<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-20127583</id><updated>2012-01-11T20:31:21.001+07:00</updated><category term='linux'/><category term='apache'/><category term='mail'/><category term='carijejak'/><category term='proxy'/><category term='mysql'/><category term='web'/><category term='php'/><category term='security'/><category term='device'/><category term='NMS'/><category term='pf'/><category term='GD'/><category term='file share'/><category term='life'/><category term='www'/><category term='cisco'/><category term='mrtg'/><category term='pengenalan'/><category term='dns'/><category term='tembokgeni'/><category term='wireless'/><category term='FTP'/><category term='tips'/><category term='debian'/><category term='script'/><category term='samba'/><category term='instalasi'/><category term='snmp'/><category term='freebsd'/><category term='satpam'/><category term='port'/><category term='radius'/><category term='update'/><category term='hardware'/><category term='utility'/><category term='database'/><title type='text'>My Blog</title><subtitle type='html'>dicatat dibagi semoga bermanfaat</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default?start-index=101&amp;max-results=100'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>111</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-20127583.post-3463784692160410664</id><published>2011-12-15T11:39:00.002+07:00</published><updated>2011-12-15T11:43:33.212+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='www'/><category scheme='http://www.blogger.com/atom/ns#' term='port'/><category scheme='http://www.blogger.com/atom/ns#' term='apache'/><title type='text'>Apache22 Port di FreeBSD 8.2 Stable</title><content type='html'>Kemarin setelah update ke FreeBSD stable 8.2 dan CVsup  it coz me trouble.&lt;br /&gt;In da middle on installation i got&lt;br /&gt;&lt;br /&gt;/usr/ports/www/apache22/work/httpd-2.2.16/support/htpasswd.c:133: undefined reference to `apr_generate_random_bytes'&lt;br /&gt;*** Error code 1&lt;br /&gt;1 error&lt;br /&gt;&lt;br /&gt;it made me frustated, after a day search and following instruction from freebsd forum i got nothing. so i assume that maybe something wrong with the port and i have to fix it. &lt;br /&gt;&lt;br /&gt;Here is the solution i've found from the inet to fix a broken port.&lt;br /&gt;It works for me .. :)&lt;br /&gt;&lt;br /&gt;# Change into the ports directory&lt;br /&gt;cd /usr/ports/&lt;br /&gt;# First fetch ports index&lt;br /&gt;make fetchindex&lt;br /&gt;# Build the ports database&lt;br /&gt;portsdb -u&lt;br /&gt;# Show out of date ports&lt;br /&gt;pkg_version -l "&amp;lt;"&lt;br /&gt;# Upgrade ports&lt;br /&gt;portupgrade -arR&lt;br /&gt;# Check for stale dependencies&lt;br /&gt;pkgdb -F&lt;br /&gt;# Clean out work directories and delete old distfiles&lt;br /&gt;portsclean -CDD                                 _________________&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-3463784692160410664?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/3463784692160410664/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=3463784692160410664' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3463784692160410664'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3463784692160410664'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/12/apache22-port-di-freebsd-82-stable.html' title='Apache22 Port di FreeBSD 8.2 Stable'/><author><name>Run</name><uri>http://www.blogger.com/profile/17015113499951735876</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2963869949815210623</id><published>2011-11-08T10:48:00.003+07:00</published><updated>2011-11-08T10:52:57.209+07:00</updated><title type='text'>Next...</title><content type='html'>Ternyata banyak sekali aplikasi di OS yg kupake ini yg sangat berguna&lt;br /&gt;tapi aku belum tahu, dan sekarang sudah tahu tambah bingung..&lt;br /&gt;mau yg mana duluan..&lt;br /&gt;baru coba ngoprek openLDAP kok malah macet..&lt;br /&gt;hikss...&lt;br /&gt;&lt;br /&gt;belum lagi HAST untuk clustering storage..&lt;br /&gt;uCARP untuk balancingnya..&lt;br /&gt;Wow..&lt;br /&gt;Wow..&lt;br /&gt;Wowowowow...&lt;br /&gt;Speechless...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2963869949815210623?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2963869949815210623/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2963869949815210623' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2963869949815210623'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2963869949815210623'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/11/next.html' title='Next...'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5441736273612714775</id><published>2011-11-04T11:12:00.003+07:00</published><updated>2011-11-08T10:51:43.099+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mysql'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><category scheme='http://www.blogger.com/atom/ns#' term='database'/><title type='text'>mengaktifkan log pada mysql</title><content type='html'>Buat directory log mysql, misal&lt;br /&gt;mkdir /var/log/mysql&lt;br /&gt;chown mysql:mysql /var/log/mysql&lt;br /&gt;&lt;br /&gt;Tambahkan baris berikut pada config file mysql my.cnf&lt;br /&gt;&lt;br /&gt;[mysqld_safe]&lt;br /&gt;log-error=/var/log/mysql/error.log&lt;br /&gt;&lt;br /&gt;# The MySQL server&lt;br /&gt;[mysqld]&lt;br /&gt;log-error=/var/log/mysql/error.log&lt;br /&gt;&lt;br /&gt;restart mysql&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5441736273612714775?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5441736273612714775/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5441736273612714775' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5441736273612714775'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5441736273612714775'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/11/mengaktifkan-log-pada-mysql.html' title='mengaktifkan log pada mysql'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6748655175683297577</id><published>2011-07-02T13:07:00.001+07:00</published><updated>2011-07-02T13:07:47.678+07:00</updated><title type='text'>Instalasi dan Konfigurasi SYSLOG-NG dengan database MYSQL.</title><content type='html'>SYSLOG-NG adalah daemon yang bisa digunakan untuk menggantikan syslogd di FreeBSD atau di Linux yang berfungsi untuk merekam log2 yang ada, baik itu server berbasis linux, bsd ataupun mikrotik ;)&lt;br /&gt;Dengan SYSLOG-NG yang digabung dengan database MySQL maka kita bisa menyimpan semua log secara terpusat dalam satu database, sehingga mudah untuk di manage.&lt;br /&gt;&lt;br /&gt;Untuk Web Interface tampilan log saya memakai php-syslog-ng yg bisa di download di http://php-syslog-ng.googlecode.com/files/php-syslog-ng-2.9.8.tgz&lt;br /&gt;Syaratnya server anda sudah ada webserver support php&lt;br /&gt;&lt;br /&gt;# cd /usr/local/www&lt;br /&gt;# fetch http://php-syslog-ng.googlecode.com/files/php-syslog-ng-2.9.8.tgz&lt;br /&gt;# tar -xzvf php-syslog-ng-2.9.8.tgz&lt;br /&gt;# chown -R www:www php-syslog-ng&lt;br /&gt;# edit httpd.conf &lt;br /&gt;Alias /log "/usr/local/www/php-syslog-ng/html/"&lt;br /&gt;&lt;Directory "/usr/local/www/php-syslog-ng/html/"&gt;&lt;br /&gt;    Options None&lt;br /&gt;    AllowOverride None&lt;br /&gt;    Order allow,deny&lt;br /&gt;    Allow from all&lt;br /&gt;&lt;/Directory&gt;&lt;br /&gt;&lt;br /&gt;Jika sudah selesai langsung restart webserver dan akses http://ipserver/log&lt;br /&gt;Akan muncul menu instalasi php-syslog, pastikan fitur2 PHP dan file web sudah sesuai (tidak ada warning) klik next, centang konfirmasi, next.&lt;br /&gt;Isikan user root dan password mysql, nama database yang akan digunakan untuk menyimpan log, dan user untuk database dan password (user dan password ini diingat2 yah, karena untuk &lt;br /&gt;konfigurasi syslog servernya), &lt;br /&gt;Misalkan disini &lt;br /&gt;user mysql : syslog&lt;br /&gt;pass mysql : 123abc&lt;br /&gt;nama db : syslogserv&lt;br /&gt;&lt;br /&gt;Hilangkan centang dimenu bawah, klik next. next akan muncul :&lt;br /&gt;&lt;br /&gt;URL   : http://ipserver/log&lt;br /&gt;site    : log/ (ingat belakang harus ada backslash)&lt;br /&gt;email : abc@aaaa.com&lt;br /&gt;passwd : syslogadmin&lt;br /&gt;&lt;br /&gt;Klik next, akan muncul user : admin passwd: syslogadmin&lt;br /&gt;&lt;br /&gt;Selesaaiiii.. hehe untuk web interface sama database doang hehe..&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Selanjutnya install via port :&lt;br /&gt;# cd /usr/ports/sysutils/syslog-ng&lt;br /&gt;# make install clean&lt;br /&gt;# cd /usr/local/etc/syslog-ng/&lt;br /&gt;# cp syslog-ng.conf.sample syslog-ng.conf&lt;br /&gt;&lt;code&gt;&lt;br /&gt;options { long_hostnames(off); &lt;br /&gt;   sync(0);&lt;br /&gt;   use_dns(yes);&lt;br /&gt;   use_fqdn(no); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# sources&lt;br /&gt;#&lt;br /&gt;source src { unix-dgram("/var/run/log");&lt;br /&gt;             unix-dgram("/var/run/logpriv" perm(0600));&lt;br /&gt;             internal(); file("/dev/klog"); };&lt;br /&gt;&lt;br /&gt;source netsrc { udp(ip("0.0.0.0") port(514));&lt;br /&gt;                tcp(ip("0.0.0.0") port(514)); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# destinations&lt;br /&gt;#&lt;br /&gt;destination messages { file("/var/log/messages"); };&lt;br /&gt;destination security { file("/var/log/security"); };&lt;br /&gt;destination authlog { file("/var/log/auth.log"); };&lt;br /&gt;destination maillog { file("/var/log/maillog"); };&lt;br /&gt;destination lpd-errs { file("/var/log/lpd-errs"); };&lt;br /&gt;destination xferlog { file("/var/log/xferlog"); };&lt;br /&gt;destination cron { file("/var/log/cron"); };&lt;br /&gt;destination debuglog { file("/var/log/debug.log"); };&lt;br /&gt;destination consolelog { file("/var/log/console.log"); };&lt;br /&gt;destination all { file("/var/log/all.log"); };&lt;br /&gt;destination newscrit { file("/var/log/news/news.crit"); };&lt;br /&gt;destination newserr { file("/var/log/news/news.err"); };&lt;br /&gt;destination newsnotice { file("/var/log/news/news.notice"); };&lt;br /&gt;destination slip { file("/var/log/slip.log"); };&lt;br /&gt;destination ppp { file("/var/log/ppp.log"); };&lt;br /&gt;destination console { file("/dev/console"); };&lt;br /&gt;destination allusers { usertty("*"); };&lt;br /&gt;#destination loghost { udp("loghost" port(514)); };&lt;br /&gt;# CISCO Destinations...&lt;br /&gt;destination netlog { file("/var/log/network/$HOST/$YEAR$MONTH$DAY.log" owner(root) group(wheel) perm(0644) create_dirs(yes)); };&lt;br /&gt;&lt;br /&gt;destination netsql&lt;br /&gt;                {&lt;br /&gt;                program("/usr/local/bin/mysql --user=syslog --password=123abc syslogserv &lt; /var/log/mysql.pipe");&lt;br /&gt;                pipe ("/var/log/mysql.pipe"&lt;br /&gt;                template ("INSERT INTO syslogserv.logs (host, facility, priority, level, tag, datetime, program, msg) VALUES ('$HOST', '$FACILITY', '$PRIORITY', '$LEVEL', '$TAG', '$ISODATE', '$PROGRAM', '$MESSAGE' );\n")&lt;br /&gt;                template_escape(yes));&lt;br /&gt;                };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# log facility filters&lt;br /&gt;#&lt;br /&gt;filter f_auth { facility(auth); };&lt;br /&gt;filter f_authpriv { facility(authpriv); };&lt;br /&gt;filter f_not_authpriv { not facility(authpriv); };&lt;br /&gt;filter f_console { facility(console); };&lt;br /&gt;filter f_cron { facility(cron); };&lt;br /&gt;filter f_daemon { facility(daemon); };&lt;br /&gt;filter f_ftp { facility(ftp); };&lt;br /&gt;filter f_kern { facility(kern); };&lt;br /&gt;filter f_lpr { facility(lpr); };&lt;br /&gt;filter f_mail { facility(mail); };&lt;br /&gt;filter f_news { facility(news); };&lt;br /&gt;filter f_security { facility(security); };&lt;br /&gt;filter f_user { facility(user); };&lt;br /&gt;filter f_uucp { facility(uucp); };&lt;br /&gt;filter f_local0 { facility(local0); };&lt;br /&gt;filter f_local1 { facility(local1); };&lt;br /&gt;filter f_local2 { facility(local2); };&lt;br /&gt;filter f_local3 { facility(local3); };&lt;br /&gt;filter f_local4 { facility(local4); };&lt;br /&gt;filter f_local5 { facility(local5); };&lt;br /&gt;filter f_local6 { facility(local6); };&lt;br /&gt;filter f_local7 { facility(local7); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# log level filters&lt;br /&gt;#&lt;br /&gt;filter f_emerg { level(emerg); };&lt;br /&gt;filter f_alert { level(alert..emerg); };&lt;br /&gt;filter f_crit { level(crit..emerg); };&lt;br /&gt;filter f_err { level(err..emerg); };&lt;br /&gt;filter f_warning { level(warning..emerg); };&lt;br /&gt;filter f_notice { level(notice..emerg); };&lt;br /&gt;filter f_info { level(info..emerg); };&lt;br /&gt;filter f_debug { level(debug..emerg); };&lt;br /&gt;filter f_is_debug { level(debug); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# program filters&lt;br /&gt;#&lt;br /&gt;filter f_ppp { program("ppp"); };&lt;br /&gt;filter f_slip { program("startslip"); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# host filters&lt;br /&gt;#&lt;br /&gt;&lt;br /&gt;# CISCO Filters&lt;br /&gt;filter f_netswitch001 {host("10.1.5.1"); };&lt;br /&gt;filter f_netswitch002 {host("10.1.5.2"); };&lt;br /&gt;filter f_netswitch003 {host("10.1.5.3"); };&lt;br /&gt;filter f_netswitch004 {host("10.1.5.4"); };&lt;br /&gt;filter f_netswitch005 {host("172.16.4.1"); };&lt;br /&gt;filter f_netrouter001 {host("10.1.5.9"); };&lt;br /&gt;filter f_netrouter002 {host("172.16.4.2"); };&lt;br /&gt;filter f_netserver001 {host("server1.example.com"); };&lt;br /&gt;filter f_netserver002 {host("server2.example.com"); };&lt;br /&gt;#&lt;br /&gt;# *.err;kern.warning;auth.notice;mail.crit  /dev/console&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_err); destination(console); };&lt;br /&gt;log { source(src); filter(f_kern); filter(f_warning); destination(console); };&lt;br /&gt;log { source(src); filter(f_auth); filter(f_notice); destination(console); };&lt;br /&gt;log { source(src); filter(f_mail); filter(f_crit); destination(console); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# *.notice;authpriv.none;kern.debug;lpr.info;mail.crit;news.err /var/log/messages&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_notice); filter(f_not_authpriv); destination(messages); };&lt;br /&gt;log { source(src); filter(f_kern); filter(f_debug); destination(messages); };&lt;br /&gt;log { source(src); filter(f_lpr); filter(f_info); destination(messages); };&lt;br /&gt;log { source(src); filter(f_mail); filter(f_crit); destination(messages); };&lt;br /&gt;log { source(src); filter(f_news); filter(f_err); destination(messages); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# security.*      /var/log/security&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_security); destination(security); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# auth.info;authpriv.info    /var/log/auth.log&lt;br /&gt;log { source(src); filter(f_auth); filter(f_info); destination(authlog); };&lt;br /&gt;log { source(src); filter(f_authpriv); filter(f_info); destination(authlog); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# mail.info      /var/log/maillog&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_mail); filter(f_info); destination(maillog); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# lpr.info      /var/log/lpd-errs&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_lpr); filter(f_info); destination(lpd-errs); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# ftp.info      /var/log/xferlog&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_ftp); filter(f_info); destination(xferlog); }; &lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# cron.*      /var/log/cron&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_cron); destination(cron); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# *.=debug      /var/log/debug.log&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_is_debug); destination(debuglog); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# *.emerg      *&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_emerg); destination(allusers); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# !startslip&lt;br /&gt;# *.*       /var/log/slip.log&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_slip); destination(slip); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# !ppp&lt;br /&gt;# *.*       /var/log/ppp.log&lt;br /&gt;#&lt;br /&gt;log { source(src); filter(f_ppp); destination(ppp); };&lt;br /&gt;&lt;br /&gt;#&lt;br /&gt;# CISCO Program Filters&lt;br /&gt;#&lt;br /&gt;log { source(netsrc); destination(netlog); };&lt;br /&gt;log { source(netsrc); destination(netsql); };&lt;br /&gt;&lt;br /&gt;&lt;/code&gt;&lt;br /&gt;taken from : http://www.freebsdwiki.net/index.php/Syslog-NG_Installation#Installation&lt;br /&gt;&lt;br /&gt;# mkfifo /var/log/mysql.pipe&lt;br /&gt;# ee /etc/rc.conf&lt;br /&gt;syslogd_enable="NO"&lt;br /&gt;syslog_ng_enable="YES"&lt;br /&gt;syslogd_program="/usr/local/sbin/syslog-ng"&lt;br /&gt;syslogd_flags=""&lt;br /&gt;&lt;br /&gt;Setelah saya cek ternyata field yg digenerate oleh php-syslog ada yg kurang jadi silahkan login ke mysql server dan tambahkan sbb :&lt;br /&gt;&lt;br /&gt;&lt;code&gt;&lt;br /&gt;CREATE TABLE `logs` (&lt;br /&gt;  `host` varchar(128) default NULL,&lt;br /&gt;  `facility` varchar(10) default NULL,&lt;br /&gt;  `priority` varchar(10) default NULL,&lt;br /&gt;  `level` varchar(10) default NULL,&lt;br /&gt;  `tag` varchar(10) default NULL,&lt;br /&gt;  `datetime` datetime default NULL,&lt;br /&gt;  `program` varchar(15) default NULL,&lt;br /&gt;  `msg` text,&lt;br /&gt;  `seq` bigint(20) unsigned NOT NULL auto_increment,&lt;br /&gt;  `counter` int(11) NOT NULL default '1',&lt;br /&gt;  `fo` datetime default NULL,&lt;br /&gt;  `lo` datetime default NULL,&lt;br /&gt;  PRIMARY KEY  (`seq`),&lt;br /&gt;  KEY `host` (`host`),&lt;br /&gt;  KEY `program` (`program`),&lt;br /&gt;  KEY `datetime` (`datetime`),&lt;br /&gt;  KEY `priority` (`priority`),&lt;br /&gt;  KEY `facility` (`facility`)&lt;br /&gt;) ENGINE=MyISAM AUTO_INCREMENT=9 DEFAULT CHARSET=latin1;&lt;br /&gt;&lt;/code&gt;&lt;br /&gt;&lt;br /&gt;Ok insya Allah sudah finish. Silahkan reboot server anda. Pastikan mysql server jalan dulu baru syslog-ng server.&lt;br /&gt;&lt;br /&gt;bersambungg...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6748655175683297577?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6748655175683297577/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6748655175683297577' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6748655175683297577'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6748655175683297577'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/07/instalasi-dan-konfigurasi-syslog-ng.html' title='Instalasi dan Konfigurasi SYSLOG-NG dengan database MYSQL.'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4232094881382336353</id><published>2011-07-01T09:06:00.000+07:00</published><updated>2011-07-01T09:07:39.049+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='mysql'/><category scheme='http://www.blogger.com/atom/ns#' term='database'/><title type='text'>Merubah data directory pada mysql server FreeBSD Server</title><content type='html'>Secara default, jika kita install mysql server via port maka data-data dari database yang ada dalam mysql server akan tersimpan pada dir /var/db/mysql&lt;br /&gt;Akan merepotkan kalau ternyata partisi /var kita terlalu kecil, sehingga data nambah sedikit aja partisi /var udah penuh.&lt;br /&gt;Ada 2 cara untuk mensiasati hal tsb, &lt;br /&gt;pertama ada merubah letak data directory pada file konfigurasi mysql kita my.cnf.&lt;br /&gt;Hal ini memerlukan perubahan pada file konfigurasi my.cnf &lt;br /&gt;# ee /var/db/mysql/my.cnf&lt;br /&gt;[mysqld]&lt;br /&gt;datadir=/data/mysqlbaru&lt;br /&gt;Create directory tempat data baru disimpan&lt;br /&gt;# mkdir /data/mysqlbaru&lt;br /&gt;merubah owner directory tsb menjadi milik mysql&lt;br /&gt;#chown -R mysql:mysql /data/mysqlbaru&lt;br /&gt;kemudian start mysql&lt;br /&gt;# /usr/local/etc/rc.d/mysql-server start&lt;br /&gt;&lt;br /&gt;Cara kedua adalah dengan memindah dan melakukan linking directory mysql.&lt;br /&gt;Detailnya sbb :&lt;br /&gt;&lt;br /&gt;matikan server : &lt;br /&gt;# /usr/local/etc/rc.d/mysql-server stop&lt;br /&gt;# cd /var/db&lt;br /&gt;pindahkan directory data mysql ke directory baru yang kapasitasnya lebih lega : &lt;br /&gt;# mv mysql /data&lt;br /&gt;lakukan linking directory&lt;br /&gt;# ln -s /data/mysql /var/db/mysql&lt;br /&gt;start server : &lt;br /&gt;# /usr/local/etc/rc.d/mysql-server start&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4232094881382336353?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4232094881382336353/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4232094881382336353' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4232094881382336353'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4232094881382336353'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/07/merubah-data-directory-pada-mysql.html' title='Merubah data directory pada mysql server FreeBSD Server'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7635482435700352222</id><published>2011-06-22T14:29:00.004+07:00</published><updated>2011-06-22T15:03:00.781+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='pf'/><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><title type='text'>Block http brute force dengan PF</title><content type='html'>Lumayan ada ilmu baru hasil diskusi dengan admin sebelah dan baca manual PF.&lt;br /&gt;Rulenya sbb :&lt;br /&gt;&lt;br /&gt;out_if = bce0&lt;br /&gt;table &lt;bruteforces&gt; persist&lt;br /&gt;pass quick from 10.10.3.0/29&lt;br /&gt;block quick from &lt;bruteforces&gt;&lt;br /&gt;&lt;br /&gt;pass in on $int_if proto { tcp } from any to 10.10.7.4 port 80 flags S/SA keep state \&lt;br /&gt;        (max-src-conn 2, max-src-conn-rate 5/5, overload &lt;bruteforces&gt; flush global)&lt;br /&gt;&lt;br /&gt;Penjelasan sbb :&lt;br /&gt;max-src-conn number&lt;br /&gt;    Limit the maximum number of simultaneous TCP connections which have completed the 3-way handshake that a single host can make. &lt;br /&gt;&lt;br /&gt;max-src-conn-rate number / interval&lt;br /&gt;    Limit the rate of new connections to a certain amount per time interval. &lt;br /&gt;&lt;br /&gt;Bagi saya yg awam sulit sekali memahami maksudnya, Hiks..&lt;br /&gt;So dicoba aja testing dengan rule diatas saya coba sebagai berikut :&lt;br /&gt;&lt;br /&gt;Saya membuka http://10.10.7.4 di 5 tab firefox dan saya reload dalam waktu bersamaan.Dan halaman masih bisa dibuka. &lt;br /&gt;Akan tetapi jika saya buka 6 halaman http://10.10.7.4 dengan browser berbeda maupun browser yg sama maka saya cek :&lt;br /&gt;&lt;br /&gt;# pfctl -t bruteforces -Tshow&lt;br /&gt;   10.10.7.1&lt;br /&gt;&lt;br /&gt;IP saya terjaring dalam rule tsb.&lt;br /&gt;&lt;br /&gt;Kemudian rule coba saya ubah &lt;br /&gt;pass in on $int_if proto { tcp } from any to 10.10.7.4 port 80 flags S/SA keep state \&lt;br /&gt;        (max-src-conn 1, max-src-conn-rate 5/5, overload &lt;bruteforces&gt; flush global)&lt;br /&gt;&lt;br /&gt;max-src-conn nya saya set 1 saja.&lt;br /&gt;&lt;br /&gt;Saya coba buka http://10.10.7.4 pada 1 tab saja di firefox dan coba buka halaman tsb di chrome.