Bookmarks for 13 feb 2012 through 15 feb 2012

These are my links for 13 feb 2012 through 15 feb 2012:

  • Configuring a site-to-site VPN between a Sonicwall and Linux Openswan – Mike A. Leonetti – I have had the fortune of having the challenge to set up a site-to-site (or BOVPN/Branch Office VPN) between a Sonicwall and Openswan. I have searched for other articles that cover this topic and found plenty of information that got me far enough to get some of it working. However, getting the whole thing working took quite some time and I found the guides to be incomplete. So for the sake of even my own remembrance, I will write a mini guide up. Of course I will link all of the guides I've used in a references section.
  • VPN Site-to-Site Openswan x ASA (Cisco) – House of Linux – Ladies and gentleman, today I am going to demonstrate how to integrate technologies from different platforms. It is possible to use Cisco to integrate with Windows and Linux using protocol such as LDAP. In this case the communication between Linux and ASA (Adaptive Security Appliances) is straight. We will only need to check the cryptography configuration and that it, the connection is established.
  • Linux Commands – SkullSecurity – Recon, scanning, exploitation and password from comman line in linux (netcat, metasploit, etc)
  • Windows Commands – SkullSecurity – Recon, scanning and exploitation in a windows command line

Bookmarks for 1 feb 2012 through 2 feb 2012

These are my links for 1 feb 2012 through 2 feb 2012:

  • WP WAF – WordPress Web Application Firewall | Gianni Amato – Ecco la preview di ciò che inizialmente è nato come IDS per monitorare gli attacchi ai miei blog e man mano cresciuto fino a prendere le sembianze di un IPS.

    WP WAF è un plugin per WordPress (leggero e per nulla invasivo) il cui scopo è quello di bloccare ed eventualmente notificare alla propria casella di posta i dettagli dell’attacco alla piattaforma.

    [via http://www.afhome.org/2012/02/01/un-firewall-per-wordpress/ ]

  • Sumo Paint | Online Image Editor – Sumo Paint – online image editor and drawing application
  • PHP and AJAX shell console – Ever wanted to execute commands on your server through php to mimick a shell login? Now you can. I'm calling this file (see below) shell.php and it allows you to run commands on your web server with the same permissions that your php executable has.

Bookmarks for 5 gen 2012 through 25 gen 2012

These are my links for 5 gen 2012 through 25 gen 2012:

  • MySQL permissions for backup | OpenConcept Mobile Site – It's a really good idea to use a least-privilege approach to most system administration tasks, and especially automated ones. This post describes using a "read only" MySQL user to handle backing up MySQL databases.

    We use mysqldump to backup our databases on a regular basis, using scripts like this one

  • MuckNet » Blog Archive » MySQL Permissions for backup using mysqldump and/or ec2-consistent-snapshot – Using root for your MySQL backups is a bad idea boys and girls. You should dedicate a user to doing your backups. Below are a few options for setting up minimum permissions for your dedicated mysql backup user

    [memento mori]

  • Tiki Wiki CMS Groupware | Tiki Wiki CMS Groupware – Software made the wiki way. – What is Tiki Wiki CMS Groupware? Tiki is a powerful, web-based application, created by a large team of contributors. Tiki is the ideal tool for you to build and maintain your Website/Wiki/Groupware/CMS/Forum/Blog/Bug Tracker or any other project you can imagine running in your browser window.

    Tiki is free, both Free Software (as in "Free Speech") and Free of Charge (as in "Free Beer"), and for everyone! It has all the features you need "out-of-the-box":
    Wikis (like Wikipedia)
    Forums (like phpBB)
    Blogs (like WordPress)
    Articles (like Yahoo News)
    Image Gallery (like Flickr)
    Map Server (like Google Maps)
    Link Directory (like DMOZ)
    Multilingual (like Babel Fish)
    Bug Tracker (like Bugzilla)
    RSS Feeds (like Digg)
    Free Open Source software (LGPL)

    [ via http://www.gpaterno.com/2011/12/23/create-a-secure-intranetextranet-with-tikiwiki-and-securepass/ ]

  • Create a secure intranet/extranet with TikiWiki and SecurePass – Giuseppe Paternò – […]
    In this market segment, there’s still a need for a secure corporate intranet with the need to exchange private information and files. Collaborative places, such as wikis, are perfect solutions to quickly achieve this goal without spending a fortune. I found TikiWiki (http://www.tiki.org/) to suit best in these environments: while extremely easy to use for an end-user through WYSYWIG editor, the complex permission system allow you to set each page access or even show/hide part of the page to a given group of users, which is unique if compared to other solutions
    […]

Bookmarks for 9 dic 2011 through 13 dic 2011

These are my links for 9 dic 2011 through 13 dic 2011:

  • BAT file tips | Alex @ Net – Let's play with BAT files a little. As you may know, BAT files are intended to be run and processed by the MS command processor, named cmd.exe, and the programming language they are created with is very close to BASIC. The early versions of the BAT-files language (which comes from famous Windows ancestor, MS-DOS) were very limited. Nowadays it has more features and a few days ago I created a small collection of interesting tricks, related to BAT file programming. You can check the following examples that demonstrate which execution flow controlling statements BAT-file language has and show their analogs in PHP.
  • 10 Tools To Add Some Spice To Your UNIX Shell Scripts – here are some misconceptions that shell scripts are only for a CLI environment. You can easily use various tools to write GUI and/or network (socket) scripts under KDE or Gnome desktops. Shell scripts can make use of some of the GUI widget (menus, warning boxs, progress bars etc). You can always control the final output, cursor position on screen, various output effects, and so on. With the following tools you can build powerful, interactive, user friendly UNIX / Linux bash shell scripts.
  • Nagios plugin for ASE – SybaseWiki – When you are using Nagios (http://www.nagios.org) as a monitoring tool, it's real easy to implement your own checks for Sybase servers. Here's a sample check to see if your ASE server is up and connectable.

Bookmarks for 6 dic 2011 through 7 dic 2011

These are my links for 6 dic 2011 through 7 dic 2011:

  • Monitor Your Website in Real-Time with Apachetop – How-To Geek – As a webmaster, I’ve often wanted to be able to see real-time hits as they arrive. Sure, Google Analytics is a wonderful package for looking at trends over time, but there’s a delay of a few hours there, and you really can’t see data like requests per second or total bytes.

    This is where the apachetop utility comes in. It’s a very simple command line utility that you can use to monitor traffic real-time. It accomplishes this by parsing the apache logfiles and displaying meaningful output to the screen.

  • Ashwin Jayaprakash’s Blog: The little gem that is BusyBox (for Windows) – As a Windows user (no shame) I have, for years searched for a simple GNU-like toolkit – grep, awk, tail and other such goodies enjoyed by Linux users. Yes, there's Cygwin but it's a beast – too big and a pain to install. Sometimes, I've even resorted to starting a Linux VMWare image just to run a simple awk script to munge some log files.
  • pclouds/busybox-w32 – GitHub – Win32 native port for Busybox (latest build can bw found in the below link)

Bookmarks for 23 nov 2011 through 30 nov 2011

These are my links for 23 nov 2011 through 30 nov 2011:

  • BILL – Bill strives to be a solution for developing applications which can be run on platforms with limited resources (e.g. embedded systems) on top of the GNU Bash shell, with a focus on quality and reusability of shell code.
  • Check_whois – Use this plugin with Nagios to be notified when a domain is about to expire.
  • TIP: Debug squid ACL matches – The FreeBSD Forums – For tricky squid ACL troubleshooting situations, it is helpful to be able to see which access control entries a request matches and does not match. This information can be discovered easily using squid's debugging facility.

Bookmarks for 20 set 2010 through 23 set 2010

These are my links for 20 set 2010 through 23 set 2010:

  • Blungr.com | domain name generator – Are you looking for a domain name for your startup or project? Or maybe you are looking for your comapny name?<br />
    Try Blungr.com – a simple domain name generator. Just type one or two keywords, choose settings and mix them up! Also, you can check the domain availability. If it is available, you can purchase it!
  • 20+ .htaccess Hacks Every Web Developer Should Know About | DevMoose – […] Apache's .htaccess(hypertext access) configuration file can be a very powerful tool in a web developer's toolkit if used properly. It can be found in the webroot of your server and can be easily edited using any text editor. In this article I'm going to show you 20 .htaccess hacks and how to use them.<br />
    Before I start with this article I'd like to start by saying that abusing the .htaccess file will hurt the performance of your website. The .htaccess file should only be used if you have no other way to achieve certain things.<br />
    Make sure to back up your current .htaccess file before applying any of the following hacks. […]<br />
    <br />
    via http://www.bufferoverflow.it/
  • Keeping an eye on TSM volumes – […] I wrote a quick script which tells me when volumes in TSM (Tivoli Storage Manager) have access and/or media issues and shoots me off an email. The script does two things:<br />
    1) Checks for volumes which are NOT in the states READWRITE or OFFSITE.<br />
    2) Checks for volumes which have a read/write error count >0.<br />
    I’m sure that most people running TSM in their environment have some sort of daily reporting that gets sent out. If that’s the case, you can simply extract the SQL from the script and use it in your own reporting tools.<br />
    […]
  • Read Ruby 1.9: Free Ebook About the Ruby Programming Language – Very early draft of a book about version 1.9 of the Ruby programming language, released under a Creative Commons license.<br />
    <br />
    [via Bru Blogs Aggregator http://pipes.yahoo.com/codewitchbru/myblogs ]
  • Know Your UNIX System Administrator: A Field Guide – There are four major species of Unix sysad…<br />
    Esilarante 🙂

Bookmarks for 14 gen 2010 from 00:48 to 13:11

These are my links for 14 gen 2010 from 00:48 to 13:11:

  • ideone.com – Choose language, paste code and input data (optionally), choose whether your code ought to be executed and whether it ought to be private (i.e. not listed in recent pastes) and click submit button. Then watch your code being executed, share it with your team or friends, or run it again with new input to debug.

    via http://tinyhacker.com/hacks/execute-code-online-using-ideone/

  • Airytec Switch Off – Shutdown your PC automatically or remotely from any computer or mobile phone – Switch Off is a lightweight easy-to-use tray-based system utility that could automatically shutdown, suspend or hibernate your system to cut your electricity bills and save the Environment by lowering your PC power consumption. It could also disconnect dial-up and VPN connections to cut your internet service bills as well. Automation options allows you to schedule all operations daily, weekly, past specified time or when PC becomes idle.
  • IBM AIX Tips and Tricks –
  • Jay Sri Ram. Bharat Mata Ki Jay – I want to share some of my technical knowledge which I gathered and […]some scripts which I wrote. I will be happy if any of these information helps you. Lot of these information I figured out by myself and some of these information I collected from several websites. My objective is to share my documents with whoever want. Whenever I get some free time I try to learn new stuffs and I like to share those[…]

    Appunti su aix, hp-ux, linux e solaris. Tips e script

Bookmarks for 6 gen 2010 through 8 gen 2010

These are my links for 6 gen 2010 through 8 gen 2010:

  • Tools – Mt Xia – Downloads,Business Continuity,Disaster Recovery,High Availability,Virtualization,Data Center Automation,Audit Response,Audit Compliance,Security Assessment,Technical Support
  • pWare – AIX Open Source software for IBM AIX 5.3 and 6.1 – AIX Open Source software for IBM System p server (formerly pSeries and RS/6000) machines running AIX 5.3 and higher. My name is Bill Jojo and I work at Hudson Valley Community College where we use a significant amount of Open Source software to manage our environment.
  • Create AIX NIM master – NIM is better in that you can install a new OS from a mksysb in as little as 5 minutes versus installing from CD which can take 40 minutes or longer. You can also keep your builds consistent if you have one mksysb image to build an AIX server. This also makes server builds easier at remote locations, no more swapping CD’s[…]
  • AixErrorLogCustomization < AIS < TWiki – AIX has a very flexible error logging daemon to log hardware and software errors. The log is typically accessed with the errpt command.
    Unfortunately, checking the log is a manual process. Using some custom ODM entries, we can cause AIX to run commands in response to errors, which can then be used for notification.
    Below I document a simple configuration which uses the ODM to log each error entry to syslog, and forward the complete entry via email.
  • c99madshell Security Review – Derek Fountain – A friend of mine got hacked recently. Some charming person managed to upload a rogue file to his server and replaced some of the software executables he produces with versions containing trojans and viruses.

    It seems there's not a lot of information available that describes just what is possible from an uploaded file vulnerability. So I grabbed a copy of 'c99madshell', which is one of the more popular scripts used by script kiddies, and had a look at what it can do. Here's what I found…