[CentOS] leap second

2012-07-01 Thread Bob Hoffman
- Kernel Begin 1 Time(s): Clock: inserting leap second 23:59:60 UTC -- Kernel End - hee hee. gotta love it ___ CentOS mailing list CentOS@centos.o

Re: [CentOS] reinventing the wheel? page checker

2012-06-22 Thread Bob Hoffman
On 6/22/2012 9:50 AM, m.r...@5-cent.us wrote: > Bob Hoffman wrote: >> On 6/21/2012 12:44 PM, Keith Roberts wrote: >>> On Thu, 21 Jun 2012, Bob Hoffman wrote: >>>> From: Bob Hoffman >>>> >>>> Not sure if there is an app like this yet. >>

Re: [CentOS] reinventing the wheel? page checker

2012-06-21 Thread Bob Hoffman
On 6/21/2012 12:44 PM, Keith Roberts wrote: > On Thu, 21 Jun 2012, Bob Hoffman wrote: > >> To: CentOS@centos.org >> From: Bob Hoffman >> Subject: [CentOS] reinventing the wheel? page checker >> >> Not sure if there is an app like this yet. >> I want to ke

Re: [CentOS] basic auth fails

2012-06-21 Thread Bob Hoffman
On 6/21/2012 10:03 AM, Tim Dunphy wrote: > Hello, > > I've setup apache basic auth on by web server to protect my nagios > site. It's been working just fine, but suddenly it stopped accepting > passwords even tho they are being typed in correctly. I was wondering > if I could get some advice on h

[CentOS] reinventing the wheel? page checker

2012-06-21 Thread Bob Hoffman
Not sure if there is an app like this yet. I want to keep tabs on my web applications and thought of using a 'page checker'/ I was thinking either running a sum on the directory or each file...but thinking a simple date check would be fine. The idea is web application, except the uploads area f

Re: [CentOS] how is this possible?

2012-06-20 Thread Bob Hoffman
On 6/20/2012 11:21 PM, Bob Hoffman wrote: > I got a spam today (from a yahoo server, surprise!) with nothing but a > single link. > > http:// 2927755261/ > I separated the http so it would not be a link in your email... suggest > not going to it without proper measures. &

[CentOS] how is this possible?

2012-06-20 Thread Bob Hoffman
I got a spam today (from a yahoo server, surprise!) with nothing but a single link. http:// 2927755261/ I separated the http so it would not be a link in your email... suggest not going to it without proper measures. it takes you to a record search site. When I look up this number block her

Re: [CentOS] Failing Network card

2012-06-20 Thread Bob Hoffman
On 6/20/2012 11:09 AM, Gregory P. Ennis wrote: > That's interesting. Here are the log entries for the previous card as > well as the eth4 that is currently installed. > > # PCI device 0x10ec:0x8168 (r8169) > SUBSYSTEM=="net", ACTION=="add", DRIVERS=="?*", > ATTR{address}=="00:e0:b3:10:f6:81", ATT

Re: [CentOS] PMA attacks

2012-06-20 Thread Bob Hoffman
On 6/19/2012 2:31 PM, m.r...@5-cent.us wrote: > But now I'm seeing the same from Azerbaijan, and France, and elsewhere. > Two questions: first, are other folks seeing this? and second, I can't > imagine malware this stupid, to keep hitting the same sites over and over > when it's not found, rather

Re: [CentOS] Fail2ban & logrotate [was: Update on spam, postfix, fail2ban, centos 6]

2012-06-18 Thread Bob Hoffman
On 6/18/2012 9:53 AM, Leonard den Ottolander wrote: > Hello Bob, > > On Sun, 2012-06-17 at 23:41 -0400, Bob Hoffman wrote: >> /etc/fail2ban/jail.conf >> change line 39 to >> backend = gamin >> >> Without this fail2ban will ignore log rotations by logrotate an

Re: [CentOS] Fail2ban & logrotate [was: Update on spam, postfix, fail2ban, centos 6]

2012-06-17 Thread Bob Hoffman
Here is what I had to do to make fail2ban work with centos 6, fail2ban from epel This is a long letter and no html to make it read better. It deals with failed jails during start, loss of ban/unban after systems logrotates files, errors in jails, sasl errors, logging file correctly to work with f

Re: [CentOS] Update on spam, postfix, fail2ban, centos 6

2012-06-16 Thread Bob Hoffman
On 6/15/2012 8:44 PM, Dave Stevens wrote: > Quoting Bob Hoffman: > >> I have been using centos 6 in a virtualized system for a few months now. >> Took a while to batten down the hatches with postfix, rbls, and to use >> fail2ban correctly. > Thanks for this,Bob. I'

[CentOS] Update on spam, postfix, fail2ban, centos 6

2012-06-15 Thread Bob Hoffman
I have been using centos 6 in a virtualized system for a few months now. Took a while to batten down the hatches with postfix, rbls, and to use fail2ban correctly. The mailserver for my website(s) are located on the http server as well..an 'all in one' server. DNS servers are separated. My two s

Re: [CentOS] 75% - 80% Rebuild Complete

2012-06-07 Thread Bob Hoffman
On 6/8/2012 1:13 AM, Nataraj wrote: > On 06/07/2012 03:48 PM, Les Mikesell wrote: > > And if the server is colocated, but you have remote console access, you > can leave a recovery CD in the drive, but set the boot order to boot the > hard drive and then remotely change the boot order if you have p

Re: [CentOS] some security measures I would like to share

2012-06-07 Thread Bob Hoffman
On 6/7/2012 7:42 PM, Bob Hoffman wrote: > *On a final note* > > If you are building a web application you should use a mysql user that > is only allowed to update and select... > With proper programming you can set up items to be deleted via a cron > job using a mysql user t

[CentOS] some security measures I would like to share

2012-06-07 Thread Bob Hoffman
I apologize for the html, but it is a copy from a web post I did. I wanted to share this with list members and hope it helps others. I tried not to be redundant and add things I have not seen posted before. Always interested in constructive thoughts, better ideas, etc. ** *Security thoughts for

[CentOS] noexec tmp directory

2012-06-06 Thread Bob Hoffman
Hello, I am fixing up a system for someone and they did not make a separate partition for /tmp...but I want to make it noexec, nosuid. I came across a site that said I could skip all the mount/unmount and new partition stuff (which would probably include downsizing a lvm to make room for it).

Re: [CentOS] problems installing parted tool

2012-06-01 Thread Bob Hoffman
On 6/1/2012 4:34 AM, Jane Wayne wrote: > i have downloaded the CentOS distribution that comes with Xen Cloud > Platform (XCP) at http://www.xen.org/download/xcp/index.html. i am > trying to install the parted utility. > > yum install parted > > however, i get the following message. > > Loaded plugi

Re: [CentOS] question for those who run mail servers

2012-05-31 Thread Bob Hoffman
On 5/31/2012 10:20 AM, m.r...@5-cent.us wrote: > I guarantee that those folks with too-"smart"-for-their-own-good phones > will send directly from them. Having never looked at a header from an > email sent via iPhone, I don't know - don't they have a legit mailserver > as their gateway? yea, that i

Re: [CentOS] question for those who run mail servers

2012-05-31 Thread Bob Hoffman
On 5/31/2012 9:59 AM, Ned Slider wrote: > On 31/05/12 14:09, Bob Hoffman wrote: >> Not technically a centos question, but a lot of you guys seem to manage >> some large systems >> and I could use some clarification on a postfix setting.* >> >> *reject_unknown_clie

[CentOS] question for those who run mail servers

2012-05-31 Thread Bob Hoffman
Not technically a centos question, but a lot of you guys seem to manage some large systems and I could use some clarification on a postfix setting.* *reject_unknown_client_hostname (in postfix < 2.3 reject_unknown_client) When I first used this there were issues with users trying to send mail t

Re: [CentOS] Request for CentOS stats

2012-05-30 Thread Bob Hoffman
On 5/30/2012 6:49 PM, Nataraj wrote: > On 05/30/2012 03:36 PM, Bob Hoffman wrote: >> On 5/30/2012 5:50 PM, Hakan Koseoglu wrote: >>> I trust the administrators of the centos.org mailing lists not to give >>> out any information on my subscription(s) to anyone, even

Re: [CentOS] Request for CentOS stats

2012-05-30 Thread Bob Hoffman
On 5/30/2012 5:50 PM, Hakan Koseoglu wrote: > I trust the administrators of the centos.org mailing lists not to give > out any information on my subscription(s) to anyone, even including a > count of it. Actually, I would really like them to clean up our email addresses from the archives. Those pa

Re: [CentOS] Request for CentOS stats

2012-05-30 Thread Bob Hoffman
On 5/30/2012 3:35 PM, Karanbir Singh wrote: > Hi, > > On 05/30/2012 08:26 PM, Max Pyziur wrote: >> Greetings, >> >> Are there any summary CentOS numbers available? > yes > >> The number of subscribers to this email list, and the number of server >> installs? > There are atleast 8 subscribers to thi

Re: [CentOS] NTP and virtual guests

2012-05-28 Thread Bob Hoffman
On 5/28/2012 9:59 AM, James B. Byrne wrote: > On Mon, May 28, 2012 08:50, Reindl Harald wrote: >> >> Am 28.05.2012 14:41, schrieb James B. Byrne: >>> when power returned all of the restored guests were immediately >>> shutdown by ntp because the time differential between the >>> restored systems an

Re: [CentOS] Apache error

2012-05-22 Thread Bob Hoffman
On 5/22/2012 3:49 AM, Luigi Rosa wrote: > I have a VMware virtual machine with CentOS 6 32bit updated to the lates > patches > > Yesterday Apache started to give this error: > > > [Tue May 22 09:46:07 2012] [error] (38)Function not implemented: > apr_socket_accept: (client socket) > [Tue May 22 09

Re: [CentOS] Apache error

2012-05-22 Thread Bob Hoffman
On 5/22/2012 3:49 AM, Luigi Rosa wrote: > (38)Function not implemented https://www.google.com/search?q=+%2838%29Function+not+implemented+apache ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] mysql secure installation and multi mysqld

2012-05-17 Thread Bob Hoffman
On 5/17/2012 5:30 AM, Leon Jacobs wrote: > On Thu, May 17, 2012 at 5:44 AM, Bob Hoffman wrote: >> is it possible to make each one of those instances a replicate/slave of >> a different master >> (thus a backup mysql server in a way?) > I just recently finished playi

[CentOS] mysql secure installation and multi mysqld

2012-05-16 Thread Bob Hoffman
If you adjust the my.cnf file to make separate instances of mysql. How would you go through the mysql secure installation? Is is possible or must it all be done manually for each one? is it possible to make each one of those instances a replicate/slave of a different master (thus a backup m

Re: [CentOS] webmin and DNS configuration on CentOS 6.2

2012-05-10 Thread Bob Hoffman
On 5/10/2012 4:57 AM, John Doe wrote: > From: Boris Epstein > >> I have two seemingly identical (in this reglard, at least) machine - both >> of them are running CentOS 6.2 with bind (bind-chroot) installed. I used >> webmin to edit the DNS configuration. One one of them it seems to work >> fine, o

Re: [CentOS] webmin and DNS configuration on CentOS 6.2

2012-05-09 Thread Bob Hoffman
On 5/9/2012 4:38 PM, Boris Epstein wrote: > Hello listmates, > > I have two seemingly identical (in this reglard, at least) machine - both > of them are running CentOS 6.2 with bind (bind-chroot) installed. I used > webmin to edit the DNS configuration. One one of them it seems to work > fine, on t

[CentOS] Spam, fail2ban and centos

2012-05-09 Thread Bob Hoffman
Been working on my anti-spam centos mailserver for a while now and thought I would share fail2ban's help. I installed fail2ban a few weeks back. It was tough to get it working properly but pretty much working now. Although it works fine for brute force, I thought I would run it pretty tough aga

Re: [CentOS] hack / spam/ probe /attack

2012-05-04 Thread Bob Hoffman
On 5/4/2012 12:27 PM, Asymmetrics Webmaster wrote: > You were lucky you got a repsonse. I didn't and I was getting persistent > spam for years. Till I started looking deeper. The company behind was > internap. I think still it is. I went around and published the information I > had including the MT

Re: [CentOS] hack / spam/ probe /attack

2012-05-03 Thread Bob Hoffman
On 5/3/2012 4:05 PM, m.r...@5-cent.us wrote: > whois only lists a "technical contact" ofhostmas...@telepacific.com. > However, from their website, I went to contact > , and see > > 877-487-8349 Emergency Law Enforcement > Option 2. Fraud

[CentOS] down to the nitty gritty, mysql replication

2012-05-02 Thread Bob Hoffman
Almost done with my centos handbook project on my server. Last two things are related, backups. Looking for anyone who feels like chiming in on mysql backups...this is what I am thinking at this point. Mysql backup system for all websites Each

Re: [CentOS] editing bind (DNS) configuration under CentOS 6

2012-05-02 Thread Bob Hoffman
On 5/2/2012 4:17 PM, Karanbir Singh wrote: > Hi, > > On 05/02/2012 05:58 PM, James B. Byrne wrote: >>> and then you have 2 problems, one of which is a security hole. >>> I've mostly just gone to using nsupdate from the cli for all zone >> For those of us not blessed with either the depth of experi

Re: [CentOS] DKIM Pass - Fail - Solved !!!

2012-05-02 Thread Bob Hoffman
On 5/2/2012 12:16 PM, Prabhpal S. Mavi wrote: >>> But when i restarted the server, dovecot failed to start on boot (it is >>> virtual machine). with this error. >>> >>> dovecot: dovecot: Fatal: Time just moved backwards by 537 seconds. This >>> might cause a lot of problems, so I'll just kill mysel

Re: [CentOS] DKIM Pass - Fail

2012-05-02 Thread Bob Hoffman
On 5/2/2012 7:51 AM, Prabhpal S. Mavi wrote: > Hello Mike, > > that actually worked!! i configured ntpd& ntpdate& restarted the server. > But when i restarted the server, dovecot failed to start on boot (it is > virtual machine). with this error. > > dovecot: dovecot: Fatal: Time just moved backw

Re: [CentOS] iptables drop on virtual host

2012-04-27 Thread Bob Hoffman
On 4/27/2012 5:05 PM, Bob Hoffman wrote: > dropping IPs by host machine, protecting the vms. > would something like this work > > -A PREROUTING -s 66.77.65.128/26 -j DROP > > > or would my server die upon testing it...lol > ___

Re: [CentOS] iptables drop on virtual host

2012-04-27 Thread Bob Hoffman
On 4/27/2012 9:36 AM, Bob Hoffman wrote: > Does this work? > > adding DROP to iptables on the virtual host's iptables, before the phys > bridgewill it prevent those ips from getting to the bridged part of > iptables? Or would a different syntax be used? > > > -

Re: [CentOS] Help with software raid + LVM on Centos 6

2012-04-27 Thread Bob Hoffman
On 4/27/2012 10:52 AM, aurfalien wrote: > Hi all, > > Please excuse the many posts. > > Wondering if any one can help me with the the setup. > > I have 2x2TBdisks. > I would like to mirror them. > I would like to create two LVMs so that I can snap shot from one to the other. > > During Centos 6 ins

Re: [CentOS] Centos 6 - Create raid 1 + LVM during gui install

2012-04-27 Thread Bob Hoffman
On 4/27/2012 10:35 AM, aurfalien wrote: > Hi all, > > Does any one know of a how to for creating raid 1 + LVMs during install for > Centos 6? > > Do I create the physical LVM first and then raid or vise versa? > > Its seems diff then doing it for Centos 5. > > - aurf > The way I did it was one dr

[CentOS] iptables drop on virtual host

2012-04-27 Thread Bob Hoffman
Does this work? adding DROP to iptables on the virtual host's iptables, before the phys bridgewill it prevent those ips from getting to the bridged part of iptables? Or would a different syntax be used? -A INPUT -s 66.77.65.128/26 -j DROP -I FORWARD -m physdev --physdev-is-bridged -j ACCEP

Re: [CentOS] fail2ban logrotate failure

2012-04-27 Thread Bob Hoffman
On 4/27/2012 8:41 AM, Maxim Shpakov wrote: > https://github.com/fail2ban/fail2ban/issues/44 > > I played with the gamin, but will give it one more try with just adding the log file to the logrotate.d/syslog file instead of its own...and then wait til tomorrow for the full logrotate (since I canno

[CentOS] fail2ban logrotate failure

2012-04-27 Thread Bob Hoffman
I got the fail2ban from epel. There were a number of issues relating to using a log file... logwatch was looking for both fail2ban and fail2ban.log logrotate file fail2ban added looked for fail2ban.log and then reset itself to syslog fail2ban itself went to syslog, over riding its fail2ban.log. t

Re: [CentOS] Does SMTP Connection Drop When Posfix Reload is Issued ?

2012-04-25 Thread Bob Hoffman
On 4/25/2012 12:00 PM, m.r...@5-cent.us wrote: > John Doe wrote: > >> automatically. >> Why not find out why you get blacklisted instead of trying to bypass it? >> You seem to imply that it is something that will happen and often... > It happens. It's certainly happened to me. When you're a host

Re: [CentOS] Does SMTP Connection Drop When Posfix Reload is Issued ?

2012-04-25 Thread Bob Hoffman
On 4/25/2012 7:42 AM, Prabhpal S. Mavi wrote: > i work with ISP, we host email service for almost 500+ companies and 200+ > mail servers relay through my smart host. > > i implemented something that when our smart host would become blacklisted. > It will automatic switch to next available smart hos

Re: [CentOS] Not Quite Minimal CentOS 6.2

2012-04-24 Thread Bob Hoffman
On 4/24/2012 7:22 PM, listmail wrote: > I a working on configuring a not-quite minimal installation of CentOS 6.2. I > tried doing the "minimal" installation available with the installer, but it's > a bit too minimal to be useful. So I'm cutting down from a less minimal > starting place. I'm pretty

Re: [CentOS] A request from the CentOS Project

2012-04-20 Thread Bob Hoffman
On 4/20/2012 11:12 AM, Tilman Schmidt wrote: > Am 20.04.2012 16:02, schrieb m.r...@5-cent.us: > >> mark "why, yes, I *do* remember Kantor& Siegal, and the aftermath >> to them" > Don't get me started. Ah, the good old pre-spam days! I was not working for a computer company, but I finally

Re: [CentOS] fail2ban attempt, anyone want to add anything?

2012-04-20 Thread Bob Hoffman
On 4/20/2012 9:25 AM, Tilman Schmidt wrote: > I prefer action = iptables-allports on all of these, so that a source > address attempting a bruteforce attack on one service is immediately > banned from all services. I can't imagine a scenario where a machine > that got blocked, for example, for a

Re: [CentOS] fail2ban attempt, anyone want to add anything?

2012-04-20 Thread Bob Hoffman
On 4/20/2012 9:25 AM, Tilman Schmidt wrote: > Am 20.04.2012 08:02, schrieb Bob Hoffman: > ction = iptables-multiport[name=ApacheAuth, port=80,443, protocol=tcp] > I prefer action = iptables-allports on all of these, so that a > source address attempting a bruteforce attack on on

Re: [CentOS] fail2ban attempt, anyone want to add anything?

2012-04-19 Thread Bob Hoffman
On 4/20/2012 2:24 AM, Bob Hoffman wrote: > if I could add something, definitely put ports, if numbers, in > quotes...without quotes I got some errors in the logs > port=ftp, no quotes.port="" quotes > > and I added one for vsftp, I use port 5000 > > [vsf

Re: [CentOS] fail2ban attempt, anyone want to add anything?

2012-04-19 Thread Bob Hoffman
On 4/20/2012 2:02 AM, Bob Hoffman wrote: > > /etc.fail2ban/jail.conf > > commented out the mailto section > > > > port="25,465,993,995", protocol=tcp] > > action = iptables-multiport[name=ApacheAuth, port=80,443, protocol=tcp] > > > service

[CentOS] fail2ban attempt, anyone want to add anything?

2012-04-19 Thread Bob Hoffman
Tonight I added fail2ban to one of my webservers to test it out. Here is my step by step, as best as I could figure it out...documentation a bit sketchy. feel free to add anything to it or suggest changes. I tried to set it up to deal with ssh, http authentication, dovecot, ftp, and postfix I

Re: [CentOS] A request from the CentOS Project

2012-04-19 Thread Bob Hoffman
On 4/19/2012 5:40 AM, Karanbir Singh wrote: > Hi Larry, > > On 04/19/2012 01:28 AM, Larry Martell wrote: >>> The CentOS Project seems to be having a problem within some of our >>> community interactive areas that we need to address. > ... >> I think this classic from 1996 (author unknown) needs to

Re: [CentOS] rhel/centos alternative to logwatch?

2012-04-13 Thread Bob Hoffman
On 4/13/2012 5:57 PM, Markus Falb wrote: > On 13.4.2012 23:39, Bob Hoffman wrote: > >> I was trying to stay with the base centos repo and only grab a few >> programs off of other repos (like phpymyadmin). >> >> Unfortunately, I think it is better, now that I have pl

Re: [CentOS] rhel/centos alternative to logwatch?

2012-04-13 Thread Bob Hoffman
On 4/13/2012 2:23 PM, Karl Vogel wrote: >>> On Thu, 12 Apr 2012 12:13:14 +0200, >>> Tilman Schmidt said: > T> The most frequent reason for a lot of unmatched entries showing up is > T> that the corresponding logwatch script is out of date wrt the program > T> whose log is being watched. Program

Re: [CentOS] help from community

2012-04-12 Thread Bob Hoffman
On 4/12/2012 8:51 AM, Markus Falb wrote: > On 12.4.2012 14:16, Prabhpal S. Mavi wrote: > ... >> i know these commands but if you will carefully look into logs, you will >> notice that my server is sending mail not receiving. therefor it has >> nothing to do with their PTR weather it is correct or i

Re: [CentOS] centos 6.2 md0 boot - no boot actually

2012-04-11 Thread Bob Hoffman
On 4/11/2012 6:46 PM, aurfalien wrote: > Hi all, > > Taken from this link; > > https://www.centos.org/modules/newbb/print.php?form=1&topic_id=34988&forum=55&order=ASC&start=0 > > Seems like I am having the same issue. > > I assigned my boot loader to be on /dev/md0 rather then the default of > /de

Re: [CentOS] rhel/centos alternative to logwatch? [solved]

2012-04-07 Thread Bob Hoffman
On 4/7/2012 7:49 PM, Joseph L. Casale wrote: >> Have you tried editing the files in >> >> /usr/share/logwatch/default.conf/services/ >> >> or >> >> /usr/share/logwatch/default.conf/ignore.conf >> >> ? > Obvisouly not:) And I hope not either... > Facilities are provided just for this in /etc/logwatc

Re: [CentOS] rhel/centos alternative to logwatch?

2012-04-07 Thread Bob Hoffman
On 4/7/2012 9:37 PM, Joseph L. Casale wrote: >> I will take a look and try to see if it will be easy to change the >> postfix and dovecot. More than likely I will just tell them what it is >> and 'good luck' at figuring it out..lol > Only ignore what you encounter and deduce to be not important. >

Re: [CentOS] rhel/centos alternative to logwatch?

2012-04-07 Thread Bob Hoffman
On 4/7/2012 7:49 PM, Joseph L. Casale wrote: >> Have you tried editing the files in >> >> /usr/share/logwatch/default.conf/services/ >> >> or >> >> /usr/share/logwatch/default.conf/ignore.conf >> >> ? > Obvisouly not:) And I hope not either... > Facilities are provided just for this in /etc/logwatc

[CentOS] rhel/centos alternative to logwatch?

2012-04-07 Thread Bob Hoffman
Logwatch file shows last upgrade to the code was 2007. The unmatched entries are killing me in the reports. I figure there must be a newer utility centos has in the repo but I cannot find one. Is logwatch the only one that is included? thanks ___ CentO

[CentOS] rsyslog / rotation, best practices

2012-04-05 Thread Bob Hoffman
centos6 in regards to /etc/logrotate.d/syslog the file is in charge of processing /var/log/cron /var/log/maillog /var/log/messages /var/log/secure /var/log/spooler If I wanted to make a specific setting just for maillog (since that file gets huge really quick) would I add 1- a new file /etc/log

Re: [CentOS] dns cache rbl lists?

2012-04-04 Thread Bob Hoffman
On 4/5/2012 12:52 AM, Nataraj wrote: > On 04/04/2012 08:48 PM, Bob Hoffman wrote: >> No idea where else to ask this and get a real qualified answer but here. >> Not exactly pure centos questionbut... >> >> I am adding blacklists to my postfix smtpd settings. >&

[CentOS] dns cache rbl lists?

2012-04-04 Thread Bob Hoffman
No idea where else to ask this and get a real qualified answer but here. Not exactly pure centos questionbut... I am adding blacklists to my postfix smtpd settings. I have the inkling that after the first lookup for a domain or ip that my dns caches the result and I no longer bother the RBL o

[CentOS] called a spammer today

2012-04-02 Thread Bob Hoffman
thought you would find this interesting... I get a LOT of political spam on one of my mails due to hosting a political site once. I have been slowly blacklisting the bulk companies and 'the net' of private people pushing political spam. There is one guy who has been sending me stuff for years a

Re: [CentOS] selinux on/off percentage

2012-04-01 Thread Bob Hoffman
On 4/1/2012 8:24 PM, Mark LaPierre wrote: > On 03/31/2012 11:31 PM, Min Wang wrote: >> hi >> >> Just wondering if there is any statiscs report of selinxu usages in >> production environment? I know some still turn it off. >> >> >> >> thanks. >> >> min >> __

Re: [CentOS] SMTP Port 465 - Postfix

2012-03-31 Thread Bob Hoffman
On 3/31/2012 7:36 AM, Jonathan Vomacka wrote: > I thought port 465 SSL was deprecated and replaced with port 587 TLS? > ___ CentOS mailing list > CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos from what I read, and what I use.. 25 i

Re: [CentOS] transition to ip6

2012-03-31 Thread Bob Hoffman
On 3/31/2012 6:44 AM, Adam Tauno Williams wrote: >> We've been running out of IPV4 address and needing to convert someday >> soon for the last 10 years..., but yet the vast majority of broadband >> providers and even most ISP's don't support it yet. > > You've got another couple of months. I belie

Re: [CentOS] SMTP Port 465 - Postfix

2012-03-31 Thread Bob Hoffman
On 3/31/2012 7:11 AM, Prabhpal S. Mavi wrote: > Hello BoB, > > Thanks for you kind assistance, your solution opened the SMTP:465 on the > postfix server. > > > But when i telnet 587, i can see 220 in response. > [root@jet postfix]# telnet localhost 587 > Trying ::1... > Connected to localhost. > Es

[CentOS] transition to ip6

2012-03-30 Thread Bob Hoffman
I imagine some day in the near future there will be a switch to ipv6. I cannot imagine ever remembering the ip address then...crazy. My question, since i have never done ip6 stuff, is what does that mean on my webservers? Would I just need to replace my ip4 with ip6 in my eths, bonds, bridges,

Re: [CentOS] SMTP Port 465 - Postfix

2012-03-30 Thread Bob Hoffman
On 3/30/2012 12:49 PM, Prabhpal S. Mavi wrote: > Hi Dear All, > > > Just updating with the post, following configured Postfix to listen on > Port 587. Yet to find out, how to enable 465. > > > submission inet n - n - - smtpd >-o smtpd_tls_security_level=encrypt >

Re: [CentOS] my spammer list

2012-03-30 Thread Bob Hoffman
On 3/30/2012 7:48 AM, Markus Falb wrote: > On 30.3.2012 05:26, Nataraj wrote: > >> The way that I finally got rid of all the residual spam that makes it >> through greylisting, SPF, spamassassin, clamav is to handout unique mail >> addresses and use black/whitelists. So for example if I assign an

Re: [CentOS] my spammer list

2012-03-29 Thread Bob Hoffman
On 3/29/2012 11:26 PM, Nataraj wrote: > On 03/29/2012 03:00 PM, Bob Hoffman wrote: >> Hello, >> Thanks to some nice people on here and other forums I have pretty much >> finalized my whole mail system on centos 6.x. >> >> With all the checks, greylisting, de

[CentOS] my spammer list

2012-03-29 Thread Bob Hoffman
Hello, Thanks to some nice people on here and other forums I have pretty much finalized my whole mail system on centos 6.x. With all the checks, greylisting, dev/null of any 8+ spam level SA, I still get a few mails. It seems like everytime I enable a new protectant, the mail stops spamming fo

Re: [CentOS] xorg.conf disappear

2012-03-29 Thread Bob Hoffman
On 3/29/2012 10:06 AM, Cal Webster wrote: > On Thu, 2012-03-29 at 09:57 +0100, Lars Hecking wrote: >> brick writes: >>> Hi >>> >>> My system is CentOS 6. I need to edit xorg.conf. But it can't be find in >>> /etc/X11. Where is it? How can I get the default setting? >> /var/log/Xorg.0.log will tel

Re: [CentOS] udev works ok in CentOS 6.x??

2012-03-28 Thread Bob Hoffman
On 3/28/2012 11:19 AM, carlopmart wrote: > On 03/28/2012 05:16 PM, Bob Hoffman wrote: >> On 3/28/2012 11:10 AM, carlopmart wrote: >>>> /etc/grub.conf? >>>> /boot/? >>>> lost of info there with uuid >>>> stage1, stage2? >>> Wha

Re: [CentOS] udev works ok in CentOS 6.x??

2012-03-28 Thread Bob Hoffman
On 3/28/2012 11:10 AM, carlopmart wrote: > >> /etc/grub.conf? >> /boot/? >> lost of info there with uuid >> stage1, stage2? > What has /etc/grub.conf, /boot, stage1 and stage2 to do here? I don't > understand what info you are asking ... > look in the grub.conf file, lists uuids of block devices

Re: [CentOS] udev works ok in CentOS 6.x??

2012-03-28 Thread Bob Hoffman
On 3/28/2012 10:07 AM, Phil Schaffner wrote: > carlopmart wrote on 03/28/2012 09:53 AM: >> On 03/28/2012 03:51 PM, Phil Schaffner wrote: >>> carlopmart wrote on 03/28/2012 09:27 AM: Then, how can I obtain these uuids?? >>> blkid >>> >>> Phil >> Doesn't works neither: >> >> [root@newc6srv init.

Re: [CentOS] How to restrict reboot/poweroff from non-admins?

2012-03-28 Thread Bob Hoffman
On 3/28/2012 10:03 AM, Phil Schaffner wrote: > Timo Neuvonen wrote on 03/28/2012 09:17 AM: >> I just noticed that CentOS (6.2) by default allows any user to >> reboot/poweroff system without any admin rights, or without any further >> questions, if using commands 'reboot' or 'poweroff'. But 'shutdo

Re: [CentOS] postgrey, postfix, tld list

2012-03-25 Thread Bob Hoffman
On 3/25/2012 4:14 PM, Mailinglist wrote: > Just checked my mail server. Getting a lot of .info spam, but I'm thinking a > reject .info is in order. :) > > Regards… > ists.centos.org/mailman/listinfo/centos this regex seemed to work /.*\.com$/ /.*\.org$/ /.*\.gov$/ /.*\.net$/ /.*\.mil$/ /.*\.edu$/

Re: [CentOS] postgrey, postfix, tld list

2012-03-25 Thread Bob Hoffman
On 3/25/2012 3:16 PM, Bob Hoffman wrote: > believe I got this working, anyone interested here is what I did so far > > 1- get the repo rpmforge > rpm -Uvh > http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.2-2.el6.rf.x86_64.rpm > > 2 limit forge to just the p

Re: [CentOS] postgrey, postfix, tld list

2012-03-25 Thread Bob Hoffman
On 3/25/2012 1:37 PM, Bob Hoffman wrote: > Hello all, > > I am looking for the correct way to add postgrey to my system but > whitelist everything except for com, org, and net domains. > Most of my spam is from .info domains. > > There seems to be no way to only go after cer

[CentOS] postgrey, postfix, tld list

2012-03-25 Thread Bob Hoffman
Hello all, I am looking for the correct way to add postgrey to my system but whitelist everything except for com, org, and net domains. Most of my spam is from .info domains. There seems to be no way to only go after certain domains, instead postgrey wants to go after everything except what you

Re: [CentOS] your advice on backup procedure

2012-03-24 Thread Bob Hoffman
On 3/24/2012 4:35 AM, Peter Eckel wrote: > Hi Bob, > > I just want to to throw in another alternative to make choice harder ... :-) > >> The scenario... >> centos server acting as a virtual host. Virtual machines are webservers >> and dns servers. All on one machine, all running centos 6. >> Virtua

Re: [CentOS] your advice on backup procedure

2012-03-23 Thread Bob Hoffman
On 3/23/2012 10:50 PM, Karl Vogel wrote: >>> On Fri, 23 Mar 2012 20:19:41 -0400, >>> Bob Hoffman said: > B> I am down to my last hurdle of my project, backups. Not asking for 'how > B> to' but more of 'what is best in your experience'. > >

[CentOS] your advice on backup procedure

2012-03-23 Thread Bob Hoffman
Hello all, I am down to my last hurdle of my project, backups. I am thinking of three different ways to go and wanted to ask for input on what you think is the better choice. Not asking for 'how to' but more of 'what is best in your experience' The scenario... centos server acting as a virtual ho

Re: [CentOS] wiki - vnc -gerald and walsh, update?

2012-03-23 Thread Bob Hoffman
On 3/23/2012 11:40 AM, William Hooper wrote: > On Thu, Mar 22, 2012 at 11:03 PM, Bob Hoffman wrote: > [snip] >> opened port 5902 in iptables, restarted iptables >> |INPUT -m state --state NEW -m tcp -p tcp --dport 5902 -j ACCEPT > [snip] >> in putty I made a saved sessi

Re: [CentOS] wiki - vnc -gerald and walsh, update?

2012-03-22 Thread Bob Hoffman
On 3/22/2012 11:03 PM, Bob Hoffman wrote: > On 3/22/2012 10:26 PM, Bob Hoffman wrote: >> To GeraldClark and PjWelsh, >> I have centos 6 and used your guide to get it going with vnc. >> First of all thanks for putting that up, so many techs told me I did not >> have to i

Re: [CentOS] wiki - vnc -gerald and walsh, update?

2012-03-22 Thread Bob Hoffman
On 3/22/2012 10:26 PM, Bob Hoffman wrote: > To GeraldClark and PjWelsh, > I have centos 6 and used your guide to get it going with vnc. > First of all thanks for putting that up, so many techs told me I did not > have to install a desktop to make it work and they were so wro

[CentOS] wiki - vnc -gerald and walsh, update?

2012-03-22 Thread Bob Hoffman
To GeraldClark and PjWelsh, I have centos 6 and used your guide to get it going with vnc. First of all thanks for putting that up, so many techs told me I did not have to install a desktop to make it work and they were so wrong. http://wiki.centos.org/HowTos/VNC-Server Using centos 6 I found som

[CentOS] control panels, like or dislike?

2012-03-22 Thread Bob Hoffman
When I first started using webservers I leased shared hosting. Then I moved to vps. Then to dedicated. In all that I was with various control panels. In almost all cases bugs in those control panels would cause all sorts of issues. (ensim, cpanel, plesk). The load on the server seemed greatly inc

[CentOS] postfix spam question for the gurus

2012-03-14 Thread Bob Hoffman
Hello, I have a question about postfix. I have a few webservers, each with their own mailing system. Obviously manually adding items can be quite tedious going from one to another to another. I am in the process of making a list of domains (commercial spammers) that bother me. My idea is to use

Re: [CentOS] postfix and spam, I am impressed[Solution that works]

2012-03-13 Thread Bob Hoffman
*Nataraj* /Tue Mar 13 13:17:32 EDT 2012 wrote == / Also anyone using rbl's should also review the RBL's policy. Most RBL's charge a license fee for high volume queries and will cut you off if you violate their policy. our logwatch format is very nice, t

Re: [CentOS] postfix and spam, I am impressed[Solution that works]

2012-03-13 Thread Bob Hoffman
*Nataraj* /Tue Mar 13 02:01:36 EDT 2012/ wrote: >On 03/12/2012 10:06 PM, Nataraj wrote: >>/ On 03/12/2012 09:08 PM, Ron Loftin wrote: />>>/ I'm going to chuck in my 2 cents worth here, as I've been using Postfix />>>/ as a first-line filter for some years now. // />pbl.spamhaus.org (dynamic IP

Re: [CentOS] postfix and spam, I am impressed

2012-03-12 Thread Bob Hoffman
on/Mon Mar 12 18:39:23 EDT 2012 Jure Pecar wrote /== /On Mon, 12 Mar 2012 17:12:13 -0400 /Bob Hoffmanhttp://lists.centos.org/mailman/listinfo/centos>> wrote: />/ On my centos 5 server I just used sendmail with spamassassin and it //>/ kill

Re: [CentOS] Cron marks mailto value as UNSAFE

2012-03-12 Thread Bob Hoffman
On Mar 12, 2012, at 12:03 PM, James B. Byrne wrote: >/ CentOS-6.2 />/ />/ We moved a cron job from a CentOS-5.7 host to a CentOS-6.2 />/ host. The MAILTO variable is set tosupport at harte-lyne.ca />/ in both instances. On the CentOS-6 hos

[CentOS] postfix and spam, I am impressed

2012-03-12 Thread Bob Hoffman
I have had the same email address since 1997 (when microsoft stole bob.com from me thanks to network solutions...) In the early days I of course was free with my email and used it everwhere. Fast forward to 2012, some 15 years later. woof..the amount of spam sent to me has always just kept getti

[CentOS] Programs on/off on virtual host machine

2012-03-08 Thread Bob Hoffman
been playing with my host machine and thought some might want to see what I have on and the full list of chkconfig I have installed desktop and x windows system to bring up a desktop when I want one with startx. I turned 'off' quite a bit and yum removed quite a bit. These set of programs still

  1   2   3   >