and repair the differences between the two.

    my last part of advice, I went from being an MCSE making 50 - 70 thousand a year to a Linux/Solaris - Trusted Soalris Admin/Engineer and making (started at 80,000 to now around $130,000)

    good luck..

  7. Port 80 isn't forwarded by my WRT54GS. The remote admin webapp sits on it when it's enabled. (And possibly when it isn't enabled... :))

    port 80 is always a translated or else you would never see web pages, an old hacker attack vector is to send a network package to a NAT router looking like a return from a network request. if it reaches the box, the box will send back a kind of What? package, so now you can do all kinds of nasty.

    Facilitating Inbound NAT Using DNS

    There only two methods to resolve the hidden address problem. One is to use static mapping for devices like servers on the inside network that need to be accessed from the outside. When static mapping is employed, the global address of the device that is using the static mapping will be publicly known, which solves the “where do I send my request to†problem.

    The other solution is to make use of the TCP/IP Domain Name System (DNS). As explained in detail in the section on DNS, this protocol allows requests to be sent as names instead of IP addresses; the DNS server translates these names to their corresponding addresses. It is possible to integrate DNS and NAT so they work together. This process is described in RFC 2694, DNS extensions to Network Address Translators (DNS_ALG).

    In this technique, an outside device can in fact make use of dynamic mapping. The basic process (highly simplified) is as follows:

    1. The outside device sends a DNS request using the name of the device on the inside network it wishes to reach. For example, it might be “www.ilikenat.comâ€.

    2. The DNS server for the internal network resolves the “www.ilikenat.com†name into an inside local address for the device that corresponds to this DNS entry.

    3. The inside local address is passed to NAT and used to create a dynamic mapping between the inside local address of the server being accessed from the outside, and an inside global address. This mapping is put into the NAT router's translation table.

    4. When the DNS server sends back the name resolution, it tells the outside device not the inside local (private) address of the server being sought, but the inside global (public) address mapped in the previous step.

  8. By Production I mean that they are used for Bussiness and are facing outside a firewall. These are servers that do production work that people on the web access. With these I lock way down.

    If its just a home server, or small business that these are behind a firewall I see no reason not to turn it off,

    but I would suggest learning SELinux. For Government work and Banks this kind of protection is becoming important and Pays better than not knowing it. I also use it for VM servers that server web pages in place OS where it was standard to use Jar's or Chroot partitions.

    an yes I do not agree that a NAT router is Good enough, expecialy if you have a Redmond build OS running as it does not stop from hacking it (just lessens the scanning)

    but running Linux (or other *nix) that is properly configured (root can't log in remote and you must SU or SUDO after logging in) is probaly safe behind just a NAT

  9. if they are not production boxes, you can turn it off using the system-config-securitylevel to turn it all off.

    If this is production, I would encourage you to learn it, as it is the correct way to secure a server from malicious attack. Its like a firewall where you can set permissions on individual files.

    We use it in a MLS configuration so I must use it.

    here is a better site

    http://www.mjmwired.net/resources/mjm-fedora-fc6.html

    http://fedora.redhat.com/docs/selinux-faq-fc5/#id2922533

  10. SELINUX is most likely the problem

    setsebool -P smbd_disable_trans 1

    this will diable SELinux on SAMBA when it runes

    see http://www.mjmwired.net/resources/mjm-fedora-fc6.html

    Firewall and SELinux Users

    Run system-config-securitylevel

    Firewall Options:

    To allow Samba access to work through your firewall you must set 'Samba' as a 'Trusted service'.

    SELinux:

    Modify SELinux Policy > Samba Disable SELinux protection for smbd daemon

    On the command line you can run:

    [root@charon ~]# setsebool -P smbd_disable_trans 1

    Run man samba_selinux for more help.

    For any changes made above to the SELinux settings or smb.conf, it is recommended to restart Samba.

  11. I always tryy for just .NET first then see if I have to change anything for mono. in this case I did not.

    My issue for mono is .NET allowed me to create two envelopes in the SOAP file, which is wrong, so I had to manually extract the information. buy by changing to an ArrayList I could serialize it (casting List to an array is the same thing as an arraylist)

    so I have not used monodoc, I just have been searching the web.. because the last time I used Monodoc it was missing way too much stuff (I guess that is why Novell has a Job request out to do Mono documentation)

  12. I believe ext3 is faster then ReiserFs on most file sizes, but on eally small files Reiserfs is faster.

    in all I always use ReiserFS unless I am sharing the partition with BSD or Mac OSX as they have ext drivers (BSD has reiser but I don't add it)

  13. ok I had to change the List to an array because you can not serilize a generic.

    here is what I did to fix my problem

    /*
    * Created by SharpDevelop.
    * User: huskeyw
    * Date: 12/11/2006
    * Time: 10:32 AM
    *
    * To change this template use Tools | Options | Coding | Edit Standard Headers.
    */
    using System;
    using System.Collections.Generic;
    using System.IO;
    using System.Collections;
    using System.Runtime.Serialization;
    using System.Runtime.Serialization.Formatters.Soap;
    namespace soapTest
    {
    class MainClass
    {

    static List<Platforms> platformList = new List<Platforms>();

    [STAThread]
    static void Main()
    {
    Serialize();
    Deserialize();
    Console.ReadLine();
    }

    static void Serialize()
    {
    // Create a Platform .
    Point location = new Point(47.623298645,-122.357002258,34.99898);
    Point location1 = new Point(47.623298635,-123.357002258,34.99898);
    DateTime currentTime = DateTime.Now;
    Platforms platform1 = new Platforms(location,"123567","C-130",currentTime.TimeOfDay );
    Platforms platform2 = new Platforms(location1,"123569","C-130",currentTime.TimeOfDay );
    platformList.Add(platform1);
    platformList.Add(platform2);

    FileStream filestream = new FileStream("DataFile.soap", FileMode.Create);

    // Construct a SoapFormatter and use it
    // to serialize the data to the stream.
    SoapFormatter formatter = new SoapFormatter();
    try
    {

    formatter.Serialize(filestream, platformList.ToArray());

    }
    catch (SerializationException e)
    {
    Console.WriteLine("Failed to serialize. Reason: " + e.Message);
    throw;
    }
    finally
    {
    filestream.Close();
    }
    }


    static void Deserialize()
    {
    // Declare the hashtable reference.
    //Hashtable addresses = null;
    ArrayList pList = new ArrayList();



    // Open the file containing the data that you want to deserialize.
    FileStream fs = new FileStream("DataFile.soap", FileMode.Open);
    try
    {
    SoapFormatter formatter = new SoapFormatter();

    // Deserialize the class from the file and
    // assign the reference to the local variable.


    pList.AddRange( (Platforms[]) formatter.Deserialize(fs));







    }
    catch (SerializationException e)
    {
    Console.WriteLine("Failed to deserialize. Reason: " + e.Message);
    throw;
    }
    finally
    {
    fs.Close();
    }

    // To prove that the table deserialized correctly,
    // display the key/value pairs to the console.

    foreach (Platforms pl in pList)
    {
    Console.WriteLine("Platform ID = {0}: using Icon {1}:", pl.PlatformID, pl.Icon);
    Console.WriteLine("Position = X {0} Y {1} Z {2} ", pl.LPoint.X, pl.LPoint.Y, pl.LPoint.Z );
    Console.WriteLine("Time = {0}", pl.Time);
    }
    }
    }
    }

  14. yes, it's called discretionary access control

    it allows an admin (root) to set directories so to a level so that application can not be run. (so a Trojan installs in a folder but the user can not run it)

    you should be able to read the folder, but not run anything from it. I have never seen this with video as its not run, but I guess the system could see that as an exacutable depending on type.

    I'll test it on gentoo..

  15. ok this is driving me nuts so I am missing something simple

    right now I know there are only two bodies in this soap file so I am reading each into a class and string them into a Linked List to be compared later (truly read by a web service)

    what I would like is something like this

    FileStream fs = new FileStream("DataFile.soap", FileMode.Open);
    try
    {
    SoapFormatter formatter = new SoapFormatter();

    // Deserialize the class from the file and
    // assign the reference to the local variable.
    //NOTE this is the part I don't kow how to do
    while (!to_END_OF_FILE)
    {
    plt = (Platforms) formatter.Deserialize(fs);
    pList.Add(plt);
    }

    }
    catch (SerializationException e)
    {
    Console.WriteLine("Failed to deserialize. Reason: " + e.Message);
    throw;
    }
    finally
    {
    fs.Close();
    }

    // To prove that the table deserialized correctly,
    // display the key/value pairs to the console.

    foreach (Platforms pl in pList)
    {
    Console.WriteLine("Platform ID = {0}: using Icon {1}:", pl.PlatformID, pl.Icon);
    Console.WriteLine("Position = X {0} Y {1} Z {2} ", pl.LPoint.X, pl.LPoint.Y, pl.LPoint.Z );
    Console.WriteLine("Time = {0}", pl.Time);
    }
    }

    its the while loop I don't know how to do,

    any help would be great.. I have searched but maybe I am too frustrated to see the answer and need new eyes

  16. no sharpdevelop will do 99% of what visual studio will, we use both at work and If I am not using a widget that is licensed to Visual studio I use sharpdevelop. it shares projects with VS 2005 but no cost. plus adding ndoc allows you to auto generate documentation.

    plus they plan on adding ironPython support so you could in the future do Python.net for windows.

    I like C# plus you can use MonoDevelop in Linux and get a lot of the same code to run on linux with MONO.

  17. It has an install script now.

    holy crap, the installer is over 700 lines. The funny thing is, you still have to tell the installer where to install it. I expected that huge bash script to automatically do it for me .

    what does the flashplayer.xpt file do? I deleted it, it does not seem to do anything.

    I found it works well just to copy libflashplayer.so to your ~/.mozilla/plugins directory. This allows flash to work with either firefox or mozilla

    This method worked for me. Make sure you run this is a regular user, not root. If you run it as root, it will get copied to the wrong directory. Enter these three commands in your shell

    wget http://fpdownload.macromedia.com/get/flashplayer/current/install_flash_player_9_linux.tar.gz
    tar -xf install_flash_player_9_linux.tar.gz
    cp install_flash_player_9_linux/libflashplayer.so ~/.mozilla/plugins

    the install script is for all the people who wine about things not installing like windows programs..