Re: vncviewer

2014-02-26 Thread Tom Rivers
On 2/26/2014 16:25, Patrick Dupre wrote: Can you telnet to the VNC port on the server? How I do it? I'm not sure telnet is the way to go because if memory serves it isn't installed by default. The best way to check is to use a port scanner to see the status of the port on the target system.

Re: vncviewer

2014-02-26 Thread Tom Rivers
On 2/26/2014 16:49, Patrick Dupre wrote: Starting Nmap 6.01 ( http://nmap.org ) at 2014-02-26 22:47 CET Initiating SYN Stealth Scan at 22:47 Scanning 193.49.194.19 [4 ports] Completed SYN Stealth Scan at 22:47, 3.01s elapsed (4 total ports) Nmap scan report for 193.49.194.19 Host is up. PORT

Re: vncviewer

2014-02-26 Thread Tom Rivers
On 2/26/2014 17:01, Patrick Dupre wrote: # nmap -v -n -P0 -p5900-5910 localhost Starting Nmap 6.40 ( http://nmap.org ) at 2014-02-26 23:00 CET Initiating SYN Stealth Scan at 23:00 Scanning localhost (127.0.0.1) [11 ports] Discovered open port 5905/tcp on 127.0.0.1 Discovered open port 5906/tcp o

Re: vncviewer

2014-02-27 Thread Tom Rivers
ld be able to find all of the lines that reference it in this output. Make note of each of the chains it is listed under. For each chain listing SSH, you should also see an entry for the two vncserver ports. I suspect you are missing one or more entries and that's why it isn't wo

Re: vncviewer

2014-02-27 Thread Tom Rivers
On 2/26/2014 18:57, Ed Greshko wrote: FYI, it is the telnet server that is not installed by default. The client is Thanks Ed! Tom -- users mailing list users@lists.fedoraproject.org To unsubscribe or change subscription options: https://admin.fedoraproject.org/mailman/listinfo/users Fedo

Re: vncviewer

2014-02-27 Thread Tom Rivers
On 2/27/2014 14:06, Jon Ingason wrote: 2014-02-27 19:03, Patrick Dupre skrev: Hello, For me iptables -F does not display anything! That is because option -F means flushing the iptable, deleting all rules. You should use option -L as Tom suggested. While the rules are gone, you can try conne

Re: vncviewer

2014-02-27 Thread Tom Rivers
On 2/27/2014 14:47, Patrick Dupre wrote: iptables -L Chain INPUT (policy ACCEPT) target prot opt source destination Chain FORWARD (policy ACCEPT) target prot opt source destination Chain OUTPUT (policy ACCEPT) target prot opt source destinat

Re: vncviewer

2014-02-27 Thread Tom Rivers
On 2/27/2014 15:58, Ed Greshko wrote: FWIW, if you have ssh working and you use VNC over an SSH Tunnel you do not need ports 590X or any other ports open! Agreed. I mentioned at the outset that encryption was not present in vanilla vnc but it is extremely desirable. In fact, I would go so f

Re: vncviewer

2014-02-27 Thread Tom Rivers
On 2/27/2014 15:37, Patrick Dupre wrote: OK, I restarted it: If you look below, I have removed all the chains that didn't reference SSH. Notice that the VNC ports you were trying to access are not listed in these chains. That's why you aren't getting access to them remotely. Now that we h

Re: F19: Is this an httpd attack attempt?

2014-03-05 Thread Tom Rivers
On 3/5/2014 09:41, Tim wrote: Allegedly, on or about 05 March 2014, lee sent: Could someone please explain why/how this may be considered as an attack or at least as something bad? Have a look at the log line that the original poster sent: 185.4.227.194 - - [03/Mar/2014:07:27:49 -0800] "GET h

Re: F19: Is this an httpd attack attempt?

2014-03-05 Thread Tom Rivers
On 3/5/2014 10:45, Tom Rivers wrote: Now that I had successfully simulated the attack signature in the log file of the proxy web server, I logged into the target web server and looked at its access log. Thankfully I found no log of any activity from my XXX.XXX.XXX.XXX workstation IP. Not

Re: After a power cut my machine cannot boot

2015-09-09 Thread Tom Rivers
On 9/9/2015 13:36, Paul Smith wrote: I have already tried to get the libidn rpm from a repo, but again I get the same error with wget ("/lib64/libidn.so.11: file too short"). Have you tried downloading the file from another system and transferring it using a USB flash drive? You may also be

Re: Firefox 44 removes privacy feature.

2016-02-04 Thread Tom Rivers
On 2/4/2016 9:36 AM, Bernardo Sulzbach wrote: After (two?) mentions to Google search, I wonder if any you know of any paid web search engines? I don't know about search engines that cost money, but I do know of a free one that is privacy oriented and it works really well: https://duckduckgo.

Re: Is there something like denyhosts for sasl dictionary attacks?

2016-02-04 Thread Tom Rivers
On 2/4/2016 4:07 PM, ven...@billoblog.com wrote: Is there something like denyhosts for sasl attacks? I'm getting tired of stuff like this: Jan 31 04:52:38 hope saslauthd[1333]: do_auth : auth failure: [user=abby] [service=smtp] [realm=billoblog.com] [mech=pam] [reason=PAM auth error]

Re: Postfix and PTR record issues

2016-02-09 Thread Tom Rivers
On 2/9/2016 8:14 AM, arnaud gaboury wrote: When looking at my DNS provider (Hurricane Electric), I effectively have no PTR record. I must set one but honestly, I am far from understanding everything about PTR. The only people who can set up a PTR record are those who work for your ISP. You ha

Re: Postfix and PTR record issues

2016-02-09 Thread Tom Rivers
On 2/9/2016 8:57 AM, arnaud gaboury wrote: Well, looking at my DNS provider home page, I have an entry to add PTR. Furthermore, from HE FAQ[0]: Am I wrong to think I can do it with my DNS provider ? I went through this same issue with my ISP and they said they had to be the ones to change

Re: Lan connection problem -

2016-02-09 Thread Tom Rivers
On 2/9/2016 3:46 PM, Bob Goodwin wrote: I can work around the problem by having my router powered from a UPS and being careful not to reboot the router. Once the router reboots the various wireless devices I have, printer, video cameras, etc. need their ac power "recycled" to get them connect

Re: Lan connection problem -

2016-02-10 Thread Tom Rivers
On 2/9/2016 6:01 PM, Bob Goodwin wrote: Now to add to the confusion I just tried an F23 portable that doesn't get updated as often and it connects to the camera 192.168.1.52 that this box10 can't as shown above. I will try booting another computer to Fedora 22 and see if it still works as befor

Re: Lan connection problem -

2016-02-10 Thread Tom Rivers
On 2/10/2016 12:35 PM, Bob Goodwin wrote: Note: This morning's tests are using the original Linksys E3000 router and Tomato 1.28 which was in use when the problem first appeared. Just thought I needed to go back and reassure myself that the replacement Buffalo/OpenWRT router wasn't introducing

Re: Trying to open ports in firewalld

2016-02-23 Thread Tom Rivers
On 2/23/2016 9:00 AM, Richard Shaw wrote: Let's try the simple stuff first... Is your default zone for your network connection also "internal"? That's the first thing I thought of as well. In case you aren't sure which zone is your active zone, Tim, just look at the bottom right of the "Fire

Re: Port 21 Open

2016-03-04 Thread Tom Rivers
On 3/4/2016 4:40 PM, Richard Ibbotson wrote: I'll have a look at firewall settings. As far as I know port 21 is blocked. Strange Most firewalls are configured to block _incoming_ traffic. Not many default system configurations block _outbound_ traffic and I can't remember a time I ever load

Re: OT: port forwarding with ssh

2016-03-23 Thread Tom Rivers
On 3/23/2016 3:10 PM, Mike Wright wrote: usage: ssh -L [bind_address:]port:host:hostport] Here's what I'm trying: sudo ssh -L lo.cal.ip.adx:0:rem.ote.ip.adx:110 I successfully use the following to tunnel VNC over SSH so I can securely connect to a remote server at a hosting facility usi

Re: clueless question! - sortof sms/text related

2016-06-17 Thread Tom Rivers
On 6/17/2016 10:02 AM, bruce wrote: Here's my use case. Master process sends out msgs to 5 people, 'hey, gret deal' 1st 100 people get it for price X" The 5 people then send the msgs to their friends, who in turn send to their friends, etc.. You can use email to send out text messages if y

Re: sed question

2016-07-21 Thread Tom Rivers
On 7/21/2016 8:26 AM, bruce wrote: Hey Tudor, and others.. The test sed I posted works for doing a search/replace of the text inside the parens... > foo('txt') > foo("txt") however.. if i wanted to craft a sed that uses the entire >>foo('txt')<< as the search.. then I run into the need to h

Re: safety

2017-01-18 Thread Tom Rivers
On 1/18/2017 12:24 PM, Rick Stevens wrote: That's normal. The system (or shell) is echoing the input because the program you expect to consume the input isn't running or hasn't finished initializing yet. What do you expect the system to do? Not echo anything unless explicitly told to? Perhaps I

Re: safety

2017-01-18 Thread Tom Rivers
On 1/18/2017 1:25 PM, Rick Stevens wrote: That's not what's happening here. The user is starting a program, then immediately typing in the expected password before the program starts, essentially making use of the type-ahead capability of the shell. The program hasn't, well, "registered" its stdi

Re: Adobe not providing linux flash updates

2015-02-03 Thread Tom Rivers
On 2/3/2015 16:47, Steven Stern wrote: CNN works with Chrome. That's because Flash is baked into the browser itself: https://support.google.com/chrome/answer/108086?hl=en Tom -- users mailing list users@lists.fedoraproject.org To unsubscribe or change subscription options: https://admin.fed

F21 - NetworkManager "hotspot.txt" TLS Failure Message

2015-05-08 Thread Tom Rivers
Good morning! Since shortly after 4PM EDT on May 5, 2015 I have been seeing the following message in my system logs every 5 minutes: NetworkManager[768]: Connectivity check for uri 'https://fedoraproject.org/static/hotspot.txt' failed with 'Peer failed to perform TLS handshake'. I know t

Re: F21 - NetworkManager "hotspot.txt" TLS Failure Message

2015-05-12 Thread Tom Rivers
On 5/8/2015 09:24, Tom Rivers wrote: Good morning! Since shortly after 4PM EDT on May 5, 2015 I have been seeing the following message in my system logs every 5 minutes: NetworkManager[768]: Connectivity check for uri 'https://fedoraproject.org/static/hotspot.txt' failed

Re: why do we use systemd?

2014-07-09 Thread Tom Rivers
On 7/9/2014 07:12, Rahul Sundaram wrote: All major distributions at this point have switched to systemd or in the process of doing so which should tell you the value of it. With respect, just because there is consensus among governing entities doesn't necessarily mean that the decision is good

Re: why do we use systemd?

2014-07-09 Thread Tom Rivers
On 7/9/2014 09:57, Rahul Sundaram wrote: Sure but if you want to go against the consensus, you will have to do something more concrete. That is precisely why I challenged your assertion that the value of systemd was because everyone was adopting it. The reason you gave for dismissing all of

Re: Can not reach some web sites

2014-09-19 Thread Tom Rivers
On 9/19/2014 09:13, A.J. Bonnema wrote: I was indeed able to find the site through IPV4 IP address, but not through the name. So I disabled IPV6 using the command from Ed, and low and behold: there is it was, case solved. Since we're on the subject of problems accessing certain sites, I found

Re: is it the future?

2014-09-24 Thread Tom Rivers
On 9/23/2014 18:37, Rahul Sundaram wrote: Hi On Tue, Sep 23, 2014 at 6:18 PM, Dave Ihnat wrote: Let's decide that before we argue any more on the merits--or lack thereof--of systemd itself. If it's not going to change Redhat's decision, then all we can meaningfully discuss here ar

Re: is it the future?

2014-09-24 Thread Tom Rivers
On 9/24/2014 10:30, Rahul Sundaram wrote: Matthew already answered that. My apologies - I must have missed his reply. I'll go back and see if I can find it. Tom -- users mailing list users@lists.fedoraproject.org To unsubscribe or change subscription options: https://admin.fedoraproject.o

Re: Level of discourse: how we can be more effective (and, systemd)

2014-09-24 Thread Tom Rivers
On 9/24/2014 09:13, Matthew Miller wrote: We actually have almost exactly this. Take a look at , linked in the bottom of every message. It says: This list provides community assistance, encouragement, and advice for Fedora users. Top

Re: restarting mysql databases

2014-10-06 Thread Tom Rivers
On 10/6/2014 12:33, Robert Moskowitz wrote: mysqladmin -u root password 'mypass' failed with: mysqladmin: connect to server at 'localhost' failed error: 'Access denied for user 'root'@'localhost' (using password: NO)' The form of the command should be something like this: mysql -h localhost

Re: Permanently mount a USB Hard Disk for Security purpose

2014-10-21 Thread Tom Rivers
On 10/21/2014 09:31, Angelo Moreschini wrote: [root@zorro ~]# mount -t ntfs UUID=36CC878C70FF1EC2 /media/PRTZ-src_syn But now I get an error that I can not understand: ntfs-3g-mount: failed to access mountpoint /media/PRTZ-src_syn: No such file or directory _ _ _look that the directory doesn't

Re: Port knocking script/server for fedora?

2014-11-19 Thread Tom Rivers
On 11/19/2014 07:38, Bruno Wolff III wrote: On Wed, Nov 19, 2014 at 11:58:11 +, Patrick O'Callaghan wrote: If the main concern is ssh hacking, you might consider denyhosts (yum install denyhosts). It's easy to set up and seems to be effective. The logs make fascinating (and scary) reading

Re: fail2ban vs. logrotate

2011-10-25 Thread Tom Rivers
On 10/25/2011 4:12 PM, Mike Wohlgemuth wrote: > On 10/25/2011 11:12 AM, Mikkel L. Ellertson wrote: >> It looks like you would have to modify the syslog logrotate script >> and add a second command in the postrotate section after it restarts >> syslogd. Does fail2ban accept a SIGHUP to close and reo

Re: Installing R-3*gz

2013-04-30 Thread Tom Rivers
ht be a dumb question but why don't you just try this?: yum install R Yum is designed to pick up dependencies and figure everything out for you automagically. ;) -- Tom Rivers -- users mailing list users@lists.fedoraproject.org To unsubscribe or change subscription options: https://a

FIXED: Fedora 36 pypolicyd-spf-2.9.3-1 Breaks Postfix SPF

2022-11-15 Thread Tom Rivers
Good morning, TL;DR If your Fedora 36 Postfix SPF configuration is broken due to the latest pypolicyd-spf update, install python3-authres and restart postfix to get it working again. I noticed when I updated my system this past weekend that SPF was no longer working after receiving a

Fedora 37 - Cockpit Software Update Display Questions

2023-03-15 Thread Tom Rivers
Good morning, There are two things that I have noticed lately when performing upgrades using cockpit: 1) When viewing the update log in real time, the display no longer automatically scrolls to show new entries. 2) The "Verifying" line of text above the progress indicator seems to be missi

FIX - Fedora 40 RoundCube Internal Error 500

2024-05-01 Thread Tom Rivers via users
Hello! For anyone running RoundCube on Fedora 40, it evidently now requires the following package to be installed: php-endroid-qrcode I upgraded from Fedora 39 a few days ago and found I could no longer access it - I just got a blank page.  By simply installing the aforementioned package it

Re: Fail2ban is failing

2024-05-03 Thread Tom Rivers via users
Until the fix is available, I've been able to get it running until the next system reboot by doing the following: # setenforce 0 # systemctl start fail2ban ... wait a minute ... # setenforce 1 Tom On 5/3/2024 12:39 PM, Patrick O'Callaghan wrote: On Fri, 2024-05-03 at 06:45 -0500, Richard Sh

Service pmie_daily Failing Due To Incorrect File Ownership

2023-06-05 Thread Tom Rivers via users
Hello, A few weeks ago, I believe shortly after the pcp package was updated in Fedora 38, the pmie_daily service would show as failed in cockpit.  I did some checking and found that at least one of the files was owned by root instead of pcp like below for the file pmie.log.20230604: -rw-r