Bienvenido! - Willkommen! - Welcome!

Bitácora Técnica de Tux&Cía., Santa Cruz de la Sierra, BO
Bitácora Central: Tux&Cía.
Bitácora de Información Avanzada: Tux&Cía.-Información
May the source be with you!

Saturday, February 20, 2010

FreeNAS & rsync

Step by Step How to Make a FreeNAS Box



Flash drive FreeNAS server
 Installing FreeNAS
FreeNAS in depth
Setting up RAID 5 on a FreeNAS server
Windows-backup-with-rsync-and-freenas
Using RSYNC for NAS to NAS Off-site Backups 
Backup FreeNAS using rsync to a rsync-server
Openfiler, Freenas and RSYNC 
List all Pages of FreeNAS wiki
Rsync allows synchronisation or backup of files in one direction. i.e. you can specify which version of each file you want mirrored to both locations.
To enable the RSync server on FreeNAS:
Go to: Services -> Rsync
In the Rsync Server Settings tab:
Map to user Guest; TCP 873
In the RSync Server Modules tab:
Click on the little + symbol near the bottom right of the table.
Name: FreeNAS_rsync_server_module_name (substitute for your own alternative)
Comment: your own identifier
Path: browse to server backup location
Others: leave blank or accept defaults
Click Save near the bottom
You then need to set up RSync client on the networked PC you will be backing up.
Ref: Daily Cup of Tech Delta Copy

Google Update Error 0x8004071c

Installation issues - Google Chrome Help

Issue Your computer is currently in Windows Audit Mode and is conflicting with the installation of Google Chrome.
Solution Take your computer out of Audit Mode. Follow the steps listed below.
These steps involve making changes to the Windows registry on your computer. Editing the Windows registry is an advanced process, so you might want to contact your system administrator for help.


  1. Go to the Start menu --Run.
    [in Windows 7] Click the Start button. In the search box, type run, and then Enter key
  2. Enter the following in the text box: regedit
  3. Click OK.
  4. Find and right-click the relevant registry key for your operating system:


    • Windows XP: AuditInProgress in HKLM\System\Setup
    • Windows Vista: ImageState in HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\State
    • Windows 7: ImageState in HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\State
  5. Select Modify.





    (image from ingeeknieria.com)
    ab ImageState Reg_SZ  IMAGE_STATE_UNDEPLOYABLE
  6. Delete the value of ImageState
  7. Click OK. and eventually restart the OS

Internet banking security

F-Secure’s Mikko Hyppönen said that it isn’t safe to access your bank through the Internet in Brazil. He suggested some solutions, such as using a virtual machine solely for online banking activities.
Use virtuabox.org!!

Listado gris

greylisting.org
Greylisting is a new weapon to use against spam in this great war being waged upon it. With this new shielding method, by which you may block out huge amounts of spam, you are sure to please your email clients!
In name, as well as operation, greylisting is related to whitelisting and blacklisting. What happen is that each time a given mailbox receives an email from an unknown contact (ip), that mail is rejected with a "try again later"-message (This happens at the SMTP layer and is transparent to the end user). This, in the short run, means that all mail gets delayed at least until the sender tries again - but this is where spam loses out! Most spam is not sent out using RFC compliant MTAs; the spamming software will not try again later.
But.. spammers adapt!?
Yes they do. But that does not really make greylisting useless. This delay in new sender contacts also gives you a lot of extra power. This may be an hour, but in this hour there is a large chance that the mass mailer/spammer has been identified by the more conventional anti-spam software. Thus, when he retries it, is likely that we will know him for what he really is!
What if my email was rejected and greylisting was mentioned as the cause?
This can happen for various reasons:
  • The MTA (mail transfer agent) / email ISP that you use to send email is not RFC 821 compliant. Contact your ISP.
  • The MTA is in some way misconfigured to not automatically retry email messages that gets rejected with the "try later"-message. Maybe it's timing is off and it retries immediately (which it shouldn't). Contact your ISP.
  • The recipient email server has got greylisting misconfigured, ie. an implementation that just doesn't let mails through even on later retries. Or maybe their error message is actually wrong: greylisting was NOT the reason your mail bounced - but something else.
Introduction
In 2003 Evan Harris announced a notion he called greylisting. Greylisting does not absolutely reject mail, but requires mail from unfamiliar senders to be retransmitted by their ISPs' SMTP clients. Mail from familiar senders is passed immediately.
The idea is to delay mail from unfamiliar senders for half an hour, but immediately deliver mail from regular correspondents. It is based on the observation that large amounts of spam is sent via open proxies, botnets, and other mechanisms that do not involve proper mail transfer agents (MTAs). A proper sending MTA will repeat a transmission after a temporary 4yz rejection. RFC 2821 says that the sending MTA should retransmit 30 minutes or later after a failure, but spam sent through an open proxy as well as some viruses and worms are not retransmitted.
Greylisting is extremely effective against spam that is not otherwise detected by DCC clients. If you cannot use greylisting, consider body URL blacklisting by adding something like -Bsbl-xbl.spamhaus.org,any to DCCM_ARGS or DCCIFD_ARGS in /var/dcc/dcc_conf.
In the DCC implementation of greylisting the sendmail milter interface, dccm, or the general MTA interface, dccifd, sends a request to a modified version of the DCC server, greylist dccd. The requests contains the simple DCC body checksum of the message as well as an MD5 checksum of the MD5 checksums of IP address of the SMTP client sending the mail message, the envelope sender or Mail From value of the message, and the recipient or envelope Rcpt To value of the message. If the combination IP address, sender, and recipient is familiar, the DCC client tells the MTA to accept the message. Otherwise the DCC client tells the MTA to embargo or temporarily reject the message.
If the sending MTA persists and retransmits the message after the embargo but within the wait time, the triple (sender, IP address, addressee) is added to the database.

Friday, February 19, 2010

Accessing a public PC

Source

Portforewarding
Enable DMZ
DMZ Host IP Address:192.168.1.NNN

Your ISP might block port 80 hosting. Is it possible to move the camera to port 8080 and have your friend access it via http://yourip:8080
You'll have to change your forwarding rules or just leave the cam in the DMZ until you can access it from the outside.

Java Remote Desktop Protocol (RDP) Client

For use with a Windows Terminal Server:
Open Source Java RDP client for Windows Terminal Services is based on rdesktop, and proper Java RDP.
It runs on Java 1.1 and up, and works on Linux, Windows, Mac and other Java enabled systems.
This software is subject to the terms and conditions of the GPL.
Source Archive
Java 1.3 Jar
Java 1.4 Jar
Terminal Server Pro PRO Allows Windows XP and Small Business Server 2003 to host multiple remote desktops.
Documentation

DNS hijackers

Source
NO virus scanner can pick them up as they are not a virus, there are no infected files with malicious code, so the anti-virus or anti-spyware product cannot detect the change to your registry.
There is no set value each ISP has there own dns.
You could get it from facebook, myspace, etc.
Looks like a harmless video [click here]
than ... BLAM! 
your DNS service is hijacked!

Source
Start ->; Execute 
net diag /test:dns
------------------------
Go to Control Panel -> administrative tools -> Services....
Look for "DNS client" 
Double click on it to get its menu... switch it to "disabled" and "stop" it.
Hit Apply...if you are in a network that uses "Active Directory domains" then this might not help
Otherwise its fine...no DNS client for the hijacker anymore....internet will work just fine.
I have been disabling dns client for years.
------------------------
One way to fix the DNS. Changer is to get the free Malwarebytes Anti-Malware.
Donwload the latest version of the software from the site and install it on the infected PC.
Restart your computer in safe mode and give this a full scan.
It finds all the viruses, trojans, dialers, DNS.Changer and all the like.
-------------------------
DynDNS.org error?!
I found that the DNS settings kept being set to 216.146.35.35 and  216.146.36.36
I Googled this IP address and found that DynDns has a new feature on its client called "Internet Guide" that will change your DNS settings to the 216.146.35.35 settings I mentioned.
To change that property, goto Dyndns in your icons, (bottom Right)
Open DynDNS  > Advanced > Uncheck "Enable DynDNS.com Internet Guide on this PC" I found that this is new to version 4.1.4. I have also disabled my DNS services in my services.msc. 
Most home users will find this to be a good solution. I always run my machines as a fixed IP so I can port to each remotely. 
Just manually put the DNS1 to whatever the default IP for your router is. If you havent changed this number, than its probably still at default. Linksys=192.168.1.1, dlink=192.168.0.1, 2wire=192.168.1.245. be aware, if you shut down your DNS service, you will have to input the DNS address manually. Its located in the network adaptor propertys, (TCP/IP v4)