Linux-Setup Digest #117, Volume #20              Mon, 27 Nov 00 20:13:11 EST

Contents:
  TNT Riva 64M an Xwindow ("Slive")
  Re: RH6.2 login is now broken - how to fix? (Moe Koenig)
  Old 2x SB Cdrom drv ("John Chan")
  Re: swap ("Peter T. Breuer")
  Gnome and shutdown options (Alex Deucher)
  error rotating logs ("Bob")
  dual boot w/ win98 on secondary master (James Van't Slot)
  Configuring POP3 ("David Durham")
  starting ssh-agent as parent of X session for SSH (doug reeder)
  Xircom  RealPort CardBus RBEM56G ??? ("Cameron")
  insmod error message help (The Guy)
  Re: starting ssh-agent as parent of X session for SSH (Robert Lynch)
  Re: Logitech Mouse (Paul Lammers)
  Need help understanding vocabulary (new to Java (and Linux)) ("Mark Johnson")
  Installing Linux on Win 98 System ([EMAIL PROTECTED])
  Kernel compilation problem with RH 7 (Andreas Tretow)
  Re: SAA7146 onboard a DV500 (LAHAYE Olivier)
  Re: Xircom  RealPort CardBus RBEM56G ??? (I R A Darth Aggie)
  Re: Kernel compilation problem with RH 7 ("Tim Watkins")
  Re: RH6.2 login is now broken - how to fix? ("Peter T. Breuer")
  Re: Mounting cdrom after upgrade to 2.4.0-pre11 (Cliff Sarginson)

----------------------------------------------------------------------------

From: "Slive" <[EMAIL PROTECTED]>
Subject: TNT Riva 64M an Xwindow
Date: Mon, 27 Nov 2000 22:10:57 +0100

How can I set up TNT riva 64M under Xwindows system?
Thanks.



------------------------------

From: [EMAIL PROTECTED] (Moe Koenig)
Crossposted-To: comp.os.linux.misc,comp.os.linux.networking
Subject: Re: RH6.2 login is now broken - how to fix?
Date: Mon, 27 Nov 2000 21:31:46 GMT
Reply-To: [EMAIL PROTECTED]

On Sun, 26 Nov 2000 07:43:13 GMT, "Peter T. Breuer"
<[EMAIL PROTECTED]> wrote:

>In comp.os.linux.setup Moe Koenig <[EMAIL PROTECTED]> wrote:
>: On Sun, 15 Oct 2000 08:52:53 +0800, Robert Masters
>: <[EMAIL PROTECTED]> wrote:
>
>:>>You've been hacked.  Thats the usual response when a 'rootkit' has been
>:>>Take it offline ASAP to prevent any further useage by the hacker.  Then
>:>>backup any data you need, and only what you need so as to not backup the
>:>>hackers work, wipe the disk clean and reinstall.
>:>This is actually a bit extreme - if you can work out which packages have been
>:>worked over, you can do a forced install of those packages from the
>:>distribution - much less hassle! 
>
>: WRONG APPROACH!
>: No matter how much time you spend, you can *never* be sure to have
>: really found all changes and backdoors a hacker could have inserted.
>
>Oh yes _I_ can. I have an md5 list stored on another machine (as well
>as 20 other binary identical machines to compare with). It's perfectly
>possible. And I can count entries in /proc to see how many processes
>are running, and boot off a new kernel with my choice of shell to 
>give myself a good view. COme to that, I have a copy of the / partition
>at the other end of every disk ...

You obviously have not looked into the latest kernel mods
the friendly blackhat next door uses, yet.

Talk about a kernel patch that cloaks its presence (files will not
show up, /proc will hide stuff), returns content of the previous,
innocent file(s) on read()-requests (there your md5 goes...) and
intercepts any attempt to overwrite the kernel binary used by lilo.

Now, recover from that one using your method.
I would consider any hacked machine untrusted until it has been wiped
once or better twice.

Ofcourse you can detect modified files but as far as I know the most
recent utilities implement almost everything at kernel level which is
pretty hard to deal with.

So, once your machine has been compromised it usually takes less time
to do a plain re-install than it would take to find and remove all the
patches...

regards, m.k.
-- 
PGP fingerprint: 78F1 B792 07F2 4070 D40D F147 43E5 2717 B98A CD1C
Please sign the LDP at: http://www.libranet.com/petition.html

------------------------------

From: "John Chan" <[EMAIL PROTECTED]>
Subject: Old 2x SB Cdrom drv
Date: Tue, 28 Nov 2000 05:39:48 +0800

Hi,
    I'm trying to setup my soundblaster 16 along with the 2x CR-563 CDROM
drive. Seems that sbpcd wouldn't wanna work. Btw, I'm running a 486 with 2
ethernet card as a gateway, no other fancy stuff inside. Any advices? Thanks
in advance.


John Chan



------------------------------

From: "Peter T. Breuer" <[EMAIL PROTECTED]>
Subject: Re: swap
Date: Mon, 27 Nov 2000 21:43:11 GMT

Jose Luis Domingo Lopez <[EMAIL PROTECTED]> wrote:
: The 2 GB limit is about swap partition size, or about usable swap space
: usable by the kernel ?. I've recently been told that, although swap
: partitions can be any size, only 128 MB of them remains usable by the
: kernel. 

I suppose if I tell you that although beer bottles can come any size, only
33cl of them can be drunk by the user, you'd believe me?

Your news is old.  About three years old.  In 2.0.* kernels individual
swap partitions could be only 128MB.  Any larger and only 128MB of them
(approx) would be used.  You could have had almost any number of them,
however.  Now the limit is huge.  2GB, you say?  Well, I believe you.
Why not go and READ what the linux FAQ has to say on this ...  (it used
to be question 7.11, a very memorable number).



Peter

------------------------------

Date: Mon, 27 Nov 2000 16:49:15 -0500
From: Alex Deucher <[EMAIL PROTECTED]>
Crossposted-To: comp.os.linux.misc
Subject: Gnome and shutdown options

I just installed redhat 7 on my toshiba libretto.  I also added Helix
Gnome.  On my other PC, I installed redhat 7 and I have the option to
shutdown, reboot, or logout when I choose logout from gnome.  Although
on this box I'm not using Helix gnome.  Is this some limitation of
helixcode gnome, or what?  Initially my regular user account did not
have permission to shutdown the pc, but I changed that in linuxconf. 
What permissions exactly get changed when you allow a regular user to
shutdown?  Does anyone know of a way I can get these options back?

------------------------------

From: "Bob" <[EMAIL PROTECTED]>
Subject: error rotating logs
Date: Mon, 27 Nov 2000 16:13:24 -0600

Hi,

ANyone know what the 'error rotating logs' error means?

Bob





------------------------------

From: James Van't Slot <[EMAIL PROTECTED]>
Subject: dual boot w/ win98 on secondary master
Date: Mon, 27 Nov 2000 22:43:50 GMT

I'm setting up my Linux machine to be dual boot.
I have 3 disks and 1 cdrom.
hda - Linux native
hdb - Linux native (hda1 = /usr/local)
hdc - win98
hdd - cdrom

I've tried a few things with LILO but when haven't been able to get
anything to work with win98 just a blank screen with a flashin cursor.
Linux boots fine, as does win98 when I unplug the first 2 disks off the
primary IDE.
Win98 seems to not mind that it is booting off the secondary IDE in this
case.

I just can't seem to get it to work from LILO.

Any suggestions as to what the lilo.conf file should look like in this
case?
I've searched all the docs and all over the web but have not found any
info on this particular situation.
Thanks in advance.


------------------------------

From: "David Durham" <[EMAIL PROTECTED]>
Crossposted-To: alt.os.linux,redhat.config
Subject: Configuring POP3
Date: Sat, 25 Nov 2000 05:44:59 +0100

I am trying to set up a server with sendmail and assume that POP must be
configured to run as well.

Could someone please help with a step-bystep guide? I have tried to edit
inetd.conf but that does not seem to help.

Thanks in anticipation.

-David



------------------------------

From: [EMAIL PROTECTED] (doug reeder)
Crossposted-To: osu.sys.linux,comp.os.linux.misc,comp.os.linux.networking
Subject: starting ssh-agent as parent of X session for SSH
Date: 27 Nov 2000 22:55:55 GMT


I have SSH up and running on some systems, but I would like to 
have ssh-agent run as the parent of X, so that ssh-agent can
handle the user's keys.

When a machine is set up for console login, I can get everything running
by entering at the console:

$ ssh-agent startx

and then in a shell window under X:

$ ssh-add

Thereafter, ssh-agent handles the user's keys, and all is copacetic.

However, I do not see a way to get this all going when the machine is
set up for graphical login (i.e. X starts right after the machine
boots). How is this normally done?  Do I need to edit the startx
script?

-- 
P. Douglas Reeder      Lecturer, Computer. Science. Dept., Ohio State Univ..
[EMAIL PROTECTED]  http://www.cis.ohio-state.edu/~reeder/reeder.html
GE/S d+ s+:- a C+@$ UH+ P+ L E W++ N+ o? K? w !O M+ V PS+() PE Y+ PGP- t 5+ !X
R>+ tv+ b+++>$ DI+ D- G e+++ h r+>+++ y+>++

------------------------------

From: "Cameron" <[EMAIL PROTECTED]>
Subject: Xircom  RealPort CardBus RBEM56G ???
Date: Mon, 27 Nov 2000 16:41:25 -0600
Crossposted-To: 
comp.os.linux.hardware,comp.os.linux.misc,comp.os.linux.networking,comp.os.linux.portable

Can anyone tell me if Linux supports a Xircom RealPort CardBus Ethernet
10/100 + Modem 56 (RBEM56G-100) PCMCIA card?  I am mainly interested in
using it with Red Hat, and also Mandrake (both are the latest versions).

If this card does work under Linux, can you help me with DETAILED
instructions on how to configure Linux to use/work with the card, please?
(E.g. which config files to modify, which network settings, which "adapter"
to use, etc. etc. etc.)

Thank you very much (in advance)   :-)

Cameron Ninham
cpn66 at hotmail dot com




------------------------------

From: The Guy <[EMAIL PROTECTED]>
Subject: insmod error message help
Date: Mon, 27 Nov 2000 23:04:08 GMT

My training wheels are wobbling, and I need a push....

I compiled a device driver for for the embedded NIC on my motherboard.
It compiled OK.

When I enter the command:   insmod sis900.o

the following error message is experienced:    sis900.o: init_module:
Device or resource busy

Does this mean that the NIC is busy?  Any suggestions would be
appreciated.

Tim


------------------------------

From: Robert Lynch <[EMAIL PROTECTED]>
Crossposted-To: osu.sys.linux,comp.os.linux.misc,comp.os.linux.networking
Subject: Re: starting ssh-agent as parent of X session for SSH
Date: Mon, 27 Nov 2000 15:37:56 -0800
Reply-To: [EMAIL PROTECTED]

doug reeder wrote:
> 
> I have SSH up and running on some systems, but I would like to
> have ssh-agent run as the parent of X, so that ssh-agent can
> handle the user's keys.
> 
> When a machine is set up for console login, I can get everything running
> by entering at the console:
> 
> $ ssh-agent startx
> 
> and then in a shell window under X:
> 
> $ ssh-add
> 
> Thereafter, ssh-agent handles the user's keys, and all is copacetic.
> 
> However, I do not see a way to get this all going when the machine is
> set up for graphical login (i.e. X starts right after the machine
> boots). How is this normally done?  Do I need to edit the startx
> script?
> 
> --
> P. Douglas Reeder      Lecturer, Computer. Science. Dept., Ohio State Univ..
> [EMAIL PROTECTED]  http://www.cis.ohio-state.edu/~reeder/reeder.html
> GE/S d+ s+:- a C+@$ UH+ P+ L E W++ N+ o? K? w !O M+ V PS+() PE Y+ PGP- t 5+ !X
> R>+ tv+ b+++>$ DI+ D- G e+++ h r+>+++ y+>++

I don't know if this is the BEST way, but the way I did it is to
edit /etc/X11/xdm/Xsession:
...
case $# in
1)
    case $1 in
    failsafe)
       exec xterm -geometry 80x24-0-0
       ;;
    gnome)
       exec gnome-session
       ;;
    kde|kde1)
    # 10-17-00 start with ssh-agent
       exec ssh-agent /usr/share/apps/switchdesk/Xclients.kde
       #exec /usr/share/apps/switchdesk/Xclients.kde
       ;;
    kde2)
...

HTH. Bob L.
-- 
Robert Lynch-Berkeley CA [EMAIL PROTECTED]

------------------------------

Date: Tue, 28 Nov 2000 00:51:41 -0100
From: Paul Lammers <[EMAIL PROTECTED]>
Subject: Re: Logitech Mouse

"Jan Oberl�nder" wrote:

> > I have a Logitech "mini wheel mouse"  -- feels like it was made for
> > Linux, btw.
> >
> > Anyone know how to get the wheel to work?
>
> Check this:
>
> http://www-sop.inria.fr/koala/colas/mouse-wheel-scroll/
>
> Jan

thanks. I was looking for this too.


------------------------------

From: "Mark Johnson" <[EMAIL PROTECTED]>
Subject: Need help understanding vocabulary (new to Java (and Linux))
Crossposted-To: comp.lang.java.help
Reply-To: [EMAIL PROTECTED]
Date: Mon, 27 Nov 2000 23:42:55 GMT

ENV: Linux 2.2, Mandrake 7.2, JDK (?? - i don't know how to find this out)

I'm am trying to setup an XLST processor built in java
(http://xml.apache.org/xalan/getstarted.html#classpath)

In the documentation it says:

        Setting up the system class path
               
               At the very minimum, you must include xalan.jar and xerces.jar on the 
system class
               path. To run the sample applications, include xalansamples.jar. To run 
extensions,
               include bsf.jar. All these JAR files are distributed with Xalan-Java. 
For extensions
               implemented in JavaScript or another scripting language, see extensions 
language
               requirements to identify any additional JAR files you must place on the 
class path and
               where you can get them.

               If you are using JDK or JRE 1.1.8, also include classes.zip on the 
class path.

But I have no clue what it means to "include ... on the system class
path".  Am I supposed to edit an environment variable or a config file.

I'm sure this is something really simple but the document is making an
assumption about how to do something that I don't know how to do.

thanks for your help.

------------------------------

From: [EMAIL PROTECTED]
Subject: Installing Linux on Win 98 System
Date: Mon, 27 Nov 2000 23:47:28 GMT

Hello,

I'm BRAND new to Linux.

I wish to install Mandrake Linux 7.2 on my laptop with Windows 98 and
would like to end up with a dual boot system. Both OS's will be on the
same hard drive. Before I do anythimg, I'd like advice from any who've
done this before in regard to partitioning requirements, preparation,
recommended installation step sequence etc. Are there particular
problems I ought to look for, things not to do?

Thank you very much

Arwe


Sent via Deja.com http://www.deja.com/
Before you buy.

------------------------------

From: Andreas Tretow <[EMAIL PROTECTED]>
Subject: Kernel compilation problem with RH 7
Date: Tue, 28 Nov 2000 00:09:07 +0000

Hi Folks,

I have a little bit of a problem. I tried to compile a custom kernel for 
my box: Athlon 700, Asus K7M (AMD Irongate), Riva TNT 2, SCSI Card with 
Symbios chip.
Make dep ran without any problem, but when I try to compile the kernel I 
get the following output:

[root@locutus linux]# make bzImage
gcc -D__KERNEL__ -I/usr/src/linux/include -Wall -Wstrict-prototypes -O2 
-fomit-frame-pointer -fno-strict-aliasing -pipe -fno-strength-reduce 
-m486 -malign-loops=2 -malign-jumps=2 -malign-functions=2 -DCPU=586 
-DUTS_MACHINE='"i386"' -c -o init/version.o init/version.c
make -C  kernel
make[1]: Entering directory `/usr/src/linux-2.2.16/kernel'
make all_targets
make[2]: Entering directory `/usr/src/linux-2.2.16/kernel'
gcc -D__KERNEL__ -I/usr/src/linux/include -Wall -Wstrict-prototypes -O2 
-fomit-frame-pointer -fno-strict-aliasing -pipe -fno-strength-reduce 
-m486 -malign-loops=2 -malign-jumps=2 -malign-functions=2 -DCPU=586 
-DEXPORT_SYMTAB -c ksyms.c
In file included from /usr/src/linux/include/linux/modversions.h:50,
from /usr/src/linux/include/linux/module.h:19,
from ksyms.c:14:
/usr/src/linux/include/linux/modules/i386_ksyms.ver:6:18: warning: 
"cpu_data" redefined
/usr/src/linux/include/asm/processor.h:96:1: warning: this is the 
location of the previous definition
/usr/src/linux/include/linux/modules/i386_ksyms.ver:28:22: warning: 
"smp_num_cpus" redefined
/usr/src/linux/include/linux/smp.h:77:1: warning: this is the location 
of the previous definition
/usr/src/linux/include/linux/modules/i386_ksyms.ver:118:27: warning: 
"smp_call_function" redefined
/usr/src/linux/include/linux/smp.h:83:1: warning: this is the location 
of the previous definition
In file included from ksyms.c:18:
/usr/src/linux/include/linux/kernel_stat.h: In function `kstat_irqs':
/usr/src/linux/include/linux/kernel_stat.h:47: `smp_num_cpus' undeclared 
(first use in this function)
/usr/src/linux/include/linux/kernel_stat.h:47: (Each undeclared 
identifier is reported only once
/usr/src/linux/include/linux/kernel_stat.h:47: for each function it 
appears in.)In file included from 
/usr/src/linux/include/linux/interrupt.h:51,
from ksyms.c:21:
/usr/src/linux/include/asm/hardirq.h:23:24: warning: "synchronize_irq" 
redefined/usr/src/linux/include/linux/modules/i386_ksyms.ver:138:1: 
warning: this is the location of the previous definition
In file included from /usr/src/linux/include/linux/interrupt.h:52,
from ksyms.c:21:
/usr/src/linux/include/asm/softirq.h:75:23: warning: "synchronize_bh" 
redefined
/usr/src/linux/include/linux/modules/i386_ksyms.ver:142:1: warning: this 
is the location of the previous definition
make[2]: *** [ksyms.o] Error 1
make[2]: Leaving directory `/usr/src/linux-2.2.16/kernel'
make[1]: *** [first_rule] Error 2
make[1]: Leaving directory `/usr/src/linux-2.2.16/kernel'
make: *** [_dir_kernel] Error 2
[root@locutus linux]#


Now, what could be the problem ? I appreciate any kind of input and 
would like to thank you in advance.

Andreas
--
Andreas Tretow
[EMAIL PROTECTED]


------------------------------

From: LAHAYE Olivier <[EMAIL PROTECTED]>
Subject: Re: SAA7146 onboard a DV500
Date: Tue, 28 Nov 2000 02:09:35 +0100
Reply-To: [EMAIL PROTECTED]



Thanks for your answer, but the only answer I found is that they refuse me 
to brows there pages with the Konkeror web brower (which is far stable than 
netscrape)
netscape crashes on resiwe on there home page.
konkeror doesn't
And I  had no problem emailing them what I though of such sites.
More over, in order to post, you have to give lots of contacts like phone# 
address, and nothing garanties you that they are not sold for commercial 
purpose!

I HATE such people!

I was so frustrated of this site that I didn't found the docs! :-(



DualIP wrote:

> On Mon, 27 Nov 2000 13:50:16 +0100, LAHAYE Olivier
> <[EMAIL PROTECTED]> wrote:
> 
> >
> >        Hello,
> >
> >The Pinnacle DV500 DV capture board has 3 chipset on it:
> >- Texas Instruments TSB12LV23 OHCI Compliant IEEE-1394 Controller
> >- C-Cube Microsystems E4?
> >- Philips Semiconductors SAA7146
> > 
> >The ieee1394 works well, but I can't use the SAA7146 device.
> >It is recognized by the
> >/lib/modules/2.4.0-test11/kernel/drivers/media/video/stradis.o, but all
> >capture progs like kwintv ou xawtv ou broadcast2000a needs a channel
> >wihich doesn't exist.
> >What is its exact fuction? It seems to output MPEG2. Right?
> 
> At www.philips.com you can DL .PDFs from most of their chips
> 
> DualIP
> 

-- 
--
           Olivier LAHAYE

------------------------------

From: [EMAIL PROTECTED] (I R A Darth Aggie)
Crossposted-To: 
comp.os.linux.hardware,comp.os.linux.misc,comp.os.linux.networking,comp.os.linux.portable
Subject: Re: Xircom  RealPort CardBus RBEM56G ???
Date: 28 Nov 2000 00:06:09 GMT
Reply-To: no-courtesy-copies-please

On Mon, 27 Nov 2000 16:41:25 -0600,
Cameron <[EMAIL PROTECTED]>, in
<eCbTbMMWAHA.250@cpmsnbbsa09> wrote:

+ Can anyone tell me if Linux supports a Xircom RealPort CardBus Ethernet
+ 10/100 + Modem 56 (RBEM56G-100) PCMCIA card?  I am mainly interested in
+ using it with Red Hat, and also Mandrake (both are the latest versions).

Yes. I haven't had the inclination to try the modem, but the card is
recognized, and the TCP/IP interface works like a charm.

+ If this card does work under Linux, can you help me with DETAILED
+ instructions on how to configure Linux to use/work with the card, please?

Mandrake should identify it and walk you thru the configuration. It
did that under Mandrake 7.0, and I certainly hope they didn't change
things...

James
-- 
Consulting Minister for Consultants, DNRC
The Bill of Rights is paid in Responsibilities - Jean McGuire
To cure your perl CGI problems, please look at:
<url:http://www.perl.com/CPAN/doc/FAQs/cgi/idiots-guide.html>

------------------------------

From: "Tim Watkins" <[EMAIL PROTECTED]>
Subject: Re: Kernel compilation problem with RH 7
Date: Mon, 27 Nov 2000 19:10:23 -0500

"Andreas Tretow" <[EMAIL PROTECTED]> wrote in message
news:[EMAIL PROTECTED]...
> Hi Folks,
>
> I have a little bit of a problem. I tried to compile a custom kernel for
> my box: Athlon 700, Asus K7M (AMD Irongate), Riva TNT 2, SCSI Card with
> Symbios chip.
> Make dep ran without any problem, but when I try to compile the kernel I
> get the following output:
>
> [root@locutus linux]# make bzImage
> gcc -D__KERNEL__ -I/usr/src/linux/include -Wall -Wstrict-prototypes -O2
> -fomit-frame-pointer -fno-strict-aliasing -pipe -fno-strength-reduce
> -m486 -malign-loops=2 -malign-jumps=2 -malign-functions=2 -DCPU=586
> -DUTS_MACHINE='"i386"' -c -o init/version.o init/version.c
> make -C  kernel
> make[1]: Entering directory `/usr/src/linux-2.2.16/kernel'
> make all_targets
> make[2]: Entering directory `/usr/src/linux-2.2.16/kernel'
> gcc -D__KERNEL__ -I/usr/src/linux/include -Wall -Wstrict-prototypes -O2
> -fomit-frame-pointer -fno-strict-aliasing -pipe -fno-strength-reduce
> -m486 -malign-loops=2 -malign-jumps=2 -malign-functions=2 -DCPU=586
> -DEXPORT_SYMTAB -c ksyms.c
> In file included from /usr/src/linux/include/linux/modversions.h:50,
> from /usr/src/linux/include/linux/module.h:19,
> from ksyms.c:14:
> /usr/src/linux/include/linux/modules/i386_ksyms.ver:6:18: warning:
> "cpu_data" redefined
> /usr/src/linux/include/asm/processor.h:96:1: warning: this is the
> location of the previous definition
> /usr/src/linux/include/linux/modules/i386_ksyms.ver:28:22: warning:
> "smp_num_cpus" redefined
> /usr/src/linux/include/linux/smp.h:77:1: warning: this is the location
> of the previous definition
> /usr/src/linux/include/linux/modules/i386_ksyms.ver:118:27: warning:
> "smp_call_function" redefined
> /usr/src/linux/include/linux/smp.h:83:1: warning: this is the location
> of the previous definition
> In file included from ksyms.c:18:
> /usr/src/linux/include/linux/kernel_stat.h: In function `kstat_irqs':
> /usr/src/linux/include/linux/kernel_stat.h:47: `smp_num_cpus' undeclared
> (first use in this function)
> /usr/src/linux/include/linux/kernel_stat.h:47: (Each undeclared
> identifier is reported only once
> /usr/src/linux/include/linux/kernel_stat.h:47: for each function it
> appears in.)In file included from
> /usr/src/linux/include/linux/interrupt.h:51,
> from ksyms.c:21:
> /usr/src/linux/include/asm/hardirq.h:23:24: warning: "synchronize_irq"
> redefined/usr/src/linux/include/linux/modules/i386_ksyms.ver:138:1:
> warning: this is the location of the previous definition
> In file included from /usr/src/linux/include/linux/interrupt.h:52,
> from ksyms.c:21:
> /usr/src/linux/include/asm/softirq.h:75:23: warning: "synchronize_bh"
> redefined
> /usr/src/linux/include/linux/modules/i386_ksyms.ver:142:1: warning: this
> is the location of the previous definition
> make[2]: *** [ksyms.o] Error 1
> make[2]: Leaving directory `/usr/src/linux-2.2.16/kernel'
> make[1]: *** [first_rule] Error 2
> make[1]: Leaving directory `/usr/src/linux-2.2.16/kernel'
> make: *** [_dir_kernel] Error 2
> [root@locutus linux]#
>
>
> Now, what could be the problem ? I appreciate any kind of input and
> would like to thank you in advance.
>
> Andreas
> --
> Andreas Tretow
> [EMAIL PROTECTED]
>

It's a known problem.  Go into /usr/src/linux  and edit the Makefile.

You need to change wherever you see "gcc" to "kgcc".  Should be all close to
the top.
Worked for me...

Tim





------------------------------

From: "Peter T. Breuer" <[EMAIL PROTECTED]>
Crossposted-To: comp.os.linux.misc,comp.os.linux.networking
Subject: Re: RH6.2 login is now broken - how to fix?
Date: Tue, 28 Nov 2000 00:53:32 +0100

In comp.os.linux.setup Moe Koenig <[EMAIL PROTECTED]> wrote:
> On Sun, 26 Nov 2000 07:43:13 GMT, "Peter T. Breuer"
> <[EMAIL PROTECTED]> wrote:
>>In comp.os.linux.setup Moe Koenig <[EMAIL PROTECTED]> wrote:
>>: On Sun, 15 Oct 2000 08:52:53 +0800, Robert Masters
>>: <[EMAIL PROTECTED]> wrote:
>>: No matter how much time you spend, you can *never* be sure to have
>>: really found all changes and backdoors a hacker could have inserted.
>>
>>Oh yes _I_ can. I have an md5 list stored on another machine (as well
>>as 20 other binary identical machines to compare with). It's perfectly
>>possible. And I can count entries in /proc to see how many processes
>>are running, and boot off a new kernel with my choice of shell to 
                      ^^^^^^^^^^^^^^^^^^^^^^^^^^^
>>give myself a good view. COme to that, I have a copy of the / partition
>>at the other end of every disk ...

> You obviously have not looked into the latest kernel mods
> the friendly blackhat next door uses, yet.

Read my carets.

> Talk about a kernel patch that cloaks its presence (files will not
> show up, /proc will hide stuff), returns content of the previous,
> innocent file(s) on read()-requests (there your md5 goes...) and
> intercepts any attempt to overwrite the kernel binary used by lilo.

Nonsense. I can boot from a floppy whenever I like. The kernel
is not present to prevent me then!

The harddisk kernel images are also on windows fat32 partitions!  NT
needs to boot from the first 2GB, and it's easier to keep them down
there.  If you have managed to write a driver that writes to fat32,
congrats.  I'd like to know how blackhat manages to even find out which
kernel image I boot from in order to nobble it!  He'd have to read the
bootsector and decipher the physical offset, then go look.  That's too
much trouble.

Further precautions are that root has a restricted shell (this won't
affect buffer overflow attacks, but the attacker has to get IN first).
Syslog logs to off-machine. All logs are analysed and any non-normal 
entry is passed to me immediately. There are more traps, but I won't
tell you about them.

Also a pristine copy of the root partition (about 32MB) is maintained
at the other end of the disk, unmounted. 

Come to that in some labs the machines use bootproms on the NICs!

> Now, recover from that one using your method.

Seems trivial as well as mundane. Not that I believe you for a second,
since any "blackhat" that would work hard enough and well enough to
achieve your fantasy would realise that all his hard work would be
defeated by the standard admin mantra, 1) boot from floppy with rescue
disk, 2) ...

> I would consider any hacked machine untrusted until it has been wiped
> once or better twice.

You are fantasizing, with delusions of grandeur to boot.

> Ofcourse you can detect modified files but as far as I know the most
> recent utilities implement almost everything at kernel level which is
> pretty hard to deal with.

Uh, fellah, the kernel is a file. It has an md5sum.

Even if you loaded a module into a running kernel that prevents writes
to sector zero of the disks, and does funny stuff in the FS layers (hey,
that's hard ..  the module would have to search for symbols that weren't
exported when the kernel was built), it'd be irrelevant. That kernel
would not be booted.

By the way, do you know about the "secure kernel" techniques?  Check
out the projects lists!

> So, once your machine has been compromised it usually takes less time
> to do a plain re-install than it would take to find and remove all the

Except that it has taken about 5 years to get the systems to this point
... some naivity is showing. No sysadm would be able to use an
out-of-the box system from a distro aimed principally at home users,
nor would one "re-install". Copy the image back from a mirror, perhaps.
Just two changes are required in that image in order to custimize it.
/etc/hostname and /etc/init.d/network, for hostname and IP address
respectively. Those changes aren't even necessary with dhcp, but
I like to believe the machines can survive without the net.

Peter

------------------------------

From: Cliff Sarginson <[EMAIL PROTECTED]>
Subject: Re: Mounting cdrom after upgrade to 2.4.0-pre11
Date: Mon, 27 Nov 2000 16:33:27 +0100

[EMAIL PROTECTED] posited:

> Hey all, I hope someone can help me.
> 
> I had a relatively fresh Slackware 7.1 install (kernel 2.2.16) and
> everything was/is fine with it but to play with the new DRI XFree86 stuff
> I decided to
> upgrade to a 2.4-pre kernel.  The upgrade was relatively painless save one
> thing.  Now when I go to mount my cdrom it seems to mount successfully but
> when
> I cd to the directory and do a list I see no files.  I've read the ide-cd
> file in the kernel distribution and I did the cat /dev/cdrom | od | more
> and got reams of output, so it seems I'm talking to the cdrom okay (that,
> and workbone
> behaves just as well as ever) but I can't get at the filesystems.  Is
> there a
> known problem with IDE ATAPI cdroms on 2.4.0pre11?  I tried both
> home-burned data cds and store-bought shrink-wrapped ones with no changes,
> but all mount fine if I boot back to 2.2.16.
> 
> Any help is really appreciated.
> 
> Thanks,
> -Joe.
> 

I cannot answer your question, except to say you are using a test kernel, 
one which may well change daily ! You really must expect that some things
may not work until it is officially released (which will probably be quite 
soon).

Cliff
-- 
no NAUGHTYSPAM if you email me :)

------------------------------


** FOR YOUR REFERENCE **

The service address, to which questions about the list itself and requests
to be added to or deleted from it should be directed, is:

    Internet: [EMAIL PROTECTED]

You can send mail to the entire list (and comp.os.linux.setup) via:

    Internet: [EMAIL PROTECTED]

Linux may be obtained via one of these FTP sites:
    ftp.funet.fi                                pub/Linux
    tsx-11.mit.edu                              pub/linux
    sunsite.unc.edu                             pub/Linux

End of Linux-Setup Digest
******************************

Reply via email to