Wednesday, June 27, 2007

How Long Does Throat Abscess Last

We design a home WiFi network password

I'm convinced that home wireless networks are poorly designed and I also understand why the producers of this equipment they are complicit!

I think there is a better way to build a wireless network that guarantees to keep your system safe while users surf the Internet.

Questo post è organizzato in tre parti:

  1. Le falle presenti nel modo attuale di progettare il WiFi
  2. Un design WiFi migliore
  3. Configurazioni avanzate

WiFi è rotto

Se avete fatto ciò che comunemente si fa per implementare un router wireless, avrai seguito questi passi:

  1. Fase di design - “Vorrei navigare in internet e vedere la TV allo stesso tempo. Prenderò un router WiFi per sostituire il mio router.”
  2. Fase di scelta dell' hardware - “Quale scegliere?”
  3. Fase di realizzazione - “Scollego il vecchio router, connect the new ... I look for the WiFi connection ... Done! "

What you have created looks like this:

Bad WiFi Basically you give full access to your network to anyone with a wireless network card and is nearby. You could pull a long cable out of your door and put a neon sign that says "Free Internet Access! I can only pray that no one nearby is using Slurpr .

AND 'frightening verify that more than 40% of wireless networks released today is configured this way.

There are four primary areas of weaknesses in this project:

  1. Configurazione della connessione WiFi
  2. Configurazione del Firewall
  3. Accesso ad Internet
  4. Accesso alla rete

Diamo uno sguardo più approfondito a questi punti.

1. Configurazione della connessione WiFi

La maggior parte dei firewall wireless sono disegnate per essere facili da configurare, non sicure. Questo perchè i produttori di hardware non venderebbero un prodotto che il consumatore non fosse in grado di configurare o usare. Poichè la sicurezza nel WiFi è ben oltre la comprensione della maggior parte degli utenti, viene spesso trascurata. Non è insolito trovare connessioni WiFi con:

  • broadcast SSID Broadcast
  • Code default SSID
  • SSID that identifies the network gains no or weak encryption
  • No authentication with MAC address authentication without
  • shared key (key shared) or certificate
  • connection set so adhoc

2. Configuring the Firewall

As for WiFi, too often the firewall is configured with the least amount of security parameters, so it is easily usable. Many systems are configured with:

    Default admin password
  • active DHCP
  • Large areas
  • Default DHCP subnet mask (IP subnet)
  • No SSL encryption
  • Open a console on an external port for admin
  • Without monitor log files

All this raises security issues.

3. Allow free access to the Internet

Anyone happen to your wireless network will have full access to the Internet. This may not be taken as a problem at first, but there are some things to consider:

  1. If you have a limited bandwidth in upload and download from your provider Internet, potresti dover pagare un canone mensile maggiore se qualcuno fa uso intensivo di software p2p per fare enormi download di dati
  2. La maggior parte degli ISP per contratto vieta di condividere la la connessione ad internet con altri. Quindi se imposti una connessione wireless con libero accesso ad internet potresti violare il contratto e quindi perdere la stessa connessione.
  3. Se qualcuno usa la tua connessione ad Internet per compiere attività illegali (es. accedere a siti di pedofili) la polizia potrebbe verificare la proprietà della connessione ad internet tramite l'indirizzo IP e incolparvi per dei reati che non avete commesso.

4. Libero accesso alla rete

L'aspetto più annoying design a WiFi network design is that it bypasses your firewall that it should do: keep others off your local network. The wireless access is in fact allows its users to belong to the same network that has your system safe. " And if you're not careful to protect your PC, and neither were you in designing your wireless network, you understand that your personal data are in serious danger of theft.

A better design for WiFi

I spent some time thinking about how to improve the security of your WiFi network and I put forward this solution to help you put things more secure by eliminating vulnerailità in abbiamo parlato. La soluzione comprende:

  1. Mettere in sicurezza la connessione WiFi
  2. Mettere in sicurezza il firewall wireless
  3. Limitare l'accesso ad Internet a utenti pre-definiti
  4. Separare i computer della rete casalinga dagli utenti ad accesso wireless

Good WiFi

La cosa simpatica è che molte di queste operazioni possono essere fatte senza costi aggiuntivi perchè basta usare l'hardware che già possiedi.

E la soluzione è sufficientemente flessibile da consentirti di fornire accesso Internet a utenti WiFi con un minimo costo aggiuntivo.

1. Mettere in sicurezza la connessione WiFi

This is the most important part of the process. If you set this feature well, you can remove the greatest risks to your network. Follow these steps:

  1. Use WPA2 encryption for all communications
  2. sure to use certificates or shared keys for encryption
  3. not disclose your SSID broadcast. You should only do so in testing
  4. Change your SSID to something obscure kind 89cyr65g6vwe . Obviously do not use the default SSID that comes from the hardware vendor or worse information such as your phone number, name, address ...
  5. Use MAC address authentication to ensure that only alcuni specifici sistemi possano accedere al link WiFi
  6. Usa la modalità infrastructure , non quella adhoc , per la connessione

Fatte queste configurazioni siamo al sicuro? No. E' possibile avere accesso alla connessione WiFi se si conoscono le seguenti informazioni:

  • La tua chiave WPA2
  • Il tuo SSID
  • Il tuo indirizzo MAC

La persona che vuole accedere deve inoltre sapere come modificare il proprio indirizzo MAC della scheda wireless. Non è impossibile, ma ci vuole troppo lavoro per accedere alla rete di qualcuno.

E' molto importante usare la modalità infrastructure per la connessione . Deve essere settata nel firewall e nella scheda di rete wireless. In questo modo non sarà possibile usare la scheda di rete del tuo portatile come ponte wireless per accedere alla tua rete.

2. Mettere al sicuro il Wireless Firewall

Il passo successivo è mettere al sicuro il firewall wireless. E' importante perchè se permetti di violare il tuo firewall, tutte le altre misure di sicurezza possono essere forzate senza che tu neanche te ne accorga.

Assicurati di effettuare i seguenti passi:

  1. Cambia la password di amministratore (root o admin password)
  2. Utilizza criptaggio SSL per tutte le connessioni web tra firewall e Lock your system
  3. any external management interfaces
  4. Disable DHCP or at least set it to a range that is low in one or two IP addresses, setting the addresses reserved for DHCP
  5. Change the factory default subnet
  6. Create a small internal subnet. Use as a mask to 28 (2555.255.255.240) or 29 (2555.255.255.248) bit to limit your network to 14 or 6 respectively
  7. not allow hosts to ping external interface
  8. Log of all activities, preferably on an external device
  9. Keep a backup of the configuration in case something happens to the firewall configuration and jump

The downside in this way you will have to manually configure your devices you can connect to WiFi, but it's the price you pay for network security.

3. Restrict access to the Internet

With the above configuration you have in fact elimni access to the Internet to anyone who does not have permission. To access the Internet, a cracker should know the following information: Your SSID

  • The key WPA2
  • Your MAC address and your subnet and subnet mask: that is, IP network (eg 192.168.1.1) and the net (255.255.255.0)
  • A static IP address available
  • The name of your ISP to get DNS settings

4. Segment the network

With the home network behind the firewall, you are protected not only by users on the Internet but also by people who have enough information to groped a WiFi connection. It 'important to protect network systems and ensure that they are not violated.

Fortunately, many people are upgrading their drive with a wireless router, so it takes very little to integrate the second router in their network environment.

A contraindication to this simple configuration is that if you want to access shared resources on your network, you need to make changes as explained in the next section.

Advanced Configuration

This is just the tip of the iceberg. You can make several changes to the configuration for increased security or greater flexibility. Some ideas include: Making

  • VPN access to resources behind the firewall with SSH or SSL VPN solutions
  • Add a web proxy to access the Internet through authentication (username and password)
  • Implement IPSec for all network communication

Conclusions

Many of the default configuration of WiFi devices leave much to be desired with regard to safety, but a little effort in planning can afford to build an infrastructure much more secure at no additional cost.

Tuesday, June 5, 2007

Mario Lanza Beer Mats

O how beautiful ...


I read this article about password security, we feel a bit 'what to say ...

With the proliferation of web services we are forced to create new accounts, and to invent new and imaginative username password.

The solution to always use the same password or write them on a sheet of paper, rather than a spreadsheet, it is not very recommendable.
What should you do then those who surf the net? If you have more than one dozens of web services, surely he could not remember by heart. It 's time to use a password manager maybe free.

We see 10 useful services to manage your passwords:

  • Firefox or IE : The famous browsers offer a fairly safe way to store usernames and passwords for websites, simply type the first time and accept the request to store the credentials for that site. It 's very convenient and saves a lot of time, but it can happen that the password be lost, thus requiring reinsertion. If you've entrusted exclusively to the browser as a historical memory, you're in trouble. " Moreover, this solution is valid only for online passwords, not for network or computer.
  • KeePass : One of the most popular password manager is KeePass is as open-source, free and cross-platform - available for Windows, Linux, OS X, and mobile devices. Keep all your passwords, whether online or offline, in a secure database, so you should only remember the master password. Make sure that the master password is safe!
  • Clipperz : Unlike most password managers, this is a solution online - so you can access them from any computer connected to the Internet. Remember not only passwords, but also the credit card account numbers, just about anything. Store passwords and other private information online can make nervous, but Clipperz uses an encryption method that prevents the operators of this site to know what is stored. It 's a good solution if you want to access your password from multiple computers.
  • OSX Keychain : If you use a Mac, you are familiar with Keychain, which comes in OSX. In practice it is a password manager that uses your OS X admin password as the master password.
  • KeyWallet : Windows only, this little utility is placed in the system tray, and reminders when you enter a password. Being a utility, is independent of the browser.
  • Password Manager Plus: The toolbar of Billeo Free Password Manager Plus works with both Firefox and Internet Explorer, and also stores information other than passwords, such as credit card numbers and more. It also allows you to automatically fill the fields with your personal information when you shop online.
  • Password Hasher : This extension for Firefox generates passwords in a secure scrambling your master password with the name of the website visited. The passwords generated by this extension are by far better than what you invent yourself.
  • PasswordSafe : This free online service is compatible with any modern web browser, for each OS, and there is a desktop version for Windows or Mac In short, it uses a method of secure encryption to store your password or other personal information.
  • Password generator: This is a small bookmarklet that combines your master password with the name of the site to create more reliable and different password for each site. Very convenient and simple.
  • Algorithm: The best solution is not necessarily technology - difficult to remember passwords can be simple to use as a way to change a password base using the name of the online service to which you are connected. For example, if you have a base password of "xlg519" you can add the first and last two letters of the name of the service ("amon" for Amazon) and get your new password!

Some notes on passwords:

  • Never give out your master password if you use a password manager. Be sure to never forget it.
  • Do not write passwords on little pieces of paper stuck on your desk or on the side of the monitor. If you are stolen, you just have to curse yourself.
  • Managers passwords are not safe on a computer that we share with others - just run it on computers that only use us.
  • Use common information for the password is not secure - such as your birthday, initials, birthday, children, names, etc.. Obviously, no password is a secure password.
  • Use the same password for each service is not a good idea because once discovered a thief has access to all our accounts.
What can I say ... I have to start using it too, am a service password manager!

Monday, June 4, 2007

Where Can Wow Tcg Cards Be Bought In Toronto

Transfer files securely with SFTP

I've had to transfer files between linux workstations on the network, and often I used google each time, but now I found an article simple and clear that it is worth translating for you


Il protocollo FTP (File Transfer Protocol) è stato il più utilizzato per trasferire file tra computer. Tuttavia esso invia informazioni di autenticazione e contenuto dei file in chiaro, cioè non usa la crittografia dei dati, quindi non è un modo sicuro di comunicare. Secure Copy (SCP) e il più robusto SSH File Transfer Protocol (SFTP) mirano a migliorare la sicurezza fornendo dati attraverso una canale completamente criptato. Puoi usare queste alternative per trasferire file in sicurezza su Internet o qualsiasi altra rete non sicura.

Sia SCP che SFTP si basano sul protocollo Secure Shell (SSH). SSH stabilisce un canale criptato di comunicazione tra computer using Public Key Infrastructure . SSH uses crittagrafia for exchanging data for authentication and subsequent data transfer.

The SSH server and client software is shipped with most modern operating systems. For SCP and SFTP client are available as part of the OpenSSH suite in most Linux systems. Except for SCP and SFTP, SSH features are a suitable platform for remote shell session to create graphics and desktop connections, using SOCKS proxy for safe navigation and routing of TCP / IP.

SCP and SFTP

SCP is a descendant of Remote Copy (RCP). Unlike FTP, you can specify with SCP che devono essere preservate le modifiche dell'orario, tempo di accesso e modalità di accesso del file originale. Inoltre SCP può richiedere attendere una password se impostata, prima di effettuare il trasferimento. SCP può essere usato per copiare file tra computer o due host remoti in genere.

SCP è un tool da command-line comodo per effettuare operazioni batch. Tuttavia, SCP lavora su SSH1, una versione vecchia e superata di SSH, quindi conviene usare l'alternativa di SFTP che sfrutta la nuova versione SSH2.

SFTP è un protocollo completo per il trasferimento di file che implementa tutte le funzioni di FTP, incluse alcune che SCP non gestisce, come rinominare e cancellare file remoti.

SFTP acts as an SSH subsystem and works on the standard SSH port 22. This avoids the need to open multiple ports in the firewall as more in the case of FTP, where the ports 20 and 21 must be opened for the control and data traffic. A client called SFTP sftp OpenSSH suite is available in the system in Linux.

Using a password-based authentication system (you can avoid it if the remote host allows password-less SSH authentication ), we see how you can start a session SFTP: sftp

david@192.168.1.1

sftp requires password, and if authentication is successful, it has a shell with the prompt sftp> . Inside the shell sftp, you can use commands similar to those available in the FTP as cd, lcd , ls , chmod, chgrp , get , put , rename, and rmdir . You can end the session by writing exit at the prompt.

Server SFTP

The OpenSSH suite is the most popular open source implementation of SSH. The sshd server is called . To accept incoming connections should therefore be that the sshd daemon is running and listening on the port of SSH server. To enable or disable SFTP, you can edit the main configuration file for sshd, which by default is / etc / ssh / sshd_config . SFTP is enabled by default, you can comment the following line to disable it:

Subsystem sftp / usr / libexec / openssh / sftp-server

You can restrict access to SFTP and SCP, like other features of SSH-based IP address of the connecting host by modifying the hosts.deny file that includes a line like this:

sshd: 192.168.1.1

To block an entire network, you can specify the network and the ' Address of the form:

sshd: 192.168.1.0/24

or

sshd: 192.168.1.0/255.255.255.0

The SFTP server can accept client operating on different operating systems. Some popular client on Windows systems are FileZilla, WinSCP and DataFreeway .

Client graphical user interface (GUI) for SFTP

In addition to the command line client to the OpenSSH suite, the file browsers in desktop environments like GNOME and KDE handle SFTP connections in graphical mode. In Nautilus on GNOME or Konqueror in KDE, you can write the following line:

sftp: / / david@192.168.1.1: / home / david

The file browser will ask for the password, if authentication is successful and lists the files on the remote server. You can drag and drop (ie, simply drag and drop files) of files to copy them, and use the context menu (right mouse button) to change the file properties such as name and access permissions. You can also do the double click to open the file in the editor or viewer for. You can also bookmark a directory based on sftp to access faster again.

There are other interesting developments in this bed as a new file system called SSH File System made over the SFTP client, to mount remote file systems in simplicity and safety.

Monday, May 28, 2007

Why Isnt Bigfoot On Monster Jam

if I wanted to create a blog?

I found this article interesting who picks up a bit 'resource on the web to create and manage a blog. I do a free translation ...

101 Essential Blogging Resources

Since there are many online tools and programs, it is about time someone writes a list of resources for bloggers. Luckily I took the responsibility to share some of the tools I use in my daily blogging. Not intended to be a complete list, so if something is missing, please let me know!



Registering a domain

To get started you need a web address to be reached:

    1. Namecheap - $ 8.88 per year with free service WhoisGuard
    2. GoDaddy - $ 8.95 per year
    3. 1 & 1 - $ 5.99 per year with free domain registration private
    4. MyDomain - $ 8.25 per year

Hosting
Now you need a house to store all the articles (posts) that you write on your blog - take a look at these services that offer web space:

    1. Dreamhost - Good plans, excellent prices for bandwidth and disk space.
    2. Frozen Webhost - Small but very reliable company for only $ 5 per month.
    3. Media Temple - Superb recommendation dedicated hosting.
    4. Rackspace - Dedicated Web Hosting, scalable for companies
    5. Hostgator - Shared Hosting for $ 6.95 per month
    6. Bluehost - cheap and reliable hosting solutions


Content Management Systems - Content Management Systems (aka CMS) software
These are the engine of your blog, so choose carefully. Consider the price and the ability to make changes:

    1. WordPress - It 's the industry standard and most used - and it's FREE!
    2. Blogger - fast creation of the blog, but FTP slow and low customization
    3. Typepad - another blogging platform, starting at $ 4.95/month
    4. Joomla - CMS and Web Application Framework free
    5. Drupal - Complete and powerful system for managing community-oriented news, rather than a web portal
    6. Squarespace - Publishing System to manage web sites and blogs


Communicate
To be a good blogger, you'll need with your fans. Instant Messaging and Email is the fastest and simplest ways to do this:

    1. Gmail - free webmail with more than 2 GB of space (and counting)
    2. Hotmail - free webmail with 2GB
    3. Yahoo Mail - webmail with unlimited space
    4. Outlook - Email client that can interface with MS Exchange Server to share mailboxes (mailboxes)
    5. Windows Live Messenger - Instant messaging program, which also communicates to contacts Yahoo!
    6. AIM - AOL Instant Messenger, chat free online service
    7. Gtalk - Communication System integrated into Gmail
    8. Yahoo Messenger - Free messaging with file sharing
    9. Basecamp - Software to collaborate and manage projects and activities
    10. Campfire - group chat for business businesses
    11. GoToMeeting - web conferencing service and online meetings
    12. Thunderbird - Email Software multiplatform Mozilla
    13. Meebo - IM service that supports MSN, Yahoo, AIM, Gtalk and Jabber
    14. Twitter - Social networking and microblogging service utilizing instant messaging, SMS or web interface
    15. Skype - Free calls between computers Online


Search
To be the best, you have to outdo the other, so you have to find out what your competitors and beat them on their home turf:

    1. Whois - Register a domain name and try
    2. Overture - Keyword Selection of web analytics, website
    3. Google Bid Analysis - Keyword Bid Tool in union with Adwords
    4. Wordz Tool - Keyword research 35/mese
    at $ 5. Firefox Search Status Extension - look at the performance of websites
    6. SEO for Firefox - Search tools of data and other tools

Customize
The blogosphere is important to stand out from the crowd. Look at these tools that can help give an attractive look to your blog:

    1. Wordpress Themes - Wordpress Themes collection with thumbnail graphics and text
    2. Template Monster - Premium Wordpress Themes $ 50
    3. Dreamweaver - Software to develop websites
    4. Adobe Photoshop CS3 - Image Editing Software for $ 649
    5. iStockPhoto - Image copyright free
    6. FlashDen - Buy stock flash, video, audio and fonts for less than € 0.50
    7. famfamfam - Together of icons available for free use
    8. Adobe Illustrator - Software leader in the design vector
    9. Filezilla - fast and reliable FTP client
    10. Cyberduck - Secure FTP for Mac OS X
    12. psd2html - online conversion service


Statistics
Check your blog with these statistical software to know what you're doing well and what you need to change:

    1. AWStats - Free log analyzer, usually already present in the configuration panel Cpanel hosting service
    2. Statcounter - web tracker and hit counter (counter of access) for free and reliable
    3. Sitemeter - Easy access and free counter statistics Site
    4. Google Analytics - Superb interface with detailed site statistics, integrated with Adwords campaigns
    5. Feedburner - Managing RSS feeds and reading
    6. Mint - Program extensible web analytics, all in one page!
    7. 103bees - Tool traffic analysis and search engine statistics
    8. pMetrics - performance metrics with detailed information about visitors and clean interface

Create post
The most important thing is to worry the drafting of the articles. Then you need to check the spelling of the post and layouts:

    1. ScribeFire - Blog Editor which is integrated into the full browser
    2. Spellbound Spell Checker - Firefox extension that enables spell checking
    3. Microsoft Word - Word processor standardized industrial
    4. Adobe Reader - PDF reader
    5. SlimTimer - Time control
    6. Ta-Da Lists - Simple list of things to do
    7. BlogDesk - Client free weblog and offline to create and publish posts

Rank
Check with these tools rankings your climb to the summit:

    1. Technorati - Search engine for blogs, popularity and authority
    2. BlogTopSites - Directory of the best Blog
    3. Alexa - traffic graphs and charts (sometimes may not be accurate)
    4. Live PageRank - Displays the current rating of the service Google Pagerank

feed readers
To retain readers, you read it yourself. Using a feed reader you can reduce the time taken to move from one site to another, and focus on a place where you can see the latest articles from many sites:

    1. Google Reader / Homepage - Web-based RSS Aggregator and News
    2. Bloglines - News aggregator can be used in place of a desktop client
    3. Newsgator - RSS reader and free online
    4. NetNewsWire - RSS reader for Mac Award-winning
    5. Socialist - Social Bookmarks Manager works with del.icio.us and RSS feeds
    6. FeedDemon - RSS Reader for Windows Desktop
    7. NetVibes - Aggregate personal support RSS and Atom
    8. NewsFire - Mac RSS with Style


Use Social Media social network can help you submit your site to a wide odience that is important for the growth of your blog. Spend time in the social network and vote for your favorite items to find new readers:

    1. Digg - Highlighting the community's preferred news
    2. Del.icio.us - Manager favorite online (social bookmarks). Using bookmarklets, you can add bookmarks to your list and organize them into categories
    3. StumbleUpon - Surf the internet with the StumbleUpon toolbar, you can generate a huge traffic
    4. Reddit - Links to news generated by users. Vote and promote stories on the front page
    5. MyBlogLog - Free Site Statistics and cute gadget to find out who is visiting your site
    6. LinkedIn - Community of 11 million professionals (including bloggers)
    7. Facebook - One of the social networking sites with the highest growth in net
    8. MySpace - Social networking with blog capabilities and ability to attract many friends!
    9. Squidoo - Create your lense (sub-site) and spread the news in your blog
    10. Ning - Create a Social Network

Making money with advertising
Whether you like it or not, blogs can be a great way to make money, then check out the following services on how to earn:

    1. Google Adsense and Adwords - contextual advertising solution and gain through the Pay-Per-Clicking
    2. Adbrite - Webmasters can buy and sell text and banner ads based on the subjects of their site
    3. Yahoo Publishers Network - Contextual Advertising
    with the RSS feed 4. Text Link Ads - Selling static HTML links on your blog
    5. Kontera - Text-based Cost-Per-Click
    6. Chitika - CPC Revenue-based view related products
    7. BlogAds - Banner advertising and text to images with monthly costs
    8. Amazon Associates - Create links to Amazon products and earn 10% commission from the sale
    9. Commission Junction - Company specializing in online advertising and markenti affiliate programs
    10. ReviewMe - Write reviews on products and websites, receiving a reward.
    11. Feedvertising - Sell link into your RSS feed for a fixed monthly price

Blogs
These blogs and forums are required reading for all aspiring bloggers, and then navigate in the archives and read some discussions to acquire greater knowledge of your field or your blog:

    1. Problogger - The No.1 site for blogging
    2. Daily Blog Tips - Mirato sulla promozione del blog, guadagnare e ottimizzare
    3. Blog Herald - Ottima risorsa per blog e notizie interessanti per blogger
    4. John Chow - Questo ragazzo fa molti soldi con il suo blog. Molti articoli centrati sul guadagnare online
    5. Digital Point - Sub-forum rivolto al blogging con aree riguardo SEO e ottimizzazione
    6. Namepros - Compra, vendi e discuti nomi di domini
    7. Sitepoint - Tutorial Web design e una vasta comunità
    8. Earners Forum - Pieno di persone che guadagnano online
    9. DoshDosh - Un blog che riguarda come fare soldi online attraverso l'affilizione a mercati and advertising services

Other resources
Finally, there are other tools that do not belong to other categories:

    1. Paypal - The best way to send and receive money online
    2. Nochex - online payment service company in the United Kingdom
    3. Escrow - external body that protects big transactions between sellers and buyers
    4. WorldPay - Solutions for e-payment and e-commerce
    5. CreativeCommons - To protect your items!
    6. Ezine Articles - Articles Subscribe to PR and authority
    7. ArticlePR - Tool to subscribe to articles
    8. PRWeb - Press Release Distribution for small business
    9. Six Figure Blogging - Blog Course designed by himself and Problogger Darren Rowse Andy Wibbels
    10. SEO Book - Aaron Wall's famous book about Search Engine Optimization (SEO)
    11. Blog Mastermind - Yaro Starak's blog mentoring program
    12. Flickr - Manage and share photos online

Thursday, May 24, 2007

How Much Does Vtech Fun Fair Cost

Ubuntu, let's make it impregnable!

On the web I found this interesting guide on how to secure the Ubuntu distro (which is what I use ;-) ) ... Italian official site can be found here

I do a translation down to earth thinking to make something pleasant, good reading ...


translation initiation

If you recently moved from Windows to Ubuntu Linux, you probably noticed a decrease in spyware - and malware in general - on your system. But although Ubuntu is listed as a highly-secure, you should know that the default installation of Ubuntu has its flaws, like any other operating system.

To combat these weaknesses, IT Security has prepared a guide to help you close the backdoors of your system and protect you from some exploits . Look at this big ol 'Ubuntu security resource as an introductory guide to safety in Ubuntu, accompanied by a list of useful software to protect you.

start

Incredibly, many new users of Ubuntu do not perform the basic steps towards the safety of their installation, even when they know better software. Fortunately, the list of critical changes is not long. Make changes may not be as exciting to add a whole new security software, but these simple changes are very close to the objective of bridging the gaps in security of Ubuntu.

Change the default settings (Default Settings)

Il primo gruppo di modifiche critiche ti richiedono di cambiare tre impostazioni insicure di sistema :

  • Riconfigurare la memoria condivisa
    Carica il tuo text editor preferito, apri il file "/etc/fstab" e aggiungi la seguente linea:
  • tmpfs /dev/shm tmpfs defaults,ro 0 0

  • Disabilitare accesso SSH root login
    Apri il file "/etc/ssh/sshd_config" e trova la seguente linea:
  • PermitRootLogin yes

    modificala in

    PermitRootLogin no

  • Limitare l'accesso al programma "su"
Apri il terminale dal "Applications" menu, select "Accessories" and select "Terminal"
From there enter the commands:

    sudo chown root: admin / bin / su sudo chmod 04750
    / bin / su

Enable Automatic Updates Security

Having set the previous three critical system settings, you better make sure your Ubuntu to boot in a relatively secure. But leaving it in this state is to be vigilant about updating the system. Since many of us forget to update regularly, to enable automatic update is one way to be sure it gets done.

To activate this feature, clicca su "Sistema" seleziona "Amministrazione" e scegli il menu "Sorgenti Software". Ora seleziona la scheda "Aggiornamenti" e attiva la voce "Verificare gli aggiornamenti" (specifica "Ogni giorno"). Ogni volta Ubuntu riceve un nuovo aggiornamento sarai avvisato tramite l'icona "Gestore Aggiornamenti" in alto a destra. E' tuo compito cliccare sull'icona e permettere al Gestore degli Aggiornamenti di scaricare e installare i files.

Mettere in sicurezza la cartella Home

L'ultimo cambiamento critico che raccomandiamo è quello di proteggere i tuoi documenti mettendo la cartella home in sicurezza . Il modo più semplice per farlo è cliccare su "Applicazioni" selezionare "Accessori" e scegliere "Terminale". Immetti il seguente comando:

chmod 0700 /home/username

(sostituisci "username" con il nome che usi per effettuare il login nel tuo computer).

Ora che hai effettuato queste piccole modifiche alle impostazioni del sistema, sei pronto ad andare avanti e installare del software che protegga il sistema da attacchi.

Installazione di sicurezza essenziale

A differenza del sistema operativo Windows, la distribuzione Ubuntu Linux non è molto vulnerabile alla diffusione di virus e infezione da parte di spyware, quindi il tipo di sicurezza usato per proteggere il computer è leggermente diverso da quello di un tipico Windows system.

Instead of spending hundreds of dollars on sophisticated firewalls, anti-spyware and intrusion prevensione systems, Ubuntu users simply have to install some free software that protects the kernel from exploits, by preventing the execution of malicious code and prevents programs and users to access computer areas not designated to them.

Software

Important To keep your computer secure, install the following software:

  • grsecurity - A complete suite to protect the Linux kernel.
  • PaX - The most critical part of grsecurity, prevent exploit di memoria . (E' una funzionalità standard in "grsecurity", devi installarlo solo se non installi la suite precedente.)
  • Pro Police - Soluzione IBM per proteggersi da attacchi di violazione dello stack .
  • DigSig - Verifica l'integrità dei file eseguibili tramite le firme digitali definite dall'utente prima di eseguirli. Se un programma è modificato sensa il tuo consenso la sua firma digitale cambia e DigSig non permette al programma di funzionare.

Sicurezza nella fase di Boot ( avvio del computer)

Un'area spesso trascurata, ma molto vulnerabile della protezione the computer is switching on the machine. Although the best policy (or rule) is to prevent physical access by unauthorized users, sometimes this is not possible. So this guide , in UbuntuForums , provides detailed instructions for protecting your computer during bootup.

The steps listed in this security measure is a bit 'complex than the skill of the average user, and need to write a few lines of scripting code, so we recommend you do this if you are comfortable with Ubuntu and Linux in general .

Security software tier

Congratulations, From this moment you have completed the steps necessary to achieve a basic level of security for your Ubuntu installation. Now you can feel reasonably safe, but there are still some aspects of vulnerability. It is up to you to decide if you want to bring your system to a higher level of security by integrating some applications of your choice.

Protection Rootkit

This guide is set up to prevent attacks that seek to install rootkits and backdoors on your machine, but sometimes there may be a malfunction. So it's a good idea to do a regular scan using the software that controls the computer is not compromised by rootkits.
  • chkrootkit - Checks for rookits, worms and LKM trojans.
  • Rootkit Hunter - Excellent tool to detect rootkits.

Antivirus

I know what you're thinking, anti-virus? ... This is Linux! It 's true, but it's important to get protection from all inbound and outbound files to protect even the less fortunate computer with Windows installed that may come in contact with our network machine.
  • Clam AntiVirus - One of the most popular antivirus based on UNIX. It works well with the mail server.
  • AVG Anti-Virus - Free version of a popular antivirus commercial version.
  • BitDefender - It 's a shell script that scans.
  • Panda Antivirus - Use sophisticated software to remove viruses from workstations connected to Linux servers.

Firewall Install and configure a firewall in an efficient manner is a great way to keep the attacks away. How much closer are the rules and polices the safety, the less likely that an attacker will find a way to compromise your system.
  • Firestarter - Firewall easy and versatile.
  • SmoothWall - network firewall solution very flexible in configuration and extremely potente.
  • HardWall Firewall - firewall che filtra pacchetti basato su Iptables.
  • Firewall Builder - Generatore di insiemi di regole per firewall quali iptables, ipfilter and pf.
  • BullDog - firewall basato su iptables, raccomandato solo per utenti molto esperti.

Network Tools

Questi tools sono importanti per monitorare e mettere in sicurezza la tua rete.
  • Nagios - Suite completa di controllo della rete.
  • Network Mapper - Usa i pacchetti IP per effettuare uno scan della rete e determinare informazioni riguardanti gli hosts e i nodi della rete.
  • Wireshark - a tool to monitor and analyze network protocols.
  • Nessus - The definitive solution for you to scan a network for vulnerabilities.
  • EtherApe - Suite of network controllers feel.
  • tcpdump - Simple yet powerful tool to monitor the network.
  • tcptrace - Analyzes tcpdump file ie traffic control network.

Other Resources

In addition to the resources just mentioned, there are other programs that we recommend to get the most from your computing experience.
  • Snort - It 's the leading open source solution to prevent and detect intrusions.
  • OpenSSH - To transfer data to remote hosts securely.
  • OpenVPN - to secure a network virtual private network.
  • strongSwan - IPsec based VPN.
  • Kismet - Wireless network detector, sniffer and intrusion detection.
  • GNU Privacy Guard - Tool command line to encrypt and digitally sign data.
  • TrueCrypt - Allows you to create encrypted virtual disks.
  • Thunderbird - Mozilla Mail Client, molto sicuro.

Nota finale

Ricorda che il computer e la rete di conseguenza può essere sicura solo se l'utente lo consente. Per esempio se:

è chiaro che ci mettiamo in condizione di compromettere la sicurezza della nostra rete. Per ottenere un sistema realmente sicuro, devi avere una disposizione mentale alla sicurezza e indicare regole precise per le persone che vogliano usare il tuo computer o accedere alla tua rete.


Risorse

Per altre informazioni sulla sicurezza di Ubuntu, controllate le fonti che abbiamo usato per scrivere questa guida.
FINE TRADUZIONE

Ok, aspetto commenti...

Thursday, April 12, 2007

Vide De Tetas Grandes

Gazira Babeli: Collateral Damage

PRESS RELEASE(revised)
April 12, 2007
For Immediate Release:
Gazira Babeli: Collateral Damage
- a comprehensive survey of works from 2006-2007
location: Odyssey (38,30,23)


On April 16th 2007, the ExhibitA gallery on the Odyssey simulator within the
online virtual world called Second LifeT, will present the first
comprehensive look at the pioneering work of Gazira Babeli.
Gazira Babeli is an artist creating works within Second Life and a member of
Second Front - the first performance art group in Second Life. Gazira
labels herself a "code performer" and indeed the code is at the heart of her
work, tying it to the system at a deep level and reaching out to the viewer
in ways that inherent to the SL platform. Her pieces are alive with scripts
created using the Linden scripting language - a core component of Second
Life. A Campbells soup can that is a trap, and a self proclaimed menace
disguised as pop art, encases the viewer and takes him on a ride proclaiming
"you love pop art, pop art hates you" until the unsuspecting avatar manages
to run fast enough to escape. The sky filled with question marks, a
vengeful tornado, these are a few of Gaz's signature works that can be seen
on her site: gazirababeli.com. In the spirit of opensource - Gazira has
licensed much of her code via creative commons, and you can download it for
your own use on her site: gazirababeli.com.

Please join us for the opening of this exhibit. Press are invited to attend
at 1pm SL time. The general opening is at 6pm SL time. Inquiries may be
directed to Beavis Palowakski: rushchris@mac.com , or to Sugar Seville:
sugarseville@gmail.com .

following are some press excerpts regarding Gazira Babeli.

"Born in Second Life on 31st March 2006, *Gazira Babeli*
( http://www.gazirababeli.com/ ) is an artist who turns the performativity of
the code into performance itself. Weedy and flexuous in her long black dress
which covers fashionably her polygonal haunches, Gazira radiates a strange
charm that makes her somebody in between a Voodoo witch and an X-men
heroine. Her charm that becomes even more evident during her masterful
performances, in which she activates scripts as if they were spells, makes
earthquakes happens, provokes natural fatalities and invasions of pop icons
(in the place of the biblical locusts). Gazira Babeli is NOT the project of
an artist who works in Second Life. She IS an artist, who makes, records and
signs performances based on code. She is real, like you and me, even if her
action platform is a world of bits."

- Domenico Quaranta
2006-12-02

"Linden Labs is a Fluxus-Project", jokes Gazira Babeli, the pizza-throwing
Second-Life-Artist and makes a reference to the Slogan of Linden Labs. "Your
World. Your Imagination". This is a indication for the fact, that in the
metaverse art and life are connected as far like the fluxus-artist would
have wanted to, she remarks ironically.

Gazira Babeli is one of the few artists, who has created works, which are
subversively inflitrating the friendly environment of cyber-suburbia SL.

- Kunstzeitung
March 2007

_

We keep forgetting that what we call Real Life has been a virtual frame for
a long time. Second Life offers the chance to build and deconstruct this
space in the form of a theatre performance. What's the difference? I'm
trying to find out. For the moment I like to say: my body can walk barefoot,
but my avatar needs Prada shoes.

March 23, 2007
Interview with Gazira Babeli by Tilman Baumgärtel
http://www.turbulence.org/blog/archives/003987.html
_

Gazira: To realize an "artistic" or "aesthetic" experience, it requires a
frame-space that is contemporarily physical and conceptual; it could be a
frame, a museum, a computer network, a bedroom... or just a plain box
'dressed' like a RL art-galley. This referential "cube gallery" reminds me
of the ironical artwork made by Marcel Duchamp called "Box in a valise"
(Boîte-en-valise, 1942)
Although the "gallery box" could be a valid expression, I prefer thinking
environment as the whole SL (a kind of) frame-space. It Means That
scripted and built objects, avatar-people and Their behaviors Become Essentially
parts of the artwork ... a "world in a valise, in this case. :)

Interview with Jeremy Turner (Wirxli Flimflam) for Slatenight magazine

Saturday, February 17, 2007

Which Port In A Sony Tv Connects To Harddrive

HK (sometimes) Down!

HK in recent months, often down!
I thank especially those who have written in this blog and in email to indicate the status of Hong Kong. I want to reassure you ... then HK live.
We only have a problem with the database and the time available. We are so busy with other things (work, daughter, etc etc) that we do not even realize that HK is not running.
We assure you that HK does not abandon it and even if we were to update it soon, what's done is and will remain forever.
But it is actually working on a big project. Review the entire site structure, making it easier and more accessible. Make sure that you can use them better and above all to participate fully. But it is a long job. We do not get discouraged. A touching you just have a little patience ... It
aavrete, we are sure! :)

Friday, January 19, 2007

The Sims 2 Bon Voyage No Cd Mac

DOS ut des: The History of DOS

Ho iniziato un breve corso presso un Istituto Professionale Lecce and since it always starts from the history of computing, I came back the urge to take a dip in the past. I was reminded of the early '80s when the personal computer (PC launched by IBM) was a pipe dream for us kids to school or so. There was a drawing almost religious sect, who was crossing the difficulties of the Commodore VIC 20, C64, etc. ... before coming to a compatible PC, my baptism was an Olivetti PC1 Prodest in 1989 (1,000,000 paid to Lire). Yes, sometimes I thought back to those times when the computer was really a passion and achieve small successes also cost enormous sacrifices, there was a natural selection ... While surfing I found this

site, very nice Italian Computermuseum that the name suggests that it is a museum of the PC. What to say to me is moving to revise the image of the magazines of the time, the technical specifications, the characters that have made the history of ICT. Ok I recover ...

All this has a name, Retrocomputing and sooner or later, those who love the computer can not help but think about the origins. As the hardware without software is like a body without a soul, forgive this digression poetic ;-), I thought I'd go looking for something on the DOS, the old friend black screen with the prompt C:> . Well I found an interesting site Father's DOS the brilliant but unfortunate Tim Paterson (pictured) which is a very interesting history of DOS I took the liberty of translating into Italian. Mind you, just an almost literal translation, but it makes it a good idea of \u200b\u200bhow things really went. Nothing new if you've seen the beautiful film The Pirates of Silicon Valley of 1999 hours is practically unavailable in VHS to DVD (but if you have a look on p2p ...), but very nice as to tell the grandchildren! History of DOS

Translation: ".. but how do you upload a file?"

Monday, January 15, 2007

Spotting Scopes Military




It is also the title of a bella canzone di Raf, ma in questo post vorrei invece parlare di trashware cioè come facciamo morire giovani i nostri PC in nome di una folle corsa consumistica. In effetti capita a tutti di sentirsi arretrati se utilizziamo un computer con un PIII o un Sempron, ma guardandosi attorno si scopre che esistono letteralmente montagne di PC che sono condannati ad una obsolescenza tecnologica spesso non reale, o meglio commercialmente imposta. Si, perchè per fare girare i nuovi sistemi operativi spesso non basta aumentare la RAM , bisogna proprio cambiare il computer. Ma è sempre così, bisogna acquistare un nuovo computer solo per usare del software più recente? La risposta è NO, non solo perchè there is an alternative, but also because it must be countered by informed consumers, this way of squeeze.
A lthough there are in Italy on trashware to design interesting, which are groups of fans who considered obsolete PCs retrieve and save them from the landfill by installing free software, such as Linux. The reference site in Italy is Trash!
Italy and contains many interesting documents. If you want to hear debate on this issue, we mark this discussion list alternating periods of enthusiasm for a crushing disappointment for partecipanzione membership.
The topic certainly deserves attention, I read GOLEM material, historical group of Empoli drew up an interesting how-to that found at the site of Trash! Italy. I felt like I try, I hope to involve other friends ...

Wednesday, January 10, 2007

Growth Hormone Stimulant Comments

When was a mad rush love



Linux in 1995 I met in college. A friend had lent me a book on the Slackware distro and defiantly invited me to try.
not remember how many days I finally managed to install it, but I remember that I gave up soon after ... I was too immature! In the coming years I bought a few magazines here and there, but I decided to throw in the enterprise. At the end almost two years ago, after yet another crash of my laptop, the revelation ... I WANT TO LINUX ....
I knew I had to study hard, I had to start from scratch in my pseudo computer skills, but the idea of \u200b\u200bscorched earth and again I really liked. I began to understand what a distro (aka distribution for humans), which and how many there were, and the more I read, the more I felt small and insignificant. I felt also the distrust and the giggles of my "friends" who rejoiced, not so quietly, for my every failure. The first months were very hard, because I want to change distro every day in fear of having the wrong choice, and reading the reviews I did fascinate the new release that turns in an absurd pace. The CD and DVD magazines piled up, sometimes even without being able to watch them. I had fleeting contact with Mandrake, Suse, Vector Linux, Simply Mepis, but finally I found what I was looking for: UBUNTU
It is almost a year I happily with Ubuntu (recently updated to version Edgy) and I feel satisfied . Certainly not disdain to install some other distro like Puppy Linux, Fluxbuntu, PCLinuxOS, but this time on other PCs that have now filled my small studio at home ....