----- Original Message -----
From: <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Friday, November 09, 2001 11:58 AM
Subject: Leaf-user digest, Vol 1 #351 - 13 msgs


> Send Leaf-user mailing list submissions to
> [EMAIL PROTECTED]
>
> To subscribe or unsubscribe via the World Wide Web, visit
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> or, via email, send a message with subject or body 'help' to
> [EMAIL PROTECTED]
>
> You can reach the person managing the list at
> [EMAIL PROTECTED]
>
> When replying, please edit your Subject line so it is more specific
> than "Re: Contents of Leaf-user digest..."
>
>
> Today's Topics:
>
>    1. Shiva VPN setup (prabhakar chaganti)
>    2. Re: Fetchmail.lrp package (Cameron McLeay)
>    3. Re: newb help (Robert Williams)
>    4. Re: mail server (Jason)
>    5. Simple lrp (Jim Van Eeckhoutte)
>    6. RE: netmeeting (Peter Nosko)
>    7. Re: echoWall 1.32 [was: IPchains / Forwardingquestion] (Matt
Schalit)
>    8. RE: PPP server without proxy arp (Matthew Pozzi)
>    9. LEAF shell scripting novice resources (Julian Church)
>   10. Re: [Leaf-devel] Re: [Leaf-user] Openssh 2.9.9p2 available --
Dachstein-CD ??? (Charles Steinkuehler)
>   11. Dachstein-CD rc4 (Michael D. Schleif)
>   12. Debian 2.1  CD-ROM (Stephen More)
>   13. Dachstein-CD rc4 available (Charles Steinkuehler)
>
> --__--__--
>
> Message: 1
> Date: Thu, 8 Nov 2001 20:27:03 -0500
> From: prabhakar chaganti <[EMAIL PROTECTED]>
> To: [EMAIL PROTECTED]
> Subject: [Leaf-user] Shiva VPN setup
>
> All:
>
> I am running the Dachstein RC2 as my fw. I have a win machine that I need
to setup to access my company
> vpn. This is a Shiva vpn. I have the client setup and working and creating
the tunnel without
> any problem when I am directly connected to the cablemodem. I have been
unable to get it working
> with the fw in between. It seems like it needs port 2233 open. I have
tried adding the following
> rule to the fw rules to allow it to be forwarded to my win pc:
> $IPMASQADM autofw -A -d udp 2233 2233 -h 192.168.1.2
>
> Still not successful. Any info really appreciated.
>
> thanks
> prabhakar
>
>
>
>
>
> --__--__--
>
> Message: 2
> Date: Fri, 09 Nov 2001 14:52:06 +1300
> From: Cameron McLeay <[EMAIL PROTECTED]>
> To: [EMAIL PROTECTED]
> Subject: [Leaf-user] Re: Fetchmail.lrp package
>
> It was me who requested it before.  I've been using it for several
> months and it works great.  I know I told Jacques I would write a
> how-to, but have to admit I've been a bit slack with it.  I found it
> quite easy to setup, although it has a lot of options, I just used the
> comprehensive FAQ and manual at http://www.tuxedo.org/~esr/fetchmail/
>
> I've been using it on a P133/32Mb/600Mb HD along with qmail and vmailmgr
> (both from Jacques too, thanks!) for 6 users (soon to be 8) with no
> problems.  It can't correctly deal with bcc addressed mail (read the FAQ
> for the explanation of this).  It also has problems with multi-drop
> boxes, but I just ignored this and using vmailmgr on the mail server
> seems to deal with it.
>
> Any questions about setup feel free to mail me, I might even get that
> how-to finished ;-)
>
> Cheers
>
>   >>Hi
>   >>
>   >>I've searched the lists and found some threads which asks for a
>   >>
>   > fetchmail
>   >
>   >>package but noone had a link to a fetchmail package. Do someone know
>   >>
>   > where
>   >
>   >>to find a fetchmail package? I'm going to setup a small mailserver
>   >>
>   > (Harddisk
>   >
>   >>setup) with LRP and i really need fetchmail.
>   >>
>   >
>   > Yep it's available at:
>   >
>   > http://leaf.sourceforge.net/devel/jnilo/packages
>   >
>   > I have not had any time to write a doc that's why I did not really
>   > advertised it. But I understand it's working...
>   >
>   > Your feed back will be appreciated
>   >
>   > Jacques
>
> --
> Cameron McLeay
> [EMAIL PROTECTED]
>
>
>
> --__--__--
>
> Message: 3
> Date: Thu, 08 Nov 2001 18:31:47 -0800
> From: Robert Williams <[EMAIL PROTECTED]>
> Subject: Re: [Leaf-user] newb help
> To: Scott <[EMAIL PROTECTED]>, [EMAIL PROTECTED]
>
> Ahh... It appears that you are booting off of the CD. I am not that
> lucky. There are different directions for booting of of the CD. Check
> out the read me file on the CD. Here is the relevant part of the read
> me.
> ----------
> <snip>
> but if you're booting from CD, you can't change the
> syslinux.cfg file.  To over-ride the PKGPATH setting from the CD's
> syslinux.cfg, add the file 'pkgpath.cfg' to your floppy disk.  The
> contents of this file are EXACTLY what you would put after the PKGPATH=
> line of syslinux.cfg ie:
>    device[:filesystem][,device[:filesystem]]-
> <snip>
> ----------------
> As I am not doing this, I am not sure if you have to recreate the
> entire PKGPATH in this file including root and etc..... or you can
> just add the one package. I suspect you have to add them all.
>
> Hope this helps, Robert
>
>
> >Thanks for your help.  There isn't a syslinux.cfg file on my floppy so I
> >must have missed a step.  I'm going to try and create one to see what
> >happens.  Is everything from "default linux append=..." to "debug" on the
> >same line?  Or are the line breaks after "root.lrp", "/dev/ram0", and
> >"iso9660" correct?
> >
> >-Scott
> >
> >----- Original Message -----
> >From: "Robert Williams" <[EMAIL PROTECTED]>
> >To: "Scott" <[EMAIL PROTECTED]>
> >Sent: Thursday, November 08, 2001 4:53 PM
> >Subject: Re: [Leaf-user] newb help
> >
> >
> >>  Hi, You need to be sure that sshd-1 is in your PKGPATH. Mount your
floppy.
> >>
> >>  mount -t msdos /dev/fd0 /mnt  for a 14.4 disk
> >>  and edit syslinux.cfg
> >>
> >>  The PKGPATH is a coma seperated list on *one* line. Just add sshd-1
> >>  to the end of the list. My syslinux.cfg looks like this (whithout the
> >>  line breaks imposed by email).
> >>  ---------------------------------
> >>
> >>  display syslinux.dpy
> >>  timeout 0
> >>  default linux append=load_ramdisk=1 initrd=root.lrp
> >>  initrd_archive=minix ramdisk_size=12288 root=/dev/ram0
> >>  boot=/dev/fd0,msdos PKGPATH=/dev/hdb:iso9660
> >>
>
>LRP=etc,ramlog,local,lynx,nmap,sshd-1,lncurses,libpcap,tcpdump,weblet,vim,m
o
> >dules,dnscache,debug
> >>  ------------------------------------
> >>
> >>  Good Luck, Robert
> >>
> >>
> >>
> >>
> >>  >Thanks for the quick reply.  Let me make myself more clear on point
1:
> >>  >
> >>  >I install the sshd and keygen package:
> >>  >     mount -t iso9660 /dev/hda /mnt
> >>  >     cd /mnt
> >>  >     lrpkg -i sshd1
> >>  >     lrpkg -i ssh1-key
> >>  >     mkhostkey;cd/;umount /mnt
> >>  >Files and dirs which were created:
> >>  >     /etc/ssh/sshd_config, ssh_host_key, ssh_host_key.pub
> >>  >     /etc/init.d/ssh
> >>  >In lrcfg when I go to (3)packages or (b)backup I now have:
> >>  >    (10)sshd-1, (11)ssh1-key
> >>  >In /var/lib/lrpkg/ sshd-1.* and ssh1-key.* are all there
> >>  >
> >>  >I can back them up with no errors.  BUT when I reboot the firewall
it's
> >as
> >>  >if nothing happened.  On the floppy there are the backup packages
> >sshd-1.lrp
> >>  >and ssh1-key.lrp, but they aren't loading.  I'm sure I overlooked
> >something
> >>  >simple, but I haven't found it in the docs yet.  Is there a file in
which
> >I
> >>  >must specify to load additional packages from the floppy?  Thanks.
> >>  >
> >>  >-Scott
> >>  >
> >>  >----- Original Message -----
> >>  >From: "Patrick Benson" <[EMAIL PROTECTED]>
> >>  >To: <[EMAIL PROTECTED]>
> >>  >Sent: Thursday, November 08, 2001 1:42 PM
> >>  >Subject: Re: [Leaf-user] newb help
> >>  >
> >>  >
> >>  >>  > Scott wrote:
> >>  >>  >
> >>  >>  > I'm having trouble getting the dachstein CD rc3 to work on my
> >>  >>  > network.  Everything boots fine but I run into some problems:
> >>  >>  >
> >>  >>  > 1. I install the sshd1 and ssh1-key packages to allow remote
access,
> >>  >>  > uncomment the line in inetd.conf, but can't connect after
reboot.
> >>  >>  > This is because /etc/ssh isn't backed up, nor is /usr/sbin/sshd.
> >>  >>  > They're also gone from the backup menu list.  What am I missing
> >here?
> >>  >>
> >>  >>
> >>
>
>>http://leaf.sourceforge.net/pub/doc/guide/install-eigerstein/eiger-cfg-ssh
d
> >.
> >>  >html
> >>  >>
> >>  >>  If you issue a "ps ax" command at the prompt look for a line:
> >>  >>
> >>  >>  # ps ax
> >>  >>    PID  Uid      Gid State Command
> >>  >>
> >>  >>   1049 root     root     S /usr/sbin/sshd
> >  > >>
> >>  >>  which means that the sshd server is running. At the bottom of this
> >page
> >>  >>  you will find how to use ssh from the CD-ROM:
> >>  >>
> >>  >>
> >>
>
>>http://leaf.sourceforge.net/devel/cstein/files/LRP-CD/LRP-CD-20001109/LRP-
C
> >D
> >>  >-Readme.txt
> >>  >>
> >>  >>  > I appologize in advance if this has been covered in this list,
but I
> >>  >>  > couldn't find anything searching the archive.  In fact, doing a
> >search
> >>  >>  > with just "ssh" at the leaf-users archives only brought up 1
> >document,
> >>  >>  > unrelated to ssh.
> >>  >>
> >>  >>  http://wpkgate.kc.com.my.cpwright.com/lrp/ssh-1.help
> >>  >>  http://wpkgate.kc.com.my.cpwright.com/lrp/sshd-1.help
> >>  >>
> >>  >>
> >>  >>  --
> >>  >>  Patrick Benson
> >>  >>  Stockholm, Sweden
> >>  >>
> >>  >>  _______________________________________________
> >>  >>  Leaf-user mailing list
> >>  >>  [EMAIL PROTECTED]
> >>  >>  https://lists.sourceforge.net/lists/listinfo/leaf-user
> >>  >>
> >>  >
> >>  >
> >>  >_______________________________________________
> >>  >Leaf-user mailing list
> >>  >[EMAIL PROTECTED]
> >>  >https://lists.sourceforge.net/lists/listinfo/leaf-user
> >>
>
>
>
> --__--__--
>
> Message: 4
> From: "Jason" <[EMAIL PROTECTED]>
> To: "LEAF" <[EMAIL PROTECTED]>
> Cc: "Keith Laidlaw" <[EMAIL PROTECTED]>
> Subject:  [Leaf-user] Re: mail server
> Date: Thu, 8 Nov 2001 22:12:01 -0500
>
> This is a multi-part message in MIME format.
>
> ------=_NextPart_000_0009_01C168A2.63C48A20
> Content-Type: text/plain;
> charset="iso-8859-1"
> Content-Transfer-Encoding: quoted-printable
>
> I am on the Rogers network and have my mail setting set to =
> netmail.home.com.
> As far as I know this is what should be used if accessing your mail from =
> outside the @home network.  It works fine.
>
>
>
> ------=_NextPart_000_0009_01C168A2.63C48A20
> Content-Type: text/html;
> charset="iso-8859-1"
> Content-Transfer-Encoding: quoted-printable
>
> <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
> <HTML><HEAD>
> <META http-equiv=3DContent-Type content=3D"text/html; =
> charset=3Diso-8859-1">
> <META content=3D"MSHTML 5.50.4522.1800" name=3DGENERATOR>
> <STYLE></STYLE>
> </HEAD>
> <BODY bgColor=3D#ffffff>
> <DIV><FONT face=3DArial size=3D2>I am on the Rogers network and have my =
> mail setting=20
> set to netmail.home.com.</FONT></DIV>
> <DIV><FONT face=3DArial size=3D2>As far as I know this is what should be =
> used if=20
> accessing your mail from outside the @home network.&nbsp; It works=20
> fine.</DIV></FONT>
> <DIV>&nbsp;</DIV>
> <DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV></BODY></HTML>
>
> ------=_NextPart_000_0009_01C168A2.63C48A20--
>
>
>
> --__--__--
>
> Message: 5
> From: "Jim Van Eeckhoutte" <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>
> Date: Thu, 8 Nov 2001 20:02:04 -0800
> Subject: [Leaf-user] Simple lrp
>
> I have never been so excited about software then LRP. I`ve tried =
> numerous releases but couldn't quite get it to work right. I have 2 =
> Trendware nics (rtl8139).
> I need a simple image to start with. I want to replace netgear router. I =
> connect to internet via cable modem,isp att broadband(dynamic address by =
> mac address . Any images or tutorials would be greatly appreciated .
>
>
>
> --__--__--
>
> Message: 6
> From: "Peter Nosko" <[EMAIL PROTECTED]>
> To: "Blanton Lewis" <[EMAIL PROTECTED]>,
> <[EMAIL PROTECTED]>
> Subject: RE: [Leaf-user] netmeeting
> Date: Thu, 8 Nov 2001 23:11:59 -0500
>
> pn] I'm going to try the setup Jeff Pierce posted because I'm also using
> Eigerstein2.  Thanks for your post.
>
> > -----Original Message-----
> > From: Blanton Lewis
> >
> > I'm using coyote Linux (www.coyotelinux.com) which is a variant of LRP
but
> > doesn't seem to track with it anymore, so maybe it's just it's own
thing.
> > Anyway, it includes ipchains 1.3.9., and I'm using the
> > ip_masq_h323.o module
> > with a custom firewall setup. This does not allow me to let folks
initiate
> > an inbound "call" because I don't have any port forwarding set up
> > (hence my
> > question).
> >
> > Linux version 2.2.19 (root@viper) (gcc version egcs-2.91.66
19990314/Linux
> > (egcs-1.1.2 release)) #4 Sat Apr 21 13:40:20 EDT 2001
> >
> > with two Linksys network cards:
> > tulip.c:v0.91g-ppc 7/16/99 [EMAIL PROTECTED]
> >
> > Need more info?
>
> ---
> Peter Nosko
>
>
> _________________________________________________________
> Do You Yahoo!?
> Get your free @yahoo.com address at http://mail.yahoo.com
>
>
>
> --__--__--
>
> Message: 7
> Date: Thu, 08 Nov 2001 21:40:57 -0800
> From: Matt Schalit <[EMAIL PROTECTED]>
> Subject: Re: [Leaf-user] echoWall 1.32 [was: IPchains /
Forwardingquestion]
> To: [EMAIL PROTECTED]
>
> Kory Krofft wrote:
> >
> > Scott,
> > As I promised I am updating the list on my progress at getting game
servers to
> > work with echowall and Dachstein. Your suggestions for the Quake section
worked
> > great for Quake 2 but Quake 1 and 3 do not connect.
>
> [snip]
>
> > Thanks,
> >
> > Kory
>
>
>   With any set of packet filter rules, you simply add the logging
> option to the appropriate ipchains or iptables or ipfwadm commands,
> and then your connection will be completely logged.  Post the
> relevant section of your logfile, and we'll see what's getting
> in and what's getting denied.
>
>   Be careful you don't create too much traffic during this test or you
> will fill you ramdisk by filling your syslog.
>
>   Btw, it not often necessary to cc the authors.  They don't
> need to get multiple copies of the same post.
> Matthew
>
>
> --__--__--
>
> Message: 8
> Reply-To: <[EMAIL PROTECTED]>
> From: "Matthew Pozzi" <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>
> Cc: <[EMAIL PROTECTED]>
> Subject: RE: [Leaf-user] PPP server without proxy arp
> Date: Fri, 9 Nov 2001 22:57:54 +1000
>
> Ah yes David, firstly VK is Australia, I can't for the life of me remember
> what Canada's prefix is, its been so long since I actually talked on HF.
It
> is close to VK I do remember that though.
>
> Anyway I found this out today, the fact I have to recompile ppp to do
this,
> M$ use encrypted passwords on CHAP, Unix / Linux does not, it uses plain
> text passwords, hence the need for the chap-secrets file.
>
> Now can I do this? I have RH 5.2 which I believe has the right version of
> glibc, please correct me here, this will be a first. When this is done I
> will try to repackage pppd.lrp and release it as a M$ variant, that is if
> anyone wants it. Yes it is a windows machine dialling in, a mate of mine.
>
> Strange how the ISP's are resuming C class address ranges, we had that too
> at work, 256 for 8, not really enough, time to change ISP!
>
> Thank you very much for answering,
>
> 73's
> Matt
>
> -----Original Message-----
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
> David Douthitt
> Sent: Friday, 9 November 2001 1:01 AM
> To: [EMAIL PROTECTED]
> Subject: Re: [Leaf-user] PPP server without proxy arp
>
>
> Matthew Pozzi wrote:
>
> > Now the flip side, if you do get it going please let me know, I cannot
for
> > the life of me get the chap authentication to work. Everything else
seems
> > fine.
>
> I had it working fine until our ISP took away our 256-host net and
> replaced it with a 64-host net.  Now I need to use masquerading - we
> don't have 24 IPs to spare.
>
> CHAP probably won't work - if you are, as is likely, using a Windows
> machine to connect to a Linux system, it probably won't work without
> compiling PPP with special support for Microsoft's MSCHAP and other
> Microsoft extensions.
>
> I'll let you know how it goes.
>
> > Matt
> > VK4KLM
>
> VK4.... Canadian?
>
> DE N9UBH
> 73's and 88's
>
>
>
> --__--__--
>
> Message: 9
> Date: Fri, 09 Nov 2001 15:23:18 +0000
> To: [EMAIL PROTECTED]
> From: Julian Church <[EMAIL PROTECTED]>
> Subject: [Leaf-user] LEAF shell scripting novice resources
>
> I know this is only just on topic, but I've been dabbling in a bit of
shell
> scripting lately on my LEAF (Eigerstein) machine, and find it quite
> interesting. I find I can mangle scripts others have written to customise
> how they work a bit, but I can also see there's a lot more going on than I
> understand.  I get the impression I need to start from the beginning to
> give myself a bit more of a solid foundation if I'm going to do anything
> really useful.
>
> I've not really done any Linux shell scripting apart from messing about
> with LEAF, although I've dabbled in a few programming/scripting languages
> over the past couple of years generally with half-decent results (mainly
> LotusScript, AppleScript, DOS batch files and a bit of C++, Javascript and
> Perl).
>
> 1. What is the LEAF (I generally use Eigerstein) shell script language
> called - is it just "sh"?
> 2. Can anyone recommend resources to get me started?  Online resources are
> good, textbooks are better, and I find I tend to get on with O'Reilly
books
> quite well.
>
> cheers
>
> Julian
>
> --
> [EMAIL PROTECTED]
> www.ljchurch.co.uk
>
>
>
> --__--__--
>
> Message: 10
> From: "Charles Steinkuehler" <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>
> Cc: <[EMAIL PROTECTED]>, <[EMAIL PROTECTED]>
> Subject: Re: [Leaf-devel] Re: [Leaf-user] Openssh 2.9.9p2 available --
Dachstein-CD ???
> Date: Fri, 9 Nov 2001 08:51:53 -0600
>
> > > I have updated openssh packages to their latest 2.9.9p2 version.
> > > They are compiled statically against openssl-0.9.6b and dynamically
> > > against zlib-1.1.3
> > > See:
> > > http://leaf.sourceforge.net/devel/jnilo
> >
> > Excellent!
> >
> > Charles, is this that version that you are adding to Dachstein-CD ???
>
> The version on rc4 is the preveious one (2.9p2), but I will update to the
> 2.9.9p2 version on the next image.  On the plus side, once you migrate to
> openssh with the existing CD, simply swapping out the CD will upgrade you
to
> the new release, keeping your existing configuration and keys.
>
> BTW:  To upgrade from the previous version of ssh to openssh (on
> Dachstein-CD)...a similar procedure can be used for floppy users:
>
> Change the packages that get loaded:
>   Add libz
>   Change sshd-1 to sshd
>   Change ssh-1 to ssh
> Reboot
> Load sshkey and run makekeys to generate new ssh keys...you need DSA and
RSA
> keys, which the old ssh package didn't use.
> Extract your old sshd-1 configuration package somewhere...I use /tmp
>   mount -t msdos /dev/fd0 /mnt
>   cd /tmp
>   zcat /mnt/sshd-1.lrp | tar -xv
>   umount /mnt
> Copy your old ssh key:
>   cp /tmp/etc/ssh/ssh_host_key* /etc/ssh/
> Backup sshd
>
> NOTE:  The above is unnecessary if you don't care whether or not your host
> key changes...just make new keys and backup if you don't need/want to keep
> your old hostkey.
>
> Charles Steinkuehler
> http://lrp.steinkuehler.net
> http://c0wz.steinkuehler.net (lrp.c0wz.com mirror)
>
>
>
>
> --__--__--
>
> Message: 11
> Date: Fri, 09 Nov 2001 10:14:47 -0600
> From: "Michael D. Schleif" <[EMAIL PROTECTED]>
> Reply-To: [EMAIL PROTECTED]
> Organization: mds resource
> To: LEAF <[EMAIL PROTECTED]>
> Subject: [Leaf-user] Dachstein-CD rc4
>
> Charles, et al.
>
> How did I miss your announcement for RC4 ???
>
> Does everybody else know that RC4 was released on 7Nov ???
>
> --
>
> Best Regards,
>
> mds
> mds resource
> 888.250.3987
>
> Dare to fix things before they break . . .
>
> Our capacity for understanding is inversely proportional to how much we
> think we know.  The more I know, the more I know I don't know . . .
>
>
> --__--__--
>
> Message: 12
> Date: Fri, 09 Nov 2001 11:17:04 -0500
> To: [EMAIL PROTECTED]
> From: Stephen More <[EMAIL PROTECTED]>
> Subject: [Leaf-user] Debian 2.1  CD-ROM
>
> According to the Guide "Developing for LRP":
>
> "The easiest way to write programs to work under LRP is to use Debian 2.1
> (Slink)."
>
> I can't seem to find slink or version 2.1 at:
> ftp://ftp.us.debian.org/debian/dists/
>
>
> Can someone tell me where I can get this older version of debian from (I
> would prefer it on CD-ROM) ?
>
>
> -Thanks
> Stephen More
>
>
> --__--__--
>
> Message: 13
> From: "Charles Steinkuehler" <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>, "LEAF" <[EMAIL PROTECTED]>
> Date: Fri, 9 Nov 2001 09:55:30 -0600
> Subject: [Leaf-user] Dachstein-CD rc4 available
>
> > How did I miss your announcement for RC4 ???
> >
> > Does everybody else know that RC4 was released on 7Nov ???
>
> Um...because I think I forgot to make one.
>
> <clears throat...begins fanfare>
>
> Announcing the availability of Dachstein-CD release candidate 4 (rc4)
>
> This version is getting very close to finished...enough so that I am now
> running it on four production routers.  The biggest change is the addition
> of openssh.
>
> There have also been substantial changes to the POSIXness cut command,
which
> severly broken.  Looking over the original code, I don't know how it ever
> worked, but it is fixed now.  Anyone wanting to see an example of advanced
> sed scripting should take a look at the new command...the cut command is
> translated directly into a single sed script.  Also, range specifications
> (ie cut -f 3-8), multiple field specifications (ie cut -f -3,5,7-9,11-)
and
> the byte/char modes are now supported.
>
> The POSIXness mail script also got fixed, and in the process, I learned
how
> to open multiple file descriptors for reading using shell script (adding
to
> the multi-threaded and inter-process comunation already implemented).
