<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>#!/bin/blog &#187; linux</title>
	<atom:link href="http://binblog.info/tag/linux/feed/" rel="self" type="application/rss+xml" />
	<link>http://binblog.info</link>
	<description>&#34;It&#039;s hard to be humble when you&#039;re so fscking big!&#34;</description>
	<lastBuildDate>Wed, 01 Feb 2012 08:05:44 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='binblog.info' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>#!/bin/blog &#187; linux</title>
		<link>http://binblog.info</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://binblog.info/osd.xml" title="#!/bin/blog" />
	<atom:link rel='hub' href='http://binblog.info/?pushpress=hub'/>
		<item>
		<title>Update: Booten vom verschlüsselten USB-Stick</title>
		<link>http://binblog.info/2011/10/21/update-booten-vom-verschlusselten-usb-stick/</link>
		<comments>http://binblog.info/2011/10/21/update-booten-vom-verschlusselten-usb-stick/#comments</comments>
		<pubDate>Fri, 21 Oct 2011 20:02:42 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[Paranoia]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[luks]]></category>
		<category><![CDATA[usb]]></category>

		<guid isPermaLink="false">http://binblog.info/?p=1888</guid>
		<description><![CDATA[Also, die Sache mit den USB-Sticks von Lok-IT war sicher eine tolle Idee, das Problem ist aber, daß man de-facto nicht von ihnen booten kann funktioniert. Grub, Kernel und initrd werden zwar geladen. Leider erfolgt innerhalb der initrd aber scheinbar ein Reset des USB-Systems. Ein normaler USB-Stick holpert da irgendwie drüber (das funktioniert mit /boot [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=1888&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Also, <a href="http://binblog.info/2011/10/18/der-sicherste-usb-stick-der-welt/">die Sache mit den USB-Sticks von Lok-IT</a> <del datetime="2011-10-22T07:23:46+00:00">war sicher eine tolle Idee, das Problem ist aber, daß man de-facto nicht von ihnen booten kann</del> <strong>funktioniert</strong>. </p>
<p><del datetime="2011-10-22T07:23:46+00:00">Grub, Kernel und initrd werden zwar geladen. Leider erfolgt innerhalb der initrd aber scheinbar ein Reset des USB-Systems. Ein normaler USB-Stick holpert da irgendwie drüber (das funktioniert mit /boot auf dem Stick problemlos), aber der Lok-IT sperrt sich sicherheitshalber automatisch.</del> </p>
<p><del datetime="2011-10-22T07:23:46+00:00">Das ist schade, aber kein Beinbruch. Das letzte Wort wird da auch hoffentlich noch nicht gesprochen sein.</del></p>
<p>Es trifft zu, daß der USB-Bus beim Hochfahren zurückgesetzt wird und sich der Stick in diesem Moment aus Selbstschutz sperrt. Das ist aber überhaupt kein Problem. Man muß lediglich in /etc/fstab dafür sorgen, daß das System beim Hochfahren nicht versucht /boot zu mounten oder zu checken. Beide Daumen nach oben für meinen unknackbaren Terrorlaptop! <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>Und, nein, es wird kein HOWTO dazu geben. Wer dafür ein Kochrezept braucht, sollte besser die Finger davon lassen. </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/1888/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/1888/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/1888/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/1888/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/1888/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/1888/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/1888/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/1888/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/1888/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/1888/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/1888/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/1888/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/1888/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/1888/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=1888&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2011/10/21/update-booten-vom-verschlusselten-usb-stick/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
		<item>
		<title>Rebootless kernel updates</title>
		<link>http://binblog.info/2011/06/03/rebootless-kernel-updates/</link>
		<comments>http://binblog.info/2011/06/03/rebootless-kernel-updates/#comments</comments>
		<pubDate>Fri, 03 Jun 2011 20:34:09 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[kernel]]></category>
		<category><![CDATA[ksplice]]></category>
		<category><![CDATA[linux]]></category>

		<guid isPermaLink="false">http://binblog.info/?p=1784</guid>
		<description><![CDATA[It&#8217;s been a while since my last post, and this time, for a change, I have decided to produce a screencast. In which I show you what rebootless linux kernel updates with the great service from Ksplice actually look like. This is on one of two Ubuntu 10.04 LTS system, for which I have licensed [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=1784&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been a while since my last post, and this time, for a change, I have decided to produce a screencast. In which I show you what rebootless linux kernel updates with the great service from <a href="http://ksplice.com">Ksplice</a> actually look like. </p>
<p>This is on one of two Ubuntu 10.04 LTS system, for which I have licensed the commercial Ksplice service.</p>
<p>P.S.: Sorry for inflicting my foul accent upon you. <img src='http://s1.wp.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<span style="text-align:center; display: block;"><a href="http://binblog.info/2011/06/03/rebootless-kernel-updates/"><img src="http://img.youtube.com/vi/a3_K6BxQWQY/2.jpg" alt="" /></a></span>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/1784/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/1784/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/1784/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/1784/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/1784/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/1784/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/1784/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/1784/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/1784/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/1784/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/1784/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/1784/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/1784/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/1784/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=1784&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2011/06/03/rebootless-kernel-updates/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
		<item>
		<title>Make directory immutable on Linux</title>
		<link>http://binblog.info/2011/01/30/make-directory-immutable-on-linux/</link>
		<comments>http://binblog.info/2011/01/30/make-directory-immutable-on-linux/#comments</comments>
		<pubDate>Sun, 30 Jan 2011 12:26:11 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[ext3]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[xfs]]></category>

		<guid isPermaLink="false">http://binblog.info/?p=1767</guid>
		<description><![CDATA[Most of you know the immutable flag on Linux filesystems. It marks a given file in a special way that not even root can accidentally delete or modify it: # touch /tmp/foo # chattr +i /tmp/foo # rm /tmp/foo rm: cannot remove `/tmp/foo': Operation not permitted Unfortunately it is not possible to apply the same [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=1767&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Most of you know the <strong>immutable</strong> flag on Linux filesystems. It marks a given file in a special way that not even <em>root</em> can accidentally delete or modify it:</p>
<p><code># touch /tmp/foo<br />
# chattr +i /tmp/foo<br />
# rm /tmp/foo<br />
rm: cannot remove `/tmp/foo': Operation not permitted</code></p>
<p>Unfortunately it is not possible to apply the same to a directory so it can never be deleted, even when it is empty. At least not, if the directory is supposed to be usable for anything, because immutability means that there can be no files written to it:</p>
<p><code># mkdir /tmp/foo<br />
# chattr +i /tmp/foo<br />
# touch /tmp/foo/bar<br />
touch: cannot touch `/tmp/foo/bar': Permission denied</code></p>
<p>My workaround is to create a hidden file in the directory and make it immutable:</p>
<p><code># mkdir /tmp/foo<br />
# touch /tmp/foo/.immutable<br />
# chattr +i /tmp/foo/.immutable<br />
# rm -rf /tmp/foo<br />
rm: cannot remove `/tmp/foo/.immutable': Operation not permitted</code></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/1767/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/1767/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/1767/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/1767/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/1767/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/1767/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/1767/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/1767/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/1767/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/1767/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/1767/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/1767/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/1767/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/1767/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=1767&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2011/01/30/make-directory-immutable-on-linux/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
		<item>
		<title>Using a USB key for the LUKS passphrase</title>
		<link>http://binblog.info/2008/12/04/using-a-usb-key-for-the-luks-passphrase/</link>
		<comments>http://binblog.info/2008/12/04/using-a-usb-key-for-the-luks-passphrase/#comments</comments>
		<pubDate>Thu, 04 Dec 2008 21:43:28 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[Paranoia]]></category>
		<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[luks]]></category>
		<category><![CDATA[usb]]></category>

		<guid isPermaLink="false">http://binblog.wordpress.com/?p=450</guid>
		<description><![CDATA[When I had installed my notebook with Ubuntu 8.04 &#8220;Horny Hard-on&#8221;, I had opted to put the /home filesystem onto an encrypted partition on /dev/sda4. However, after a few months, entering the passphrase after turning on the computer doesn&#8217;t seem to be that attractive anymore. I have therefore decided to try to store the passphrase [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=450&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>When I had installed my notebook with Ubuntu 8.04 &#8220;Horny Hard-on&#8221;, I had opted to put the <em>/home </em>filesystem onto an encrypted partition on <em>/dev/sda4</em>. However, after a few months, entering the passphrase after turning on the computer doesn&#8217;t seem to be that attractive anymore. I have therefore decided to try to store the passphrase on a spare USB key. </p>
<p>This is how I migrated my LUKS container to a passphrase stored on USB media. </p>
<p>First, I filled the USB key with random data:<br />
<code># dd if=/dev/urandom of=/dev/sdc</code></p>
<p>Then, I siphoned off 256 bytes from the USB key, to be used as the passphrase:<br />
<code># dd if=/dev/sdc of=/home/martin/foo.key bs=1 count=256</code></p>
<p><em>foo.key</em> is required temporarily. You may keep a copy of it stored in a safe place, or you may leave the interactive password in place as a fall-back measure. Which is what I&#8217;m doing.</p>
<p>The new passphrase can be added to the LUKS container like this:<br />
<code># cryptsetup luksAddKey /dev/sda4 /home/martin/foo.key</code></p>
<p>Cryptsetup asks for &#8220;any passphrase&#8221;. That is one of the numerous possible passphrases that may be assigned to a LUKS device at once. Such as the interactive passphrase that is already in place.</p>
<p>When the new passphrase has been added, <em>foo.key</em> can be deleted.</p>
<p>Next, I determined the USB id of my USB key:<br />
<code># ls -l /dev/disk/by-id/ | grep sdc<br />
lrwxrwxrwx 1 root root  9 2008-12-04 21:31 usb-LG_XTICK_AAAAAAAAAAAAAAAAA-0:0 -&gt; ../../sdc</code></p>
<p>I found that I needed a little helper script that extracts 256 bytes from the USB key and pipes them to stdout:</p>
<p><code>#!/bin/bash<br />
# Script: /usr/local/sbin/dd-luks-key.sh<br />
if [ -e $1 ]<br />
then<br />
	dd if=$1 bs=1 count=256<br />
fi</code></p>
<p>And now the change to <em>/etc/crypttab</em>:</p>
<p><code># Old entry; ask for password:<br />
#sda4_crypt /dev/disk/by-uuid/aaaaaaaa-bbbb-cccc-dddd-eeeeeeeeeeee none luks<br />
# New entry; execute the keyscript with the USB id as the argument:<br />
sda4_crypt /dev/disk/by-uuid/aaaaaaaa-bbbb-cccc-dddd-eeeeeeeeeeee /dev/disk/by-id/usb-LG_XTICK_AAAAAAAAAAAAAAAAA-0\:0 luks,keyscript=/usr/local/sbin/dd-luks-key.sh</code></p>
<p>That&#8217;s it. I can now reboot with the USB key plugged in and observe how the system automatically mounts the LUKS container. The USB key is not partitioned, so Gnome will not automatically mount it. It can just be pulled anytime after bootup.</p>
<p>If I had chosen to delete the interactive passphrase, which is stored in key slot 0:<br />
<code># cryptsetup luksDelKey /dev/sda4 0</code></p>
<p><strong>Be advised that this is no real-deal tough-minded security, but something that will protect the machine only against the type of attackers (e.g. thieves) who are out for your hardware but not for your data. Don&#8217;t leave the USB key close to the laptop. Use this responsibly. Thanks!</strong></p>
<p>I&#8217;m not conviced that I will stick with this, as it&#8217;s far below my usual standard of paranoia. Nevertheless, I have gained a few nice insights into the LUKS system. </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/450/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/450/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/450/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/450/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/450/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/450/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/450/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/450/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/450/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/450/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/450/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/450/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/450/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/450/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=450&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2008/12/04/using-a-usb-key-for-the-luks-passphrase/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
		<item>
		<title>Old habits die hard</title>
		<link>http://binblog.info/2008/10/26/old-habits-die-hard/</link>
		<comments>http://binblog.info/2008/10/26/old-habits-die-hard/#comments</comments>
		<pubDate>Sun, 26 Oct 2008 18:27:01 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[Insanity Online]]></category>
		<category><![CDATA[dell]]></category>
		<category><![CDATA[linux]]></category>

		<guid isPermaLink="false">http://binblog.wordpress.com/?p=426</guid>
		<description><![CDATA[<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=426&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://binblog.files.wordpress.com/2008/10/microsoft-ubuntu.png"><img src="http://binblog.files.wordpress.com/2008/10/microsoft-ubuntu.png" alt="" title="microsoft-ubuntu" width="367" height="430" class="alignnone size-full wp-image-425" /></a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/426/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/426/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/426/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/426/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/426/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/426/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/426/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/426/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/426/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/426/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/426/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/426/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/426/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/426/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=426&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2008/10/26/old-habits-die-hard/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>

		<media:content url="http://binblog.files.wordpress.com/2008/10/microsoft-ubuntu.png" medium="image">
			<media:title type="html">microsoft-ubuntu</media:title>
		</media:content>
	</item>
		<item>
		<title>Untote Exploits</title>
		<link>http://binblog.info/2008/10/10/untote-exploits/</link>
		<comments>http://binblog.info/2008/10/10/untote-exploits/#comments</comments>
		<pubDate>Fri, 10 Oct 2008 04:55:03 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[passwd]]></category>
		<category><![CDATA[shadow]]></category>
		<category><![CDATA[unix]]></category>

		<guid isPermaLink="false">http://binblog.wordpress.com/?p=399</guid>
		<description><![CDATA[Jahrelang habe ich auf dem K. herumgehackt, weil &#8220;sein&#8221; IPS immer Verbindungen unterbrochen hat, nachdem es Bytefolgen auf der Leitung gesehen hatte, mit denen man vor etlichen Jahren mal irgendwelche archaischen Exploits (konkret erlebtes Beispiel: Sendmail decode vulnerability) triggern konnte. Denn mal ehrlich: Wie obskur kann&#8217;s noch werden? Heute bin ich in gewisser Weise einen [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=399&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Jahrelang habe ich auf dem K. herumgehackt, weil &#8220;sein&#8221; <a href="http://de.wikipedia.org/wiki/Intrusion_Prevention_System">IPS</a> immer Verbindungen unterbrochen hat, nachdem es Bytefolgen auf der Leitung gesehen hatte, mit denen man vor etlichen Jahren mal irgendwelche archaischen Exploits (konkret erlebtes Beispiel: <a href="http://xforce.iss.net/xforce/xfdb/126">Sendmail decode vulnerability</a>) triggern konnte. Denn mal ehrlich: Wie obskur kann&#8217;s noch werden?</p>
<p>Heute bin ich in gewisser Weise einen Schritt weiter, denn bei einem Kunden wurde ein SLES9 aus dem Internet gecrackt, weil der Angreifer sich über einen PHP-Exploit die <em>/etc/passwd</em> herunterladen konnte und darin Passwort-Hashes vorgefunden hat, die ein Administrator beim Anlegen von Usern per Copy&amp;Paste dort eingebaut hat. Die hat er dann auf dem üblichen Weg mit etwas Geduld per Brute-Force geknackt. Ein <a href="http://en.wikipedia.org/wiki/Shadow_password">Szenario aus den 1980ern</a>. Ekelhaft. </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/399/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/399/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/399/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/399/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/399/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/399/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/399/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/399/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/399/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/399/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/399/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/399/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/399/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/399/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=399&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2008/10/10/untote-exploits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
		<item>
		<title>New ALIX 2d3</title>
		<link>http://binblog.info/2008/10/06/new-alix-2d3/</link>
		<comments>http://binblog.info/2008/10/06/new-alix-2d3/#comments</comments>
		<pubDate>Mon, 06 Oct 2008 17:44:11 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[Hardware]]></category>
		<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[alix]]></category>
		<category><![CDATA[debian]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[pc-engines]]></category>

		<guid isPermaLink="false">http://binblog.wordpress.com/?p=388</guid>
		<description><![CDATA[I received my first new ALIX of the type 2d3 today. Apparently, this is the successor to the 2c3 and brings no major changes but just minor modifications. According to PC Engines: • Increase USB current limit. • USB headers as build option. • USB ports 3 and 4 on header (not tested). • Change [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=388&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I received my first new ALIX of the type 2d3 today. Apparently, this is the successor to the 2c3 and brings no major changes but just minor modifications. <a href="http://www.pcengines.ch/alix2d3.htm">According to PC Engines</a>:</p>
<blockquote><p><em>• Increase USB current limit.<br />
• USB headers as build option.<br />
• USB ports 3 and 4 on header (not tested).<br />
• Change optional serial header J12 to COM2.<br />
• Add LED and switch pins to I2C header.<br />
• Populate buzzer driver circuit, add pins for use as GPIO.<br />
• Add option for power in header J18.<br />
• Some enhancements to reduce EMI.<br />
• Add second POSCAP to ruggedize 3.3V rail for high power radio cards.</em></p></blockquote>
<p>I have highlighted the most apparent changes in the photograph (click to enlarge).</p>
<p><a href="http://binblog.files.wordpress.com/2008/10/alix-2d3.jpg"><img src="http://binblog.files.wordpress.com/2008/10/alix-2d3.jpg?w=300&#038;h=297" alt="" title="alix-2d3" width="300" height="297" class="alignnone size-medium wp-image-389" /></a></p>
<p>Migration of the pre-installed disk from my development ALIX 2c3 went fine, although I had to resolve a problem with some nasty mis-feature where Debian tries to keep persistent ethernet device names by hard-coding the MAC addresses into some obscure udev configuration file. The system complained about the following network issue, although eth0, eth1 and eth2 showed up properly in the output of dmesg:</p>
<blockquote><p>Configuring network interfaces&#8230;SIOCSIFADDR: No such device<br />
eth0: ERROR while getting interface flags: No such device</p></blockquote>
<p>Deleting the <em>/etc/udev/rules.d/z25_persistent-net.rules</em> file and rebooting resolved the problem immediately. </p>
<p>I never could quite get the hang of devfs or udev anyway. Here&#8217;s yet another reason to hate them. <img src='http://s0.wp.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':-D' class='wp-smiley' /> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/388/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/388/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/388/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/388/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/388/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/388/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/388/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/388/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/388/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/388/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/388/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/388/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/388/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/388/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=388&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2008/10/06/new-alix-2d3/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>

		<media:content url="http://binblog.files.wordpress.com/2008/10/alix-2d3.jpg?w=300" medium="image">
			<media:title type="html">alix-2d3</media:title>
		</media:content>
	</item>
		<item>
		<title>Playing with the ALIX LEDs</title>
		<link>http://binblog.info/2008/10/04/playing-with-the-alix-leds/</link>
		<comments>http://binblog.info/2008/10/04/playing-with-the-alix-leds/#comments</comments>
		<pubDate>Sat, 04 Oct 2008 06:24:36 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[alix]]></category>
		<category><![CDATA[led]]></category>
		<category><![CDATA[linux]]></category>

		<guid isPermaLink="false">http://binblog.wordpress.com/?p=379</guid>
		<description><![CDATA[I have started to use an ALIX machine by PC-Engines as my printserver using CUPS. Being the playful kid that I am, I wanted the machine to somehow indicate that it has queued print jobs, using the LEDs. Controlling the LEDs is fairly simple. I started on OpenBSD, found a very simple method for controlling [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=379&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I have started to use an ALIX machine by PC-Engines as my printserver using CUPS. Being the playful kid that I am, I wanted the machine to somehow indicate that it has queued print jobs, using the LEDs.</p>
<p>Controlling the LEDs is fairly simple. I started on OpenBSD, found a very <a href="http://2718.us/blog/2008/05/25/pulsing-the-alix-leds/">simple method for controlling them through gpioctl</a> right away and quickly rolled it into <a href="http://pastebin.com/f169095c5">this very simple shell script</a> that allows for commands such as <em>&#8220;led 1 on&#8221;</em> or <em>&#8220;led 3 off&#8221;</em>, you get the idea.</p>
<p>I found that OpenBSD didn&#8217;t work too well for me as a CUPS printserver for multiple USB printers. The helpful OpenBSD mailing lists were down on that weekend, so I just decided to install Debian Linux onto the ALIX. </p>
<p>The Linux Kernels currently in circulation don&#8217;t however support the ALIX LEDs. Support is available, though. I downloaded the kernel module source from <a href="http://packages.ubuntu.com/de/intrepid/leds-alix-source">here</a> (<a href="http://archive.ubuntu.com/ubuntu/pool/universe/l/leds-alix/leds-alix_0.0.1.orig.tar.gz">leds-alix_0.0.1.orig.tar.gz</a>) and after compiling them and loading the <em>leds_alix</em> module, my shell script was ready to be extended into a <a href="http://pastebin.com/f72cfaab4">&#8220;multiplatform&#8221; LED control wrapper</a>.</p>
<p>(The LED drivers on Linux allow for <a href="http://www.mail-archive.com/voyage-linux@list.voyage.hk/msg01689.html">a lot more fun</a>, such as a &#8220;heartbeat&#8221; feature or acting as an &#8220;IDE&#8221; LED, but that&#8217;s not my point here. <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />  )</p>
<p>On top of my little shell wrapper, I have now implemented a Perl script, the <a href="http://pastebin.com/f1534a803">&#8220;CUPS LEDs daemon&#8221;, cupsledsd</a>, which starts cycling the LEDs when there are pending jobs and uses the wrapper for turning them on and off. Of course, this could easily be used for something more sophisticated, such as displaying the number of queued jobs.</p>
<p><b>Update, 2008-10-07:</b> I found that the original <em>cupsledsd</em>, as posted above, was a bit too hard on the CPU, using 5-10% for just blinking. Here&#8217;s a <a href="http://pastebin.com/f2901fff9">Linux-only <em>cupsledsd</em></a> that uses no <em>system()</em> calls. It accesses the CUPS queue directly (searches for data files in <em>/var/spool/cups</em>, probably unsupported), writes directly to the Linux <em>/sys</em> filesystem and blinks more frantically while not using a significant amount of CPU.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/379/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/379/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/379/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/379/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/379/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/379/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/379/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/379/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/379/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/379/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/379/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/379/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/379/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/379/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=379&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2008/10/04/playing-with-the-alix-leds/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
		<item>
		<title>Garmin GPSmap 60C / CS / CSx as an NTP reference clock</title>
		<link>http://binblog.info/2008/08/29/garmin-gpsmap-60-ntp-reference/</link>
		<comments>http://binblog.info/2008/08/29/garmin-gpsmap-60-ntp-reference/#comments</comments>
		<pubDate>Fri, 29 Aug 2008 19:06:00 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[Hardware]]></category>
		<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[garmin]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[ntp]]></category>

		<guid isPermaLink="false">http://binblog.wordpress.com/?p=283</guid>
		<description><![CDATA[The bad news first: The Garmin&#8217;s USB port is not usable at all with ntpd. Although the USB cable can still be used to supply the unit with power, a serial (RS232) cable is required in order to feed location data into ntpd. Cables are available from Garmin (expensive and slightly hard to find) as [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=283&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>The bad news first: <strong>The Garmin&#8217;s USB port is not usable at all with ntpd.</strong> Although the USB cable can still be used to supply the unit with power, a serial (RS232) cable is required in order to feed location data into ntpd. Cables are available from Garmin (expensive and slightly hard to find) as well as from <a href="http://www.pfranc.com/">pfranc.com</a>, which is by far one of the weirdest business websites I have ever seen. <img src='http://s1.wp.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<p>The good news: Once you have the serial cable, using the GPSr for ntpd is a matter of seconds.</p>
<p>The Garmin must be instructed to spew out location data on the serial port, which can be accomplished through the interface configuration menu. The default of &#8220;GARMIN&#8221; for the serial port has to be changed to &#8220;NMEA-In / NMEA-Out&#8221;. After making this setting, you can use Minicom to connect to the serial port at 4800/8N1 where you will see a constant stream of data. The $GPRMC lines contain the information that is required for NTP. (<a href="http://www.gpsinformation.org/dale/nmea.htm#position">Click here for details about the format.</a>)</p>
<p>According to the ntpd documentation, the Garmin will be configured as a &#8220;<a href="http://doc.ntp.org/4.2.4/drivers/driver20.html">generic NMEA GPS receiver</a>&#8220;.</p>
<p>ntpd will require a symlink in <em>/dev</em> so it knows where to find the GPSr. In my case, the Garmin is connected to <em>/dev/ttyS0</em>. Hence, the symlink needs to be created as follows: </p>
<p><tt># ln -s ttyS0 /dev/gps0</tt></p>
<p>ntpd accesses this device through a pseudo IP address that will be used in <em>ntp.conf</em>:</p>
<p><tt>server 127.127.20.0</tt></p>
<p>Behold the NMEA peer:</p>
<pre><tt>ntpdc&gt; peers
     remote           local      st poll reach  delay   offset    disp
=======================================================================
*GPS_NMEA(0)     127.0.0.1        0   64  377 0.00000  0.001443 0.03511</tt></pre>
<p><strong>Be advised that it will take a few minutes until ntpd has synchronized with the GPSr.</strong> If you can&#8217;t get your NTP clients to synchronize with your NTP server, leave it alone for a while and try again later. Synchronization with the GPSr is complete as soon as the output from &#8220;peers&#8221; no longer starts with &#8220;=&#8221; but with an asterisk (as above). I learned this the hard way during Y2K testing in 1999 when an NTP server just wouldn&#8217;t synchronize. I restarted it over and over again. At the end of my tether, I went out for lunch and left the defunct server behind. When I came back, everything had just fallen into place, the clock was synchronized and so were the clients. <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/binblog.wordpress.com/283/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/binblog.wordpress.com/283/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/283/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/283/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/283/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/283/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/283/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/283/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/283/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/283/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/283/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/283/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/283/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/283/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/283/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/283/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=283&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2008/08/29/garmin-gpsmap-60-ntp-reference/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
		<item>
		<title>DHCP Suchliste erweitern</title>
		<link>http://binblog.info/2008/07/25/dhcp-suchliste-erweitern/</link>
		<comments>http://binblog.info/2008/07/25/dhcp-suchliste-erweitern/#comments</comments>
		<pubDate>Fri, 25 Jul 2008 04:24:57 +0000</pubDate>
		<dc:creator>martin</dc:creator>
				<category><![CDATA[UNIX & Linux]]></category>
		<category><![CDATA[dhcp]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[ubuntu]]></category>

		<guid isPermaLink="false">http://binblog.wordpress.com/?p=183</guid>
		<description><![CDATA[Der DHCP-Server von $KUNDE übergibt leider keine DNS-&#8221;searchlist&#8221; für die /etc/resolv.conf, so daß Hostnamen grundsätzlich inclusive Domain einzugeben sind. Dieses Problem kann sehr leicht umschifft werden, indem man in die Konfigurationsdatei des DHCP-Client, dhclient.conf, eine Zeile mit den Domains einträgt, die man gern zusätzlich in der Searchliste hätte: request subnet-mask, broadcast-address, time-offset, routers, domain-name, domain-name-servers, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=183&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Der DHCP-Server von $KUNDE übergibt leider keine DNS-&#8221;searchlist&#8221; für die <em>/etc/resolv.conf</em>, so daß Hostnamen grundsätzlich inclusive Domain einzugeben sind.</p>
<p>Dieses Problem kann sehr leicht umschifft werden, indem man in die Konfigurationsdatei des DHCP-Client, <em>dhclient.conf</em>, eine Zeile mit den Domains einträgt, die man gern zusätzlich in der Searchliste hätte:</p>
<p><tt>request subnet-mask, broadcast-address, time-offset, routers, domain-name,    domain-name-servers, host-name, ntp-servers;<br />
<strong>prepend domain-name "intranet.kunde1.de dmz.kunde1.de kunde2.de daheim.local example.com";</strong></tt></p>
<p>Die Obergrenze für diese Eintragung liegt, vorgegeben durch den Resolver unter Linux, bei 6 Domains und 256 Zeichen.</p>
<p>Die Konfigurationsdatei findet sich auf Ubuntu-Linux unter <em>/etc/dhcp3/dhclient.conf</em>.</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/binblog.wordpress.com/183/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/binblog.wordpress.com/183/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/binblog.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/binblog.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/binblog.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/binblog.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/binblog.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/binblog.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/binblog.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/binblog.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/binblog.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/binblog.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/binblog.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/binblog.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/binblog.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/binblog.wordpress.com/183/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=binblog.info&amp;blog=2416043&amp;post=183&amp;subd=binblog&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://binblog.info/2008/07/25/dhcp-suchliste-erweitern/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">martin</media:title>
		</media:content>
	</item>
	</channel>
</rss>
