[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cobalt-users] Re: cobalt-users digest, Vol 1 #2414 - 18 msgs
- Subject: [cobalt-users] Re: cobalt-users digest, Vol 1 #2414 - 18 msgs
- From: "H.L.Silvia" <usmicromap@xxxxxxxxxxxx>
- Date: Fri Mar 23 15:45:23 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
>Please unsubscribeSend cobalt-users mailing list submissions to
>	cobalt-users@xxxxxxxxxxxxxxx
>
>To subscribe or unsubscribe via the World Wide Web, visit
>	http://list.cobalt.com/mailman/listinfo/cobalt-users
>or, via email, send a message with subject or body 'help' to
>	cobalt-users-request@xxxxxxxxxxxxxxx
>
>You can reach the person managing the list at
>	cobalt-users-admin@xxxxxxxxxxxxxxx
>
>When replying, please edit your Subject line so it is more specific
>than "Re: Contents of cobalt-users digest..."
>
>
>Today's Topics:
>
>   1. Re: TELNET PROBLEM (elmer@xxxxxxxxxxxxxx)
>   2. Re: regarding named running as root after pkg update... (Jonathan
>Michaelson)
>   3. CSR SSL on 2 <> IPs are the same (Gilles Dumangin)
>   4. Re: Can't ftp - HELP! (Zeffie)
>   5. Portscans/IP list (Was: Re: [cobalt-users] PortSentry works !) (Nico
>Meijer)
>   6. Re: RaQ2: Reading the routing table (Nico Meijer)
>   7. Re: regarding named running as root after pkg
>       update... (Glen Scott)
>   8. Re: Auto Setup Script Problems (Nico Meijer)
>   9. Re: Disable ping (Was: [cobalt-users] Ipchains command?) (Nico Meijer)
>  10. Re: PHP4 and mySQL on Raq2 (Ziad Sidawi)
>  11. RE: Active Monitor (Dan Kriwitsky)
>  12. Re: PortSentry works ! (Colin J. Raven)
>  13. Instagate EX2 from E-Soft (Jay Kraft)
>  14. RE: Re-Directing users on a 404 error (Wayne Sagar)
>  15. RE: TELNET PROBLEM (Alex Lee)
>  16. Re:[2]  Re:[cobalt-users] Active Monitor (RaQ3)
>  17. RE: password file (rpaiz@xxxxxxxxxxxxxx)
>
>--__--__--
>
>Message: 1
>From: elmer@xxxxxxxxxxxxxx
>Date: Fri, 23 Mar 2001 02:08:07 -0700 (MST)
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: Re: [cobalt-users] TELNET PROBLEM
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>On Thu, 22 Mar 2001, Wayne Sagar wrote:
>
>} No joy here either.. there is no vid card in the RaQ....
>} *if* you can't get in via ssh or telnet or some other
>} outside means to do something with the system, only o
>} options are complete restore or pull the disk, mount
>} it on another system and poke around...
>
>	Hardware is not my area of expertise. However, while I
>may not know the proper names for the gizmos, I do know that you can
>connect another computer directly to your RAQ and login using
>something like minicom (Linux) or that whatever it's called terminal
>program that comes with Windows. I do this regularly here using a
>standard CAT5 (crossover I believe but I don't have time to look
>right now) cable and a serial adaptor gizmo that I bought at a
>local computer store for a few bucks. I just stretch the CAT5 cable
>we use for this over to the server, plug it in via that adaptor
>gizmo, then fire up minicom on the desktop and log right in. No
>big deal at all. Works every time. If you box is colocated the
>support team ought to be pretty handy with this kind of thing. It's
>a very common proceedure at server farms, big and small.
>
>	I am sorry, I don't know the names of the gizmos. Hardware
>is something I pay people to do for me. But there's not much too
>this. Just a cable and an adapter. Any computer store ought to be
>able to fix you up.
>
>
>
>
>--__--__--
>
>Message: 2
>From: "Jonathan Michaelson" <michaelsonjd@xxxxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: Re: [cobalt-users] regarding named running as root after pkg
>update...
>Date: Fri, 23 Mar 2001 09:13:35 -0000
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Shimi,
>
>> i have noticed that on bind 9.1.0, the -u parm doesnt work anymore.
>> future compliance, cobalt? :-)
>
>Yes it does. You need to run configure with the --disable-threads option,
>then it will run up under -u named with no problems. We have Bind v9.1.0
>running on two RaQ3's like this.
>
>> anyways guys (and girls) - I guess you'll have to edit
>> /etc/rc.d/init.d/named
>> and change every
>> daemon named
>> to
>> daemon named -u named
>>
>> this *has not* been tested, so unless you make sure you can access te box
>> later if SOMETHING happens, don try it till someone approves :)
>
>It works just fine. I've done it on 3 RaQ3's and 2 RaQ4's and for other
>people on the list for Bind v8.2.3
>
>Just edit /etc/rc.d/init.d/named and there are 2 instances of
>daemon named
>Change these to:
>daemon named -u named -g named
>
>Regards,
>Jonathan Michaelson
>
>Commercial Perl CGI Scripting
>Cobalt RaQ Support Services
>
>
>--__--__--
>
>Message: 3
>From: "Gilles Dumangin" <gilles_dumangin@xxxxxxxxxxx>
>To: cobalt-users@xxxxxxxxxxxxxxx
>Date: Fri, 23 Mar 2001 09:56:30 -0000
>Subject: [cobalt-users] CSR SSL on 2 <> IPs are the same
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Hi,
>
>I have a RaQ3 qith several IP addresses on it. I have a main certificate on
>the server for secure admin on 1 IP, then a virtual site on a different IP
>with a different certicifacte (no problem there).
>
>I have just added a 3rd IP and I have attached a virtual site to it. I try
>to generate a CSR, but whatever I put in the GUI (my org name...), when I
>click on generate self certificate, it asks me if I want to delete the
>certificate (up to here no problem), but then whatever what I have entered,
>it takes into account the values of the other certificate (not the main one
>but the one on the second IP). I can't seem to be able to get it to accept
>the text I want.
>
>Anybody had that problem before?
>
>Thanks
>
>Gilles
>_________________________________________________________________________
>Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.
>
>
>--__--__--
>
>Message: 4
>From: "Zeffie" <cobalt-proj@xxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: Re: [cobalt-users] Can't ftp - HELP!
>Date: Wed, 21 Mar 2001 04:12:20 -0500
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>
>> I lost my ability to ftp to my Raq server.  I must get this ASAP.
>> Please can anyone help me figure this out.
>
>Sure...  I would suggest you post any errors you are getting or contacting
>me through the "human Click" chat thing on my site...
>
>Zeffie
>http://www.zeffie.com/
>If this message helps you please help others with just a click!
>http://www.thehungersite.com/
>
>
>--__--__--
>
>Message: 5
>From: "Nico Meijer" <cobalt-users@xxxxxxxxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: Portscans/IP list (Was: Re: [cobalt-users] PortSentry works !)
>Date: Wed, 21 Mar 2001 10:06:14 +0100
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Hi gsh,
>
>> > So, perhaps an off list scan consortium?
>>
>> I think from a strictly technical point of view such a list has
>> questionable value, most of the IP's i see than go scanning the usual
>> ports are dialup/cable modem users, a day after the fact , if not sooner ,
>> they have some other IP and some other poor slob has the one they used, so
>> theres' not really much point, i don't think i have seen the same IP show
>> up a second time...
>
>You're absolutely right. Nobody in their right mind goes about scanning
>hosts from a fixed IP.
>
>Actually, I meant something else. Obviously, I haven't been clear enough.
>People in this list have stated that they should scan their own machines
>from their own machines on a regular basis. I don't think this will work.
>
>Most people prolly grant all/most access to their own machine *from* their
>own machine(s). For instance, if you have telnet enabled, you almost certain
>have strict rules as to which IP's can connect to it. Scanning it from your
>own machine will be of little value, since a lot of ports which most other
>machines cannot connect to will show up as open.
>
>Therefore, I think it would be of more value when other people scan other
>people's machines on a regular basis. For instance, I could scan your
>box(en) automatically once a week/day from an IP you have nowhere in your
>hosts.allow or an ipchains rule. So I would see everything from a real,
>untrusted Internet connection. Done through a cron job, you could
>automatically be notified of the results.
>
>Likewise, someone else - perhaps you - could regularly scan *my* machine so
>I'd know what the state of it is and what portscanning kiddiez see.
>
>That is what I meant with the "scan consortium".
>
>> So, really, i see little actual value...
>
>I hope I clarified my point and its usefulness. If not, say so, please.
>
>Have a good one... Nico
>
>
>--__--__--
>
>Message: 6
>From: "Nico Meijer" <cobalt-users@xxxxxxxxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: Re: [cobalt-users] RaQ2: Reading the routing table
>Date: Mon, 19 Mar 2001 21:34:27 +0100
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Hi Diana,
>
>> Can anyone tell me how to read the current routing table information.
>
>It's "/sbin/route" without the quotes.
>
>Greetz... Nico
>
>
>--__--__--
>
>Message: 7
>Date: Fri, 23 Mar 2001 10:32:01 +0000
>To: cobalt-users@xxxxxxxxxxxxxxx
>From: Glen Scott <glen@xxxxxxxxxxxxxxxxxxxx>
>Subject: Re: [cobalt-users] regarding named running as root after pkg
>  update...
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>What problems could occur if named continues running as root?
>
>- Glen
>
>At 09:13 23/03/01, you wrote:
>
>>It works just fine. I've done it on 3 RaQ3's and 2 RaQ4's and for other
>>people on the list for Bind v8.2.3
>>
>>Just edit /etc/rc.d/init.d/named and there are 2 instances of
>>daemon named
>>Change these to:
>>daemon named -u named -g named
>>
>>Regards,
>>Jonathan Michaelson
>>
>>Commercial Perl CGI Scripting
>>Cobalt RaQ Support Services
>>
>>_______________________________________________
>>cobalt-users mailing list
>>cobalt-users@xxxxxxxxxxxxxxx
>>To Subscribe or Unsubscribe, please go to:
>>http://list.cobalt.com/mailman/listinfo/cobalt-users
>
>-----------------------------------------------------
>   Design Solution Limited
>   t: +44 (0)1502 513008
>   f: +44 (0)1502 588622
>   e: info@xxxxxxxxxxxxxxxxxxxx
>   w: http://www.designsolution.co.uk
>   Nouvotech House, Harbour Road,
>   Oulton Broad, Suffolk, NR32 3LZ, UK
>-----------------------------------------------------
>Graphic Design - Web development - Hosting
>-----------------------------------------------------
>
>
>--__--__--
>
>Message: 8
>From: "Nico Meijer" <cobalt-users@xxxxxxxxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: Re: [cobalt-users] Auto Setup Script Problems
>Date: Mon, 19 Mar 2001 21:40:50 +0100
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Hi Mike,
>
>Don't have a clue as to what script you're talking about, but anyway... ;-)
>
>> Warning: fopen("/tmp/setup/userdata","a") - No such file or directory in
>> /home/sites/site2/web/order.php on line 761
>>
>> Error opening File!
>> Order could not be processed!
>
>I've seen these types of errors before. Every single time (yes, been there
>more than once ;->) I had a problem with the directory and/or file
>permissions.
>
>Is this directory accessible by the apache user? If so, can the apache user
>write to this directory?
>
>You could check this by cd'ing into /tmp/setup and typing "ls -l", which
>will give you the info you need. The directory should be "rwx" for the
>apache user and the file userdata at least "rw-".
>
>Hope this helps... Nico
>
>
>--__--__--
>
>Message: 9
>From: "Nico Meijer" <cobalt-users@xxxxxxxxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: Re: Disable ping (Was: [cobalt-users] Ipchains command?)
>Date: Wed, 21 Mar 2001 14:41:35 +0100
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Hi Murat,
>
>>   Because I wanted to close my server to the ping. I don't know if there
>is
>> a special gui command in the web based interface for it, but if there is
>> not, please tell me the right one.
>
>I don't believe it's in the GUI.
>
>Try "echo 1 > /cat/proc/sys/net/ipv4/icmp_echo_ignore_all" (without quotes).
>You don't have to rerun your ipchains script, but do put it in rc.local.
>
>Hope this helps... Nico
>
>
>--__--__--
>
>Message: 10
>From: "Ziad Sidawi" <ziad@xxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Date: Wed, 21 Mar 2001 10:27:12 -0500
>Organization: WADS
>Subject: [cobalt-users] Re: PHP4 and mySQL on Raq2
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Just need a confirmation if there is any problem attempting to do so on a
>Raq2.
>
>I think will be better to upgrade libraries and compiler, and then compile
>newer versions of mysql and php. The experimental folder on Cobalt
>mySQL3.22.21 while current one is is  mysql 3.23.35
>php
>is now 4.0.4pl1. cobalt doesnt have 4 at all. only old 3.07 for raq2.
>
>Ziad
>
>
>--__--__--
>
>Message: 11
>From: "Dan Kriwitsky" <webhosting@xxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: RE: [cobalt-users] Active Monitor
>Date: Wed, 21 Mar 2001 12:26:32 -0500
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>> My active monitor stay in alert (because of a disk quota limit) after
>> increasing the limit of this users
>> How can i "refresh" it, did the cobalt Raq3 needs to reboot ?, maybe it
>> refresh the active monitor every x days
>>
>How long did you wait? IIRC, it updates every 15 minutes.
>--
>Dan Kriwitsky
>
>
>
>
>--__--__--
>
>Message: 12
>Date: Wed, 21 Mar 2001 22:03:23 -0500 (EST)
>From: "Colin J. Raven" <cjraven@xxxxxxxxxxx>
>To: cobalt-users@xxxxxxxxxxxxxxx
>Subject: Re: [cobalt-users] PortSentry works !
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>On Wed, 21 Mar 2001, Carrie Bartkowiak wrote:
>
>> > Er, that's the equinox, not solstace...and now the Druid Police will
>> most
>> > likely crawl into you DNS and perform spelling checks.
>> >
>> > And, I thought the real celebration was Carrie and Rodolfo dancing
>> naked,
>> > or at least the what was in the KB on the cobalt site about
>> cron-yearly.
>>
>> Ack!  Rodolfo's wife and my hubby would get kinda peeved about that,
>> methinks!
>> And I wanna know who Cobalt is paying to come peeking into my backyard
>> on wiccan holidays...  ;)
>>
>> Tell ya what, Thom - you and Rodolfo each get out tonight under the
>> moon skyclad and do your own things, and I'll just trust that had we
>> all been together it would've been a really funny experience. :)
>>
>Tell 'ya what.....I'll bring some sheep for sacrificial as well as
>depraved recreational purposes (I *am* Scottish by birth, so some things
>occur to me without conscious effort) a few cases of beer, plus a box or
>two of submarine gelignite, and a mixed box of proximity and fused
>detonators (also for recreational purposes) and we'll see what comes up in
>the course of the evening.
>Dancing, Fireworks, Beer, Sheep <moan> THIS sounds like one hardcore
>party!
>Oh BTW, nothing peculiar about me, some of the sheep may well be
>wearing the latest examples of this seasons' satin off-the-shoulder number
>by Victoria's Secret (tm)
>Whaddya mean; "sordid imagery"???? I was only saying to a dear wooly
>friend of mine the other day; "Ewe look sooooo good in that outfit!"
>Regards,
>-Colin
>--
>Colin J. Raven
>Linux Registered User #82296
>Wed Mar 21 21:49:01 EST 2001
>  9:49pm  up 22 days,  2:21,  1 user,  load average: 0.00, 0.01, 0.00
>
>
>--__--__--
>
>Message: 13
>Date: Fri, 23 Mar 2001 06:42:26 -0500
>To: cobalt-users@xxxxxxxxxxxxxxx
>From: Jay Kraft <jkraft@xxxxxxxxxxxx>
>Subject: [cobalt-users] Instagate EX2 from E-Soft
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>Just bought the new Instagate EX2 from esoft.com. Got an EVAL unit for $749.
>
>This is a firewall, email server, virus screen, VPIN tunneler, RAS server,
>Single IP web server, print server, file server and it takes out the trash.
>It is the size of a hardbound novel and runs RH 6.1.
>
>For those of you with a network behind your RaQ's (like me) this thing
>protects the equipment on the internal network that you can't run Zone
>Alarm on (like Snapservers).
>
>Will also do nightly virus definition updates automatically and if you drop
>your email through it (or let it be your mailserver) it screens all the
>mail for viruses BEFORE it gets to your desktop.
>
>It is better than SonicWalls because it is scalable.
>
>Have a look at it on their page.
>
>Jay
>
>
>--__--__--
>
>Message: 14
>Date: Wed, 21 Mar 2001 19:13:57 -0800
>To: cobalt-users@xxxxxxxxxxxxxxx
>From: Wayne Sagar <wsagar@xxxxxxxx>
>Subject: RE: [cobalt-users] Re-Directing users on a 404 error
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>>hmmm... I'm currently backing up the 60+ user sites ready to move server
>>- they're readying my >replacement box and we're jumping ship - having
>>already tried putting the RAQ3 hard disk from our >server into another
>>RAQ3 - same problem - ie, the problem is SOMEWHERE on either my OS or
>>>elsewhere in the hard-disk.
>
>Ouch again!! I did not have that many sites <snif> but two of them are
>huge that I had to back up and then reupload to the server.... Thank god
>for a shared T-1 connection to the net!!! Remote server management would
>be nearly impossible with a dialup!!
>
>Well.. Hope you get some sleep tonight.. When I had to do mine, it was a
>VERY long day unto the next day getting it all working right...
>
>Thanks again for the very helpful tutorial!! I'll see if I can break
>enough time away to get it done.. I hate the canned error messages on the
>cobalts and it also gives away that it's a cobalt to anyone who askes for
>a page that is not there...
>
>Wayne
>
>
>
>--__--__--
>
>Message: 15
>From: "Alex Lee" <alex@xxxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: RE: [cobalt-users] TELNET PROBLEM
>Date: Fri, 23 Mar 2001 13:31:21 +0100
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>> 	Hardware is not my area of expertise. However, while I
>> may not know the proper names for the gizmos, I do know that you can
>> connect another computer directly to your RAQ and login using
>> something like minicom (Linux) or that whatever it's called terminal
>> program that comes with Windows. I do this regularly here using a
>> standard CAT5 (crossover I believe but I don't have time to look
>
>You can hook up a null modem cable to the first serial port of the RaQ and
>connect the other end to the serial port of your PC/notebook.
>
>Grab any terminal emulator that can talk to serial devices like
>HyperTerminal or Minicom.
>
>The settings are 115200, 8-N-1.
>
>This is generally recommended when there's no other way to access your RaQ
>and you need to find out what's wrong with it (you get normal bootup
>messages and the login prompt, the tty is redirected to the serial port)
>
>
>Alex Lee
>Sun Microsystems - Server Appliance
>alex@xxxxxxxxxx
>
>
>
>
>--__--__--
>
>Message: 16
>From: RaQ3 <cobalt@xxxxxxxxxxx>
>Subject: Re:[2]  Re:[cobalt-users] Active Monitor
>To: Cobalt Users <cobalt-users@xxxxxxxxxxxxxxx>
>Date: Fri, 23 Mar 2001 13:56:48 +0100
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>"Ramon LOPEZ" <r.lopez@xxxxxxxxxxxxxxxxxxx> wrote on 23.03.01 11:01:22:
>>
>>I let it since yesterday and it didn't refresh the active monitor.
>>
>>> >
>>> >Hello,
>>> >
>>> >(RAQ 3 - OS Update 4)
>>> >
>>> >My active monitor stay in alert (because of a disk quota limit)
>>> >after increasing the limit of this users
>>> >How can i "refresh" it, did the cobalt Raq3 needs to reboot ?,
>>> >maybe it refresh the active monitor every x days
>>>
>>> Hi Ramon !
>>>
>>> No need to reboot it - it's not Windoze ;-)
>>> It refreshes every 15 minutes.
>
>I have something with the active monitor as well and keep
>an eye on it. More to come ...
>
>Thomas
>
>--
>InternAd.de
>Internet Advertising
>Thomas Prosi
>tp@xxxxxxxxxxx
>
>
>--__--__--
>
>Message: 17
>From: <rpaiz@xxxxxxxxxxxxxx>
>To: <cobalt-users@xxxxxxxxxxxxxxx>
>Subject: RE: [cobalt-users] password file
>Date: Fri, 23 Mar 2001 10:05:30 -0300
>Reply-To: cobalt-users@xxxxxxxxxxxxxxx
>
>> Also, is the software the only difference
>> between the RaQ and RaQ 2?
>
>There are hardware differences (don't recall which ones), but you can
>run the RaQ2 OS on the RaQ1, and since it's a later release you'll
>probably be happy with it.
>
>Do be sure to run all updates and secure your machine properly. I've
>found that a subscription to the cobalt-security, redhat-security,
>redhat-announce, and redhat-watch lists is a wonderful thing. And since
>they're all low-traffic lists, they won't bother you at all.
>
>--
>Rodolfo J. Paiz
>rpaiz@xxxxxxxxxxxxxx <mailto:rpaiz@xxxxxxxxxxxxxx>
>
>
>
>
>--__--__--
>
>_______________________________________________
>cobalt-users mailing list
>cobalt-users@xxxxxxxxxxxxxxx
>http://list.cobalt.com/mailman/listinfo/cobalt-users
>
>
>End of cobalt-users Digest
US MicroMap Corp.
usmicromap@xxxxxxxxxxxx
1055 SE Ocean Blvd. Stuart, FLorida 34996  USA
 011 561 349 7715
NO FAX
Worldwide AirBorne Acquisition of High Resolution Precision Color Imagery
Image Exploitation, Analysis,Fusion, Mosaicing and Georeferencing,
For the Professions
ERMapper  reseller
For FREE AERIAL IMAGES:    HTTP://www.usmicromap.com