&lt;br /&gt;Alhasil :&lt;br /&gt;# pfctl -t bruteforces -Tshow&lt;br /&gt;  10.10.7.1&lt;br /&gt;&lt;br /&gt;Saya coba juga buka dengan IP berbeda, ternyata ip ke 2 langsung kena jaring&lt;br /&gt;&lt;br /&gt;# pfctl -t bruteforces -Tshow&lt;br /&gt;  10.10.7.10&lt;br /&gt;&lt;br /&gt;Saya menyimpulkan sbb :&lt;br /&gt;max-src-conn : berapa banyak browser yg akan di launch untuk mengakses web kita ternyata.&lt;br /&gt;Tidak membedakan IP. oh ternyata sekali buka browser dan akses itu dihitung 1 TCP connection hehe..&lt;br /&gt;max-src-conn-rate a/b : dalam b detik berapa a tab yg akan dibuka/direfresh.&lt;br /&gt;ada juga max-src-node : asumsi saya ini melimit berapa banyak ip yg boleh mengakses, tidak disarankan kalau web kita untuk umum.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7635482435700352222?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7635482435700352222/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7635482435700352222' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7635482435700352222'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7635482435700352222'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/06/block-http-brute-force-dengan-pf.html' title='Block http brute force dengan PF'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1693086522140904279</id><published>2011-03-18T09:56:00.003+07:00</published><updated>2011-03-18T10:50:02.046+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='instalasi'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Membangun Server dari Awal dengan FreeBSD (part1)</title><content type='html'>1. Optimasi Kernel&lt;br /&gt;Setelah instalasi yg perlu di perhatikan adalah kompile kernel.&lt;br /&gt;Buang device2 yang tidak diperlukan. eth driver, pcmcia dll.&lt;br /&gt;1. DIsable IPv6 &lt;br /&gt;2. DISABLE NFS&lt;br /&gt;&lt;br /&gt;Untuk option tambahan mgkn bisa ditambahkan pada kernel sbb : &lt;br /&gt;&lt;br /&gt;options         IPFIREWALL&lt;br /&gt;options         IPFIREWALL_VERBOSE&lt;br /&gt;options         IPFIREWALL_FORWARD&lt;br /&gt;options         IPFIREWALL_DEFAULT_TO_ACCEPT&lt;br /&gt;options         DUMMYNET&lt;br /&gt;options         IPFILTER&lt;br /&gt;options         IPFILTER_LOG&lt;br /&gt;&lt;br /&gt;#### PF OPTION ####&lt;br /&gt;device pf&lt;br /&gt;device pflog&lt;br /&gt;device pfsync&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2. Setting SSHD&lt;br /&gt;ee /etc/ssh/sshd.config&lt;br /&gt;&lt;br /&gt;Port 1234&lt;br /&gt;Protocol 2&lt;br /&gt;MaxAuthTries 2&lt;br /&gt;MaxSessions 8&lt;br /&gt;PermitRootLogin no&lt;br /&gt;#StrictModes yes&lt;br /&gt;#RSAAuthentication yes&lt;br /&gt;#PubkeyAuthentication yes&lt;br /&gt;#AuthorizedKeysFile     .ssh/authorized_keys&lt;br /&gt;PermitEmptyPasswords no&lt;br /&gt;UseDNS no&lt;br /&gt;Banner none&lt;br /&gt;# override default of no subsystems&lt;br /&gt;Subsystem       sftp    /usr/libexec/sftp-server&lt;br /&gt;AllowUsers user1&lt;br /&gt;AllowUsers user2&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;3. Setting TTYS&lt;br /&gt;# If console is marked "insecure", then init will ask for the root password&lt;br /&gt;# when going to single-user mode.&lt;br /&gt;console none                            unknown off insecure&lt;br /&gt;#&lt;br /&gt;ttyv0   "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;# Virtual terminals&lt;br /&gt;ttyv1   "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;ttyv2   "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;#ttyv3  "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;#ttyv4  "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;#ttyv5  "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;#ttyv6  "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;#ttyv7  "/usr/libexec/getty Pc"         cons25  on  secure&lt;br /&gt;ttyv8   "/usr/local/bin/xdm -nodaemon"  xterm   off secure&lt;br /&gt;&lt;br /&gt;Saran dari Dru Lavigne sbb :&lt;br /&gt;&lt;br /&gt;General Hardening Tips&lt;br /&gt;&lt;br /&gt;• restricting ssh access using the AllowUsers keyword in / etc/ssh/sshd_config&lt;br /&gt;• using chflags to set the schg flag on system binaries and configuration files that&lt;br /&gt;don't require modifications&lt;br /&gt;• implementing a file integrity checking system such as tripwire&lt;br /&gt;(http:/ /www.tripwire.com), aide (http:/ /www.cs.tut.fi/~rammer /aide.html)or&lt;br /&gt;implementing your own using mtree&lt;br /&gt;• changing /etc/motd removing the COPYRIGHT notice&lt;br /&gt;• subscribing to the FreeBSD security advisories mailing list&lt;br /&gt;(http:/ /lists.freebsd.org/mailman/listinfo/freebsd- security- notifications)&lt;br /&gt;• reviewing mount(8) to see if any options are applicable to your filesystems&lt;br /&gt;• reviewing your sysctl(8) settings; http:/ /sysctl.enderunix.org/ provides some&lt;br /&gt;helpful descriptions&lt;br /&gt;• reviewing your rc.conf(5) settings&lt;br /&gt;Finally, do:&lt;br /&gt;• read root's emails daily and have a log review action plan&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1693086522140904279?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1693086522140904279/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1693086522140904279' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1693086522140904279'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1693086522140904279'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/03/membangun-server-dari-awal-dengan.html' title='Membangun Server dari Awal dengan FreeBSD (part1)'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6713078119599228262</id><published>2011-03-18T09:24:00.001+07:00</published><updated>2011-03-18T09:24:49.198+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>General hardening tips from Dru..</title><content type='html'>does this system really need IPv6 support?&lt;br /&gt;• do I really want NFS (and its inherent security risks) on an Internet facing server?&lt;br /&gt;• should I be loading filesystems I'll never use? (e.g. DOS, CD9660)&lt;br /&gt;• do I need SCSI drivers on a non- SCSI system?&lt;br /&gt;• do I need hardware RAID drivers if I'm using software RAID?&lt;br /&gt;• do I really need to load dozens of NIC drivers if I always buy the same brand of NIC?&lt;br /&gt;• do I need PCMCIA or wireless support on a non- laptop system?&lt;br /&gt;• will I be using USB or Firewire?&lt;br /&gt;&lt;br /&gt;KERNEL&lt;br /&gt;&lt;br /&gt;1. DIsable IPv6 &lt;br /&gt;2. DISABLE NFS&lt;br /&gt;&lt;br /&gt;There are many tools available to create a custom backup solution, ranging&lt;br /&gt;built- in FreeBSD utilities to third- party software applications available through&lt;br /&gt;ports collection. In a more complex scenario you may wish to investigate:&lt;br /&gt;• bacula http://www.bacula.org&lt;br /&gt;• rsnapshot http://www.rsnapshot.org&lt;br /&gt;• boxbackup http://www.fluffy.co.uk/boxbackup/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;General Hardening Tips&lt;br /&gt;&lt;br /&gt;• restricting ssh access using the AllowUsers keyword in / etc/ssh/sshd_config&lt;br /&gt;• using chflags to set the schg flag on system binaries and configuration files that&lt;br /&gt;don't require modifications&lt;br /&gt;• implementing a file integrity checking system such as tripwire&lt;br /&gt;(http:/ /www.tripwire.com), aide (http:/ /www.cs.tut.fi/~rammer /aide.html)or&lt;br /&gt;implementing your own using mtree&lt;br /&gt;• changing /etc/motd , adding an ssh banner, and removing the COPYRIGHT notice&lt;br /&gt;• subscribing to the FreeBSD security advisories mailing list&lt;br /&gt;(http:/ /lists.freebsd.org/mailman/listinfo/freebsd- security- notifications)&lt;br /&gt;• reviewing mount(8) to see if any options are applicable to your filesystems&lt;br /&gt;• reviewing your sysctl(8) settings; http:/ /sysctl.enderunix.org/ provides some&lt;br /&gt;helpful descriptions&lt;br /&gt;• reviewing your rc.conf(5) settings&lt;br /&gt;Finally, do:&lt;br /&gt;• read root's emails daily and have a log review action plan&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6713078119599228262?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6713078119599228262/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6713078119599228262' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6713078119599228262'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6713078119599228262'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/03/general-hardening-tips-from-dru.html' title='General hardening tips from Dru..'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2427416479100889360</id><published>2011-03-03T09:27:00.000+07:00</published><updated>2011-03-03T09:29:22.990+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='proxy'/><title type='text'>Lusca/cacheboy</title><content type='html'>Lagi nyoba cacheboy tapi belum berhasil yang Tproxy karena mesinku amd. Googling nemu artikel berikut. Semoga bermanfaat&lt;br /&gt;Diambil dari : http://hikmah-teknologi.blogspot.com/&lt;br /&gt;&lt;br /&gt;LUSCA TPROXY on FREEBSD-7-STABLE&lt;br /&gt;patch kernel:&lt;br /&gt;cd /usr/src&lt;br /&gt;fetch http://squid-proxy-pkg.googlecode.com/files/freebsd-tproxy-sys.patch&lt;br /&gt;path -p0 &lt; freebsd-tproxy-sys.patch&lt;br /&gt;&lt;br /&gt;di kernel : /sys/i386/conf/PROXY&lt;br /&gt;options IP_NONLOCALBIND&lt;br /&gt;options IPDIVERT&lt;br /&gt;options IPFIREWALL&lt;br /&gt;options IPFIREWALL_NAT&lt;br /&gt;options IPFIREWALL_VERBOSE&lt;br /&gt;options IPFIREWALL_FORWARD&lt;br /&gt;options IPFIREWALL_DEFAULT_TO_ACCEPT&lt;br /&gt;options IP_NONLOCALBIND&lt;br /&gt;options LIBALIAS&lt;br /&gt;&lt;br /&gt;#option tunning for squid&lt;br /&gt;options VFS_AIO&lt;br /&gt;options MAXFILES=262144&lt;br /&gt;options MSGMNB=32768&lt;br /&gt;options MSGMNI=82&lt;br /&gt;options MSGSEG=4096&lt;br /&gt;options MSGSSZ=128&lt;br /&gt;options MSGTQL=2048&lt;br /&gt;options SHMSEG=32&lt;br /&gt;options SHMMNI=256&lt;br /&gt;options SHMMAX=4194304&lt;br /&gt;options SHMALL=16384&lt;br /&gt;makeoptions COPTFLAGS="-O2 -pipe -funroll-loops -ffast-math"&lt;br /&gt;makeoptions NO_MODULES=yes&lt;br /&gt;&lt;br /&gt;build kernel&lt;br /&gt;cd /usr/src&lt;br /&gt;make buildkernel KERNCONF=PROXY &amp;&amp; make installkernel KERNCONF=PROXY&lt;br /&gt;&lt;br /&gt;di /etc/sysctl.conf&lt;br /&gt;net.inet.ip.nonlocalok=1&lt;br /&gt;&lt;br /&gt;cp /usr/src/sys/netinet/in.h /usr/include/netinet&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;install squid&lt;br /&gt;pkg_add -v http://squid-proxy-pkg.googlecode.com/files/lusca-with-tproxy-r14371_3.tbz&lt;br /&gt;&lt;br /&gt;di /usr/local/etc/squid/squid.conf&lt;br /&gt;&lt;br /&gt;http_port XXX.INTERNAL.IP.XXX:3128 transparent tproxy&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;# em0 -&gt; External interface (to mikrotik)&lt;br /&gt;# em1 -&gt; Internal interface (to client)&lt;br /&gt;&lt;br /&gt;di /etc/ipfw.tproxy&lt;br /&gt;ipfw add fwd 192.168.1.1,3128 tcp from 192.168.1.0/24 to any 80 in via em1 # default rule to transparent proxy&lt;br /&gt;ipfw add fwd 192.168.1.1 tcp from any 80 to 192.168.1.0/24 in via em0 # catch the packets that come back using the clients IPs&lt;br /&gt;&lt;br /&gt;di rc.conf&lt;br /&gt;gateway_enable="YES"&lt;br /&gt;ifconfig_em0="192.168.0.1 255.255.255.252"&lt;br /&gt;ifconfig_em1="192.168.1.1 255.255.255.0"&lt;br /&gt;firewall_enable="YES"&lt;br /&gt;firewall_script="/etc/ipfw.tproxy"&lt;br /&gt;firewall_type="open"&lt;br /&gt;firewall_logging="YES"&lt;br /&gt;&lt;br /&gt;fsck_y_enable="YES"&lt;br /&gt;background_fsck="NO"&lt;br /&gt;&lt;br /&gt;squid_enable="YES"&lt;br /&gt;#disini tidak menggunakan bind taoi dnsmasq&lt;br /&gt;&lt;br /&gt;dnsmasq_enable="YES"&lt;br /&gt;dnsmasq_flags="--conf-file=/usr/local/etc/dnsmasq.conf"&lt;br /&gt;&lt;br /&gt;dan jangan lupa di router paling atas untuk membuat NAT dan static routes utk ip di bawah proxy&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2427416479100889360?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2427416479100889360/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2427416479100889360' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2427416479100889360'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2427416479100889360'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/03/luscacacheboy.html' title='Lusca/cacheboy'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7143697750927416862</id><published>2011-03-02T09:50:00.004+07:00</published><updated>2011-03-02T10:32:44.039+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='utility'/><category scheme='http://www.blogger.com/atom/ns#' term='proxy'/><title type='text'>Tproxy</title><content type='html'>Back to proxy, especially squid. Eh ada lagi yang namanya cacheboy.&lt;br /&gt;Cacheboy adalah optimasi dari squid stable 2. Menurut pemahaman saya sih cacheboy itu versi moddingnya squid 2 begitulah gampangnya. Nah waktu mencoba instalasi via port ada banyak option yang bisa di enable/disable. Nah berhubung sudah lama gak ngutik squid jadi perlu cari2 lagi fungsi2 option tsb. Antara lain :&lt;br /&gt;&lt;br /&gt;1. Delay pool : Fitur ini digunakan untuk limitasi bandwidth&lt;br /&gt;2. AUFS dan COSS : Ini adalah tipe file penyimpanan cache dari squid&lt;br /&gt;3. PF dan IPF transparent : Ini untuk mengaktifkan support PF firewall atau IPF firewall untuk transparent proxy&lt;br /&gt;4. Enable Tproxy : untuk mengaktifkan Tproxy.&lt;br /&gt;&lt;br /&gt;Penjelasan Tproxy dari internet sbb :&lt;br /&gt;&lt;br /&gt;Transparent Proxy (TProxy)&lt;br /&gt;&lt;br /&gt;Tproxy is truly transparent proxy. A transparent proxy or more precisely an interception proxy is the one that becomes transparent to the clients by transparently intercepting the http requests and serving the response, which means the client need not be explicitly configured to use the proxy but they are transparently sent to the proxy without the client's knowledge. Since the interception proxy forwards the request on behalf of the client, the web server see's the source of the request come from the proxy and hence it is not transparent to the web server.&lt;br /&gt;&lt;br /&gt;The tproxy feature comes into solving this issue and makes itself transparent to both for the client and the web server. However, the interception and/or tproxy feature requires kernel support and packet redirection feature of the operating system.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Note: To make still more truly transparent, the proxy should be configured not to add any extra headers while forwarding the request and serving the response.&lt;br /&gt;&lt;br /&gt;Nha kira2 terjemahannya spt ini.&lt;br /&gt;&lt;br /&gt;Tproxy adalah transparent proxy yg sebenar2nya. Transparent proxy atau proxy penangkap adalah proxy yang bekerja dengan menangkap paket http/browsing dari client secara transparan. Dengan kata lain, di sisi client tidak memerlukan adanya konfigurasi pengaktifkan proxy karena secara otomatis dan mau tidak mau akan lewat proxy.&lt;br /&gt;&lt;br /&gt;Karena proxy tsb menangkap paket dan melakukan koneksi ke webserver tujuan maka yg dikenali oleh webserver tujuan adalah IP dari proxy bukan dari client.&lt;br /&gt;&lt;br /&gt;Fitur dari Tproxy inilah kuncinya, sehingga webserver tujuan mengenali langsung ip client (tentu saja ip public). Fitur ini memerlukan pengaktifan pada kernel dari OS yang dipakai.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7143697750927416862?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7143697750927416862/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7143697750927416862' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7143697750927416862'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7143697750927416862'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/03/tproxy.html' title='Tproxy'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2372208774664772152</id><published>2011-03-01T13:55:00.005+07:00</published><updated>2011-03-01T13:59:24.848+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='utility'/><title type='text'>Install NTP Server di FreeBSD</title><content type='html'>Caranya mudah. Install saja ntp via port&lt;br /&gt;Kemudian &lt;br /&gt;# ee /etc/ntp.conf&lt;br /&gt;server 3.id.pool.ntp.org&lt;br /&gt;server 0.asia.pool.ntp.org&lt;br /&gt;server 2.asia.pool.ntp.or&lt;br /&gt;&lt;br /&gt;driftfile /var/db/ntp.drift&lt;br /&gt;&lt;br /&gt;Save file /etc/ntp.conf dengan konfigurasi di atas.&lt;br /&gt;Kemudian start service dengan perintah&lt;br /&gt;&lt;br /&gt; /etc/rc.d/ntpd start&lt;br /&gt;&lt;br /&gt;Kemudian jalankan perintah&lt;br /&gt;ntpdate -d localhost&lt;br /&gt;&lt;br /&gt;Jika ada pesan no server bla2. Maka coba tunggu kisaran 10 s/d 15 menit. Dan coba ulangi lagi sampai terjadi sinkronisasi sbb&lt;br /&gt;&lt;br /&gt;1 Mar 14:01:36 ntpdate[19223]: step time server localhost offset -225.715219 sec&lt;br /&gt;&lt;br /&gt;Jangan lupa untuk membuka port 123 udp.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2372208774664772152?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2372208774664772152/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2372208774664772152' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2372208774664772152'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2372208774664772152'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2011/03/install-ntp-server-di-freebsd.html' title='Install NTP Server di FreeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7643368473362171851</id><published>2010-11-05T18:19:00.002+07:00</published><updated>2010-11-05T18:23:39.824+07:00</updated><title type='text'>Angin duduk</title><content type='html'>Dapat info penting dari mas chakim yg istrinya kena angin duduk. berikut ini hal2 yang perlu diketahui.&lt;br /&gt;Penyebab :&lt;br /&gt;(1) Sering begadang/pengaruh angin malam&lt;br /&gt;(2) Hobi nahan kentut/boel&lt;br /&gt;(3) Lingkungan/cuaca dingin yang ekstrim dan terus menerus&lt;br /&gt;(4) Telat makan&lt;br /&gt;(5) Masuk angin biasa yang dibiarkan&lt;br /&gt;&lt;br /&gt;ciri2nya&lt;br /&gt;(1) rasanya seperti ada yg ngganjel di antara perut+dada &lt;br /&gt;(2) ingin sendawa/kentut tapi susah sekali dan meskipun bisa hampir tidak mengurangi rasa sakit no.1 &lt;br /&gt;(3) dibawa duduk/...bungkuk/jalan/bahkan berbaring pun sulit &lt;br /&gt;(4) badan rasanya dingin (bhs jawa: anyep)&lt;br /&gt;Beda sama masuk angin biasa : angin duduk tidak bisa hilang meski sudah dikerokin/minum obat masuk angin/dioles minyak angin yang panas sekalipun&lt;br /&gt;&lt;br /&gt;Cara mengatasi :&lt;br /&gt;Sebelumnya olesin perut + dada + pinggang + punggung dengan minyak cap kap*k, bila perlu kerokan, trus masak air, air hangat hasil masak tsb dimasukkan dalam 2 buah botol (botol kaca lebih bagus), botol pertama letakkan di ulu hati atau bagian perut depan tempat angin duduk ga mau keluar, botol kedua diletakkan pada kedua telapak kaki, posisi badan rebah menghadap ke atas, bila perlu pakai jaket + celana training + kaos kaki + selimut tebal, tunggu sampai keringat dingin keluar dan bisa kentut, jika setelah setengah jam tidak kunjung reda, ganti air dalam botol yang udah kurang dingin dengan air hangat baru, dan tempel lagi di tempat spt diatas, semoga bermanfaat, mengingat resiko angin duduk ini adalah meninggal dunia jika terlambat mengatasi (based on a true story)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7643368473362171851?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7643368473362171851/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7643368473362171851' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7643368473362171851'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7643368473362171851'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/11/angin-duduk.html' title='Angin duduk'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-212662395902290422</id><published>2010-10-27T10:32:00.002+07:00</published><updated>2010-10-27T10:37:25.382+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mail'/><category scheme='http://www.blogger.com/atom/ns#' term='php'/><category scheme='http://www.blogger.com/atom/ns#' term='web'/><title type='text'>postfix, sendmail dan php</title><content type='html'>Barusan lagi update script untuk checking quota di mysql.&lt;br /&gt;Scriptnya ini menggunakan PHP. Jika ada database yang melebihi quota yang disediakan maka akan di lock dan dikirim email pemberitahuan. &lt;br /&gt;Nah ternyata waktu check quota ada notifikasi error &lt;br /&gt;locking database /usr/sbin/sendmail not found.&lt;br /&gt;&lt;br /&gt;Sepertinya error tersebut terjadi karena saya baru migrasi dari sendmail ke postfix.&lt;br /&gt;Ternyata solusinya mudah. Pertama cari dulu binary sendmail&lt;br /&gt;&lt;br /&gt;# whereis sendmail&lt;br /&gt;sendmail: /usr/local/sbin/sendmail&lt;br /&gt;&lt;br /&gt;Kemudian edit php.ini pada bagian berikut :&lt;br /&gt;&lt;br /&gt;sendmail_path = /usr/local/sbin/sendmail -t -i -f noreply@domain.com&lt;br /&gt;&lt;br /&gt;restart webserver dan silhakan test kembali..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-212662395902290422?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/212662395902290422/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=212662395902290422' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/212662395902290422'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/212662395902290422'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/10/postfix-sendmail-dan-php.html' title='postfix, sendmail dan php'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2322287513002322192</id><published>2010-07-16T11:45:00.003+07:00</published><updated>2010-07-16T11:51:11.727+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='www'/><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><title type='text'>install eaccelerator di freebsd</title><content type='html'>cd /usr/ports/www/eaccelerator&lt;br /&gt;&lt;br /&gt;You have installed the eaccelerator package.&lt;br /&gt;Edit /usr/local/etc/php.ini and add:&lt;br /&gt;zend_extension="/usr/local/lib/php/20060613/eaccelerator.so"&lt;br /&gt;Then create the cache directory:&lt;br /&gt;mkdir /tmp/eaccelerator&lt;br /&gt;chown www /tmp/eaccelerator&lt;br /&gt;chmod 0700 /tmp/eaccelerator&lt;br /&gt;&lt;br /&gt;u can try to config :&lt;br /&gt;zend_extension="/usr/local/lib/php/20060613/eaccelerator.so"&lt;br /&gt;eaccelerator.shm_size="16"&lt;br /&gt;eaccelerator.cache_dir="/tmp/eaccelerator"&lt;br /&gt;eaccelerator.enable="1"&lt;br /&gt;eaccelerator.optimizer="1"&lt;br /&gt;eaccelerator.check_mtime="1"&lt;br /&gt;eaccelerator.debug="0"&lt;br /&gt;eaccelerator.filter=""&lt;br /&gt;eaccelerator.shm_max="0"&lt;br /&gt;eaccelerator.shm_ttl="0"&lt;br /&gt;eaccelerator.shm_prune_period="0"&lt;br /&gt;eaccelerator.shm_only="0"&lt;br /&gt;eaccelerator.compress="1"&lt;br /&gt;eaccelerator.compress_level="9"&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;eaccelerator.shm_size&lt;/span&gt;&lt;br /&gt;This setting will allow you to control the amount of shared memory eAccelerator should allocate to cache PHP scripts. The number sets the amount of memory in megabytes. Setting this value to 0 will use the default size.&lt;br /&gt;&lt;br /&gt;&lt;h2 id="eaccelerator.shm_size"&gt;eaccelerator.shm_size&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.shm_size"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;This setting will allow you to control the amount of shared memory   eAccelerator should allocate to cache PHP scripts. The number sets the  amount of  memory in megabytes. Setting this value to 0 will use the  default size.