>
> KNOWN BUGS:
> There is a problem with the snmpBlock procedure in ipfilter.conf...I can't
> remember how many times I've had to fix this, but the fix never seems to
> 'stick', and gets lost when I build new version of /etc.  The next release
> WILL have the fix, in the mean-time, you can manually change:
>
> if [ "$SNMP_BLOCK" != "YES" -o "$SNMP_BLOCK" != "Yes" \
>         -o "$SNMP_BLOCK" != "yes" ] ; then
>
> to:
> if [ "$SNMP_BLOCK" != "YES" -a "$SNMP_BLOCK" != "Yes" \
>         -a "$SNMP_BLOCK" != "yes" ] ; then
>
> note -o (or) switched to -a (and)
>
> I will also upgrade the openssh package to Jacques' latest 2.9.9p2 version
> on the next release.
>
> Migrating from LRP-CD:
> -----------------
> Migrating from LRP-CD is fairly straight-forward, but there are a few
things
> to note.  I followed the following general procedure:
>
> - COPY YOUR CONFIGURATION DISK AND WORK WITH THE COPY
>
> - Boot LRP-CD on a convinent test machine with the copy of your config
disk
>
> - Change the lrpkg.cfg file on your floppy to reflect changes for
Dachstein:
>   ipsec now requires mawk and ifconfig
>   sshd-1 -> sshd and ssh-1 -> ssh...both require libz
>   ramdisk -> ramlog
>   update package is no longer needed
>   you might want to load some of the new packages, like bash (required
> lrdline2 and lncurses), vim, and rsync
>
> - Rename etc.lrp on the config floppy to etcx.lrp so it will not be
loaded.
> Rename (or delete) modules.lrp.
>
> - Reboot the system with Dachstein-CD and your modified config floppy
>
> - Load sshkey and run makekeys to generate host keys for sshd
>
> - If desired, migrate your existing ssh host key to the new system:
>   mount -t msdos /dev/fd0 /mnt
>   cd /tmp
>   zcat /mnt/sshd-1.lrp | tar -xv
>   cp /tmp/etc/ssh/ssh_host_key* /etc/ssh
>   umount /mnt
>
> - Backup sshd
>
> - Edit /etc/modules as requierd, and backup modules
>
> - Migrate your existing network configuration to the new system...I do
this
> by hand.  First, extract your previous etc.lrp to /tmp using the method
> above.
>
> - With your old etc extracted to /tmp, copy any files you manually
> created/modified (like localtime, ipchains.input, hosts.allow/hosts.deny,
> hostname, hosts, nsswitch.conf, &c).
>
> - Manually merge your network.conf settings to the new network.conf file.
> This will allow you to keep the updated inline comments for network.conf,
> which you may need at some point in the future.  Remember you can access
two
> virtual consoles using <alt><F1> and <alt><F2>
>
> - Manually make the change to /etc/ipfilter.conf listed above...it will be
> backed up with /etc on the floppy.
>
> - Backup etc, reboot, and verify your configuration matches that of your
> online system.  Especially check the firewall rules.
>
> - When your new system looks properly configured, put the Dachstein-CD and
> new config floppy in your production system, reboot, and verify everything
> works correctly...
>
> ----------
> Changes from Dachstein-CD rc3 to Dachstein-CD rc4:
> ----------
>
> root version changed to 4.0.3
>
> Updated POSIXness cut
>
> Changed ssh packages to openssh packages (V2.9p2) from Jacques Nilo
>
> etc.lrp updated to 'unified' version for use on both cd & floppy
>   fixed bug when using IP Aliases on external net
>   /etc/init.d/hostname.sh modified for busybox hostname (-F not --file)
>   added banner back to auto-generated hostname file
>   removed weblet entry from /etc/crontab (weblet now includes a log
rotation
>     script in /etc/cron.daily)
>   removed unnecessary auth backup files (group-, gshadow-, passwd-,
shadow-)
>   IP set to eth1_IPADDR in auto-generated hosts file
>
> Weblet updated
>
> Busybox hostname fixed to act more like net-tools hostname
>
> POSIXness.mail updated
>   blank line properly inserted between headers and message body
>   logging added
>
> ----------
>
> Charles Steinkuehler
> http://lrp.steinkuehler.net
> http://c0wz.steinkuehler.net (lrp.c0wz.com mirror)
>
>
>
>
>
> --__--__--
>
> _______________________________________________
> Leaf-user mailing list
> [EMAIL PROTECTED]
> https://lists.sourceforge.net/lists/listinfo/leaf-user
>
>
> End of Leaf-user Digest


_______________________________________________
Leaf-user mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user

Reply via email to