Pix Firewall Monitoring Software on Linux
by ankush grover
hey friends,
I am looking for a free open source software (web based or
application) through which I can monitor the Pix Firewall. What it
should show Interface status or traffic , VPN Connectivity status, CPU
Status, Memory Status etc. I am also running DHCP server on Pix
Firewall (due to some reasons) If it can monitor that also means
showing how many IPAddresses has been assigned, to whom, what is the
lease time etc. then it will be very good.
I know about cacti but for VPN Connectivity status one has to use
telnet which I don't want to use and I don't know about monitoring
DHCP server through it. Is there any other tool through which I can
monitor Pix Firewaall ?
I am using FC3 & FC4.
Thanks & Regards
Ankush Grover
17 years, 7 months
smart package mgr question?
by Gene Heskett
Greetings all;
I just ran smart pkg mgr on my FC5 lappy, and any cups I click on claims it
will downgrade 3 packages if I exec it. What the heck? Yumex doesn't
seem to have that problem.
--
Cheers, Gene
"There are four boxes to be used in defense of liberty:
soap, ballot, jury, and ammo. Please use in that order."
-Ed Howdershelt (Author)
Yahoo.com and AOL/TW attorneys please note, additions to the above
message by Gene Heskett are:
Copyright 2006 by Maurice Eugene Heskett, all rights reserved.
17 years, 7 months
Linux script on Windows to chjange Date and Time
by Paul Ward
Hi All,
I need to find a way of syncing the date on 4 linux pcs and 2 windows
pc's using eiter a linux script or windows :(
I would rather not use a samba share and get dos to run a if exist statment.
Does anyone have any suggestions?
Anyone know if cygwin allows a Linux box to ssh using a rsa key and
run commands?
????
17 years, 7 months
install custom RPM package on Fedora x86_64 - conflict
by Florin Andrei
FC4 has been transferred to Fedora Legacy but there's no OpenSSL update
yet. I've found an updated openssl src.rpm on the Web that rebuilds fine
on FC4 x86_64, but when I try to install the binaries, I get:
# rpm
-Uvh /usr/src/redhat/RPMS/x86_64/openssl-0.9.7f-7.10.2mj.x86_64.rpm /usr/src/redhat/RPMS/x86_64/openssl-devel-0.9.7f-7.10.2mj.x86_64.rpm
Preparing... ###########################################
[100%]
file /usr/share/man/man1/pkcs12.1ssl.gz from install of
openssl-0.9.7f-7.10.2mj conflicts with file from package
openssl-0.9.7f-7.10
file /usr/share/man/man1/s_time.1ssl.gz from install of
openssl-0.9.7f-7.10.2mj conflicts with file from package
openssl-0.9.7f-7.10
file /usr/share/man/man1/sslrand.1ssl.gz from install of
openssl-0.9.7f-7.10.2mj conflicts with file from package
openssl-0.9.7f-7.10
I suspect there's a conflict with the existing 32 bit openssl package:
# rpm -qa | grep openssl openssl-devel-0.9.7f-7.10
openssl-0.9.7f-7.10
xmlsec1-openssl-1.2.7-4
openssl-0.9.7f-7.10
How do I solve the conflict?
--
Florin Andrei
http://florin.myip.org/
17 years, 7 months
Fetchmail Nolonger Fetches Mail from Google
by Bob Chiodini
Sorry about the possibly off-topic post:
As of Thu 28 Sep 2006 11:47:56 PM EDT, I can no longer fetch mail from
pop.gmail.com. Fetchmail produces the following:
fetchmail: Unknown login or authentication error on bchiodini@gmail.com(a)pop.gmail.com
fetchmail: socket error while fetching from bchiodini@gmail.com(a)pop.gmail.com
fetchmail: Query status=2 (SOCKET)
Running fetchmail in the foreground with the -v option:
fetchmail: 6.3.4 querying pop.gmail.com (protocol POP3) at Fri 29 Sep 2006 02:22:47 PM EDT: poll started
fetchmail: Issuer Organization: Equifax
fetchmail: Unknown Issuer CommonName
fetchmail: Server CommonName: pop.gmail.com
fetchmail: pop.gmail.com key fingerprint: 59:51:61:89:CD:DD:B2:35:94:BB:44:97:A0:39:D5:B4
fetchmail: POP3< +OK Gpop ready for requests from 67.34.137.95 28pf1185241wrl
fetchmail: POP3> CAPA
fetchmail: POP3< +OK Capability list follows
fetchmail: POP3< USER
fetchmail: POP3< RESP-CODES
fetchmail: POP3< EXPIRE 0
fetchmail: POP3< LOGIN-DELAY 300
fetchmail: POP3< X-GOOGLE-VERHOEVEN
fetchmail: POP3< UIDL
fetchmail: POP3< .
fetchmail: POP3> USER bchiodini(a)gmail.com
fetchmail: Unknown login or authentication error on bchiodini@gmail.com(a)pop.gmail.com
fetchmail: socket error while fetching from bchiodini@gmail.com(a)pop.gmail.com
fetchmail: 6.3.4 querying pop.gmail.com (protocol POP3) at Fri 29 Sep 2006 02:23:47 PM EDT: poll completed
fetchmail: Query status=2 (SOCKET)
fetchmail: normal termination, status 2
As best I can tell, the certs check.
openssl s_client -connect pop.gmail.com:995 -CApath /home/bob/.certs/
CONNECTED(00000003)
depth=1 /C=US/O=Equifax/OU=Equifax Secure Certificate Authority
verify return:1
depth=0 /C=US/ST=California/L=Mountain View/O=Google Inc./CN=pop.gmail.com
verify return:1
---
Certificate chain
0 s:/C=US/ST=California/L=Mountain View/O=Google Inc./CN=pop.gmail.com
i:/C=US/O=Equifax/OU=Equifax Secure Certificate Authority
---
Server certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
subject=/C=US/ST=California/L=Mountain View/O=Google Inc./CN=pop.gmail.com
issuer=/C=US/O=Equifax/OU=Equifax Secure Certificate Authority
---
No client certificate CA names sent
---
SSL handshake has read 891 bytes and written 332 bytes
---
New, TLSv1/SSLv3, Cipher is DES-CBC3-SHA
Server public key is 1024 bit
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol : TLSv1
Cipher : DES-CBC3-SHA
Session-ID: 21F49F1DF2F05D6B518D5ED4EFC2E670BF019E1E5CDE113D56812A0344B37644
Session-ID-ctx:
Master-Key: BC84BAA384BE7DC5757D505D1223966F38A0DCF38216A47B49A63B902ADDE39156923D1F11DA88D2A29E7E818A70060A
Key-Arg : None
Krb5 Principal: None
Start Time: 1159554385
Timeout : 300 (sec)
Verify return code: 0 (ok)
---
+OK Gpop ready for requests from 67.34.137.95 44pf2498554wri
DONE
Nothing has changed in my config. Help :-(
Bob...
17 years, 7 months
'kickstarting' a customised install
by Tom Brown
Hi
Pardon the terminology here but is it possible to take an image of a
currently installed system and then building another machine with
exactly the same setup? A bit like dd'ing the install but having it so
that the partitioning would be more dymanic if you built this image onto
a bigger box or something?
I ask as we have base kickstarts that we then have to 'build' into
different types of systems, be it database, app etc so it would be
really great to snapshot a current system and them deploying this out again.
Is that possible or would it be suggested to add all the required
packages etc in the post of the kickstart?
thanks
17 years, 7 months
how to remove dom4j
by Scott Berry
Hi there everyone,
Got one more question about packages. How do I get rid of dom4j? What group of packages is it involved with? I tried "yum remove dom4j" with no success and also tried "yum groupremove dom4j" with no success also. Thanks for all the help.
Scott
17 years, 7 months
After Update My FC5 get BLANK SCREEN.
by Ivan Evstegeneev
Hello Folks!!!
I've encountered some problem with my FC5.....
After I've done some updates to it... so now its Fedora Core
(2.6.15-1.2054_FC5).... When I restarted my laptop (Acer TravelMate
4602WLMi) the booting up process started as usual but suddenly it
jumped to some blank window... with cross icon in middle and just
stopped to response ... so what I need to do now? I just don't even
know what is the problem....
Hope for some help.
--
Best regards,
Ivan mailto:bravo.elf@gmail.com
17 years, 7 months
Postfix w/ SASL
by Jim Douglas
This is my Postfix.spec file,
%define LDAP 2
%define MYSQL 1
%define PCRE 1
%define SASL 2
%define TLS 1
%define IPV6 1
%define POSTDROP_GID 90
%define PFLOGSUMM 1
..after compiling the RPM and installing I run postconf -m and this is the
output,
btree
cidr
environ
hash
ldap
mysql
nis
pcre
proxy
regexp
static
unix
How come SASL is not there?
Jim
17 years, 7 months
2 versions of librsvg2 after updates on fresh install of FC5
by Nigel Henry
Just installed yet another FC5 on the other machine. 873MB of updates on
dialup, but thankfully I'd saved the /var/cache/apt/archives from the other
FC5 installs, so only had to suffer 496MB of downloads. Apart from some sort
of transaction error when the updates finished, which I was unable to save as
I got a power out. We'll forget about the error. It was something to do with
pixbuf loader.
Anyway FC5 booted up ok when the power came back, and I ran apt-get update
again just to check out whether everything was ok. I've got a big bunch of
deletes from apt-get update, and the last entry is.
W: There are multiple versions of "librsvg2" in your system.
True. Looking in synaptic I have libsrvg2#2.14.2-1, and
libsrvg2#2.14.4-1.fc5.1 .
/usr/lib shows librsvg-2.so.2 pointing to librsvg-2.so.2.14.4
Is it safe to just remove the earlier librsvg2#2.14.2-1 version from the
system?
There were no 3rd party repo's active when I did the updating, and both
packages are listed as from (download.fedora.redhat.com)
Nigel.
17 years, 7 months