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.shm_size = "0"&lt;/pre&gt; &lt;p&gt;On Linux the maximum amount of memory a process can allocate is  limited by  the number set in /proc/sys/kernel/shmmax. Allocating more  than this value will  result in eAccelerator failing to initialise. The  size in this file is given in  bytes. You can raise this amount with:&lt;/p&gt; &lt;pre class="wiki"&gt;echo value &gt; /proc/sys/kernel/shmmax&lt;/pre&gt; &lt;p&gt;Where &lt;em&gt;value&lt;/em&gt; is the size in bytes you want to use. This value  is reset  to the default value evertime you reboot, but you can raise  it permanently by  adding the amount you need in /etc/sysctl.conf. This  is done by adding:&lt;/p&gt; &lt;pre class="wiki"&gt;kernel.shmmax = value&lt;/pre&gt; &lt;h2 id="eaccelerator.cache_dir"&gt;eaccelerator.cache_dir&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.cache_dir"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;This directory is used for the disk cache. eAccelerator stores  precompiled  code, session data, content and user entries here. The same  data can be stored  in shared memory (for quicker access). The default  value is “/tmp/eaccelerator”.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.cache_dir = "/tmp/eaccelerator"&lt;/pre&gt; &lt;p&gt;This is easy because that directory is easily writable to everyone,  and  mounted with noexec. However, it isn’t the best because on a lot of  systems this  directory is cleared on reboot. A better place is  &lt;em&gt;/var/cache/eaccelerator&lt;/em&gt;.  Create the directory and make sure it’s writable  to the process  eAccelerator runs under.&lt;/p&gt; &lt;p&gt;A safe bet is making it world writeable, a safer and cleaner way is  making  the user php runs under (most of the time the same user as  apache or lighttpd)  the owner and set 0644 permissions.&lt;/p&gt; &lt;p&gt;The lazy way:&lt;/p&gt; &lt;pre class="wiki"&gt;mkdir /tmp/eaccelerator&lt;br /&gt;chmod 0777 /tmp/eaccelerator&lt;/pre&gt; &lt;h2 id="eaccelerator.enable"&gt;eaccelerator.enable&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.enable"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;With this setting you can enable or disable eAccelerator. This may  seem like  a pretty stupid setting, but it can be very useful. For  example this setting can  also be used in the vhost section of the  Apache configuration. It allows you to  disable eAccelerator for a  certian vhost by placing &lt;em&gt;php_admin_value  eaccelerator.enable 0&lt;/em&gt;  in the vhost section.&lt;/p&gt; &lt;p&gt;Setting this value to “1″ enables eAccelerator, which is also the  default  value. Setting it to “0″ will disable eAccelerator.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.enable = "1"&lt;/pre&gt; &lt;h2 id="eaccelerator.optimizer"&gt;eaccelerator.optimizer&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.optimizer"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;Enables or disables the optimizer which may speed up code execution.  Setting  it “1″ will enable eAccelerator, “0″ disables it. By default  the optimizer is  enabled. The optimizer will only run when the script  is compiled before it’s  cached.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.optimizer = "1"&lt;/pre&gt; &lt;h2 id="eaccelerator.debug"&gt;eaccelerator.debug&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.debug"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;Enables or disables debug logging. Setting this to 1 will print  information  to the log file about the cache hits of a file. This is  only useful when  debugging eAccelerator for bug reports.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.debug = 0&lt;/pre&gt; &lt;h2 id="eaccelerator.log_file"&gt;eaccelerator.log_file&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.log_file"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;Set the log file for eaccelerator. When this option isn’t set then  the data  will be logged to stderr, when using PHP with Apache these  lines will be added  to the Apache error log.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.log_file = "/var/log/httpd/eaccelerator_log"&lt;/pre&gt; &lt;h2 id="eaccelerator.name_space"&gt;eaccelerator.name_space&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.name_space"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;When using the user cache api for storing data in shared memory, all  keys are  prepended by the hostname used for the current request. This  hostname equals the  &lt;a class="missing wiki" rel="nofollow" href="http://techgurulive.com/wiki/ServerName"&gt;ServerName?&lt;/a&gt; set  in  the vhost section of apache. This is done to avoid duplicate keys  between  vhosts. Sometimes this behaviour is desired to share data  between vhosts. When  setting this option this namespace is used to  prepend to each key. By default  this is set to “” which instructs  eAccelerator to use the hostname as namespace.&lt;/p&gt; &lt;p&gt;When setting this in the main PHP configuration file this namespace  will be  used by all vhosts. This value can also be set in the vhost  section or even in a  .htaccess file to allow sharing of data between  only two vhosts.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.name_space = ""&lt;/pre&gt; &lt;h2 id="eaccelerator.check_mtime"&gt;eaccelerator.check_mtime&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.check_mtime"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;On every hit eAccelerator will check the modification time of a  script to see  if it changed and needs to be recompiled. Although this  is a lot faster then  opening the file and compiling it, this still adds  some overhead because a  &lt;em&gt;stat&lt;/em&gt; call needs to be done every  time. This setting allows you to disable  this check. The downside of  disabling this check is that you need to manually  clean the  eAccelerator cache when you update a file.&lt;/p&gt; &lt;p&gt;By default this check is enabled.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.check_mtime = "1"&lt;/pre&gt; &lt;h2 id="eaccelerator.filter"&gt;eaccelerator.filter&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.filter"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;Determine which PHP files can be cached. You can specify the pattern  (for  example “*.php *.phtml”) the PHP script filename needs to match.  If a pattern  starts with “!”, the files that match that pattern are  excluded from the cache.  Default value is “” which will cache all  scripts PHP compiles.&lt;/p&gt; &lt;p&gt;Please note that eaccelerator.filter doesn’t work on a URL basis but  rather  on the absolute filesystem path, so a filter of !/home* would  exclude all  scripts in /home from being cached.&lt;/p&gt; &lt;p&gt;Multiple patterns need to be seperated by spaces or tabs, but not  commas.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.filter = ""&lt;/pre&gt; &lt;h2 id="eaccelerator.shm_max"&gt;eaccelerator.shm_max&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.shm_max"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;By default there is no limit on the maximum size a user can put in  shared  memory with functions like &lt;em&gt;eaccelerator_put&lt;/em&gt;, the  maximum size is  controlled by this setting. This value is the maximum  size that can be put in  the cache, the size is given in bytes (10240,  10K, 1M). The default value is “0″  which disables the limit.&lt;/p&gt; &lt;p&gt;&lt;strong&gt;This setting doesn’t affect the maximum size for a script”’ &lt;/strong&gt;&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.shm_max = "0"&lt;/pre&gt; &lt;h2 id="eaccelerator.shm_ttl"&gt;eaccelerator.shm_ttl&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.shm_ttl"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;When eAccelerator doesn’t have enough free shared memory to cache a  new  script it will remove all scripts from shared memory cache that  haven’t been  accessed in at least &lt;em&gt;shm_ttl&lt;/em&gt; seconds. By default  this value is set to “0″  which means that eAccelerator won’t try to  remove any old scripts from shared  memory.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.shm_ttl = "0"&lt;/pre&gt; &lt;h2 id="eaccelerator.shm_prune_period"&gt;eaccelerator.shm_prune_period&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.shm_prune_period"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;When eAccelerator doesn’t have enough free shared memory to cache a  script it  tries to remove old scripts if the previous try was made more  then  “shm_prune_period” seconds ago. Default value is “0″ which means  that  eAccelerator won’t try to remove any old script from shared  memory.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.shm_prune_period = "0"&lt;/pre&gt; &lt;h2 id="eaccelerator.shm_only"&gt;eaccelerator.shm_only&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.shm_only"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;Enable or disable caching of compiled scripts on disk. This has no  effect on  session data and content caching. Default value is “0″ which  allows eAccelerator  to use disk and shared memory cacche for scripts.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.shm_only = "0"&lt;/pre&gt; &lt;h2 id="eaccelerator.compress"&gt;eaccelerator.compress&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.compress"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;When using the eaccelerator_content_* api eAccelerator can compress  the  content before saving it to memory. By default this is set to “1″,  to disable  compression set it to “0″.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.compress = "1"&lt;/pre&gt; &lt;h2 id="eaccelerator.compress_level"&gt;eaccelerator.compress_level&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.compress_level"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;Compression level used for content caching. Default value is “9″  which is the  maximum compression level.&lt;/p&gt; &lt;pre class="wiki"&gt;eaccelerator.compress_level = "9"&lt;/pre&gt; &lt;h2 id="eaccelerator.keyssessioncontent"&gt;eaccelerator.keys | session |  content&lt;a class="anchor" title="Link to this section" href="http://techgurulive.com/wiki/Settings#eaccelerator.keyssessioncontent"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;These settings control the places eAccelerator may cache user  content.  Possible values are:&lt;/p&gt; &lt;ul&gt;&lt;li&gt;&lt;strong&gt;shm_and_disk&lt;/strong&gt; cache data in shared memory and on  disk  (default value)&lt;/li&gt;&lt;li&gt;&lt;strong&gt;shm&lt;/strong&gt; cache data in shared memory or on disk if  shared memory  is full or data size greater then “eaccelerator.shm_max”&lt;/li&gt;&lt;li&gt;&lt;strong&gt;shm_only&lt;/strong&gt; cache data in shared memory&lt;/li&gt;&lt;li&gt;&lt;strong&gt;disk_only&lt;/strong&gt; cache data on disk&lt;/li&gt;&lt;li&gt;&lt;strong&gt;none&lt;/strong&gt; don’t cache data&lt;/li&gt;&lt;/ul&gt; &lt;pre class="wiki"&gt;eaccelerator.keys     = "shm_and_disk"&lt;br /&gt;eaccelerator.sessions = "shm_and_disk"&lt;br /&gt;eaccelerator.content  = "shm_and_disk"&lt;/pre&gt; &lt;h2 id="Thewebinterface"&gt;The webinterface&lt;a class="anchor" title="Link  to this section" href="http://techgurulive.com/wiki/Settings#Thewebinterface"&gt;&lt;br /&gt;&lt;/a&gt;&lt;/h2&gt; &lt;p&gt;eAccelerator can be managed through a webinterface. From version  0.9.5 this  webinterface has been fully implemented in php so the  settings have been  changed.&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;taken from : http://techgurulive.com/2009/02/02/how-to-install-and-configure-the-eaccelerator-php-cache-on-apache/&lt;/p&gt;&lt;p&gt;Belum sempat nerjemahin.. ntar aja soale lagi seru coba2&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2322287513002322192?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2322287513002322192/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2322287513002322192' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2322287513002322192'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2322287513002322192'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/07/install-eaccelerator-di-freebsd.html' title='install eaccelerator di freebsd'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-664401755837315983</id><published>2010-07-14T12:08:00.000+07:00</published><updated>2010-07-14T12:09:13.714+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='www'/><title type='text'>Generate pdf problem</title><content type='html'>Pernah mengalami generate file dari script php ke pdf dan tidak berhasil?&lt;br /&gt;padahal jika dilocalhost yg memakai xamp berjalan normal.&lt;br /&gt;&lt;br /&gt;Setelah saya cek lebih lanjut ternyata jika record yg digenerate tidak begitu banyak, dibawah 100 record berhasil.&lt;br /&gt;Nah lo, mulai berpikir.. apa mgkn konfigurasi buffer file atau cache file di php.ini nya atau webserver confignya.&lt;br /&gt;&lt;br /&gt;Setelah mencoba mengulik2, alhamdulillah ketemu.Ini dia, dengan memory limit 96MB, maka generate 2ribu record berhasil dieksekusi. Tinggal disesuaikan dgn kebutuhan saja.&lt;br /&gt;&lt;br /&gt;; Maximum amount of memory a script may consume (128MB)&lt;br /&gt;; http://php.net/memory-limit&lt;br /&gt;memory_limit = 96M&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-664401755837315983?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/664401755837315983/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=664401755837315983' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/664401755837315983'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/664401755837315983'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/07/generate-pdf-problem.html' title='Generate pdf problem'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7978631437970698425</id><published>2010-06-26T11:24:00.004+07:00</published><updated>2010-06-26T11:27:52.359+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='snmp'/><category scheme='http://www.blogger.com/atom/ns#' term='mrtg'/><title type='text'>libperl.so not found.</title><content type='html'>Snmp tiba2 ngga jalan. errornya gini :&lt;br /&gt;/libexec/ld-elf.so.1: Shared object "libperl.so" not found, required by "libnetsnmphelpers.so.20"&lt;br /&gt;&lt;br /&gt;Hmm file library ga nemu pathnya.. kalo ga abis upgrade2 paling yo kedelete..&lt;br /&gt;Solusinya coba cari sbb :&lt;br /&gt;&lt;br /&gt;server2# &lt;span style="font-weight:bold;"&gt;ldd /usr/local/sbin/snmpd&lt;/span&gt;&lt;br /&gt;/usr/local/sbin/snmpd:&lt;br /&gt;        libnetsnmpagent.so.20 =&gt; /usr/local/lib/libnetsnmpagent.so.20 (0x2807e000)&lt;br /&gt;        libnetsnmphelpers.so.20 =&gt; /usr/local/lib/libnetsnmphelpers.so.20 (0x280b5000)&lt;br /&gt;        libnetsnmpmibs.so.20 =&gt; /usr/local/lib/libnetsnmpmibs.so.20 (0x280d3000)&lt;br /&gt;        libperl.so =&gt; /usr/local/lib/libperl.so (0x281b3000)&lt;br /&gt;        libm.so.4 =&gt; /lib/libm.so.4 (0x282b4000)&lt;br /&gt;        libcrypt.so.3 =&gt; /lib/libcrypt.so.3 (0x282ca000)&lt;br /&gt;        libutil.so.5 =&gt; /lib/libutil.so.5 (0x282e2000)&lt;br /&gt;        libnetsnmp.so.20 =&gt; /usr/local/lib/libnetsnmp.so.20 (0x282ee000)&lt;br /&gt;        libkvm.so.3 =&gt; /lib/libkvm.so.3 (0x2838d000)&lt;br /&gt;        libcrypto.so.4 =&gt; /lib/libcrypto.so.4 (0x28394000)&lt;br /&gt;        libc.so.6 =&gt; /lib/libc.so.6 (0x28487000)&lt;br /&gt;        libcrypto.so.7&lt;br /&gt;server2#&lt;span style="font-weight:bold;"&gt;cp /usr/local/lib/perl5/5.8.9/mach/CORE/libperl.so /usr/local/lib&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;server2# snmpd&lt;br /&gt;server2# ps ax | grep snmpd&lt;br /&gt;8945  ??  S      0:00.11 snmpd&lt;br /&gt;&lt;br /&gt;Alhamdulillah oke..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7978631437970698425?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7978631437970698425/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7978631437970698425' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7978631437970698425'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7978631437970698425'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/06/libperlso-not-found.html' title='libperl.so not found.'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1812412873450744215</id><published>2010-05-24T10:00:00.000+07:00</published><updated>2010-05-24T10:01:25.478+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='debian'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Disable SELINUX</title><content type='html'>Here is the way to disable selinux:&lt;br /&gt;&lt;br /&gt;1-Edit /etc/selinux/config and set the SELINUX variable to 'disabled'&lt;br /&gt;2-Use the setenforce command to disable on-the-fly&lt;br /&gt;&lt;br /&gt;With solution 1, your changes are permanent but only effective if you reboot the machine.&lt;br /&gt;&lt;br /&gt;With solution 2, your changes are NOT permanent but effective immediately.&lt;br /&gt;&lt;br /&gt;Hope this clears it up :-).&lt;br /&gt;&lt;br /&gt;taken from : http://www.linuxquestions.org&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1812412873450744215?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1812412873450744215/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1812412873450744215' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1812412873450744215'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1812412873450744215'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/05/disable-selinux.html' title='Disable SELINUX'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4251955348274321350</id><published>2010-05-07T10:59:00.001+07:00</published><updated>2010-05-07T10:59:53.050+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='debian'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>SE Linux</title><content type='html'>Install SE Linux &lt;br /&gt;&lt;br /&gt;# apt-get install selinux-basics selinux-policy-default&lt;br /&gt;# reboot&lt;br /&gt;# nano /etc/default/rcS&lt;br /&gt;edit FSCKFIX=yes&lt;br /&gt;# nano /etc/cron.daily/mlocate (digunakan agar locate database tidak berjalan terus)&lt;br /&gt;tambahkan exit 0 pd baris ke 2&lt;br /&gt;&lt;br /&gt;Jika sudah selesai ketikkan :&lt;br /&gt;# check-selinux-installation&lt;br /&gt;# rm /var/run/motd&lt;br /&gt;# ln -s /etc/motd.baru /etc/motd&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4251955348274321350?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4251955348274321350/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4251955348274321350' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4251955348274321350'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4251955348274321350'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/05/se-linux.html' title='SE Linux'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2709301593115451657</id><published>2010-05-06T12:02:00.004+07:00</published><updated>2010-05-06T12:17:35.681+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Security Linux</title><content type='html'>1. Matikan dan buang service2 yang tidak perlu.&lt;br /&gt;bisa install rcconf u/ mengatur startup.&lt;br /&gt;dan apt-get remove packagegakpenting&lt;br /&gt;&lt;br /&gt;2. Edit partisi, matikan eksekusi untuk partisi dimana user menaruh data (terutama web server)&lt;br /&gt;&lt;br /&gt;3. Ubah file descriptor di sysctl.conf &lt;br /&gt;your file descriptor must be beyond 65535&lt;br /&gt;&lt;br /&gt;4. Upgrade ke kernel paling baru.&lt;br /&gt;&lt;br /&gt;5. Atur firewall se secure mungkin. Allow port yang diperlukan saja.&lt;br /&gt;&lt;br /&gt;6. Atur akses login user.&lt;br /&gt;&lt;br /&gt;7. Sebisa mungkin jangan gunakan default port.&lt;br /&gt;&lt;br /&gt;8. Disable root login from remote&lt;br /&gt;&lt;br /&gt;9. Edit motd.&lt;br /&gt;&lt;br /&gt;10. Coba main2 dgn sysctl.conf (beware, resiko ditanggung sendiri).&lt;br /&gt;&lt;br /&gt;11. Secure kan service2 dan option pada program yg terinstall, misalnya : my.cnf, php.ini, httpd.conf, ftp.conf, snmpd.conf named.conf&lt;br /&gt;&lt;br /&gt;12. Install tool pendukung monitoring :&lt;br /&gt;- snmpd, ifstat, iptraf, snort, lsof, htop, deborphan, mtr, nikto. well why do i forget other tool in this critical moment.. &lt;br /&gt;&lt;br /&gt;Nanti ditambahkan kalau ada lagi.&lt;br /&gt;&lt;br /&gt;Thx to cakri n google. u;re all da best.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2709301593115451657?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2709301593115451657/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2709301593115451657' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2709301593115451657'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2709301593115451657'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/05/security-linux.html' title='Security Linux'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4180078835969946033</id><published>2010-05-06T11:29:00.002+07:00</published><updated>2010-05-06T11:33:41.232+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='debian'/><title type='text'>mencari Package tidak perlu</title><content type='html'># apt-get install deborphan&lt;br /&gt;# deborphan -sz&lt;br /&gt;# apt-get remove namapackage &lt;br /&gt;atau &lt;br /&gt;# apt-get remove --purge $(deborphan)&lt;br /&gt;atau bisa juga&lt;br /&gt;# orphaner&lt;br /&gt;perintah di atas ada tampilan grafisnya ;)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4180078835969946033?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4180078835969946033/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4180078835969946033' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4180078835969946033'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4180078835969946033'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/05/mencari-package-tidak-perlu.html' title='mencari Package tidak perlu'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8971838674320191717</id><published>2010-04-29T09:58:00.002+07:00</published><updated>2010-04-29T10:00:48.467+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='cisco'/><title type='text'>Cisco2an</title><content type='html'># sh run&lt;br /&gt;# conf term&lt;br /&gt;# int Fastethernet0/1&lt;br /&gt;# [config] ip address 10.10.10.1 255.255.255.240 secondary&lt;br /&gt;# exit&lt;br /&gt;# exit&lt;br /&gt;# copy run start&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;# sh vlan&lt;br /&gt;# conf term&lt;br /&gt;# int Fastethernet0/1&lt;br /&gt;dst2.. lali..&lt;br /&gt;&lt;br /&gt;postingan ini hanya buat nyubie yg belajar cisco tanpa arah&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8971838674320191717?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8971838674320191717/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8971838674320191717' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8971838674320191717'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8971838674320191717'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/04/cisco2an.html' title='Cisco2an'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8521482356375470722</id><published>2010-03-31T14:40:00.004+07:00</published><updated>2010-03-31T14:45:14.453+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='FTP'/><category scheme='http://www.blogger.com/atom/ns#' term='mysql'/><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><title type='text'>PureFTPd di Linux.</title><content type='html'>Hari ini nyoba install via tarball, yg q jadikan eksperimen adalah pureftpd.&lt;br /&gt;&lt;br /&gt;1. Download Source &lt;br /&gt; wget http://download.pureftpd.org/pub/pure-ftpd/releases/pure-ftpd-1.0.29.tar.gz&lt;br /&gt;2. Ekstrak&lt;br /&gt;tar -xzvf pure-ftpd-1.0.29.tar.gz&lt;br /&gt;3. masuk ke directory hasil ekstrak&lt;br /&gt;4. ./configure &lt;br /&gt;&lt;br /&gt;Nah lo..koq pas configure error. :(&lt;br /&gt;Ternyata compiler gak support, jadi harus install dulu&lt;br /&gt;&lt;br /&gt;apt-get install gcc&lt;br /&gt;apt-get install g++&lt;br /&gt;&lt;br /&gt;Ulangi lagi deh configurenya, kemudian lanjutkan dgn perintah make &amp;&amp; make install&lt;br /&gt;&lt;br /&gt;kelanjutannya ada di postingan &lt;a href="http://runia2001.blogspot.com/2007/05/pyurftp-p.html"&gt;ini&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;Bagi yang compile dgn support mysql coba install dulu mysql-devel&lt;br /&gt;apt-get mysql-devel&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8521482356375470722?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8521482356375470722/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8521482356375470722' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8521482356375470722'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8521482356375470722'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/03/pureftpd-di-linux.html' title='PureFTPd di Linux.'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7100452836913484624</id><published>2010-03-25T11:08:00.002+07:00</published><updated>2010-03-25T11:23:23.711+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='instalasi'/><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='mrtg'/><category scheme='http://www.blogger.com/atom/ns#' term='NMS'/><title type='text'>Install Snmpd..</title><content type='html'>Install snmpd cara praktis aja ya..&lt;br /&gt;# apt-get install snmpd (linux)&lt;br /&gt;# pkg_add -rv net-snmpd (fbsd)&lt;br /&gt;&lt;br /&gt;Stl itu copy file konfigurasi :&lt;br /&gt;# cp /etc/snmp/snmpd.conf.orig /etc/snmp/snmpd.conf (linux)&lt;br /&gt;# cp /usr/local/share/snmpd/snmpd.conf.example /usr/local/share/snmpd/snmpd.conf (bsd)&lt;br /&gt;&lt;br /&gt;Edit /etc/snmp/snmpd.conf :&lt;br /&gt;com2sec local  localhost         public&lt;br /&gt;com2sec local ipmrtgserver       public&lt;br /&gt;&lt;br /&gt;Edit /etc/default/snmpd : (freebsd ga perlu proses ini)&lt;br /&gt;remove ip 127.0.0.1&lt;br /&gt;&lt;br /&gt;Restart snmp : /etc/init.d/snmpd restart&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7100452836913484624?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7100452836913484624/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7100452836913484624' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7100452836913484624'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7100452836913484624'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/03/install-snmpd.html' title='Install Snmpd..'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7567573586632675482</id><published>2010-03-25T10:21:00.002+07:00</published><updated>2010-03-25T10:22:14.581+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>disable telnet inetd</title><content type='html'>Ketik perintah berikut :&lt;br /&gt;&lt;br /&gt;# /usr/sbin/update-inetd --disable telnet&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7567573586632675482?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7567573586632675482/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7567573586632675482' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7567573586632675482'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7567573586632675482'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/03/disable-telnet-inetd.html' title='disable telnet inetd'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8826190355884346897</id><published>2010-03-25T10:09:00.002+07:00</published><updated>2010-03-25T10:14:41.211+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='debian'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><title type='text'>Manage startup service</title><content type='html'>Untuk meremove service di linux sewaktu startup ada bbrp cara :&lt;br /&gt;&lt;br /&gt;1. # update-rc.d -f NAMASERVICE remove&lt;br /&gt;   contoh : &lt;br /&gt;   # update-rc.d -f exim4 remove&lt;br /&gt;&lt;br /&gt;2. Install rrconf&lt;br /&gt;   # apt-get install rcconf&lt;br /&gt;   tunggu proses selesai, ketik :&lt;br /&gt;   # rcconf&lt;br /&gt;&lt;br /&gt;Tinggal check/uncheck yg ga perlu aja, kayak msconfig gitu..&lt;br /&gt;&lt;br /&gt;Kalo di FreeBSD, tinggal cek aja isi /etc/rc.conf atau cek didirectory /usr/local/etc/rc.d&lt;br /&gt;&lt;br /&gt;Wokeh.. selamat berbahagia..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8826190355884346897?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8826190355884346897/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8826190355884346897' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8826190355884346897'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8826190355884346897'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/03/manage-startup-service.html' title='Manage startup service'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8646780583423193930</id><published>2010-03-19T10:52:00.004+07:00</published><updated>2010-03-19T10:58:07.076+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><title type='text'>bunuh semua!!</title><content type='html'>Cara membunuh/kill semua proses pada suatu daemon adl sbb :&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;ps -ax | grep "/usr/local/sbin/httpd" | awk '{print $1}' | xargs kill&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;atau kalau mau lihat process owner idnya &lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;ps -aux | grep "/usr/local/sbin/httpd" | awk '{print $2}' | xargs kill&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;nb : bedanya cuman di awk row nya aja..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8646780583423193930?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8646780583423193930/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8646780583423193930' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8646780583423193930'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8646780583423193930'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/03/bunuh-semua.html' title='bunuh semua!!'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5702217077955508051</id><published>2010-03-18T08:49:00.002+07:00</published><updated>2010-03-18T09:02:07.918+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='hardware'/><title type='text'>bigmem Vs PAE</title><content type='html'>Memory anda lebih dari 4GB? tapi tidak terdeteksi semua?&lt;br /&gt;Apa pasal?&lt;br /&gt;&lt;br /&gt;Hal ini dikarenakan OS yg terinstall 32bit dan kernel bigmem (di linux) atau PAE (di FreeBSD) belum diaktifkan.&lt;br /&gt;&lt;br /&gt;Untuk FreeBSD ada 2 cara :&lt;br /&gt;1. tambahkan baris berikut di file kernel anda dan compile ulang&lt;br /&gt;options PAE&lt;br /&gt;menambahkan baris tersebut akan menyebabkan beberapa driver tidak disupport, jadi perlu dipertimbangkan apakah driver dipakai atau tidak.&lt;br /&gt;&lt;br /&gt;2. Cara kedua adalah dengan cara install ulang dgn ISO AMD64.&lt;br /&gt;&lt;br /&gt;Untuk Debian coba langkah berikut.&lt;br /&gt;&lt;br /&gt;- Install lshw untuk cek memori real anda&lt;br /&gt;# apt-get install lshw&lt;br /&gt;# lshw -C memory&lt;br /&gt;# dpkg --get-selections | grep bigmem&lt;br /&gt;# apt-get install linux-image-2.6.26.2-686-bigmem&lt;br /&gt;&lt;br /&gt;Cek hasil instalasi kernel dgn perintah berikut :&lt;br /&gt;# dpkg --get-selections | grep bigmem&lt;br /&gt;linux-image-2.6.26.2-686-bigmem                      install&lt;br /&gt;&lt;br /&gt;Untuk menu booting lihat dulu &lt;br /&gt;# grep "Debian GNU" /boot/grub/menu.lst | nl -v0&lt;br /&gt;&lt;br /&gt;Sesuaikan menu kernel dgn nomer default boot.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5702217077955508051?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5702217077955508051/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5702217077955508051' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5702217077955508051'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5702217077955508051'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/03/bigmem-vs-pae.html' title='bigmem Vs PAE'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7407392016152623911</id><published>2010-03-17T22:22:00.002+07:00</published><updated>2010-03-17T22:28:46.196+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><category scheme='http://www.blogger.com/atom/ns#' term='hardware'/><title type='text'>mounting...</title><content type='html'>kalo tiba2 fbsd ngadat n masuk mountroot, gimana donk ?&lt;br /&gt;1. perhatikan kabel HD yg terpasang apakah sudah di set primary?&lt;br /&gt;2. perhatikan jumper HD, sbg master atau slave wkt instalasi.&lt;br /&gt;&lt;br /&gt;Kalau sistem msk single mode dan hanya read only mode. Sedangkan kita butuh ngedit /etc/fstab buat ngedit mount pointnya, caranya sbb :&lt;br /&gt;&lt;br /&gt;mount -t ufs rw /dev/ad0s1a / (mounting root, nm partisi sesuiakan)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7407392016152623911?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7407392016152623911/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7407392016152623911' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7407392016152623911'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7407392016152623911'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2010/03/mounting.html' title='mounting...'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-3537237104310135602</id><published>2009-11-26T12:59:00.003+07:00</published><updated>2009-11-26T13:03:40.884+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><category scheme='http://www.blogger.com/atom/ns#' term='utility'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><title type='text'>sunlink</title><content type='html'>Sunlink bukan merk sabun cuci maupun shampo..&lt;br /&gt;Sunlink di freebsd digunakan untuk memblok delete permission dgn kata lain smua user tidak bisa menghapus file yg telah di sunlink.&lt;br /&gt;&lt;br /&gt;Perintahnya :&lt;br /&gt;# chflags sunlink ojodidel.txt&lt;br /&gt;&lt;br /&gt;Untuk menonaktifkan sunlink sbb :&lt;br /&gt;&lt;br /&gt;# chflags nosunlink ojodidel.txt&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-3537237104310135602?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/3537237104310135602/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=3537237104310135602' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3537237104310135602'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3537237104310135602'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/11/sunlink.html' title='sunlink'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4841896806871562917</id><published>2009-11-05T10:53:00.000+07:00</published><updated>2009-11-05T10:54:58.937+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='utility'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><title type='text'>Mengenal beberapa Unix tool.</title><content type='html'>1. Sed&lt;br /&gt;Sed adalah stream editor. Pada dasarnya digunakan untuk manipulasi text.&lt;br /&gt;&lt;br /&gt;Perintah dasar.&lt;br /&gt;&lt;br /&gt;sed [-lrn] [-e 'sedscript'] [file1 file2 ...]&lt;br /&gt;&lt;br /&gt;-l : line buffered&lt;br /&gt;-r : extended regex&lt;br /&gt;-n silences default output&lt;br /&gt;&lt;br /&gt;Paling males kan baca perintah dasar? soalnya saya blm paham kalau ngga ada contohnya :P.&lt;br /&gt;&lt;br /&gt;% echo "Hello there foo" |  sed -e 's/foo/bar/'&lt;br /&gt;Hello there bar&lt;br /&gt;&lt;br /&gt;nah.. paham kan? perintah diatas dpt digunakan untuk mereplace foo menjadi bar&lt;br /&gt;&lt;br /&gt;saya mencoba perintah berikut dan berhasil&lt;br /&gt;# more limit | sed -e 's/fxp1/rl0/' &gt;&gt; limitbaru&lt;br /&gt;perintah diatas adalah membaca file dgn nama limit dan mereplace semua kata yg mengandung fxp1 menjadi rl0 dan hasilnya disimpan dalam file limitbaru&lt;br /&gt;&lt;br /&gt;Perintah sed juga bisa berfungsi seperti grep.&lt;br /&gt;&lt;br /&gt;% sed -ne '/FreeBSD/p' /etc/motd&lt;br /&gt;FreeBSD 6.2-PRERELEASE (FOO) #0: Sat Nov 11 00:12:52 EST 2006&lt;br /&gt;Welcome to FreeBSD!&lt;br /&gt;&lt;br /&gt;Dapat digunakan juga untuk melihat header mail.&lt;br /&gt;% cat mymail \&lt;br /&gt;  | sed -ne '/^[A-Za-z0-9]/ { x; /^Received: /{p;}; }; /^[A-Za-z0-9]/!H' &lt;br /&gt;Received: from localhost (localhost [127.0.0.1])&lt;br /&gt;        by whitefox.csh.rit.edu (Postfix) with ESMTP id 731F81145C&lt;br /&gt;        for &lt;email-snipped&gt;; Sat, 19 May 2007 01:19:30 -0400 (EDT)&lt;br /&gt;Received: from whitefox.csh.rit.edu ([127.0.0.1])&lt;br /&gt;        by localhost (whitefox.csh.rit.edu [127.0.0.1]) (amavisd-new, port 10024)&lt;br /&gt;        with ESMTP id EURHKUeHSrao for &lt;email-snipped&gt;;&lt;br /&gt;        Sat, 19 May 2007 01:19:16 -0400 (EDT)&lt;br /&gt;&lt;br /&gt;2. cut&lt;br /&gt;Cut digunakan untuk memotong bbrp bagian dr data.&lt;br /&gt;&lt;br /&gt;Perintah dasar&lt;br /&gt;&lt;br /&gt;cut [-d delim -f range] [-c range] [-b range]&lt;br /&gt;&lt;br /&gt;% echo "one,two,three,four" | cut -d"," -f 1,3&lt;br /&gt;one,three&lt;br /&gt;&lt;br /&gt;yang tdk bisa dieksekusi oleh cut&lt;br /&gt;&lt;br /&gt;% echo "one    two     three" | cut -d' ' -f 2&lt;br /&gt;&lt;br /&gt;% echo "one    two     three" | awk '{print $2}'&lt;br /&gt;two&lt;br /&gt;&lt;br /&gt;3. awk&lt;br /&gt;awk merupakan filter tool pada scripting&lt;br /&gt;&lt;br /&gt;Perintah dasar&lt;br /&gt;awk [-F&lt;field_sep&gt;] [awk_script]&lt;br /&gt;&lt;br /&gt;awk mempunyai 2 konsep data spyt pd input file yaitu field dan record&lt;br /&gt;&lt;br /&gt;record adalah seluruh baris, pemisah antar record adl baris baru&lt;br /&gt;&lt;br /&gt;field adalah kata2, pemisahnya adalah spasi atau tab. default pemisahnya adalah spasi tapi bs juga sebuah karakter atau regular expression.&lt;br /&gt;&lt;br /&gt;pattern : [condition_expressions] { [action_expressions] } &lt;br /&gt;% fstat | sed -e 1d \&lt;br /&gt;  | awk '{a[$1]++} END { for (i in a) { print i, a[i] } }' \&lt;br /&gt;  | sort -nk2&lt;br /&gt;smmsp 8&lt;br /&gt;_dhcp 11&lt;br /&gt;www 45&lt;br /&gt;root 328&lt;br /&gt;jls 482&lt;br /&gt;&lt;br /&gt;Show file yg tdk kosong&lt;br /&gt;% ls -l | awk '$5 &gt; 0'&lt;br /&gt;&lt;br /&gt;Show  log antar 10 May dan 20 May &lt;br /&gt;% cat *.log | awk '$1 == "May" &amp;&amp; ($2 &gt;= 10 &amp;&amp; $2 &lt;= 20)'&lt;br /&gt;&lt;br /&gt;Show ip dari perintah host&lt;br /&gt;% host www.google.com | awk '/has address/ { print $4 }'&lt;br /&gt;&lt;br /&gt;Sulit sekali memahami perintah awk ini.. &lt;br /&gt;Tapi emang powerfull bgt..&lt;br /&gt;&lt;br /&gt;4. xarg&lt;br /&gt;xarg digunakan untuk mengambil argumen dan digunakan untuk menjalakan program.&lt;br /&gt;&lt;br /&gt;Perintah dasar&lt;br /&gt;xargs [flags] [command [args]]&lt;br /&gt;&lt;br /&gt;# delete png file&lt;br /&gt;% find ./i/ -name '*.png' | xargs rm&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;% cat /tmp/somehosts \&lt;br /&gt;  | xargs -P10 -I"HOST" -n1 sh -c 'ssh HOST uptime | sed -e "s/^/HOST: /"'&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Tiba2 koq laper.. :(&lt;br /&gt;Sampe sini aja dulu...&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Taken : semicomplete.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4841896806871562917?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4841896806871562917/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4841896806871562917' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4841896806871562917'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4841896806871562917'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/11/mengenal-beberapa-unix-tool.html' title='Mengenal beberapa Unix tool.'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6272027918779129963</id><published>2009-11-03T09:10:00.003+07:00</published><updated>2009-11-03T09:16:34.794+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='hardware'/><title type='text'>cara reset mikrotik</title><content type='html'>Teman2 sempat pusing mikirin ada perangkat mikrotik warisan tapi lupa passwordnya. Dari googling ada cara ribet yaitu install ulang OS nya via kabel dan butuh software ini itu [lupa].&lt;br /&gt;&lt;br /&gt;Tapi hal itu takkan pernah terjadi setelah nemu postingan di forum berikut :&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_6L_NDC_CAQQ/Su-Renci0VI/AAAAAAAAARg/9TYwlevJM-U/s1600-h/DSC_7554.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 268px;" src="http://2.bp.blogspot.com/_6L_NDC_CAQQ/Su-Renci0VI/AAAAAAAAARg/9TYwlevJM-U/s320/DSC_7554.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5399694433411322194" /&gt;&lt;/a&gt;&lt;br /&gt;look above: this little hole is JP1, Stick a screwdriver in it while booting (to short-circuit it) and it will reset the config. &lt;br /&gt;&lt;br /&gt;thx a lot to http://forum.mikrotik.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6272027918779129963?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6272027918779129963/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6272027918779129963' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6272027918779129963'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6272027918779129963'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/11/cara-reset-mikrotik.html' title='cara reset mikrotik'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_6L_NDC_CAQQ/Su-Renci0VI/AAAAAAAAARg/9TYwlevJM-U/s72-c/DSC_7554.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4701767311874959959</id><published>2009-10-29T09:05:00.004+07:00</published><updated>2009-10-29T09:14:47.423+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='database'/><title type='text'>Cara eksport dan import database mysql di unix based</title><content type='html'>&lt;br&gt;&lt;br /&gt;Cara untuk eksport database mysql via console bisa dilakukan sbb :&lt;br /&gt;&lt;br /&gt;# mysqldump -uusernya -ppasswordnya master &gt; backup.sql&lt;br /&gt;&lt;br /&gt;Perintah diatas akan melakukan export data pada database master kedalam file backup.sql&lt;br /&gt;&lt;br /&gt;Sedangkan cara untuk import database sbb:&lt;br /&gt;&lt;br /&gt;# mysqldump -uusernya -ppasswordnya dbbaru backup.sql&lt;br /&gt;&lt;br /&gt;Namun jika database yang di import besar ratusan MB dpt digunakan cara sbb :&lt;br /&gt;&lt;br /&gt;# mysql -u root -p&lt;br /&gt;# use dbbaru;&lt;br /&gt;# source /home/aku/backup.sql&lt;br /&gt;&lt;br /&gt;Yatta!!.. berhasil.. berhasil.. alhamdulillah...moga2 saja bisa untuk backup database sampe satu GB huehue..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4701767311874959959?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4701767311874959959/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4701767311874959959' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4701767311874959959'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4701767311874959959'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/10/cara-eksport-dan-import-database-mysql.html' title='Cara eksport dan import database mysql di unix based'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-721788673175210689</id><published>2009-10-28T11:17:00.003+07:00</published><updated>2009-10-29T14:51:40.195+07:00</updated><title type='text'>upgrade Freebsd dari release ke stable dengan cvsup</title><content type='html'>Berikut langkah2 untuk upgrade Freebsd stable &lt;br /&gt;&lt;br /&gt;# whereis cvsup-without-gui&lt;br /&gt;cvsup-without-gui: /usr/ports/net/cvsup-without-gui&lt;br /&gt;# cd /usr/ports/net/cvsup-without-gui&lt;br /&gt;# make install clean&lt;br /&gt;&lt;br /&gt;Setelah selesai copy kedua file cvsup ke directory /etc&lt;br /&gt;&lt;br /&gt;#cp /usr/share/examples/cvsup/ports-supfile /etc&lt;br /&gt;#cp /usr/share/examples/cvsup/stable-supfile /etc&lt;br /&gt;&lt;br /&gt;Edit kedua file tsb dan pada baris &lt;br /&gt;default host=&lt;br /&gt;isi dengan cvsup.freebsd.or.id atau cari server cvsup terdekat&lt;br /&gt;&lt;br /&gt;kemudian jalankan perintah&lt;br /&gt;# cd /etc&lt;br /&gt;# cvsup -g -L 2 ports-supfile &amp;&amp; cvsup -g -L 2 stable-supfile&lt;br /&gt;# cd /usr/src&lt;br /&gt;# make buildworld&lt;br /&gt;# make buildkernel KERNCONF=namakernel&lt;br /&gt;# make installkernel KERNCONF=namakernel&lt;br /&gt;# shutdown -r now (untuk reboot)&lt;br /&gt;# cd /usr/src&lt;br /&gt;# make installworld&lt;br /&gt;# uname -a&lt;br /&gt;&lt;br /&gt;FreeBSD ns1.xxx.xxx.id 7.2-STABLE FreeBSD 7.2-STABLE #0: Wed Oct 28 09:58:36 UTC 2009     ainur@xxx.xxx.id&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-721788673175210689?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/721788673175210689/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=721788673175210689' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/721788673175210689'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/721788673175210689'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/10/upgrade-freebsd-dari-release-ke-stable.html' title='upgrade Freebsd dari release ke stable dengan cvsup'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4784860193135353713</id><published>2009-09-08T13:39:00.003+07:00</published><updated>2009-09-09T13:07:48.034+07:00</updated><title type='text'>install apache 22 + SSL</title><content type='html'># cd /usr/ports/www/apache22&lt;br /&gt;# make install clean&lt;br /&gt;&lt;br /&gt;# mkdir /usr/local/etc/apache22/ssl.key&lt;br /&gt;# mkdir /usr/local/etc/apache22/ssl.crt&lt;br /&gt;# chmod 0700 /usr/local/etc/apache22/ssl.key&lt;br /&gt;# chmod 0700 /usr/local/etc/apache22/ssl.crt&lt;br /&gt;&lt;br /&gt;# cd /root&lt;br /&gt;# openssl genrsa -des3 -out server.key 1024&lt;br /&gt;&lt;br /&gt;# openssl req -new -key server.key -out server.csr&lt;br /&gt;&lt;br /&gt;# openssl x509 -req -days 365 -in /root/server.csr -signkey /root/server.key -out /root/server.crt&lt;br /&gt;&lt;br /&gt;# cp /root/server.key /usr/local/etc/apache22/ssl.key/&lt;br /&gt;# cp /root/server.crt /usr/local/etc/apache22/ssl.crt/&lt;br /&gt;&lt;br /&gt;# chmod 0400 /usr/local/etc/apache22/ssl.key/server.key&lt;br /&gt;# chmod 0400 /usr/local/etc/apache22/ssl.crt/server.crt&lt;br /&gt;&lt;br /&gt;# cd /usr/local/etc/apache22/extra&lt;br /&gt;# vi httpd-ssl.conf&lt;br /&gt;&lt;br /&gt;Isikan httpd-ssl.conf sbb : &lt;br /&gt;&lt;br /&gt;Listen 443&lt;br /&gt;AddType application/x-x509-ca-cert .crt&lt;br /&gt;AddType application/x-pkcs7-crl    .crl&lt;br /&gt;&lt;br /&gt;#   Pass Phrase Dialog:&lt;br /&gt;#   Configure the pass phrase gathering process.&lt;br /&gt;#   The filtering dialog program (`builtin' is a internal&lt;br /&gt;#   terminal dialog) has to provide the pass phrase on stdout.&lt;br /&gt;SSLPassPhraseDialog  builtin&lt;br /&gt;&lt;br /&gt;#   Inter-Process Session Cache:&lt;br /&gt;#   Configure the SSL Session Cache: First the mechanism&lt;br /&gt;#   to use and second the expiring timeout (in seconds).&lt;br /&gt;#SSLSessionCache         "dbm:/var/run/ssl_scache"&lt;br /&gt;SSLSessionCache        "shmcb:/var/run/ssl_scache(512000)"&lt;br /&gt;SSLSessionCacheTimeout  300&lt;br /&gt;&lt;br /&gt;#   Semaphore:&lt;br /&gt;#   Configure the path to the mutual exclusion semaphore the&lt;br /&gt;#   SSL engine uses internally for inter-process synchronization.&lt;br /&gt;SSLMutex  "file:/var/run/ssl_mutex"&lt;br /&gt;&lt;br /&gt;##&lt;br /&gt;## SSL Virtual Host Context&lt;br /&gt;##&lt;br /&gt;&lt;br /&gt;&lt;VirtualHost _default_:443&gt;&lt;br /&gt;&lt;br /&gt;#   General setup for the virtual host&lt;br /&gt;DocumentRoot "/usr/local/www/apache22/data"&lt;br /&gt;ServerName www.example.com:443&lt;br /&gt;ServerAdmin you@example.com&lt;br /&gt;ErrorLog "/var/log/httpd-error.log"&lt;br /&gt;TransferLog "/var/log/httpd-access.log"&lt;br /&gt;&lt;br /&gt;#   SSL Engine Switch:&lt;br /&gt;#   Enable/Disable SSL for this virtual host.&lt;br /&gt;SSLEngine on&lt;br /&gt;SSLCipherSuite ALL:!ADH:!EXPORT56:RC4+RSA:+HIGH:+MEDIUM:+LOW:+SSLv2:+EXP:+eNULL&lt;br /&gt;&lt;br /&gt;#   Server Certificate:&lt;br /&gt;#   Point SSLCertificateFile at a PEM encoded certificate.  If&lt;br /&gt;#   the certificate is encrypted, then you will be prompted for a&lt;br /&gt;#   pass phrase.  Note that a kill -HUP will prompt again.  Keep&lt;br /&gt;#   in mind that if you have both an RSA and a DSA certificate you&lt;br /&gt;#   can configure both in parallel (to also allow the use of DSA&lt;br /&gt;#   ciphers, etc.)&lt;br /&gt;SSLCertificateFile "/usr/local/etc/apache22/ssl.crt/server.crt"&lt;br /&gt;#SSLCertificateFile "/usr/local/etc/apache22/server-dsa.crt"&lt;br /&gt;&lt;br /&gt;#   Server Private Key:&lt;br /&gt;#   If the key is not combined with the certificate, use this&lt;br /&gt;#   directive to point at the key file.  Keep in mind that if&lt;br /&gt;#   you've both a RSA and a DSA private key you can configure&lt;br /&gt;#   both in parallel (to also allow the use of DSA ciphers, etc.)&lt;br /&gt;SSLCertificateKeyFile "/usr/local/etc/apache22/ssl.key/server.key"&lt;br /&gt;#SSLCertificateKeyFile "/usr/local/etc/apache22/server-dsa.key"&lt;br /&gt;&lt;br /&gt;#   Server Certificate Chain:&lt;br /&gt;#   Point SSLCertificateChainFile at a file containing the&lt;br /&gt;#   concatenation of PEM encoded CA certificates which form the&lt;br /&gt;#   certificate chain for the server certificate. Alternatively&lt;br /&gt;#   the referenced file can be the same as SSLCertificateFile&lt;br /&gt;#   when the CA certificates are directly appended to the server&lt;br /&gt;#   certificate for convinience.&lt;br /&gt;#SSLCertificateChainFile "/usr/local/etc/apache22/server-ca.crt"&lt;br /&gt;&lt;br /&gt;#   Certificate Authority (CA):&lt;br /&gt;#   Set the CA certificate verification path where to find CA&lt;br /&gt;#   certificates for client authentication or alternatively one&lt;br /&gt;#   huge file containing all of them (file must be PEM encoded)&lt;br /&gt;#   Note: Inside SSLCACertificatePath you need hash symlinks&lt;br /&gt;#         to point to the certificate files. Use the provided&lt;br /&gt;#         Makefile to update the hash symlinks after changes.&lt;br /&gt;#SSLCACertificatePath "/usr/local/etc/apache22/ssl.crt"&lt;br /&gt;#SSLCACertificateFile "/usr/local/etc/apache22/ssl.crt/ca-bundle.crt"&lt;br /&gt;&lt;FilesMatch "\.(cgi|shtml|phtml|php)$"&gt;&lt;br /&gt;    SSLOptions +StdEnvVars&lt;br /&gt;&lt;/FilesMatch&gt;&lt;br /&gt;&lt;Directory "/usr/local/www/apache22/cgi-bin"&gt;&lt;br /&gt;    SSLOptions +StdEnvVars&lt;br /&gt;&lt;/Directory&gt;&lt;br /&gt;BrowserMatch ".*MSIE.*" \&lt;br /&gt;         nokeepalive ssl-unclean-shutdown \&lt;br /&gt;         downgrade-1.0 force-response-1.0&lt;br /&gt;&lt;br /&gt;#   Per-Server Logging:&lt;br /&gt;#   The home of a custom SSL log file. Use this when you want a&lt;br /&gt;#   compact non-error SSL logfile on a virtual host basis.&lt;br /&gt;CustomLog "/var/log/httpd-ssl_request.log" \&lt;br /&gt;          "%t %h %{SSL_PROTOCOL}x %{SSL_CIPHER}x \"%r\" %b"&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Supaya tiap kali start apache tdk ditanya password, lakukan sbb :&lt;br /&gt;cd /usr/local/etc/apache22/ssl.key/&lt;br /&gt;cp server.key server.key.org&lt;br /&gt;openssl rsa -in server.key.org -out server.key&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4784860193135353713?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4784860193135353713/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4784860193135353713' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4784860193135353713'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4784860193135353713'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/09/install-apache-22-ssl.html' title='install apache 22 + SSL'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8996382755627114142</id><published>2009-08-10T19:00:00.000+07:00</published><updated>2009-08-10T19:06:55.679+07:00</updated><title type='text'>pasang hd ke2 d freebsd</title><content type='html'>Kemarin hd router utama ko. Manggil bootloader aja trus mandek..&lt;br /&gt;Wah pdhal byk data penting. Akhirnya aq psg aja jadi secondary d fbsdku yg lain. Nah..mslhnya adl msh lom dkenali partisinya. Coba edit fstabnya.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8996382755627114142?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8996382755627114142/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8996382755627114142' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8996382755627114142'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8996382755627114142'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/08/pasang-hd-ke2-d-freebsd.html' title='pasang hd ke2 d freebsd'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5268850419265692706</id><published>2009-02-19T22:43:00.001+07:00</published><updated>2009-02-19T22:48:45.002+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='pengenalan'/><title type='text'>Mengenal dot-file di *NIX system</title><content type='html'>Pasti pernah tau kan dot-file. Ya, yang biasanya ada di home directory (/home/namauser).File tersebut adalah file konfigurasi untuk mengatur setting dari program Unix/Linux seperti shell (bash/ksh/sh), vi (file editor) dan aplikasi lainnya.&lt;br /&gt;&lt;br /&gt;File konfigurasi untuk sistem *NIX biasanya disimpan di /etc atau di /usr/local/etc. Tiap aplikasi mempunyai format yang unik, user bisa saja meletakkan file konfigurasi tidak sesuai dengan defaultnya tapi ke directory lain. Untuk menyembunyikan file konfigurasi dari listing normal (ls), maka file/directory bisa diprefik (awalan) dot (titik).&lt;br /&gt;&lt;br /&gt;Untuk melihat dot-file bisa digunakan perintah ls -a atau kalau di FreeBSD cukup memakai ll atau kalau mau lebih singkat bisa dengan perintah ls -ld .*&lt;br /&gt;&lt;br /&gt;diterjemahkan scr bebas dari : www.cyberciti.biz&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5268850419265692706?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5268850419265692706/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5268850419265692706' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5268850419265692706'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5268850419265692706'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/02/mengenal-dot-file-di-nix-system.html' title='Mengenal dot-file di *NIX system'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4140907729929414305</id><published>2009-02-17T09:10:00.004+07:00</published><updated>2009-02-19T22:47:41.589+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='mrtg'/><title type='text'>Instalasi MRTG menggunakan RRDTool di FreeBSD</title><content type='html'>MRTG (Multi Router Traffic Grapher) adalah tool yang digunakan untuk menampilkan secara grafis data (traffik) yang telah diambil dari snmp sebuah host. Ehm, gampangnya gini suatu tool agar kita bisa melihat traffik baik itu traffik penggunakan bandwith, penggunaan memory suatu host maupun kinerja processor. Nah si MRTG server ini mengambil datanya lewat SNMP yang sudah terinstall di host yang akan kita capture.&lt;br /&gt;&lt;br /&gt;Cara instalasinya mudah saja, jika via port ketik&lt;br /&gt;# cd /usr/ports/net-mgmt/mrtg&lt;br /&gt;# make install clean&lt;br /&gt;Jika via package, ketik saja&lt;br /&gt;# pkg_add -rv mrtg&lt;br /&gt;&lt;br /&gt;Setelah instalasi akan muncul /usr/local/etc/mrtg/mrtg.cfg.default, rename saja file tsb menjadi /usr/local/etc/mrtg/mrtg.cfg&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;WorkDir: /usr/local/www/mrtg/&lt;br /&gt;Options[_]: growright, bits&lt;br /&gt;RunAsDaemon: yes&lt;br /&gt;&lt;br /&gt;Target[coba]: 2:public@192.168.2.2:&lt;br /&gt;#perintah di atas adalah mengambil data di interface ke-2 pada host 192.168.2.2&lt;br /&gt;MaxBytes[coba]: 125000&lt;br /&gt;#Batas maksimum yg akan ditampilkan adalah 125000Bytes, alias hampir 1Mbit.&lt;br /&gt;Title[coba]: Traffic Analysis for ADSL&lt;br /&gt;PageTop[coba]: Traffic Analysis for ADSL &lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;Ket :&lt;br /&gt;Saat mrtg dijalankan maka data berupa coba.html (beserta file gambar traffiknya) akan di generate di directory /usr/local/www/mrtg/, jadi di server mrtg juga harus ada webserver untuk menampilkannya. Nah, secara default MRTG akan menggunakan log untuk menyimpan data2 yang diperoleh.&lt;br /&gt;&lt;br /&gt;Agar mrtg disimpan dalam database dan interval pengambilan data kurang dari 5 menit (defaultnya kalau pakai default minimal 5 menit), maka saya menggunakan RRDTool.&lt;br /&gt;Caranya :&lt;br /&gt;# /usr/ports/databases/rrdtool&lt;br /&gt;# make install clean&lt;br /&gt;Sedangkan file konfigurasi /usr/local/etc/mrtg/mrtg.cfg, menjadi :&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;WorkDir: /usr/local/www/mrtg&lt;br /&gt;Options[_]: growright, bits&lt;br /&gt;RunAsDaemon: yes&lt;br /&gt;LogFormat: rrdtool&lt;br /&gt;PathAdd: /usr/local/bin&lt;br /&gt;Refresh: 500&lt;br /&gt;Interval: 2&lt;br /&gt;LogFormat: rrdtool&lt;br /&gt;&lt;br /&gt;Target[coba]: 2:public@192.168.2.2:&lt;br /&gt;MaxBytes[coba]: 125000&lt;br /&gt;Title[coba]: Traffic Analysis for ADSL&lt;br /&gt;PageTop[coba]: Traffic Analysis for ADSL&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Mudah kan?.. lebih mudah lagi kalau untuk tampilannya anda menggunakan mrtg-rrd.cgi&lt;br /&gt;silahkan disearch ada di google untuk filenya. Dengan file cgi tsb anda ngga usah repot2 ngedit file html anda untuk menampilkan semua grafik mrtg anda..&lt;br /&gt;&lt;br /&gt;Selamat mencoba.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4140907729929414305?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4140907729929414305/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4140907729929414305' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4140907729929414305'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4140907729929414305'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/02/instalasi-mrtg-menggunakan-rrdtool-di.html' title='Instalasi MRTG menggunakan RRDTool di FreeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5993297542609438179</id><published>2009-01-12T13:48:00.005+07:00</published><updated>2009-01-12T14:33:32.878+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='instalasi'/><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><title type='text'>Instalasi FreeBSD</title><content type='html'>Setelah berkenalan dengan FreeBSD, maka tiba saatnya untuk memikirkan hubungan yang lebih serius, yaitu dengan cara install donkk FreeBSDnya. Jangan cuman baca! tapi coba!&lt;br /&gt;Postingan ini akan membahas minimal instalation untuk server/router dan sebangsanya, bukan untuk desktop. Karena itu GUI tidak saya sertakan.&lt;br /&gt;&lt;br /&gt;Persiapan :&lt;br /&gt;1. Seperangkat PC (CPU, keyboard dan monitor).&lt;br /&gt;2. CD ISO FreeBSD (terserah versi berapa, karena instalasi hampir sama tiap versi).&lt;br /&gt;&lt;br /&gt;Tahap instalasi : &lt;br /&gt;1. Pasang HD dengan mode Primary master dan Boot dari CD.&lt;br /&gt;2. Lakukan booting dan tunggu sampai keluar menu instalasi FreeBSD&lt;br /&gt;3. Tekan enter atau tunggu 10 detik untuk Boot dengan FreeBSD.&lt;br /&gt;4. Muncul menu select country, pilih US dengan menekan space/enter&lt;br /&gt;5. Muncul mode instalasi, pilih custom dan akan muncul banyak menu&lt;br /&gt;6. Pilih "Allocate disk" untuk melakukan partisi HD. &lt;br /&gt;Pada sesi ini kita bisa membagi ruang HD kita sesuai keinginan. Apakah semua akan dipartisi ke freebsd (ufs) ataukah mau dibagi2, misalnya mau install Windows juga dalam satu HD tersebut. Dlm case ini penulis memilih menggunakan seleuruh HD dengan menghapus semua pastisi yg ada (tekan d) kemudian pilih "a" untuk mematisi seluruh HD ke ufs. Jika selesai tekan q untuk keluar dari FDISK partition editor.&lt;br /&gt;7. Setelah itu pilih Standart, karena saya tidak menggunakan boot manager (hanya ada satu OS saja).&lt;br /&gt;8. Setelah itu akan kembali ke menu custom installation (no. 5)&lt;br /&gt;9. Pilih "Label"&lt;br /&gt;Pada sesi ini, kita akan melakukan labelling pada partisi kita yang secara utuh disebut /dev/ad0. Yang harus kita lakukan adalah membagi partisi freebsd yang ada ke dalam beberapa slice yaitu :&lt;br /&gt;a. / (besarnya dikasih 512MB saja cukup)&lt;br /&gt;b. swap (2 kali memori, kali memorinya 64MB kasih 128MB)&lt;br /&gt;c. /var (kasih 512MB atau 1GB cukup)&lt;br /&gt;d. /usr (sisa HD, minimal 2GB)&lt;br /&gt;cara untuk create a s/d d dengan cara tekan "c", masukkan besar sizenya misal : 128MB, pilih FS. Untuk swap (point b) pilih menu swap.  Setelah selesai tekan "q".&lt;br /&gt;Sebenarnya ada cara mudahnya, yaitu dengan cara menekan "a", maka partisi akan dibagi secara otomatis oleh sistem, dan tinggal tekan "q" untuk menyimpan setting.&lt;br /&gt;10. Setelah selesai akan kembali ke menu custom install (no. 5)&lt;br /&gt;11. Pilih "Distribution"&lt;br /&gt;Selanjutnya akan muncul banyak pilihan, pilih "minimal" dengan menekan space. Kemudian lanjutkan dengan memilih "Custom" &lt;br /&gt;- pilih "ports" (digunakan untuk memudahkan instalasi software lain.&lt;br /&gt;- pilih "src" -&gt; pilih "sys" (dengan menekan space). kembali ke menu paling atas tekan "exit", lakukan exit lagi sampai anda kembali ke menu custom installation (nomer 5).&lt;br /&gt;12. Pilih media, pilih dari cd&lt;br /&gt;13. Pilih commit dan biarkan proses instalasi sampai selesai.&lt;br /&gt;&lt;br /&gt;Setelah selesai instalasi, anda akan ditanya apakah akan kembali ke menu utama, pilih saja tidak dan keluarkan cd dari cdrom dan bootinglah dari HD.&lt;br /&gt;&lt;br /&gt;Jika kesulitan dengan langkah instalasi ini, maka anda bisa memilih standar pada langkah 4. Disitu menu akan muncul berurutan tanpa select2 menu.&lt;br /&gt;&lt;br /&gt;Kesimpulan :&lt;br /&gt;Untuk instalasi sebenarnya ada 5 tahap utama : &lt;br /&gt;1. Boot dari CD&lt;br /&gt;2. Partisi hardisk&lt;br /&gt;3. Partisi slice (membuat / (baca : root), swap, /usr dan /var)&lt;br /&gt;4. Memilih apa saja yang akan di install&lt;br /&gt;5. Proses Instalasi&lt;br /&gt;&lt;br /&gt;Mudah kan? kan?... jangan keder dulu.. dicoba dulu deh. pasti mudah!&lt;br /&gt;Bagi yang udah praktek dari postingan ini kasih komen ya? berhasil apa ngga..&lt;br /&gt;Kali aja bisa sharing2.. ^_*&lt;br /&gt;&lt;br /&gt;Pakai FreeBSD, merdeka jinjit wess!!...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5993297542609438179?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5993297542609438179/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5993297542609438179' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5993297542609438179'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5993297542609438179'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/01/instalasi-freebsd.html' title='Instalasi FreeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-856480191437284887</id><published>2009-01-12T11:57:00.003+07:00</published><updated>2009-01-12T13:45:23.411+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><title type='text'>Pengenalan FreeBSD</title><content type='html'>FreeBSD merupakan sistem operasi bertipe Unix yang diturunkan dari UNIX AT&amp;T lewat cabang Berkeley Software Distribution (BSD) yaitu sistem operasi 386BSD dan 4.4BSD.&lt;br /&gt;&lt;br /&gt;Selain FreeBSD, OS lain yang berbasis BSD adalah NetBSD dan OpenBSD. Perbedaan dari ketiga OS tersebut simplenya seperti ini. Dilihat dari kelebihannya.&lt;br /&gt;&lt;br /&gt;1. FreeBSD : mendukung byk 3rd party software dng semboyan "ready to serve".&lt;br /&gt;2. OpenBSD : menitikberatkan pd security, dgn slogan canggihnya "secure by default".&lt;br /&gt;3. NetBSD : Mendukung banyak hardware dan berbagai arsitektur.&lt;br /&gt;&lt;br /&gt;Untuk sejarah lengkapnya bisa dibaca &lt;a href="http://blogku.wimos.info/software/free-software/sejarah-freebsdnetbsd-dan-openbsd"&gt;disini&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Karena berbasis UNIX maka perintah-perintah dasarnya juga tidak jauh berbeda dengan Linux ataupun OS berbasis UNIX lainnya. Bagi yang telah menguasai Linux akan lebih mudah menguasai Freebsd, tapi buat yang belum bisa sama sekali jangan kecil hati. FreeBSD mudah koq..&lt;br /&gt;&lt;br /&gt;FreeBSD lebih cocok dijadikan server daripada desktop. Untuk tampilan grafisnya ada X-Windows, support juga KDE dan GNOME. &lt;br /&gt;&lt;br /&gt;Bagi yang ingin menginstall untuk desktop ada PCBSD, DragonFLY dan untuk versi livecd nya ada Freesbie.&lt;br /&gt;&lt;br /&gt;Keuntungan memakai freebsd sebagai server ada buwanyakk sekali, diantaranya mudah, gratis(bisa di download langsung dr www.freebsd.org), secure, powerfull, mendukung patch dan update, disertai port dan package u/ memudahkan install software lain, disertai firewall, dan ada team yang akan selalu develop OS FreeBSD. Selain itu masih banyak kelebihan lainnya, tinggal di google aja! Banyak koq situs besar yang menggunakan FreeBSD, al : yahoo, sony japan, apache dll. &lt;br /&gt;Selain itu freebsd juga digunakan sebagai OS di berbagai perangkat seperti Cisco, juniper, Apple dan NetApp.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-856480191437284887?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/856480191437284887/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=856480191437284887' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/856480191437284887'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/856480191437284887'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/01/pengenalan-freebsd.html' title='Pengenalan FreeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7326405236344034734</id><published>2009-01-07T16:52:00.004+07:00</published><updated>2009-01-07T17:12:37.626+07:00</updated><title type='text'>demam test akhir 2008</title><content type='html'>Akhir tahun 2008 merupakan bulan-bulan dimana penerimaan cpns di berbagai lembaga secara serentak. Dari yang universitas, pemerintahan, pemerintahan dan kuburan (kalau yang ini namanya Calon Pegawai Negeri Surga).&lt;br /&gt;&lt;br /&gt;Dan sudah bisa ditebak, peserta ujiannya membludak. cukup bisa diambil kesimpulan kalo begitu banyak pengangguran di negeri yg terkenal akan produksi demo dan korupsi ini. Dari sekian banyak saya berpartisipasi sebanyak tiga kali dengan asas luber jurdil :P.&lt;br /&gt;&lt;br /&gt;Bagi yang belum pernah mengikuti, sekedar info aja ujiannya meliputi test tulis TPU (test pengetahuan umum) yang memuat soal tentang sejarah, PPKN, Tata negara, Pancasila dan UUD. Sedangkan tes bakat skolastik meliputi ujian logika dan matematika, kemampuan membaca, bahasa inggris, tes kematangan dan sebangsa itu lah.&lt;br /&gt;Sedangkan bagi lembaga yang mengadakan 2 kali penyaringan (kayak iklan minyak goreng aja..), test yang kedua adalah test tulis bidang yang diambil serta tes praktek. Untuk dosen tes prakteknya membuat RPP dan praktek mengajar.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7326405236344034734?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7326405236344034734/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7326405236344034734' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7326405236344034734'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7326405236344034734'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2009/01/demam-test-akhir-2008.html' title='demam test akhir 2008'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8924769692841891913</id><published>2008-11-14T12:43:00.002+07:00</published><updated>2008-11-14T13:05:29.674+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>Gagal = menyesal ?</title><content type='html'>Apakah kau sedih kalau gagal dan menyesali segala sesuatu yang menyebabkan kegagalan itu?&lt;br /&gt;Aku?&lt;br /&gt;If u ask me, then i would say : There's always a bit unhappiness, but regret?.&lt;br /&gt;what's a regret actually?. For me i don't think that i would regret on something, even actually i would. I always say to myself that there's no point in regretting. &lt;br /&gt;I would rather say "Ganbare ..", i'll do my best to the next.&lt;br /&gt;&lt;br /&gt;My friend's word will always console me "kesempatan tidak hanya datang sekali tapi berkali-kali.." hehehe..&lt;br /&gt;&lt;br /&gt;Yoshh...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8924769692841891913?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8924769692841891913/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8924769692841891913' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8924769692841891913'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8924769692841891913'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/11/gagal-menyesal.html' title='Gagal = menyesal ?'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5203671174483760020</id><published>2008-10-09T09:53:00.001+07:00</published><updated>2008-10-09T09:55:00.685+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tembokgeni'/><category scheme='http://www.blogger.com/atom/ns#' term='pf'/><title type='text'>Firewall dan konsepnya di BSD</title><content type='html'>Firewall merupakan fasilitas yang memungkinkan kita melakukan filter pada incoming dan outgoing traffik. Firewall bisa jadi memiliki lebih dari satu rule/aturan, rule ini dapat diterapkan untuk memeriksa karakterstik dari paket, jenis protokol, source &amp; destination host serta source &amp; destination port.&lt;br /&gt;&lt;br /&gt;Apa keuntungan memakai firewall?&lt;br /&gt;- Melindungi aplikasi, service dan komputer dari paket2 yang tidak diinginkan.&lt;br /&gt;- Membatasi/memblok akses tertentu ke internet&lt;br /&gt;- Melakukan masquarading atau lebih dikenal dgn NAT&lt;br /&gt;&lt;br /&gt;Konsep firewall &lt;br /&gt;Ada 2 cara untuk membuat rule : inclusive dan exclusive.&lt;br /&gt;&lt;br /&gt;Exclusive firewall : mengijinkan seluruh traffik kecuali traffik yg cocok dgn rule yg telah dipasang.&lt;br /&gt;Inclusive firewall : mengijinkan traffik yang cocok dengan rule yg telah dipasang dan memblok selain itu.&lt;br /&gt;&lt;br /&gt;Security dpt ditingkatkan dgn “stateful firewall”. Dgn sebuah stateful firewall, firewall akan terus memantau jalur mana yg terbuka melalui firewall dan hanya akan melewatkan traffik melalui jalur yang cocok dengan jalur yg ada atau membuka sebuah jalur baru. &lt;br /&gt;&lt;br /&gt;Ada beberapa pilihan firewall di FreeBSD :&lt;br /&gt;1. IPFW (ipfirewall)&lt;br /&gt;2. IPF (ipfilter)&lt;br /&gt;3. PF (packet filter) - merupakan firewall bawaan openbsd yg telah di port ke FreeBSD mulai versi 5.3&lt;br /&gt;&lt;br /&gt;Bahasan mengenai masing2 firewall akan dilanjutkan pada posting berikutnya...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5203671174483760020?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5203671174483760020/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5203671174483760020' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5203671174483760020'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5203671174483760020'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/10/firewall-dan-konsepnya-di-bsd.html' title='Firewall dan konsepnya di BSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-705408776092752816</id><published>2008-10-08T18:19:00.003+07:00</published><updated>2008-10-08T18:26:33.829+07:00</updated><title type='text'>Nonton beskop</title><content type='html'>Kata arek2 malang, ga ada tuh yg namanya bioskop.. adanya beskop..&lt;br /&gt;Ntar abis isya mo refreshing, setelah dapat kompor dari om Dedi ples udah baca bukunya Laskar pelangi, mupeng deh pgn liat. Puasa kmr udah diajak si sama temen2, cuman males.&lt;br /&gt;Nah sekarang mumpung badan pegel linux dan otak agak anget2 kuku, lets goo...!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-705408776092752816?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/705408776092752816/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=705408776092752816' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/705408776092752816'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/705408776092752816'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/10/nonton-beskop.html' title='Nonton beskop'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5896967800719970456</id><published>2008-09-26T07:34:00.004+07:00</published><updated>2008-09-26T07:42:01.671+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>Happy Ied Fitri</title><content type='html'>&lt;div style="text-align: center;"&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Selamat hari raya ied Fitri.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Minal Aidzin Wal Faidzin.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Mohon maaf lahir dan batin.&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_6L_NDC_CAQQ/SNwvNsd2X6I/AAAAAAAAANk/dfbiegh75Os/s1600-h/forgive-me.jpg"&gt;&lt;img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer;" src="http://3.bp.blogspot.com/_6L_NDC_CAQQ/SNwvNsd2X6I/AAAAAAAAANk/dfbiegh75Os/s320/forgive-me.jpg" alt="" id="BLOGGER_PHOTO_ID_5250123177928318882" border="0" /&gt;&lt;/a&gt;&lt;div style="text-align: center;"&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5896967800719970456?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5896967800719970456/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5896967800719970456' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5896967800719970456'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5896967800719970456'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/09/happy-ied-fitri.html' title='Happy Ied Fitri'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_6L_NDC_CAQQ/SNwvNsd2X6I/AAAAAAAAANk/dfbiegh75Os/s72-c/forgive-me.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5263699605146983601</id><published>2008-09-20T19:51:00.002+07:00</published><updated>2008-09-20T20:19:53.824+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='pf'/><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><title type='text'>round robin vs loadbalance part 1</title><content type='html'>Hari ini hari yang melelahkan, setelah seharian muter2 dan merubah router u/ memanage beberapa link yang sebelumnya memakai metode loadbalace memakai OS mikrotik terpaksa harus migrasi ke metode round robin dengan OS Freebsd.&lt;br /&gt;&lt;br /&gt;Masih bingung apa itu load balance, round robin, robin hood.. dll :P. Berikut sedikit kutipan yg saya ambil dari blognya &lt;a href="http://yulian.firdaus.or.id/"&gt;Pak Jay&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-weight: bold;"&gt;Dua koneksi&lt;/span&gt;&lt;br /&gt;Permasalahan umumnya muncul di sini, saat sebuah router mempunyai dua koneksi ke internet (sama atau berbeda ISP-nya). Default gateway di router tetap hanya bisa satu, ditambah pun yang bekerja tetap hanya satu. Jadi misal router NAT anda terhubung ke ISP A melalui interface A dan gateway A dan ke ISP B melalui interface B dan gateway B, dan default gateway ke ISP A, maka trafik downlink hanya akan datang dari ISP A saja. Begitu juga sebaliknya jika dipasang default gateway ke ISP B. &lt;p&gt;Bagaimana menyelesaikan permasalahan tersebut?&lt;br /&gt;Konsep utamanya adalah &lt;em&gt;source-address routing&lt;/em&gt;. Source-address routing ibaratnya anda dicegat di persimpangan oleh polisi dan polisi menanyakan “anda dari mana?” dan anda akan ditunjukkan ke jalur yang tepat.&lt;/p&gt; &lt;p&gt;Pada router NAT (atau router pada umumnya), source-address secara default tidak dibaca, tidak dipertimbangkan. Jadi pada kasus di atas karena default gateway ke ISP A maka NAT akan meneruskan paket sebagai paket yang pergi dari IP address interface A (yang otomatis akan mendapat downlink dari ISP A ke interface A dan diteruskan ke jaringan dalam).&lt;/p&gt; &lt;p&gt;Dalam jaringan yang lebih besar (bukan NAT), source-address yang melewati network lain disebut sebagai transit (di-handle dengan protokol BGP oleh ISP). Contoh praktis misalnya anda membeli bandwidth yang turun dari satelit melalui DVB, namun koneksi uplink menggunakan jalur terestrial (dial-up, leased-line atau fixed-wireless). Dalam kasus ini paket inisiasi koneksi harus menjadi source-address network downlink DVB, agar bandwidth downlink dari internet mengarah DVB receiver, bukan ke jalur terestrial.&lt;/p&gt;&lt;img src="file:///C:/DOCUME%7E1/ADMINI%7E1/LOCALS%7E1/Temp/moz-screenshot-1.jpg" alt="" /&gt;&lt;p&gt;Di lingkungan Linux, pengaturan source-address bisa dilakukan oleh iproute2. Iproute2 akan bekerja sebelum diteruskan ke table routing. Misal kita mengatur dua segmen LAN internal agar satu segmen menjadi source-address A dan satu segmen lainnya menjadi source-address B, agar kedua koneksi ke ISP terutilisasi bersamaan.&lt;/p&gt; &lt;p&gt;Penerapan utilisasi dua koneksi tersebut bisa mengambil tiga konsep, yaitu round-robin, loadbalance atau failover. &lt;/p&gt; &lt;p&gt;1. Round-robin&lt;br /&gt;Misalkan anda mempunyai tiga koneksi internet di satu router NAT, koneksi pertama di sebut Batman, koneksi kedua disebut Baskin dan koneksi ketiga disebut Williams, maka konsep round-robin adalah sang Robin akan selalu berpindah-pindah secara berurutan mengambil source-address (bukan random). Misal ada satu TCP session dari komputer di jaringan internal, maka koneksi TCP tersebut tetap di source-address pertama hingga sesi TCP selesai (menjadi Batman &amp;amp; Robin). Saat TCP session Batman &amp;amp; Robin tersebut belum selesai, ada ada request koneksi baru dari jaringan, maka sang Robin akan mengambil source-address koneksi berikutnya, menjadi Baskin &amp;amp; Robin. Dan seterusnya sang Robin akan &lt;em&gt;me-round-round&lt;/em&gt; setiap koneksi tanpa memperhatikan penuh atau tidaknya salah satu koneksi.&lt;/p&gt; &lt;p&gt;&lt;em&gt;Pasti anda sedang pusing membaca kalimat di atas, atau sedang tertawa terbahak-bahak.&lt;/em&gt;&lt;/p&gt; &lt;p&gt;2. Loadbalance&lt;br /&gt;Konsep loadbalance mirip dengan konsep round-robin di atas, hanya saja sang Robin dipaksa melihat utilisasi ketiga koneksi tersebut di atas. Misalkan koneksi Batman &amp;amp; Robin serta Baskin &amp;amp; Robin sudah penuh, maka koneksi yang dipilih yang lebih kosong, dan koneksi yang diambil menjadi Robin Williams. Request koneksi berikutnya kembali sang Robin harus melihat dulu utilisasi koneksi yang ada, apakah ia harus menjadi Batman &amp;amp; Robin, Baskin &amp;amp; Robin atau Robin Williams, agar semua utilisasi koneksi seimbang, balance.&lt;/p&gt; &lt;p&gt;3. Failover&lt;br /&gt;Konsep fail-over bisa disebut sebagai backup otomatis. Misalkan kapasitas link terbesar adalah link Batman, dan link Baskin lebih kecil. Kedua koneksi tersebut terpasang online, namun koneksi tetap di satu link Batman &amp;amp; Robin, sehingga pada saat link Batman jatuh koneksi akan berpindah otomatis ke link Baskin, menjadi Baskin &amp;amp; Robin hingga link Batman up kembali.&lt;/p&gt;&lt;/blockquote&gt;&lt;p&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;Nah setelah saya implementasikan, ternyata gampangnya gini. Anggap saja kita punya 2 jalur ke internet, jika menggunakan metode  :&lt;br /&gt;1. round robin : maka koneksi ke internet akan memakai kedua jalur tersebut secara bergantian, jadi kedua link akan terpakai hampir sama besar.&lt;br /&gt;2. loadbalance : maka koneksi ke internet akan memakai jalur 1, baru setelah jalur satu penuh maka jalur ke 2 bisa digunakan.&lt;br /&gt;&lt;br /&gt;Nah,.. dengan kebutuhan yang ada saat ini ternyata lebih cocok menggunakan metode round robin, koneksi jadi lebih wuzz wuzz..&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Setting Router &lt;/span&gt;&lt;br /&gt;Install minimal FreeBSD  (penulis menggunakan FreeBSD 6.3) dgn memilih sys pada option src dan tambahkan port untuk memudahkan instalasi 3rd party software.&lt;br /&gt;&lt;br /&gt;Aktifkan PF, IPFW, dan IPFILTER (sebenarnya PF cukup, tapi tidak ada salahnya install fitur2 tsb u/ kebutuhan2 ttt), sshd, enable_gateway.&lt;br /&gt;&lt;br /&gt;Install mtr, ifstat, net-snmpd &amp;amp; mrtg, tcptrack, trafshow, lynx, apache, kesemuanya adalah tool u/ monitoring.. sangat2 berguna.&lt;br /&gt;&lt;br /&gt;Sementara itu dulu, detailnya instalasi step by step nya akan saya bahas next aja.. skr meski baru jam 8 lebih dah capek beratttt...cawwww!...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5263699605146983601?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5263699605146983601/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5263699605146983601' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5263699605146983601'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5263699605146983601'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/09/round-robin-vs-loadbalance-part-1.html' title='round robin vs loadbalance part 1'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4028404601362795046</id><published>2008-08-29T18:24:00.005+07:00</published><updated>2008-09-01T10:48:01.264+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='debian'/><title type='text'>Linux lagi</title><content type='html'>Berikut beberapa istilah yang sering digunakan di linux, beberapa istilah berikut juga sering digunakan di unix based OS.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Kernel&lt;/span&gt; &lt;span style=";font-family:Verdana;font-size:78%;"  &gt;&lt;span style="font-size:85%;"&gt;     The kernel is a program that constitutes the central core of a      computer operating system. It has complete control over      everything that occurs in the system.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;kernel can be contrasted with a shell (such as bash, csh or ksh in Unix-like operating systems), which is the outermost part of an operating system and a program that interacts with user commands. The kernel itself does not interact directly with the user, but rather interacts with the shell and other programs as well as with the hardware devices on the system, including the processor (also called the central processing unit or CPU), memory and disk drives&lt;br /&gt;&lt;br /&gt;file system?&lt;br /&gt;&lt;br /&gt;a file system (sometimes written filesystem) is the way in which files are named and where they are placed logically for storage and retrieval. The DOS, Windows, OS/2, Macintosh, and UNIX-based operating systems all have file systems in which files are placed somewhere in a hierarchical (tree) structure. A file is placed in a directory (folder in Windows) or subdirectory at the desired place in the tree structure.&lt;br /&gt;&lt;br /&gt;File systems specify conventions for naming files. These conventions include the maximum number of characters in a name, which characters can be used, and, in some systems, how long the file name suffix can be. A file system also includes a format for specifying the path to a file through the structure of directories.&lt;br /&gt;&lt;br /&gt;what is mutiuser?&lt;br /&gt;&lt;br /&gt;computer systems that support two or more simultaneous users. All mainframes and minicomputers are multi-user systems, but most personal computers and workstations are not. Another term for multi-user is time sharing.&lt;br /&gt;&lt;br /&gt;what is GUI?&lt;br /&gt;&lt;br /&gt;A graphical user interface (GUI) is a human-computer interface (i.e., a way for humans to interact with computers) that uses windows, icons and menus and which can be manipulated by a mouse (and often to a limited extent by a keyboard as well).&lt;br /&gt;&lt;br /&gt;GUIs stand in sharp contrast to command line interfaces (CLIs), which use only text and are accessed solely by a keyboard. The most familiar example of a CLI to many people is MS-DOS. Another example is Linux when it is used in console mode (i.e., the entire screen shows text only).&lt;br /&gt;&lt;br /&gt;Linux filesystem types?&lt;br /&gt;&lt;br /&gt;minix, ext, ext2, ext3, xia, msdos, umsdos, vfat, proc, nfs, iso9660, hpfs, sysv, smb, ncpfs&lt;br /&gt;&lt;br /&gt;what is fdisk?&lt;br /&gt;&lt;br /&gt;The program Microsoft operating systems MS-DOS and non-NT versions of Windows use to create partitions on hard drives. Technically, the program is called fdisk.exe. It uses a text-based interface. Windows 95b first added support for FAT-32 partitions into fdisk. Before that it only supported partitions up to 2 GB using FAT-16. This is also a slang term for wiping a drive out completely, as in "I'm going to F-Disk this drive if Windows crashes one more time!" There are several non-Microsoft equivalents to fdisk, but all serve similar purposes--to allow partitioning of hard disk drives.&lt;br /&gt;&lt;br /&gt;what is shell in linux?&lt;br /&gt;&lt;br /&gt;A shell is a program that provides the traditional, text-only user interface for Unix-like operating systems. Its primary function is to read commands that are typed into a console (i.e., an all-text display mode) or terminal window (an all-text window) in a GUI (graphical user interface) and then execute (i.e., run) them.&lt;br /&gt;&lt;br /&gt;The term shell derives its name from the fact that it is an outer layer of an operating system. A shell is an interface between the user and the internal parts of the operating system (at the very core of which is the kernel).&lt;br /&gt;&lt;br /&gt;what is lilo?&lt;br /&gt;&lt;br /&gt;Lilo means last in last out . LILO is a versatile boot loader for Linux. It does not depend on a specific file system, can boot Linux kernel images from floppy disks and hard disks, and can even boot other operating systems. One of up to sixteen differernt images can be selected at boot time. Various parameters, such as the root device, can be set indepenantly for each kernel. LILO can even be used as the master boot record.&lt;br /&gt;&lt;br /&gt;What is Grub?&lt;br /&gt;&lt;br /&gt;Grand Unified Bootloader (GRUB)” .A small software utility that loads and manages multiple operating systems (and their variants).&lt;br /&gt;&lt;br /&gt;Where Is the Latest Kernel Version on the Internet?&lt;br /&gt;&lt;br /&gt;The easiest way to update your kernel is to get the update directly from the distribution which you are running.&lt;br /&gt;If you need or want to configure and compile your own kernel, the web page at http://www.kernel.org/ lists the current versions of the development and production kernels.&lt;br /&gt;&lt;br /&gt;What is FSCK?&lt;br /&gt;&lt;br /&gt;fsck - check and repair a Linux file system.&lt;br /&gt;fsck is used to check and optionally repair one or more Linux file systems. filesys can be a device name (e.g. /dev/hdc1, /dev/sdb2), a mount point (e.g. /, /usr, /home), or an ext2 label or UUID specifier (e.g.UUID=8868abf6-88c5-4a83-98b8-bfc24057f7bd or LABEL=root). Normally, the fsck program will try to handle filesystems on different physical disk drives in parallel to reduce the total amount of time needed to check all of the filesystems.&lt;br /&gt;&lt;br /&gt;If no filesystems are specified on the command line, and the -A option is not specified, fsck will default to checking filesystems in /etc/fstab serially. This is equivalent to the -As options.&lt;br /&gt;&lt;br /&gt;what is partition?&lt;br /&gt;&lt;br /&gt;A partition is a section of a hard disk. When you format a hard disk, you can usually choose the number of partitions you want. The computer will recognize each partition as a separate disk, and each will show up under "My Computer" (Windows) or on the desktop (Macintosh).&lt;br /&gt;&lt;br /&gt;What is a boot loader?&lt;br /&gt;&lt;br /&gt;Most simply, a boot loader loads the operating system. When your machine loads its operating system, the BIOS reads the first 512 bytes of your bootable media (which is known as the master boot record, or MBR). You can store the boot record of only one operating system in a single MBR, so a problem becomes apparent when you require multiple operating systems. Hence the need for more flexible boot loaders.&lt;br /&gt;&lt;br /&gt;The master boot record itself holds two things -- either some of or all of the boot loader program and the partition table (which holds information regarding how the rest of the media is split up into partitions). When the BIOS loads, it looks for data stored in the first sector of the hard drive, the MBR; using the data stored in the MBR, the BIOS activates the boot loader.&lt;br /&gt;&lt;br /&gt;What is PAM?&lt;br /&gt;(Pluggable Authentication Modules) A programming interface that enables third-party security methods to be used in Unix. For example, smart cards, Kerberos and RSA technologies can be integrated with various Unix functions such as rlogin, telnet and ftp.&lt;br /&gt;&lt;br /&gt;What is default shell in linux?&lt;br /&gt;Most of the Linux Distributions default shell is bash shell&lt;br /&gt;&lt;br /&gt;sek males nerjemahno&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4028404601362795046?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4028404601362795046/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4028404601362795046' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4028404601362795046'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4028404601362795046'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/08/linux-lagi.html' title='Linux lagi'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5799909924391060250</id><published>2008-08-29T17:25:00.004+07:00</published><updated>2008-08-29T18:17:49.016+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='FTP'/><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>Cerita skripsi</title><content type='html'>Sejarah skripsiku dimulai dengan pertanyaan2 setengah penting ke para dosen yang kutemui. Pak skripsinya koq di perpus rata2 coding sih? emang yg networking atau yg sejenis gtu gak boleh tah?. La memangnya kamu maunya apa?. Aku mulai berorasi semangat 45 mengutarakan ide2ku. Tapi...... koq dosennya kayaknya ga respon, apa bukan bidangnya atau gimana ya. -sigh-&lt;br /&gt;&lt;br /&gt;Walhasil aku memutar otak, mutar stang, belok kanan, rem depan, gas poll. Cling! aku baru ingat kalau beberapa waktu lalu udah install FTP server memakai PureFTPD dan databasenya kan pakai mysql. &lt;br /&gt;&lt;br /&gt;Tring2.. ;;)&lt;br /&gt;Tercetus ide u/ membuat sistem informasi yg mengelola seluruh data pelanggan FTP hosting mulai dari data account, data pembayaran, data pelanggan, paket FTP, reset password dll.. Pokok intinya manajemen pelanggan ftp hosting lah. Bayangin aja kayak sistem untuk mengelola account di rapidshare atau gudang upload gtu... cieh.. sok mboisnya diriku.&lt;br /&gt;&lt;br /&gt;Akhirnya gerilya dimulai, melalui jalan berliku-liku tapi lewat tol hehe..&lt;br /&gt;Judul skripsiku mungkin kurang mbois ya.. Sistem Informasi Administrasi Pelanggan FTP Hosting...dst2..&lt;br /&gt;&lt;br /&gt;Alhamdulillah sudah diuji dan yudisium tanggal 16 Agustus kemarin sudah diketik oleh sayuti melik dan disahkan atas nama bangsa indonesia.. Soekarno Hatta..ralat2!! pemirsa.. diuji oleh dosen2 kampusku lah dan disahkan oleh kampus kalo aq LULUS.&lt;br /&gt;&lt;br /&gt;Tapi.. ijasah masih belum ditangan.. harus bayar 750K u/ ambil ijasah, itu uang wisuda dan tetek bengeknya.. cedih..bokek..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5799909924391060250?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5799909924391060250/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5799909924391060250' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5799909924391060250'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5799909924391060250'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/08/cerita-skripsi.html' title='Cerita skripsi'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-3224749998687455629</id><published>2008-08-22T08:46:00.002+07:00</published><updated>2008-08-22T09:01:05.689+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='debian'/><title type='text'>Debian Overview</title><content type='html'>Debian merupakan salah satu distro (distibution) dari Linux. Linux merupakan sebuah Free OS berbasis Unix yang ditemukan oleh Linus T.&lt;br /&gt;&lt;br /&gt;Linux mempunyai 4 komponen utama :&lt;br /&gt;1. Kernel&lt;br /&gt;2. Managemen File&lt;br /&gt;3. GUI&lt;br /&gt;4. Multi user&lt;br /&gt;&lt;br /&gt;Debian ditemukan th 1993 oleh Ian Murdock, mahasiswa Purdue University, yang menulis the Debian Manifesto yang disebut sebagai kreasi distro linux u/ dimantain scr open dengan semangat Linux dan GNU. Nama debian diambil dari nama Ian dan nama pacarnya Debra yang akhirnya dimekso2kan menjadi debian.&lt;br /&gt;&lt;br /&gt;Debian terbaru adalah etch (saat penulis posting tulisan ini). Sebelum etch ada sarge,woody,potato dll. Penamaan tersebut merupakan code untuk versi debian agar mudah diingat, misalnya untuk sarge (debian 3.1), woody untuk debian 3.0 dll. Kalau di freebsd penamaanya ya udah langsung aja sebut freebsd 5.4, freebsd 7.0 dst tidak ada codename2.&lt;br /&gt;&lt;br /&gt;Untuk hardware2 yang didukung oleh debian bisa dilihat di &lt;a href="http://www.tldp.org/HOWTO/Hardware-HOWTO/"&gt;sini&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Sekian dulu untuk postingan kali ini. Postingan selanjutnya insya Allah masih tentang debian juga.&lt;br /&gt;&lt;br /&gt;Artikel di terjemahkan secara bebas oleh penulis dari : http://debianhelp.co.uk/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-3224749998687455629?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/3224749998687455629/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=3224749998687455629' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3224749998687455629'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3224749998687455629'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/08/debian-overview.html' title='Debian Overview'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8516385578336780534</id><published>2008-08-20T16:51:00.002+07:00</published><updated>2008-08-20T17:16:35.385+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><title type='text'>Mencari tahu distribusi (distro) Linux box</title><content type='html'>Sebenarnya udah agak lama aku nyari perintah di linux untuk mengetahui jenis ditro yang digunakan, karena beda dengan freebsd yg kalau di uname -a langsung deh kliatan freebsd versi brapa stable atau release dll. coba nih bandingkan&lt;br /&gt;&lt;br /&gt;uname -a pada FreeBSD :&lt;br /&gt;&lt;br /&gt;FreeBSD 6.2-RELEASE-p1 #0: Tue Feb 27 17:40:07 WIT 2007     root@gateway.net:/usr/src/sys/i386/compile/ROUTER  i386&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;uname -a pada pada unknown linux box :&lt;br /&gt;&lt;br /&gt;Linux cobanet 2.6.21.5-smp #2 SMP Tue Jun 19 14:58:11 CDT 2007 i686 Intel(R) Pentium(R) D  CPU 2.66GHz GenuineIntel GNU/Linux&lt;br /&gt;&lt;br /&gt;Nah kan.. bagi saya yang kurang familier dengan linux apalagi versi kernel2nya.. susah juga.&lt;br /&gt;&lt;br /&gt;Setelah tanya sini situ, ternyata bisa dicoba dengan cara &lt;br /&gt;# more /etc/issue&lt;br /&gt;&lt;br /&gt;Tapi pada linux box yg saya test keluarnya gini :&lt;br /&gt;&lt;br /&gt;root@cobanet:~# more /etc/issue&lt;br /&gt;Welcome to \s \r (\l)&lt;br /&gt;&lt;br /&gt;Saya masih penasaran, akhirnya googling dannnnn alhamdulillah ketemu scriptnya, ini nih scriptnya :&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;      #!/bin/ksh&lt;br /&gt;&lt;br /&gt;      system=`uname -s| tr 'A-Z' 'a-z'`&lt;br /&gt;&lt;br /&gt;      cputype=`uname -m`&lt;br /&gt;&lt;br /&gt;      for rfile in \&lt;br /&gt;         SuSE-release \&lt;br /&gt;         redhat-release \&lt;br /&gt;         redhat_version \&lt;br /&gt;         gentoo-release \&lt;br /&gt;         fedora-release \&lt;br /&gt;         turbolinux-release \&lt;br /&gt;         mandrake-release \&lt;br /&gt;         mandrakelinux-release \&lt;br /&gt;         debian_version \&lt;br /&gt;         debian_release \&lt;br /&gt;         knoppix-version \&lt;br /&gt;         yellowdog-release \&lt;br /&gt;         slackware-version \&lt;br /&gt;         slackware-release \&lt;br /&gt;         conectiva-release \&lt;br /&gt;         mandriva-release \&lt;br /&gt;         immunix-release \&lt;br /&gt;         tinysofa-release \&lt;br /&gt;         trustix-release \&lt;br /&gt;         adamantix_version \&lt;br /&gt;         yoper-release \&lt;br /&gt;         arch-release \&lt;br /&gt;         libranet_version \&lt;br /&gt;         va-release \&lt;br /&gt;         ; do&lt;br /&gt;         if [ -r /etc/$rfile ] ; then&lt;br /&gt;            distro=$(echo $rfile | \&lt;br /&gt;               tr 'A-Z' 'a-z' | \&lt;br /&gt;               sed -e 's/[_-]\(release\|version\)$//')&lt;br /&gt;            if [ "$distro" = "va" ] ; then distro=va-linux; fi&lt;br /&gt;            break&lt;br /&gt;         fi&lt;br /&gt;      done&lt;br /&gt;&lt;br /&gt;      case "$distro" in&lt;br /&gt;         suse)&lt;br /&gt;            if grep -q Enterprise /etc/SuSE-release ; then&lt;br /&gt;               release=SLES&lt;br /&gt;               version=$(egrep 'VERSION' /etc/SuSE-release | \&lt;br /&gt;                  sed -e 's/ *VERSION *= *//')-pl$(egrep 'PATCHLEVEL' \&lt;br /&gt;                  /etc/SuSE-release | sed -e 's/ *PATCHLEVEL *= *//')&lt;br /&gt;            else&lt;br /&gt;               release=SuSE&lt;br /&gt;               version=$(egrep 'VERSION' /etc/SuSE-release | \&lt;br /&gt;                  sed -e 's/ *VERSION *= *//')&lt;br /&gt;            fi&lt;br /&gt;            ;;&lt;br /&gt;         redhat)&lt;br /&gt;            # First part of red hat release is everything before 'release'&lt;br /&gt;            release=$(sed -e 's/ release.*$//' /etc/redhat-release | \&lt;br /&gt;               sed -e 's/[^A-Z]//g')&lt;br /&gt;            # Second part of red hat release is numbers after 'release'&lt;br /&gt;            version=$( sed -e 's/^.* release//' /etc/redhat-release | \&lt;br /&gt;               sed -e 's/[^0-9]//g' | \&lt;br /&gt;               sed -e 's/\([0-9]\)\([0-9]\)/\1.\2/g')&lt;br /&gt;            ;;&lt;br /&gt;      esac&lt;br /&gt;&lt;br /&gt;      # CPU info from /proc/cpuinfo&lt;br /&gt;      set -A model_info \&lt;br /&gt;         $(grep 'model name' /proc/cpuinfo | \&lt;br /&gt;         uniq | \&lt;br /&gt;         tr 'A-Z' 'a-z' | \&lt;br /&gt;         perl -wn -e \&lt;br /&gt;         's/\s*model\s*name\s*:\s*//go; s/\((tm|r)\)//go; s/\s*(processor|cpu)//go; print;')&lt;br /&gt;      cpuvendor=${model_info[0]}&lt;br /&gt;      cpumodel=${model_info[1]}&lt;br /&gt;      cpuspeed=${model_info[2]}&lt;br /&gt;&lt;br /&gt;      # GLIBC info:&lt;br /&gt;      glibc=$(rpm -qv glibc|uniq)&lt;br /&gt;&lt;br /&gt;      printf "$system $cputype $cpumodel $distro $release-$version $glibc $cpuvendor $cpuspeed\n"&lt;br /&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8516385578336780534?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8516385578336780534/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8516385578336780534' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8516385578336780534'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8516385578336780534'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/08/mencari-tahu-distribusi-distro-linux.html' title='Mencari tahu distribusi (distro) Linux box'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1775774202218401708</id><published>2008-08-13T17:06:00.002+07:00</published><updated>2008-08-13T17:14:12.919+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>iklan odol...</title><content type='html'>Tau kan iklan odol *ups sebut merk*, maksud saya iklan pasta gigi yang ada gelembung2 di pasar dan akhirnya cowok n ceweknya ketemu. Nah, saya suka lagunya :P. &lt;br /&gt;Mirip2 sama lagunya coldplay yang ini, mantap!. Coldplay, grup musik yang saya suka setelah scorpions ^_^. Sementara ini scorpion numero uno, dan coldplay number one. loh?? :P&lt;br /&gt;&lt;br /&gt;&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/c9j_RZDqYc4&amp;hl=en&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/c9j_RZDqYc4&amp;hl=en&amp;fs=1" type="application/x-shockwave-flash" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Lights go out and I can't be saved&lt;br /&gt;Tides that I tried to swim against&lt;br /&gt;You've put me down upon my knees&lt;br /&gt;Oh I beg, I beg and plead (singing)&lt;br /&gt;Come out of things unsaid, shoot an apple off my head (and a)&lt;br /&gt;Trouble that can't be named, tigers waiting to be tamed (singing)&lt;br /&gt;You are, you are&lt;br /&gt;&lt;br /&gt;Confusion never stops, closing walls and ticking clocks (gonna)&lt;br /&gt;Come back and take you home, I could not stop, that you now know (singing)&lt;br /&gt;Come out upon my seas, curse missed opportunities (am I)&lt;br /&gt;A part of the cure, or am I part of the disease (singing)&lt;br /&gt;&lt;br /&gt;You are [x6]&lt;br /&gt;And nothing else compares&lt;br /&gt;Oh no nothing else compares&lt;br /&gt;And nothing else compares&lt;br /&gt;&lt;br /&gt;You are [continues in background]&lt;br /&gt;Home, home, where I wanted to go [x4]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1775774202218401708?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1775774202218401708/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1775774202218401708' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1775774202218401708'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1775774202218401708'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/08/iklan-odol.html' title='iklan odol...'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2076661260821474960</id><published>2008-07-23T18:32:00.001+07:00</published><updated>2008-07-23T18:33:54.971+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>Lo kan.. La konn...</title><content type='html'>&lt;blockquote&gt;La kon seneng tah dike'i wong terus-terusan?&lt;br /&gt;Gak pingin tah ngeke'i wong?&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2076661260821474960?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2076661260821474960/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2076661260821474960' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2076661260821474960'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2076661260821474960'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/07/lo-kan-la-konn.html' title='Lo kan.. La konn...'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-459827923517022033</id><published>2008-06-16T18:40:00.002+07:00</published><updated>2008-06-16T19:09:50.731+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='hardware'/><title type='text'>Tambah HD di FReeBSD</title><content type='html'>Ceritanya berawal dari instalasi server yang menggunakan 2HD. Kedua HD merk sigit tsb terpasang di IDE 1, sbg juragan dan pembantu alias master n slave.&lt;br /&gt;Di FreeBSD dikenal sbg ad0 dan ad1. ad0 saya install OS FreeBSD sedangkan ad0 tidak ada OS nya, hanya partisi data saja.&lt;br /&gt;&lt;br /&gt;Jreng.. jreng.. takdir berkata lain, baru semalam dipasang ternyata ngadat hihi..&lt;br /&gt;setelah cek sana sini sono ternyata HD satunya gak berezzz. Untung aja hd yg tak partisi sbg data, bukan OS e.. lek OS e lak ndomblong aq nginstall maneh... :P&lt;br /&gt;&lt;br /&gt;Akhirnya pasang HD baru, tp HD yg kedua gak tak jadiin pembantu. Smua tak jadiin master biar adil. Nah.. berhubung HD pengganti ini partisinya masih NTFS, maka perlu qta partisi ulang, dilabel trus di mount biar terbaca di OS ku. &lt;br /&gt;Begini loh caranya yg cepet :&lt;br /&gt;&lt;br /&gt;- ketik sysinstall u/ FreeBSD versi 6 ke atas, untuk v.5 kebawah ketik /stand/sysinstall.&lt;br /&gt;- pilih configure - partition&lt;br /&gt;- delete semua partisi (d) - ketik a - ketik w, kalau ada komentar pilih yes aja wes - ketik q untuk finish&lt;br /&gt;- untuk pilihan instalasi MBR, pilih "none".&lt;br /&gt;- pilih label&lt;br /&gt;- ketik c - jika ingin dijadikan satu partisi jangan edit angka yg ada - kemudian pilih "file system" ketikkan nama mount pointnya, misal : /data&lt;br /&gt; ketik w - pilih "yes"&lt;br /&gt;- ketik q untuk finish&lt;br /&gt;&lt;br /&gt;Nah, belum selesai kare di /etc/fstab belum ada mounting pointnya :P&lt;br /&gt;tinggal tambahkan aja :&lt;br /&gt;# Device                Mountpoint      FStype  Options         Dump    Pass#&lt;br /&gt;/dev/ad2s1d              /data          ufs     rw              2       2&lt;br /&gt;&lt;br /&gt;Selesai.&lt;br /&gt;&lt;br /&gt;Untuk mode text ada juga caranya :&lt;br /&gt;&lt;br /&gt;# fdisk -BI /dev/ad2&lt;br /&gt;# bsdlabel -w -B ad2s1d&lt;br /&gt;# bsdlabel ad2s1d&lt;br /&gt;# newfs /dev/ad2s1d&lt;br /&gt;# bsdlabel -e ad2s1d&lt;br /&gt;# mount /dev/ad2s1d /data&lt;br /&gt;&lt;br /&gt;Jgn lupa tambahkan mountingnya di /etc/fstab&lt;br /&gt;&lt;br /&gt;^___^&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-459827923517022033?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/459827923517022033/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=459827923517022033' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/459827923517022033'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/459827923517022033'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/06/tambah-hd-di-freebsd.html' title='Tambah HD di FReeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-3930866975055075613</id><published>2008-06-07T21:13:00.000+07:00</published><updated>2008-06-16T19:39:47.601+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='file share'/><category scheme='http://www.blogger.com/atom/ns#' term='samba'/><title type='text'>Samba tidak hanya di Brazil :P</title><content type='html'>Siapa bilang samba itu khas brazil? buktinya di sini ada samba terasi.. samba goreng ati :P.&lt;br /&gt;&lt;br /&gt;Bismillah, kita mulai buat sambal..&lt;br /&gt;&lt;br /&gt;# cd /usr/ports/net/samba&lt;br /&gt;# make install clean&lt;br /&gt;# cd /usr/ports/security/samba-vscan (saya pakai clamd)&lt;br /&gt;# make install clean &lt;br /&gt;&lt;br /&gt;File konfigurasi samba ada di /usr/local/etc/smb.conf&lt;br /&gt;Mari kita edit file konfigurasinya :&lt;br /&gt;&lt;br /&gt;log file = /var/log/samba/log.%m&lt;br /&gt;log file = /var/log/Samba-%m.log&lt;br /&gt;&lt;br /&gt;[global]&lt;br /&gt;workgroup = grupkerjo&lt;br /&gt;security = share&lt;br /&gt;server string = Data Server&lt;br /&gt;#local master = yes&lt;br /&gt;#os level = 65&lt;br /&gt;#domain master = yes&lt;br /&gt;#preferred master = yes&lt;br /&gt;#null passwords = no&lt;br /&gt;#hide unreadable = yes&lt;br /&gt;hide dot files = yes&lt;br /&gt;&lt;br /&gt;[data]&lt;br /&gt;   comment = Iki loh mek komentar, gak ngaruh opo².. sumpah!&lt;br /&gt;   browseable = yes&lt;br /&gt;   writable = yes&lt;br /&gt;   path = /data/home/&lt;br /&gt;   security = USER&lt;br /&gt;   encrypt passwords = yes&lt;br /&gt;   smb passwd file = /usr/local/etc/samba/smbpasswd&lt;br /&gt;   username map = /etc/passwd&lt;br /&gt;&lt;br /&gt;[umum]&lt;br /&gt;   comment = %h Shared Public Directory&lt;br /&gt;   path = /data/umum/&lt;br /&gt;   force directory mode = 0777&lt;br /&gt;   force create mode = 0777&lt;br /&gt;   force group = nobody&lt;br /&gt;   force user = nobody&lt;br /&gt;   public = yes&lt;br /&gt;   writeable = yes&lt;br /&gt;   read only = no&lt;br /&gt;vfs object = vscan-clamav&lt;br /&gt;vscan-kavp: config-file = /usr/local/etc/samba-vscan/vscan-clamav.conf&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Ket :&lt;br /&gt;Jika kita mengakses server samba, anggap saja ipnya 10.11.12.13, maka akan ada 2 folder yaitu data dan umum. Untuk umum bisa diakses tanpa ada login, sedangkan u folder data akan muncul login.&lt;br /&gt;&lt;br /&gt;Cara create login adalah dgn adduser di OS, misalkan usernamenya runia.&lt;br /&gt;Lanjutkan dengan create login tsb u/ samba.&lt;br /&gt;# smbpasswd -a runia&lt;br /&gt;&lt;br /&gt;Nahh.. selanjutnya adalah pengalaman yg simple tapi sebel :))&lt;br /&gt;Ceritanya, dari windows itu kalau mau ngakses ke folder samba yg kita kasih password kan usernamenya selalu default dgn login sewaktu kita masuk windows..(biasanya sih Guest).&lt;br /&gt;&lt;br /&gt;Untuk meyiasatinya, akses folder kita - klik kanan - map work drive. NAH! klik pada pilihan "login as different user". Masukkan login kita, misal runia disertai passwordnya...&lt;br /&gt;&lt;br /&gt;Selamat mencoba.. dan selamat tidur.. aku ngantukk&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-3930866975055075613?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/3930866975055075613/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=3930866975055075613' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3930866975055075613'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3930866975055075613'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/03/samba-tidak-hanya-di-brazil-p.html' title='Samba tidak hanya di Brazil :P'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-18557183201506390</id><published>2008-04-04T14:31:00.001+07:00</published><updated>2008-04-04T14:40:48.546+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='proxy'/><title type='text'>Instalasi squidguard</title><content type='html'>Install BerkeleyDB &lt;br /&gt;&lt;br /&gt;    cd /downloads&lt;br /&gt;    fetch http://www.sleepycat.com/update/snapshot/db-4.0.14.tar.gz&lt;br /&gt;    tar xzvf db-4.3.28.NC.tar.gz&lt;br /&gt;    cd db-4.3.28.NC&lt;br /&gt;    cd build_unix&lt;br /&gt;    ../dist/configure --prefix=/usr/local/BerkeleyDB&lt;br /&gt;    make&lt;br /&gt;    make install&lt;br /&gt;    cd ..&lt;br /&gt;    cd ..&lt;br /&gt;cd /usr/local/BerkeleyDB/lib&lt;br /&gt;cp * /usr/local/lib&lt;br /&gt;cd /usr/local/BerkeleyDB/include&lt;br /&gt;cp * /usr/local/include&lt;br /&gt;&lt;br /&gt;fetch http://www.squidguard.org/squidGuard-1.2.0.tar.gz&lt;br /&gt;tar -xzvf squidGuard-1.2.0.tar.gz&lt;br /&gt;cd squidGuard-1.2.0&lt;br /&gt;./configure &lt;br /&gt;make &lt;br /&gt;make test&lt;br /&gt;make install&lt;br /&gt;&lt;br /&gt;buat directory &lt;br /&gt;/usr/local/squidGuard/log&lt;br /&gt;cd /usr/local/squidGuar/&lt;br /&gt;fetch http://squidguard.mesd.k12.or.us/blacklists.tgz&lt;br /&gt;tar -xzvf blacklist.tgz&lt;br /&gt;mv blacklist db&lt;br /&gt;chown -R squid:squid db&lt;br /&gt;&lt;br /&gt;buat file &lt;br /&gt;ee /usr/local/squidGuard/squidguard.conf&lt;br /&gt;&lt;br /&gt;dbhome /usr/local/squidGuard/db&lt;br /&gt;logdir /usr/local/squidGuard/log&lt;br /&gt;dest ads {&lt;br /&gt;        domainlist      ads/domains&lt;br /&gt;        urllist         ads/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest drugs {&lt;br /&gt;        domainlist      drugs/domains&lt;br /&gt;        urllist         drugs/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest gambling {&lt;br /&gt;        domainlist      gambling/domains&lt;br /&gt;        urllist         gambling/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest hacking {&lt;br /&gt;        domainlist      hacking/domains&lt;br /&gt;        urllist         hacking/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest porn {&lt;br /&gt;        domainlist      porn/domains&lt;br /&gt;        urllist         porn/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest redirector {&lt;br /&gt;        domainlist      redirector/domains&lt;br /&gt;        urllist         redirector/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest spyware {&lt;br /&gt;        domainlist      spyware/domains&lt;br /&gt;        urllist         spyware/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest violence {&lt;br /&gt;        domainlist      violance/domains&lt;br /&gt;        urllist         violance/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;dest white {&lt;br /&gt;        domainlist      white/domains&lt;br /&gt;        urllist         white/urls&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;acl {&lt;br /&gt;        default {&lt;br /&gt;                pass  white !ads !drugs !gambling !hacking !porn !redirector !spyware !violence all&lt;br /&gt;                redirect http://localhost/block.html&lt;br /&gt;                }&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;Tambahkan baris berikut pada squid.conf&lt;br /&gt;redirect_program /usr/local/bin/squidGuard -c /usr/local/squidGuard/squidguard.conf&lt;br /&gt;&lt;br /&gt;Jalankan squidguard&lt;br /&gt;/usr/local/bin/squidGuard -c /usr/local/squidGuard/squidguard.conf&lt;br /&gt;dan restart squid&lt;br /&gt;/squid/sbin/squid -k reconfigure&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-18557183201506390?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/18557183201506390/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=18557183201506390' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/18557183201506390'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/18557183201506390'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/04/instalasi-squidguard.html' title='Instalasi squidguard'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2064095327496506694</id><published>2008-03-26T18:41:00.004+07:00</published><updated>2008-03-26T18:50:03.175+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>Don't be sad.. be optimist!</title><content type='html'>&lt;blockquote&gt;Ia berkata : "Ya Tuhanku, sesungguhnya tulangku telah lemah dan kepalaku telah ditumbuhi uban, dan aku belum pernah kecewa dalam berdo'a kepada Engkau, ya Tuhanku.  (QS : 19:4)&lt;/blockquote&gt;Kekuatan sebuah do'a dan keyakinan akan pertolongan dari Tuhan yang Maha memiliki dan Maha berkehendak adalah bukti tawakal seorang hamba. Seperti kutipan do'a nabi Zakariya di atas. Semoga dapat kita ambil hikmahnya dan yakinlah bahwa setiap masalah pasti ada jalan keluarnya. Kalo ngga ada yah bisa pakai tangga darurat yang ada plangnya EXIT itu lohh.. :P..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2064095327496506694?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2064095327496506694/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2064095327496506694' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2064095327496506694'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2064095327496506694'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/03/dont-be-sad-be-optimist.html' title='Don&apos;t be sad.. be optimist!'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4338402787834941173</id><published>2008-03-25T12:53:00.003+07:00</published><updated>2008-03-25T13:12:38.678+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='script'/><title type='text'>copy file otomatis</title><content type='html'>Barusan iseng2 bantu teman bikin script pengcopyan file dgn kondisi tertentu. Berikut scriptnya :&lt;br /&gt;&lt;br /&gt;# ee /etc/duplikat&lt;br /&gt;cd /home/rahma/coba&lt;br /&gt;lastfile=$(ls -rt | egrep -v '^d' | tail -20)&lt;br /&gt;for file in $lastfile&lt;br /&gt;do&lt;br /&gt;    echo $file&lt;br /&gt;    cp $file /home/rahma/coba2&lt;br /&gt;done&lt;br /&gt;&lt;br /&gt;Script diatas adalah script yang akan menjalankan duplikasi 20 file terbaru dari folder coba ke folder coba2.&lt;br /&gt;Tinggal di pasang di crontab dan dijalankan sesuai dengan waktu yang diinginkan ^^.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4338402787834941173?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4338402787834941173/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4338402787834941173' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4338402787834941173'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4338402787834941173'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/03/copy-file-otomatis.html' title='copy file otomatis'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-3184644780683873464</id><published>2008-03-07T06:14:00.001+07:00</published><updated>2008-03-07T06:39:37.253+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>Injury Time</title><content type='html'>Besok hari terakhir jadi orang kantoran...&lt;br /&gt;Yup, saya resign, setelah disana lumayan lama.&lt;br /&gt;Waktu bilang ke ortu, It's OK! asalkan kuliahku cepat selesai ^^.&lt;br /&gt;Malah bapak sempat bilang, nanti kalau sudah dpt ijasah suruh memperdalam bhs inggris n cari beasiswa ke LN. Bapak yang aneh..:P harusnya kan disuruh cepat² nikah, koq malah suruh sekolah lagi. But gpp sich, kalau sama Allah dikasih kesempatan pasti kuwujudkan impianmu pak! I'll try my best for you two!&lt;br /&gt;&lt;br /&gt;Bye.. bye my opis.. banyak suka.. banyak duka.. banyak pengalaman dan pelajaran disana...Bye bye nokia 2255, bye wireless.. bye meja pojok dekat jendela ^_^&lt;br /&gt;&lt;br /&gt;Saatnya memulai yang baru dengan lebih baik. BISMILLAH....&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-3184644780683873464?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/3184644780683873464/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=3184644780683873464' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3184644780683873464'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3184644780683873464'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/03/injury-time.html' title='Injury Time'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-3209915476914653291</id><published>2008-03-06T21:14:00.000+07:00</published><updated>2008-03-07T07:13:13.599+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='www'/><category scheme='http://www.blogger.com/atom/ns#' term='wireless'/><title type='text'>Captive portal dgn apache-ssl &amp; chillispot</title><content type='html'>Postingan ini repost, berhubung yang dulu belum selesai dan kebetulan ada teman yang lagi pusing² mau nyoba captive portal ini. Kita mulai aja ya,.. *baca bismillah*&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;SESI KONFIGURASI HARDWARE&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;# ee /usr/src/sys/i386/conf/kernelku&lt;br /&gt;&lt;br /&gt;Edit file kernelku, untuk firewall terserah tapi untuk device tun wajib, fadhu ain!&lt;br /&gt;&lt;br /&gt;options         IPFIREWALL&lt;br /&gt;options         IPFIREWALL_VERBOSE&lt;br /&gt;options         IPFIREWALL_DEFAULT_TO_ACCEPT&lt;br /&gt;options         IPFIREWALL_FORWARD&lt;br /&gt;options         IPFILTER&lt;br /&gt;options         IPDIVERT (jika natnya nanti menggunakan NATD)&lt;br /&gt;options         DUMMYNET&lt;br /&gt;options         TCP_DROP_SYNFIN&lt;br /&gt;device          tun&lt;br /&gt;&lt;br /&gt;simpan dan building kernel&lt;br /&gt;# config kernelku&lt;br /&gt;Kernel build directory is ../compile/kernelku&lt;br /&gt;Don't forget to do a ``make depend''&lt;br /&gt;# cd ../compile/kernelku&lt;br /&gt;# make depend &amp;amp;&amp;amp; make &amp;amp;&amp;amp; make install &amp;amp;&amp;amp; reboot&lt;br /&gt;&lt;br /&gt;Ok, urusan kernel selesai, pastikan kita memiliki 2 NIC. Untuk NIC yang terhubung ke internet silahkan diconfig, sedangkan untuk yang terhubung ke AP(Wireless device) jangan diberi ip. Berikut contohnya :&lt;br /&gt;&lt;br /&gt;# ifconfig&lt;br /&gt;rl0: flags=8802&lt;broadcast,simplex,multicast&gt; mtu 1500        options=8&lt;vlan_mtu&gt;        ether 00:0e:2e:cb:3c:bb        media: Ethernet autoselect&lt;br /&gt;media: Ethernet autoselect (100baseTX &lt;full-duplex&gt;)        status: active&lt;br /&gt;&lt;br /&gt;xl0: flags=8843&lt;up,broadcast,running,simplex,multicast&gt; mtu 1500        options=9&lt;rxcsum,vlan_mtu&gt;        inet 203.134.232.20 netmask 0xffffffc0 broadcast 203.134.232.63        inet6 fe80::2b0:d0ff:fe4b:af9%xl0 prefixlen 64 scopeid 0x2        ether 00:b0:d0:4b:0a:f9        media: Ethernet autoselect (100baseTX &lt;full-duplex&gt;)        status: active&lt;br /&gt;&lt;br /&gt;Untuk AP (Access Point) setting saja ssidnya, Modenya mode Access Point dan  IPnya terserah (ip defaultnya ga masalah) yang penting client bisa konek ke AP kita. jangan aktifkan dhcpnya karena nanti chilli yang akan memberi ip ke client yang konek.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;SESI MUMETISASI&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;Ok Urusan hardwarenya selesai, sekarang mulai proses instalasi software2 yang dibutuhkan :&lt;br /&gt;&lt;br /&gt;download source file openssl openssl-0.9.8e dan ekstrak&lt;br /&gt;./config&lt;br /&gt;make &amp;amp;&amp;amp; make test &amp;amp;&amp;amp; make install&lt;br /&gt;&lt;br /&gt;download source file apache httpd-2.2.3 dan ekstrak&lt;br /&gt;./configure --prefix=/usr/local/apache --enable-ssl --with-ssl=/usr/local/ssl&lt;br /&gt;make &amp;amp;&amp;amp; make install&lt;br /&gt;&lt;br /&gt;Untuk mengaktifkan ssl di httpd bisa di link ini &lt;a href="http://www.dev411.com/wiki/Installing_Apache2_SSL"&gt;http://www.dev411.com/wiki/Installing_Apache2_SSL&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Untuk instalasi radius, ikuti petunjuk di postingan saya yang &lt;a href="http://runia2001.blogspot.com/2007/08/freeradius-dan-my-sql.html"&gt;ini&lt;/a&gt; (mysql harus terinstall ya)&lt;br /&gt;&lt;br /&gt;download source file chillispot-1.0 dan ekstrak&lt;br /&gt;./configure&lt;br /&gt;make &amp;amp;&amp;amp; make install&lt;br /&gt;&lt;br /&gt;# ee /usr/local/apache/conf/httpd.conf (setting directory cgi &amp;amp; ssl saya sbb:)&lt;br /&gt;ScriptAlias /cgi-bin/ "/usr/local/apache/cgi-bin/"&lt;br /&gt;Include conf/extra/httpd-ssl.conf&lt;br /&gt;&lt;br /&gt;# ee /usr/local/apache/conf/extra/httpd-ssl.conf&lt;br /&gt;Listen 443&lt;br /&gt;DocumentRoot "/data"&lt;br /&gt;ServerName 192.168.182.1&lt;br /&gt;ServerAdmin noc.spin.net.id&lt;br /&gt;SSLCertificateFile /usr/local/apache/conf/ssl.crt/server.crt&lt;br /&gt;SSLCertificateKeyFile /usr/local/apache/conf/ssl.key/server.key&lt;br /&gt;&lt;br /&gt;# cp /usr/local/share/chillispot/hotspotlogin.cgi /usr/local/www/cgi-bin/&lt;br /&gt;# cp /usr/local/share/chillispot/chilli.conf /etc/chilli.conf&lt;br /&gt;&lt;br /&gt;Saya anggap instalasi freeradius dan mysqlnya sudah terinstall dan berhasil.&lt;br /&gt;Untuk chilli, konfigurasinya ada di /etc/chilli.conf, setting sbb :&lt;br /&gt;net 192.168.182.0/24&lt;br /&gt;dynip 192.168.182.0/24&lt;br /&gt;statip 192.168.182.0/24&lt;br /&gt;dns1 203.134.239.153&lt;br /&gt;dns2 203.134.232.3&lt;br /&gt;radiuslisten 203.134.232.20&lt;br /&gt;radiusserver1 203.134.232.35 (ip dimana radius server terinstall)&lt;br /&gt;radiusserver2 203.134.232.35 (ip dimana radius server terinstall)&lt;br /&gt;radiusauthport 1812&lt;br /&gt;radiusacctport 1813&lt;br /&gt;&lt;br /&gt;# TAG: radiussecret&lt;br /&gt;# Radius shared secret for both servers&lt;br /&gt;# For all installations you should modify this tag.&lt;br /&gt;radiussecret testing123&lt;br /&gt;# password radius ada di /usr/local/etc/raddb/clients.conf&lt;br /&gt;&lt;br /&gt;dhcpif rl0&lt;br /&gt;# nama interface yang terhubung ke wireless device&lt;br /&gt;&lt;br /&gt;# Universal access method (UAM) parameters&lt;br /&gt;uamserver https://192.168.182.1/cgi-bin/hotspotlogin.cgi&lt;br /&gt;uamhomepage http://192.168.182.1/welcome.html&lt;br /&gt;uamsecret ht2eb8ej6s4et3rg1ulp&lt;br /&gt;uamport 3990&lt;br /&gt;uamallowed 192.168.182.1,203.134.232.20,203.134.232.35,203.134.232.3,203.134.239.153&lt;br /&gt;&lt;br /&gt;# ee /usr/local/apache/cgi-bin/hotspotlogin.cgi&lt;br /&gt;$uamsecret = "ht2eb8ej6s4et3rg1ulp";&lt;br /&gt;$userpassword=1;&lt;br /&gt;&lt;br /&gt;Uam secret pada chilli.conf dan hotspotlogin.cgi harus sama.&lt;br /&gt;Untuk directory web saya terletak di /data dan saya create welcome.html disana dengan isi sbb :&lt;br /&gt;&lt;br /&gt;&lt;a href="http://192.168.182.1:3990/prelogin"&gt;Click Here For Login&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Aktifkan ipnat di /etc/defaults/rc.conf kemudian tambahkan baris berikut di file konfigurasi ipnatnya.&lt;br /&gt;# ee /etc/ipnat.rules&lt;br /&gt;map rl0 192.168.182.0/24 -&gt; 203.134.232.20/32&lt;br /&gt;&lt;br /&gt;OK, jika sudah selesai semua, jalankan chillinya sbb :&lt;br /&gt;# chilli --fg -c /etc/chilli.conf &amp;amp;&lt;br /&gt;Hasil ifconfig sbb :&lt;br /&gt;&lt;br /&gt;rl0: flags=8843&lt;up,broadcast,running,simplex,multicast&gt; mtu 1500&lt;br /&gt;      options=8&lt;vlan_mtu&gt;&lt;br /&gt;      inet 0.0.0.0 netmask 0xff000000 broadcast 0.255.255.255&lt;br /&gt;      inet6 fe80::20e:2eff:fecb:3cbb%rl0 prefixlen 64 scopeid 0x1&lt;br /&gt;      ether 00:0e:2e:cb:3c:bb&lt;br /&gt;      media: Ethernet autoselect (100baseTX &lt;full-duplex&gt;)&lt;br /&gt;      status: active&lt;br /&gt;&lt;br /&gt;xl0: flags=8843&lt;up,broadcast,running,simplex,multicast&gt; mtu 1500&lt;br /&gt;      options=9&lt;rxcsum,vlan_mtu&gt;&lt;br /&gt;      inet 203.134.232.20 netmask 0xffffffc0 broadcast 203.134.232.63&lt;br /&gt;      inet6 fe80::2b0:d0ff:fe4b:af9%xl0 prefixlen 64 scopeid 0x2&lt;br /&gt;      ether 00:b0:d0:4b:0a:f9&lt;br /&gt;      media: Ethernet autoselect (100baseTX &lt;full-duplex&gt;)&lt;br /&gt;      status: active&lt;br /&gt;&lt;br /&gt;tun0: flags=8051&lt;up,pointopoint,running,multicast&gt; mtu 1500&lt;br /&gt;      inet6 fe80::20e:2eff:fecb:3cbb%tun0 prefixlen 64 scopeid 0x4&lt;br /&gt;      inet 192.168.182.1 --&gt; 192.168.182.1 netmask 0xffffff00&lt;br /&gt;      Opened by PID 42197&lt;br /&gt;&lt;br /&gt;Selamat mencoba dan jangan menyerah ya.. saya juga butuh berhari-hari koq nguplek² ini dan alhamdulillah berhasil.. tapi akhirnya ngga dipakai... asem! :P&lt;/up,pointopoint,running,multicast&gt;&lt;/full-duplex&gt;&lt;/rxcsum,vlan_mtu&gt;&lt;/up,broadcast,running,simplex,multicast&gt;&lt;/full-duplex&gt;&lt;/vlan_mtu&gt;&lt;/up,broadcast,running,simplex,multicast&gt;&lt;/full-duplex&gt;&lt;/rxcsum,vlan_mtu&gt;&lt;/up,broadcast,running,simplex,multicast&gt;&lt;/full-duplex&gt;&lt;/vlan_mtu&gt;&lt;/broadcast,simplex,multicast&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-3209915476914653291?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/3209915476914653291/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=3209915476914653291' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3209915476914653291'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/3209915476914653291'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/10/captive-portal-dgn-apache-ssl.html' title='Captive portal dgn apache-ssl &amp; chillispot'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4215171871297766282</id><published>2008-03-05T20:03:00.000+07:00</published><updated>2008-03-05T20:18:06.294+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mail'/><title type='text'>Dari Outlook Express menuju Thunder Bird</title><content type='html'>Berhubung ada suatu hal, maka saya harus migrasi semua mail² saya yang sekarang ini pakai Outlook Xpress ke Thunder Bird. Emailnya buwanyakkk bok.. ribuan deh.. maklum email dari jaman gak enak dulu sampai jaman tambah ga enak masih ada..&lt;br /&gt;&lt;br /&gt;Setelah coba mencoba.. lagi.. kau mencoba... *koq jadi lagu dangdut?*&lt;br /&gt;Ternyata cara paling mudah adalah dengan cukup mengcopy folder dimana database email disimpan (.dbx) oleh OE dan mengimportnya ke TB.&lt;br /&gt;&lt;br /&gt;Letak folder di OE bisa dicek dengan cara klik tool - option - pada tab maintenance - nahh disitu ada store folder kan? ya disitu letaknya... Kalau TBnya di lain PC tinggal copy aja isi folder tsb dan paste ke PC tujuan. Selanjutnya buka TB klik menu tool - import - pilih mail - pilih OE  dan arahkan ke folder dimana database email berada - klik Ok..&lt;br /&gt;&lt;br /&gt;Selesai deh... kalau email kamu ribuan ya tinggal aja ngopi² dulu :P.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4215171871297766282?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4215171871297766282/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4215171871297766282' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4215171871297766282'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4215171871297766282'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/03/dari-outlook-express-menuju-thunder.html' title='Dari Outlook Express menuju Thunder Bird'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1611427315543807950</id><published>2008-03-05T14:42:00.000+07:00</published><updated>2008-03-05T14:54:19.400+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='database'/><title type='text'>Innodb di mysql</title><content type='html'>Innodb?&lt;br /&gt;Saya juga barusan tahu koq, berikut ini kutipan mengenai innodb (diambil dari &lt;a href="http://dennysetia.wordpress.com/2007/08/04/tipe-database-innodb-di-mysql/"&gt;sini&lt;/a&gt; &amp;amp; tambahan untuk setting di mysql ver 5 saya yg terinstall di FreeBSD 5.4).&lt;br /&gt;&lt;br /&gt;Tipe database di MySQL secara default adalah MyIsam, selain itu mysql juga mendukung untuk tipe database InnoDB dan BerkeleyDB. Database tipe InnoBD supports transactions, row-level locking, dan foreign keys. Membuat tabel tipe InnoDB sama saja dengan MyISAM, cuma ada sedikit perbedaan pada tipe ENGINE yang digunakan.&lt;br /&gt;Contohnya:&lt;br /&gt;CREATE TABLE parent (id INT NOT NULL, PRIMARY KEY (id)) ENGINE=INNODB;&lt;br /&gt;CREATE TABLE child (id INT, parent_id INT, INDEX par_ind (parent_id),                    FOREIGN KEY (parent_id) REFERENCES parent(id)  ON DELETE CASCADE) ENGINE=INNODB;&lt;br /&gt;&lt;br /&gt;jika tidak menuliskan ENGINE=INNODB maka tipe tabel yang terbentuk adalah MyISAM.&lt;br /&gt;ON DELETE CASCADE maksudnya apabila ada record di tabel parent yang dihapus maka pada tabel child record yang terkait dengan record parent akan ikut terhapus juga.Terdapat berbagai macam option-option lainnya seperti : ON DELETE RESTRICT, ON UPDATE CASCADE, dll yang bisa digunakan sesuai kebutuhan database.&lt;br /&gt;&lt;br /&gt;Untuk mengaktifkan innodb, edit file /etc/my.conf dan pada sesi innodb sbb :&lt;br /&gt;# Uncomment the following if you are using&lt;br /&gt;InnoDB tablesinnodb_data_home_dir = /usr/local/mysql/var/&lt;br /&gt;innodb_data_file_path = ibdata1:10M:autoextend&lt;br /&gt;innodb_log_group_home_dir = /usr/local/mysql/var/&lt;br /&gt;innodb_log_arch_dir = /usr/local/mysql/var/&lt;br /&gt;# You can set .._buffer_pool_size up to 50 - 80 %&lt;br /&gt;# of RAM but beware of setting memory usage too high&lt;br /&gt;innodb_buffer_pool_size = 16M&lt;br /&gt;innodb_additional_mem_pool_size = 2M&lt;br /&gt;# Set .._log_file_size to 25 % of buffer pool size&lt;br /&gt;innodb_log_file_size = 5M&lt;br /&gt;innodb_log_buffer_size = 8M&lt;br /&gt;innodb_flush_log_at_trx_commit = 1&lt;br /&gt;innodb_lock_wait_timeout = 50&lt;br /&gt;&lt;br /&gt;OK, save dan restart mysqlnya.&lt;br /&gt;Done.. done.. minum dulu ahh.. hauss..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1611427315543807950?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1611427315543807950/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1611427315543807950' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1611427315543807950'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1611427315543807950'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/03/innodb-di-mysql.html' title='Innodb di mysql'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1036257473726460977</id><published>2008-02-25T08:51:00.001+07:00</published><updated>2009-11-04T14:25:45.292+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='life'/><title type='text'>Kesalahan kecil yang FATAL</title><content type='html'>Namanya manusia ga luput dari kesalahan, lalai dan teledor. Dan akibatnya macam², tak jarang kesalahan kecilpun bisa berakibat fatal. Bayangin aja misalnya dokter salah tulis dikit aja ngasih resep, atau diagnosa bisa berakibat kematian kan..&lt;br /&gt;&lt;br /&gt;Ok, kita ngga akan bahas medis karna gw ga ngeri sekali sama. Gw cuman mau nulis kesalahan kecil gue yang berakibat fatal meski ga sampe menyebabkan kematian *sigh*&lt;br /&gt;&lt;br /&gt;Sore kemarin server gw loadnya beraaattt banget... seperti seorang pemuda yang naik BMW tapi mangku gajah lampung! Segera saja otakku yang mungkin sama dgn otak manusia indonesia yang jarang digunakan karena takut aus mulai terasah.&lt;br /&gt;Tiba2 saja saya sudah login di gateway server² dan mulai mengallow ip tertentu yang diijinkan untuk ngakses server dan mulai mendeny ip2 yang tidak dibutuhkan untuk mengurangi load server gw yang sedang mangku gajah duduk..&lt;br /&gt;Crap!&lt;br /&gt;Ada rule yang salah saat ngetikkan baris2 perintah firewall...&lt;br /&gt;Jadinya gateway ga bisa saya akses dan server yang lain juga sama kecuali server yg diduduki gajah tadi.&lt;br /&gt;&lt;br /&gt;Help.. tasukete kudasai!..&lt;br /&gt;Gatewaynya jauh di ibukota negara banjir nan macet 924 km darisini.&lt;br /&gt;Harus call teman dulu disana, setelah proses yang mendebarkan bin menyebalkan bisa juga terhubung dan dia harus menempuh lebih dari 30 menit untuk sampai dan cangkruk di consolenya.&lt;br /&gt;Oh baru cobaan gini aja gw dah bingung setengah hidup, ya maklum wong gatewaynya u/ beberapa server maha penting.&lt;br /&gt;&lt;br /&gt;Finally smua bisa diatasi *ya jelas wong emang rulenya simple tapi mematikan*&lt;br /&gt;Server yang lambreta ternyata karena ada salah satu cust. yang ngabis2in resource servernya, so smtr saya suspend dulu.&lt;br /&gt;Report juga udah kukirim, report yang apa adanya tanpa bumbu² sedikitpun. Rangkaian kejadian dari awal sampai akhir sampai main effect kutulis disertai perasaan nano-nano seorang kuli yang sedang berkecamuk di dada. yah mo gmn lagi emang salah saya jadi tinggal siap2 konsekuensinya aja..&lt;br /&gt;&lt;br /&gt;Hikmah yang bisa diambil :&lt;br /&gt;1. Terkadang dengan cobaan sedikit saja, manusia sudah merasa merana. Terkadang makian sampai keluar, seakan lupa kalau nikmat yang telah diterima begitu banyak sampai tidak bisa dihitung bahkan walau jari gajah lampung ikut serta juga ga bakal cukup untuk ngitung. Kalkulator bisa jadi akan buffer overflow kalau kita maksa ngitung.&lt;br /&gt;&lt;br /&gt;2. Jika melakukan sesuatu yang harus cepat selesai, dan cukup merepotkan. Biasakan untuk menenangkan diri dan konsentrasi penuh dan jangan lupa bismillah.&lt;br /&gt;&lt;br /&gt;3. Usahakan ruangan cukup kondusif, tidak ada teman yang mengganggu, suara atau hal² kurang penting lainnya.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1036257473726460977?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1036257473726460977/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1036257473726460977' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1036257473726460977'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1036257473726460977'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/02/kesalahan-kecil-yang-fatal.html' title='Kesalahan kecil yang FATAL'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5977242663028526014</id><published>2008-02-22T10:19:00.000+07:00</published><updated>2008-02-22T10:37:07.567+07:00</updated><title type='text'></title><content type='html'>dns1 named[1376]: client 125.162.42.67#64136: update 'swisscontact.or.id/IN' denied &lt;br /&gt;&lt;br /&gt;I keep getting log messages like the following. Why?&lt;br /&gt;Jun 21 12:00:00.000 client 10.0.0.1#1234: update denied&lt;br /&gt;A:&lt;br /&gt;Someone is trying to update your DNS data using the RFC2136 Dynamic Update protocol. Windows 2000 machines have a habit of sending dynamic update requests to DNS servers without being specifically configured to do so. If the update requests are coming from a Windows 2000 machine, see &lt;a href="http://support.microsoft.com/support/kb/articles/q246/8/04.asp" target="_top"&gt;http://support.microsoft.com/support/kb/articles/q246/8/04.asp &lt;/a&gt;for information about how to turn them off.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5977242663028526014?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5977242663028526014/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5977242663028526014' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5977242663028526014'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5977242663028526014'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/02/dns1-named1376-client-125.html' title=''/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8273542398592955959</id><published>2008-02-22T09:29:00.000+07:00</published><updated>2008-02-22T09:49:36.100+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='dns'/><title type='text'>DNS - named: ignoring out-of-zone data</title><content type='html'>Pake BIND? dan mengalami error sbb :&lt;br /&gt;&lt;br /&gt;named[375]: master/domain.org:11: ignoring out-of-zone data ns2.mine.net.id&lt;br /&gt;&lt;br /&gt;sama donk :P&lt;br /&gt;&lt;br /&gt;Awalnya sih saya kira ada kesalahan di zone filenya. Tapi setelah diamati dalam tempo yang sesingkat²nya koq smua btul? ada apa ini.. ada apa.. :p&lt;br /&gt;Saya coba query dari luar bisa u/ domain yg ada errornya tadi, dicek dari situs2 u/ cek dns juga ketemu tuh record²nya.&lt;br /&gt;&lt;br /&gt;Akhirnya saya biarkan saja, toh sepertinya ngga ngaruh..&lt;br /&gt;Sampai dengan pagi ini ada imel dari bos, nemuin log itu suruh nyari kenapa..&lt;br /&gt;sebernaya gw juga bingung krn cari2 di google juga ga nemu, kalo nemu pun semua berkaitan dgn penulisan zone yang salah..&lt;br /&gt;&lt;br /&gt;Ndilalah koq ada eror tambahan root. server bla bla.. duh sayang log e ilang :(&lt;br /&gt;Gak pakai pikir lama, iseng² berhadiah tak coba replace named.rootnya&lt;br /&gt;&lt;br /&gt;# dig @a.root-servers.net . ns &gt; named.root&lt;br /&gt;# rndc reload&lt;br /&gt;&lt;br /&gt;Hurray.. thx god.. gw liat di log dah bersih sih.. n di query jg lancaarrr.. muach...&lt;br /&gt;&lt;br /&gt;Ups.. jgn senang dulu.. ada cobaan lain.. muncul error ini nih di log, banyak lagi..&lt;br /&gt;&lt;br /&gt;Feb 22 09:36:46 dns1 named[1376]: client IP#57305: RFC 1918 response from Internet for 3.0.168.192.in-addr.arpa&lt;br /&gt;&lt;br /&gt;Untungya di FAQ ada :&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a name="id2544379"&gt;&lt;/a&gt;&lt;a name="id2544381"&gt;&lt;/a&gt;&lt;blockquote&gt;Q: What does "RFC 1918 response from Internet for 0.0.0.10.IN-ADDR.ARPA"&lt;br /&gt;mean?&lt;br /&gt;A:&lt;br /&gt;If the IN-ADDR.ARPA name covered refers to a internal address&lt;br /&gt;space you are using then you have failed to follow RFC 1918 usage rules and are&lt;br /&gt;leaking queries to the Internet. You should establish your own zones for these&lt;br /&gt;addresses to prevent you querying the Internet's name servers for these&lt;br /&gt;addresses. Please see &lt;a href="http://as112.net/" target="_top"&gt;http://as112.net/&lt;/a&gt; for details of the problems you are causing&lt;br /&gt;and the counter measures that have had to be deployed.&lt;br /&gt;If you are not using&lt;br /&gt;these private addresses then a client has queried for them. You can just ignore&lt;br /&gt;the messages, get the offending client to stop sending you these messages as&lt;br /&gt;they are most probably leaking them or setup your own zones empty zones to serve&lt;br /&gt;answers to these queries.&lt;br /&gt;zone "10.IN-ADDR.ARPA" {&lt;br /&gt;type master;&lt;br /&gt;file&lt;br /&gt;"empty";&lt;br /&gt;};&lt;br /&gt;zone "16.172.IN-ADDR.ARPA" {&lt;br /&gt;type master;&lt;br /&gt;file&lt;br /&gt;"empty";&lt;br /&gt;};&lt;br /&gt;...&lt;br /&gt;zone "31.172.IN-ADDR.ARPA" {&lt;br /&gt;type master;&lt;br /&gt;file&lt;br /&gt;"empty";&lt;br /&gt;};&lt;br /&gt;zone "168.192.IN-ADDR.ARPA" {&lt;br /&gt;type master;&lt;br /&gt;file&lt;br /&gt;"empty";&lt;br /&gt;};&lt;br /&gt;empty:&lt;br /&gt;@ 10800 IN SOA &lt;name-of-server&gt;.&lt;br /&gt;&lt;contact-email&gt;. (&lt;br /&gt;1 3600 1200 604800 10800 )&lt;br /&gt;@ 10800 IN NS&lt;br /&gt;&lt;name-of-server&gt;.&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Hahaha.. bahasa inggris canggih gtu.. yang jelas dnsku ga dipake u/ query ip lokal, so spt saran di atas aku tambahin zone2 tsb.. trus reload deh.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8273542398592955959?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8273542398592955959/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8273542398592955959' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8273542398592955959'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8273542398592955959'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/02/dns-named375-masterdomainorg11-ignoring.html' title='DNS - named: ignoring out-of-zone data'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1428377125291132038</id><published>2008-02-16T14:32:00.000+07:00</published><updated>2008-02-16T14:57:59.574+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><title type='text'>Reset Root Password Debian VS FreeBSD</title><content type='html'>Semalam udah semangat 456789 mau nyoba debian yang udah lama tak terjamah tangan halusku, tapi tak dinyana aku lupa password rootnya ^^. Untung jam 11an &lt;a href="http://bhenny.web.id/"&gt;nak ibnu&lt;/a&gt; bisa dikontak, secara dia biasa bersentuhan dgn mbak debby ini :P. *tenkiu yo le*&lt;br /&gt;&lt;br /&gt;Berikut langkahnya, boot loadernya pakai grub nih bukan lilo and stich :P.&lt;br /&gt;&lt;br /&gt;1. Waktu boot pilih "recory mode" dan tekan c.&lt;br /&gt;2. Selanjutnya akan ada 4 pilihan, dan arahkan kursor pada pilihan yang ada tulisannya kernel bla2, pokoknya paling panjang sendiri deh, kemudian tekan e.&lt;br /&gt;3. