Re: [CentOS] centos 5 and 802.1x on wire

2012-04-03 Thread Les Bell
it works in practice with CentOS. -- Best, --- Les Bell [+61 2 9451 1144] [http://www.lesbell.com.au] ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] minute cron

2012-04-03 Thread Les Bell
, --- Les Bell [+61 2 9451 1144] [http://www.lesbell.com.au] ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] centos security

2012-02-18 Thread Les Bell
-blown network intrusion detection system like Snort (http://www.snort.org). Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] How does a linux DHCP machine inform DNS of its name and obtained address

2012-01-31 Thread Les Bell
://www.lesbell.com.au/Home.nsf/web/Dynamic+DNS+Updates+with+TSIG+for+Security?OpenDocument Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Postfix mail server procedure

2011-11-09 Thread Les Bell
two inbound mail gateways set up in next to no time with no pain*. http://wiki.centos.org/HowTos#head-0facb50d5796bee0bd394636c32ffa9a997a6ab5 and especiallly http://wiki.centos.org/HowTos/Amavisd Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 * Oh, all right

Re: [CentOS] Best configuration for /var/www/html/

2011-04-11 Thread Les Bell
that gets it for you. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Ken Olsen od DEC, 1927-2011

2011-02-08 Thread Les Bell
heavily influential in our industry, both directly and indirectly, and Olsen was - of course - hugely influential on DEC. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http

Re: [CentOS] what pkg contains libstdc++-libc6.2-2.so.3

2011-02-01 Thread Les Bell
Hal Davison h...@faams.net asked as above: And the answer is: compat-libstdc++-296-2.96-138 (on Centos 5.5, that is). Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http

Re: [CentOS] RAID support in kernel?

2011-01-31 Thread Les Bell
Kenni Lund ke...@kelu.dk wrote: Fakeraid is a proprietary software RAID solution, so if your motherboard suddently decides to die, how will you then get access to your data? Obviously, you restore it from a backup. RAID is not a substitute for backups. Best, --- Les Bell [http

Re: [CentOS] Basic Permissions Questions

2011-01-26 Thread Les Bell
on Permissions on directories. I actually haven't tested that approach with SELinux, but I can't see that it would interfere. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http

Re: [CentOS] Recommendation for a Linux alternative to Centos - ATH9K disaster

2011-01-25 Thread Les Bell
. Bloatware of the first order, and unstable as hell, too. Meanwhile, for those who a spot of schadenfreude: http://failblog.org/2011/01/25/m-thru-f-why-so-blue/ Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list

Re: [CentOS] Recommendation for a Linux alternative to Centos - ATH9K disaster

2011-01-25 Thread Les Bell
the Linux Filesystem Hierarchy Standard, you might enjoy this article from a course I wrote years ago - it's a little dated, but still applicable today. http://www.lesbell.com.au/Home.nsf/web/What+Goes+Where+on+a+Linux+System?OpenDocument Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2

Re: [CentOS] simple website hit counter

2010-11-27 Thread Les Bell
that the thing had three and a half years' worth of Webalizer logs taking up a lot of space. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Slightly OT: which hardware for CentOS file server (Samba, 2 To storage, 50 users)?

2010-04-14 Thread Les Bell
Niki Kovacs cont...@kikinovak.net wrote: And so on. In the end, I decided not to bother and just left. I think most consultants have one* of those in their pasts. The trick is to cut your losses, as soon as possible. You had a narrow escape there. Best, --- Les Bell [http

Re: [CentOS] Consecutive Jobs

2010-04-08 Thread Les Bell
are executed. I'll leave it to you to make it suitably robust if you go this way; you'll need to add some error handling, possibly signal handling, etc. but that's just standard shell scripting. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144

Re: [CentOS] saslauthd attack

2010-02-10 Thread Les Bell
John Hinton wrote: Yes... most of them. Just the new PITA. Anyway... I still can't seem to figure out how to log the IP addresses for this attack. I'd use iptables to log connections on that port and then time-correlate with the log entries from saslauthd. Best, --- Les Bell [http

Re: [CentOS] R package on centos 5.1

2010-02-09 Thread Les Bell
hersh parikh hershparik...@yahoo.com wrote: I want to install R package on centos 5.1, however I am not able to install it I'm running it here on Centos 5.4. What problem are you having? Error messages? Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144

Re: [CentOS] how to find out promiscuous mode

2010-02-03 Thread Les Bell
Vadkan Jozsef jozsi.avad...@gmail.com wrote: How can I find out that someone is using it's network card in promiscuous mode in a subnet? http://sourceforge.net/projects/prodetect/ Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144

Re: [CentOS] how to find out promiscuous mode

2010-02-03 Thread Les Bell
Les Bell lesb...@lesbell.com.au wrote: http://sourceforge.net/projects/prodetect/ Sorry - just remembered that's a Windows program. The classic tool for monitoring IP/Ethernet address pairings is arpwatch, but unlike prodetect, it will only report an ARP cache poisoning attack, not someone

Re: [CentOS] New selinux-policy breaks logwatch emails?

2010-01-08 Thread Les Bell
webalizer_t; class dir search; } #= webalizer_t == allow webalizer_t home_root_t:dir search; Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org

Re: [CentOS] which program/command (perl, vi, or sed) is better

2010-01-01 Thread Les Bell
, this chapter is the free sample they provide online - see http://oreilly.com/catalog/perlsysadm/chapter/ch09.html Sorted. I mean, problem solved. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org

Re: [CentOS] mkdir this . directory

2009-12-28 Thread Les Bell
any directory, and it will appear, as I've explained. 2/ How can I remove it? If you remove it, you'll be removing the /tmp directory itself, which is not a bright idea. Imagine someone sitting on a branch, sawing away between themselves and the trunk of the tree. . . Best, --- Les Bell [http

Re: [CentOS] Dynamic DNS update

2009-11-22 Thread Les Bell
+DNS+Updates+with+TSIG+for+Security?OpenDocument Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Asterisk and VOIP was Re: CentOS for non-tech user

2009-10-01 Thread Les Bell
Special Publications, which is worth looking at. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] self signing certificates

2009-08-24 Thread Les Bell
been covered - I wasn't paying attention to the earlier discussion). Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] self signing certificates

2009-08-24 Thread Les Bell
a link on a page somewhere. Oh, and reloading Apache. 5 mins, tops. If you're a slow typist. But I must admit, I've not bothered to do it myself. One of these days. . . Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS

Re: [CentOS] Drupal installation

2009-07-25 Thread Les Bell
a whole different ball-game. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Conflicting perl packages?

2009-07-16 Thread Les Bell
the hack above. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Problems with rpmforge repo?

2009-07-08 Thread Les Bell
rpmforge along with the module source from CPAN and building, then installing, the missing dependency, but that just led to a flood of complaints from yum update, so in the end I backed that out and resolved to wait for a fix. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144

Re: [CentOS] yum update error

2009-07-07 Thread Les Bell
by package perl-IO-Compress-2.020-1.el5.rf.noarch (rpmforge) At this point, I'm not going to worry too much about it - it's in the system and should eventually turn up. If not, I guess I'll have to find some time to help out at rpmforge, rebuilding those Perl modules. . . Best, --- Les Bell [http

Re: [CentOS] Reading the output of uptime

2009-04-26 Thread Les Bell
James Matthews nytrok...@gmail.com wrote: I am wondering how I would interpret the load average: 0.00, 0.01, 0.00 within the uptime. See man 3 getloadavg. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 ___ CentOS mailing

Re: [CentOS] Antivirus for CentOS? (yuck!)

2009-01-22 Thread Les Bell
). Right now, the original poster's employer is paying him to solve a), and will probably only worry about b) much later, should the excrement actually hit the fan. If installing ClamAV is what it takes to solve a), just do it and then get to work on b). Best, --- Les Bell, RHCE, CISSP, M.Info.Tech

Re: [CentOS] Support for i7 architecture?

2009-01-22 Thread Les Bell
responsibility to control such information and it means nothing to anyone else - especially us foreign persons. ;) All these disclaimers do is further reduce the signal/noise ratio of the SMTP protocol. . . Best, --- Les Bell, RHCE, CISSP, M.Info.Tech. (System Security) [http://www.lesbell.com.au

Re: [CentOS] Antivirus for CentOS? (yuck!)

2009-01-21 Thread Les Bell
not applicable in your specific case, particularly since you are using proprietary protocols and not running Windows file-sharing software (e.g. Samba, FTP, etc.) It really comes down to whether your Assessor is clueful, or a box-ticking droid. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451

Re: [CentOS] Antivirus for CentOS? (yuck!)

2009-01-21 Thread Les Bell
detection system) provides an appropriate control to alert administrators to unauthorised changes of any kind on the system. Add appropriate verbiage about SELinux, etc. if appropriate. I'd say that should get the job done. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144

Re: [CentOS] Firefox distorted printing

2008-09-30 Thread Les Bell
It's been a show-stopper for me, and I'm thinking about going back to FF2. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo

Re: [CentOS] dynamic dns

2008-08-23 Thread Les Bell
/dhcpd.conf file like this one: host kyocera1 { hardware ethernet 00:c0:ee:62:7D:bb; fixed-address 192.168.168.246; } Then you can set up an A record for the printer in your DNS the usual way. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup

Re: [CentOS] Ideas for stopping ssh brute force attacks

2008-07-22 Thread Les Bell
a passphrase once when loading a key into the ssh agent, and then connect through firewalls to machines in my home office, with no further prompting or inconvenience and very low probability of the private key being compromised. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2

Re: [CentOS] Re: Ideas for stopping ssh brute force attacks

2008-07-22 Thread Les Bell
, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Ideas for stopping ssh brute force attacks

2008-07-21 Thread Les Bell
state --state NEW -m recent --update --seconds 180 --hitcount 3 -j DROP Then restart the iptables service. That'll slow them right down, if they can even figure out what's going on. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909

Re: [CentOS] Ideas for stopping ssh brute force attacks

2008-07-21 Thread Les Bell
+Administration?OpenDocument if anyone needs it. Best, --- Les Bell [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Shell Script Question

2008-07-09 Thread Les Bell
Joseph L. Casale [EMAIL PROTECTED] wrote: What's the simplest way to increment the number up by one until some other 4 digit number while preserving leading zero's until the 1000's has a digit other than 0? Easy: $ seq -f %04g Best, --- Les Bell, RHCE, CISSP [http

Re: [CentOS] Re: settings up cheap a NAS / SAN server, is it possible?

2008-07-02 Thread Les Bell
drives, you are twice as likely to lose data. It's not only zero data protection, it's even worse than that. . . Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS

Re: [CentOS] Re: [CentOS-announce] Impact of the Debian OpenSSL vulnerability

2008-05-18 Thread Les Bell
, by Dr. Robert E. Coveyou, of Oak Ridge National Laboratory (now NIST): The generation of random numbers is to important to be left to chance. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909

Re: [CentOS] SSH Key length

2008-04-28 Thread Les Bell
traffic during the session. I use a 2048-bit RSA key routinely - if it's any slower than a 1048-bit key during the authentication phase, it's not noticeable, and it has no impact on file transfer. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup

RE: [CentOS] SSH Key length

2008-04-28 Thread Les Bell
Joseph L. Casale [EMAIL PROTECTED] wrote: I see, how does one manipulate the keys used for data encryption after auth during file transfers for instance? One doesn't; the session keys are randomly generated and are automatically renewed periodically. Best, --- Les Bell, RHCE, CISSP [http

RE: [CentOS] Apache RPM's

2008-02-13 Thread Les Bell
one junior auditor demanding that a network hub be replaced because it was not certified Y2K compliant. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org

Re: [CentOS] General questions about security

2008-02-01 Thread Les Bell
monitoring/analysis. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] One approach to dealing with SSH brute force attacks.

2008-01-30 Thread Les Bell
-standard port number in seconds. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] No route to host

2008-01-30 Thread Les Bell
(Which bombs out. Ergo their mail server or an upstream router or link is down). Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org

Re: [CentOS] Unknown rootkit causes compromised servers

2008-01-28 Thread Les Bell
or similar tokens, certificates, etc.). Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] VPN in China for our server [OT?]

2008-01-26 Thread Les Bell
/koops/cryptolaw/cls2.htm#prc. You may well require a licence from the State Encryption Management Commission. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS

Re: [CentOS] library system

2008-01-04 Thread Les Bell
Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] library system

2008-01-03 Thread Les Bell
david chong [EMAIL PROTECTED] wrote: Sorry for disturbing, anyone have recommendation for a good open source library system. It might be overkill for what you want, but check out Koha: http://www.koha.org/ Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144

Re: [CentOS] Firewall frustration

2007-12-31 Thread Les Bell
configuration tools don't - can't - know about many of the more advanced modules and features of iptables. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org

Re: [CentOS] Torrent: reminder to use it folks!

2007-12-19 Thread Les Bell
26 KB/s download speed. I'm so excited. . . Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Torrent: reminder to use it folks!

2007-12-19 Thread Les Bell
rate is higher than my download rate, so at least I'm helping to share the load. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org

Re: [CentOS] remote ssh to machine how display firefox

2007-12-07 Thread Les Bell
. This is probably the case almost everywhere, now that telnet is pretty much dead. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http

Re: [CentOS] remote ssh to machine how display firefox

2007-12-07 Thread Les Bell
sniffing, MitM attacks, etc.). Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] Please help me rate vnc, rdesktop, and freenx

2007-12-06 Thread Les Bell
Robert Moskowitz [EMAIL PROTECTED] wrote: 1 to 3 where 1 is the 'best' for the catagory and 3 the loser. You fogot the ssh/vi combination, which rates 1 across the board. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909

Re: [CentOS] Re: Please help me rate vnc, rdesktop, and freenx

2007-12-06 Thread Les Bell
to revert to the point-and-grunt method of doing things found in the Windows world. I thought we'd put that behind us when we stopped living in the trees. [I considered a wink smiley here, but decided against it. ;) ]. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451

Re: [CentOS] logrotation

2007-10-19 Thread Les Bell
the export line to /etc//bashrc so that it takes permanent effect. Obviously, the lesspipe.sh script can be extended to do other things. All this is basically in the less man page, of course. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144

Re: [CentOS] Re: Asterisk

2007-10-05 Thread Les Bell
the callplan and added some functionality, but my basic goal was to get a phone system up and running to support two professional consultancies without it becoming a full-time job in its own right. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909

Re: [CentOS] Intrusion Detection Systems

2007-09-30 Thread Les Bell
is host IDS which monitors logs for evidence of attacks or misuse on a host OS. In many installations, you need them both. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list

Re: [CentOS] CentOS 5 on IA64

2007-09-12 Thread Les Bell
distro - that's where the developers come in. And obiously another LPAR or VM guest would be required to test the built 5.0 system. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing

Re: [CentOS] Forcing ifcfg-eth0 to use the same nic in multi nic machine

2007-08-15 Thread Les Bell
he's extremely unfortunate and still has to deal with TR. Best, --- Les Bell, RHCE, CISSP [http://www.lesbell.com.au] Tel: +61 2 9451 1144 FreeWorldDialup: 800909 ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos