Active snort/prelude deployment
Wednesday June 14th 2006, 1:52 pm
Filed under:
Writings
I’ve activated (semi) automatic blocking on my web frontends. This is due to 2 of my ip’s being on open-proxy lists (yeah, I made a mistake a couple of months ago which caused these two ip’s to be submitted to open-proxy lists). I’ve tuned the system so that all GET/HEAD/POST/CONNECT activities which do not go to one of my registered sites will be automatically blocked. Right now there’s almost 2K hosts in this block list and I’m seeing the load on my webservers drop a bit. If you’re unfortunate enough to end up on this list and you feel you shouldn’t be on this list, drop me a line and if I feel compelled I’ll remove you from the list.
Site updated
Friday June 09th 2006, 4:22 pm
Filed under:
Writings
I’ve replaced the static menu on the left with a DHTML one from Tigra Menu. Depending on werther you’re logged in or logged out it’ll display a different menu. I did this since the old static menu was way to cumbersome to mainain and just plain ugly. However, the default images that came with this menu are ugly too (they remind me of a certain OS I really don’t like using for some reason) so I’ll need to spend some time on that over the weekend.
Legalize Streetrave 2006
Thursday June 08th 2006, 10:37 pm
Filed under:
Writings
I’ll be attending this years Legalize Streetrave, a yearly protest march for the legalization of marihuana. Jah Man
fwix upgraded
Friday June 02nd 2006, 12:10 am
Filed under:
Writings
fwix.nl.eu.org, one of the ip’s that’s in a round-robin dns pool for most of my services has been upgraded to OpenBSD 3.9. It took some time to get Postfix up and running due to some weird issues with OpenLDAP not wanting to create a dbd backend. Today, I got all services back up and running. Below you can see a complete log of a coldboot of this system.
comBIOS ver. 1.26 20040721 Copyright (C) 2000-2004 Soekris Engineering.
net4801
0128 Mbyte Memory CPU Geode 266 Mhz
Pri Mas SanDisk SDCFB-256 LBA 980-16-32 251 Mbyte
Pri Sla TOSHIBA MK4025GAS LBA Xlt 1024-255-63 39070 Mbyte
Slot Vend Dev ClassRev Cmd Stat CL LT HT Base1 Base2 Int
-------------------------------------------------------------------
0:00:0 1078 0001 06000000 0107 0280 00 00 00 00000000 00000000
0:06:0 100B 0020 02000000 0107 0290 00 3F 00 0000E101 A0000000 10
0:07:0 100B 0020 02000000 0107 0290 00 3F 00 0000E201 A0001000 10
0:08:0 100B 0020 02000000 0107 0290 00 3F 00 0000E301 A0002000 10
0:14:0 13A3 0020 0B400000 0116 0280 08 3C 00 A0003000 A0004000 11
0:18:2 100B 0502 01018001 0005 0280 00 00 00 00000000 00000000
0:19:0 0E11 A0F8 0C031008 0117 0280 08 38 00 A0010000 00000000 05
1 Seconds to automatic boot.
Using drive 0, partition 3.
Loading...
probing: pc0 com0 com1 pci mem[639K 127M a20=on]
disk: hd0+ hd1+
>> OpenBSD/i386 BOOT 2.10
-
com0: 19200 baud
switching console to com0
>> OpenBSD/i386 BOOT 2.10
boot>
booting hd0a:/bsd: 4966344+867848 [52+255872+237161]=0x608d64
entry point at 0x100120
[ using 493460 bytes of bsd ELF symbol table ]
Copyright (c) 1982, 1986, 1989, 1991, 1993
The Regents of the University of California. All rights reserved.
Copyright (c) 1995-2006 OpenBSD. All rights reserved. http://www.OpenBSD.org
OpenBSD 3.9 (GENERIC) #617: Thu Mar 2 02:26:48 MST 2006
deraadt@i386.openbsd.org:/usr/src/sys/arch/i386/compile/GENERIC
cpu0: Geode(TM) Integrated Processor by National Semi ("Geode by NSC" 586-class) 267 MHz
cpu0: FPU,TSC,MSR,CX8,CMOV,MMX
cpu0: TSC disabled
real mem = 133799936 (130664K)
avail mem = 115367936 (112664K)
using 1658 buffers containing 6791168 bytes (6632K) of memory
mainbus0 (root)
bios0 at mainbus0: AT/286+(00) BIOS, date 20/40/21, BIOS32 rev. 0 @ 0xf7840
pcibios0 at bios0: rev 2.0 @ 0xf0000/0x10000
pcibios0: pcibios_get_intr_routing - function not supported
pcibios0: PCI IRQ Routing information unavailable.
pcibios0: PCI bus #0 is the last bus
bios0: ROM list: 0xc8000/0x9000
cpu0 at mainbus0
pci0 at mainbus0 bus 0: configuration mode 1 (bios)
pchb0 at pci0 dev 0 function 0 "Cyrix GXm PCI" rev 0x00
sis0 at pci0 dev 6 function 0 "NS DP83815 10/100" rev 0x00, DP83816A: irq 10, address 00:00:24:c3:8f:48
nsphyter0 at sis0 phy 0: DP83815 10/100 PHY, rev. 1
sis1 at pci0 dev 7 function 0 "NS DP83815 10/100" rev 0x00, DP83816A: irq 10, address 00:00:24:c3:8f:49
nsphyter1 at sis1 phy 0: DP83815 10/100 PHY, rev. 1
sis2 at pci0 dev 8 function 0 "NS DP83815 10/100" rev 0x00, DP83816A: irq 10, address 00:00:24:c3:8f:4a
nsphyter2 at sis2 phy 0: DP83815 10/100 PHY, rev. 1
hifn0 at pci0 dev 14 function 0 "Hifn 7955/7954" rev 0x00: LZS 3DES ARC4 MD5 SHA1 RNG AES PK, 32KB dram, irq 11
gscpcib0 at pci0 dev 18 function 0 "NS SC1100 ISA" rev 0x00
gpio0 at gscpcib0: 64 pins
"NS SC1100 SMI" rev 0x00 at pci0 dev 18 function 1 not configured
pciide0 at pci0 dev 18 function 2 "NS SCx200 IDE" rev 0x01: DMA, channel 0 wired to compatibility, channel 1 wired to compatibility
wd0 at pciide0 channel 0 drive 0:
wd0: 1-sector PIO, LBA, 245MB, 501760 sectors
wd1 at pciide0 channel 0 drive 1:
wd1: 16-sector PIO, LBA, 38154MB, 78140160 sectors
wd0(pciide0:0:0): using PIO mode 4, DMA mode 2
wd1(pciide0:0:1): using PIO mode 4, Ultra-DMA mode 2
geodesc0 at pci0 dev 18 function 5 "NS SC1100 X-Bus" rev 0x00: iid 6 revision 3 wdstatus 0
ohci0 at pci0 dev 19 function 0 "Compaq USB OpenHost" rev 0x08: irq 5, version 1.0, legacy support
usb0 at ohci0: USB revision 1.0
uhub0 at usb0
uhub0: Compaq OHCI root hub, rev 1.00/1.00, addr 1
uhub0: 3 ports with 3 removable, self powered
isa0 at gscpcib0
isadma0 at isa0
pckbc0 at isa0 port 0x60/5
pckbd0 at pckbc0 (kbd slot)
pckbc0: using irq 1 for kbd slot
wskbd0 at pckbd0: console keyboard
pcppi0 at isa0 port 0x61
midi0 at pcppi0:
spkr0 at pcppi0
nsclpcsio0 at isa0 port 0x2e/2: NSC PC87366 rev 9: GPIO VLM TMS
gpio1 at nsclpcsio0: 29 pins
gscsio0 at isa0 port 0x15c/2: SC1100 SIO rev 1:
npx0 at isa0 port 0xf0/16: using exception 16
pccom0 at isa0 port 0x3f8/8 irq 4: ns16550a, 16 byte fifo
pccom0: console
pccom1 at isa0 port 0x2f8/8 irq 3: ns16550a, 16 byte fifo
biomask f3e5 netmask ffe5 ttymask ffe7
pctr: no performance counters in CPU
dkcsum: wd0 matches BIOS drive 0x80
dkcsum: wd1 matches BIOS drive 0x81
root on wd0a
rootdev=0x0 rrootdev=0x300 rawdev=0x302
swapctl: adding /dev/wd1a as swap device at priority 0
Automatic boot in progress: starting file system checks.
/dev/rwd0a: file system is clean; not checking
/dev/rwd1f: file system is clean; not checking
/dev/rwd1b: file system is clean; not checking
/dev/rwd1e: file system is clean; not checking
/dev/rwd1d: file system is clean; not checking
setting tty flags
pf enabled
starting network
starting system logger
starting named
starting initial daemons:.
savecore: /dev/wd0b: Device not configured
checking quotas: done.
building ps databases: kvm dev.
clearing /tmp
starting pre-securelevel daemons: ntpdate ntpd.
setting kernel security level: kern.securelevel: 0 -> 1
creating runtime link editor directory cache.
preserving editor files
starting network daemons: bgpd httpd inetd sshd.
starting local daemons: snmpd slapd postfix boxbackup.
standard daemons: watchdogd cron.
Fri Jun 2 00:03:37 CEST 2006
OpenBSD/i386 (fwix.ix.nl.eu.org) (tty00)
login: