Re: File system checker

2002-09-18 Thread Volker Tanger
eck/ Bye Volker Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin fon+49 30 6104-3307 fax+49 30 6104-3461 [EMAIL PROTECTED] http://www.discon.de/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trou

Re: Debian Backup Server

2002-12-02 Thread Volker Tanger
. "man tar" - you probably don't have the same hardware on your backup server in case of emergency: tar cvf /backup/file+dir.tar --preserve --numeric-owner \ /etc/exim* /etc/passwd /etc/shadow \ /var/spool/mail/ /var/spool/exim/ Bye Volker Tanger IT-Security Consulting

Re: Gaming server

2003-01-21 Thread Volker Tanger
crunching. Okay, maybe you did not think of a (text-based) MUD/MUSH when asking about a "game server"... ;-) Bye Volker Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin fon+49 30 6104-3307 fax+49 30 6104-3461 [EMAIL PROTECTED] http://www

Re: Routing with Linux

2003-03-06 Thread Volker Tanger
x). Even the fast+wide PCI barely is just fast enough for a full Gbit/s line run full-duplex. Bye Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin Telefon (030) 6104-3307 Telefax (030) 6104-3461 [EMAIL PROTECTED] http://www.discon.de/ -- To UNSUBSCRIBE,

Re: UPS sharing

2003-03-11 Thread Volker Tanger
work at all in"smart" signaling mode and is not supported by APC Corp. Bye Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin Telefon (030) 6104-3307 Telefax (030) 6104-3435 [EMAIL PROTECTED] http://www.discon.de/ -- To UNSUBSCRIBE, em

Re: load balancing(2)

2003-03-13 Thread Volker Tanger
work members to achieve acceptable results. All this is available as run-off-the-mill software. I did not check back, but isn't there policy based routing for Linux somewhere out there? If so, you could implement that on the cluster instead of switching default gates. Does anyone know referne

Re: load balancing(2)

2003-03-14 Thread Volker Tanger
Greetings! On Thu, 13 Mar 2003 17:26:21 +0100 Andrew Miehs <[EMAIL PROTECTED]> wrote: > On Thu, Mar 13, 2003 at 04:47:47PM +0100, Volker Tanger wrote: > > For incoming the firewalls simply use DNS Round-Robin on the FW > > members which have to be listed as primary/m

Re: multiple webcams via one linux box

2002-08-27 Thread Volker Tanger
istor-boosted relais for each input building that box should not be too complicated. Bye Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin fon+49 30 6104-3307 fax+49 30 6104-3461 [EMAIL PROTECTED] http://www.discon.de/

Re: File system checker

2002-09-18 Thread Volker Tanger
Volker Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin fon+49 30 6104-3307 fax+49 30 6104-3461 [EMAIL PROTECTED] http://www.discon.de/

Re: Routing with Linux

2003-03-06 Thread Volker Tanger
x). Even the fast+wide PCI barely is just fast enough for a full Gbit/s line run full-duplex. Bye Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin Telefon (030) 6104-3307 Telefax (030) 6104-3461 [EMAIL PROTECTED] http://www.discon.de/

Re: UPS sharing

2003-03-11 Thread Volker Tanger
work at all in"smart" signaling mode and is not supported by APC Corp. Bye Volker Tanger IT-Security Consulting -- discon gmbh Wrangelstraße 100 D-10997 Berlin Telefon (030) 6104-3307 Telefax (030) 6104-3435 [EMAIL PROTECTED] http://www.discon.de/

Re: load balancing(2)

2003-03-13 Thread Volker Tanger
work members to achieve acceptable results. All this is available as run-off-the-mill software. I did not check back, but isn't there policy based routing for Linux somewhere out there? If so, you could implement that on the cluster instead of switching default gates. Does anyone know referne

Re: load balancing(2)

2003-03-14 Thread Volker Tanger
Greetings! On Thu, 13 Mar 2003 17:26:21 +0100 Andrew Miehs <[EMAIL PROTECTED]> wrote: > On Thu, Mar 13, 2003 at 04:47:47PM +0100, Volker Tanger wrote: > > For incoming the firewalls simply use DNS Round-Robin on the FW > > members which have to be listed as primary/m

Re: Collecting stats for different servers

2003-04-03 Thread Volker Tanger
? For displaying you can use Nagios (NetSaint - http://www.nagios.org/). For data collection you can use the supplied plugins or write them yourself e.g. via SSH as http://www.wyae.de/software/aslcheck/ does. Bye Volker Tanger IT-Security discon gmbh DeTeWe AG & Co. KG Fon +49 30 6

Re: Traffic Accounting

2003-07-20 Thread Volker Tanger
ounting, you could try http://wyae.de/software/trafan/ which works even from a third machine - just plug in and be happy. I do not have any experiences with high load scenarios, though. Bye Volker Tanger -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "uns

Re: Traffic Accounting

2003-07-21 Thread Volker Tanger
;Messy" as in higher load than IPtables or as in packet drops - or how? Can you hint me at some ressources (URLs) on this? Thanks a lot for your input Volker Tanger PS: TrafAn was a quick-shot designed to give a rough estimate on intra-network protocol usage e.g. plugged into a SPAN-por

Re: netsaint-neat errors

2003-07-23 Thread Volker Tanger
t; -rw-r--r--1 root root 1948 Apr 6 2002 index.html > -rw-r--r--1 root root 2302 Apr 6 2002 main.html > drwxr-xr-x2 root root 4096 Jul 21 17:27 neat > -rw-r--r--1 root root19900 Jul 21 15:22 netsaint.cfg Bye Volker Tanger

Re: Watchdog Program

2003-08-06 Thread Volker Tanger
On Wed, 6 Aug 2003 12:39:29 +0200 Stephane Bortzmeyer <[EMAIL PROTECTED]> wrote: > > you could try BigBrother (http://bb4.com/) > > Heavily non-free. ...because of which it has a (GPLed) Big Sister http://bigsister.graeff.com/home.html Bye Volker Tanger

Re: Count traffic

2003-08-14 Thread Volker Tanger
won't have proper metrics in the logs (correction please, if I'ver overseen something) - to get an approximate weighted accounting you probably should go with something like in-bytes per VHost = i-bytes total / requests total * requests VHost Bye Volker Tanger -- To UNSUBSCRIBE

Re: Debian-based hosting needed

2003-09-17 Thread Volker Tanger
Another one is http://vd-server.de/ (virtual server here, too) - no personal experience here. Another option would be housing of your own hardware or reinstallation of a dedicated server at hoster (e.g. as described in Linux Magazine http://www.linux-magazin.de/Artikel/ausgabe/2002/11/) By

Re: ISP bandwidth/traffic shaper advice?

2003-10-22 Thread Volker Tanger
cause i know nothing of bsd, and do > practically everything with debian since it's my favorite dist. For traffic shaping with IPtables/netfilter see http://lartc.org/howto/ http://www.docum.org/ Bye Volker Tanger ITK-Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTE

Re: remote system monitor

2003-10-27 Thread Volker Tanger
pening... http://www.wyae.de/software/aslrules/ (alas, as soon as the server is repaired *grrr*) You'll have to adapt it to your disk layout etc, but the basics should be there. Bye Volker Tanger ITK-Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: ISP / Autorization Required 4 internet connection...

2004-01-20 Thread Volker Tanger
ry first one after MS-IE. What do the headers of the proxy's answer packet tell about the auth scheme? Bye Volker Tanger ITK-Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: SOP for debian isp/corporate server...

2004-01-20 Thread Volker Tanger
d > bloat, was causing major maintainance & security hasle. Well, with the current release timescale being ~2 years (3.0 was released 2002-07-19) I won't call Debian "rapidly moving"... Maintenance is - as always - minimum hassle with Debian. :-) Bye Volker Tanger ITK-S

Re: Re: Re: ISP / Autorization Required 4 internet connection...

2004-01-21 Thread Volker Tanger
basically is an IIS plugin) to accept NTLM *and* basic authentication methods - or not to authenticate at all. That option is hidden somewhere in a submenu, so happy hunting... Bye Volker Tanger ITK-Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscri

Re: debian-specific machine cloning

2004-01-23 Thread Volker Tanger
ns apt-get upgrade That shoud do it. Or try one of the low-level approaches http://wyae.de/docs/img_dd.php http://wyae.de/docs/img_rsync.php Bye Volker Tanger ITK-Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: I give up! Postfix keeps relaying

2004-03-12 Thread Volker Tanger
ft error smtpd_error_sleep_time = 50 # sleep ERR-NR secs after this many errors (> time !) smtpd_soft_error_limit = 50 --8<-- Volker Tanger -- ITK-Security DeTeWe AG & Co. KG Fon +49 30 6104-3307 Fax +49 30 6104-3435 http://www.detewe.de/ Herzlich willkommen vom 18.-24. Maerz 200

Re: 3ware Raid 5 and ext3 filesystem

2004-03-24 Thread Volker Tanger
type? XFS, JFS and ReiserFS are using BTree (or similar) directory structures that are much faster than the Ext's linear list. Bye Volker Tanger ITK Security Herzlich willkommen vom 18.-24. Maerz 2004 auf unserem CeBIT-Messestand, Halle 13, D 58 - unter dem Motto "DeTeWe- Your connection

Re: Graphical software to control networks

2004-04-15 Thread Volker Tanger
nd some hands-on tests with Nagios before rolling your own. I've not tested Cheops, but it looks a bit like what you have in mind, too. Bye Volker Tanger ITK Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: OpenVPN auf Debian unstable - wie?

2004-04-19 Thread Volker Tanger
t to clobber the list. Thanks Volker Tanger ITK Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Squid proxy help

2004-04-23 Thread Volker Tanger
.htm Bye Volker Tanger ITK Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: max requests a celeron web server can handle

2004-07-20 Thread Volker Tanger
webserver mainly for static files, others than apache could be quite interesting for you, especially thttpd, mathopd and Zeus - see http://www.acme.com/software/thttpd/benchmarks.html Smaller size and select method instead of (pre)forking spells more free RAM which can then be used for

Re: Cloning disks with dd and netcat

2004-07-27 Thread Volker Tanger
d of the complete disc? Well, doing the partitioning manually, you could RSYNC the server instead of DD+NETCATing, which probably is faster and fails more gracefully. Bye Volker Tanger ITK Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Cloning disks with dd and netcat

2004-07-27 Thread Volker Tanger
tlabs (with frequent system bashing) it's the leisure-factor that is heavily in favour of DD images, I confess... ;-) Bye Volker Tanger ITK Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Cloning disks with dd and netcat

2004-07-27 Thread Volker Tanger
llowed to (write) access the raw device as ordinary user... Boot in text mode ("knoppix 2") or Ctrl-Alt-1 from X11 into console. Try again then. If this does not solve the problem, we'll have to search on. Bye Volker Tanger ITK Security PS: I've updated my docs accordingly -

Re: New Debian net install on a SATA server?

2004-08-23 Thread Volker Tanger
data and performing its own backup. See http://www.mikerubel.org/computers/rsync_snapshots/ for ideas of HD-based backup/mirror. Bye Volker Tanger ITK Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: New Debian net install on a SATA server?

2004-08-23 Thread Volker Tanger
d that I missed deleting the first half of the cited mail. My post should have read in short: RAID for backup (1st half)? - NO! Definitely no. Use RSYNC (2nd half) - yes, but (only if) to remote servers Sorry if that lead to confusion... > On Aug 23, 2004, at 7:07 AM, Volker Ta

Re: network monitoring

2004-10-31 Thread Volker Tanger
27;s fast to implement and light on system ressources. Plus you won't need additional IPSec or whatever config on your systems... Bye Volker Tanger ITK Security -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: a couple of postfix questions

2004-12-08 Thread Volker Tanger
e sender addresses) in no time. So rejecting already before DATA statement is a *very* good idea. Bye Volker Tanger -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Re: Collecting stats for different servers

2003-04-03 Thread Volker Tanger
? For displaying you can use Nagios (NetSaint - http://www.nagios.org/). For data collection you can use the supplied plugins or write them yourself e.g. via SSH as http://www.wyae.de/software/aslcheck/ does. Bye Volker Tanger IT-Security discon gmbh DeTeWe AG & Co. KG Fon +49 30 6

Re: 1 or more network cards

2003-05-21 Thread Volker Tanger
till get nothing through, your iptables config is hosed. If you only have one card, it'll be much more difficult. As will be sniffing in respective networks. NAT-issues come to mind, that will be very difficult to debug w

Re: sendmail or qmail or what?

2003-05-22 Thread Volker Tanger
ilsoftware42/ Well, that's the MTA side - what about the client part. Do you need POP or IMAP? Both? LDAP access? What spool design, etc. There are (again) loads of agents available. Again: what is your metric for "best"? Bye Volker Tanger -- ---

Re: Using hash directories

2003-05-23 Thread Volker Tanger
creating such a directory tree will mimick a number of hierarchies of a tree search thus saving quite some file access time. But with new file systems they will come with a slight access time penalty compared to a flat

Re: Firewall on compac flash

2003-05-23 Thread Volker Tanger
es. This may not be THAT much of a problem with config and even less with the software. One thing, though, often overseen: where do you put the logs? A firewall without logs looses a *LOT* of its practical value. Bye Volker Tanger IT-Security discon gmbh DeTeWe AG & Co. KG Fon +49

Re: ISP bandwidth/traffic shaper advice?

2003-10-22 Thread Volker Tanger
cause i know nothing of bsd, and do > practically everything with debian since it's my favorite dist. For traffic shaping with IPtables/netfilter see http://lartc.org/howto/ http://www.docum.org/ Bye Volker Tanger ITK-Security

Re: remote system monitor

2003-10-27 Thread Volker Tanger
pening... http://www.wyae.de/software/aslrules/ (alas, as soon as the server is repaired *grrr*) You'll have to adapt it to your disk layout etc, but the basics should be there. Bye Volker Tanger ITK-Security

Re: ISP / Autorization Required 4 internet connection...

2004-01-20 Thread Volker Tanger
ry first one after MS-IE. What do the headers of the proxy's answer packet tell about the auth scheme? Bye Volker Tanger ITK-Security

Re: SOP for debian isp/corporate server...

2004-01-20 Thread Volker Tanger
d > bloat, was causing major maintainance & security hasle. Well, with the current release timescale being ~2 years (3.0 was released 2002-07-19) I won't call Debian "rapidly moving"... Maintenance is - as always - minimum hassle with Debian. :-) Bye Volker Tanger ITK-Security

Re: Re: Re: ISP / Autorization Required 4 internet connection...

2004-01-21 Thread Volker Tanger
basically is an IIS plugin) to accept NTLM *and* basic authentication methods - or not to authenticate at all. That option is hidden somewhere in a submenu, so happy hunting... Bye Volker Tanger ITK-Security

Re: debian-specific machine cloning

2004-01-23 Thread Volker Tanger
ns apt-get upgrade That shoud do it. Or try one of the low-level approaches http://wyae.de/docs/img_dd.php http://wyae.de/docs/img_rsync.php Bye Volker Tanger ITK-Security

Re: I give up! Postfix keeps relaying

2004-03-12 Thread Volker Tanger
ft error smtpd_error_sleep_time = 50 # sleep ERR-NR secs after this many errors (> time !) smtpd_soft_error_limit = 50 --8<-- Volker Tanger -- ITK-Security DeTeWe AG & Co. KG Fon +49 30 6104-3307 Fax +49 30 6104-3435 http://www.detewe.de/ Herzlich willkommen vom 18.-24. Maerz 200

Re: 3ware Raid 5 and ext3 filesystem

2004-03-24 Thread Volker Tanger
type? XFS, JFS and ReiserFS are using BTree (or similar) directory structures that are much faster than the Ext's linear list. Bye Volker Tanger ITK Security Herzlich willkommen vom 18.-24. Maerz 2004 auf unserem CeBIT-Messestand, Halle 13, D 58 - unter dem Motto "DeTeWe- Your connection

Re: Graphical software to control networks

2004-04-15 Thread Volker Tanger
nd some hands-on tests with Nagios before rolling your own. I've not tested Cheops, but it looks a bit like what you have in mind, too. Bye Volker Tanger ITK Security

Re: OpenVPN auf Debian unstable - wie?

2004-04-19 Thread Volker Tanger
t to clobber the list. Thanks Volker Tanger ITK Security

Re: Squid proxy help

2004-04-23 Thread Volker Tanger
.htm Bye Volker Tanger ITK Security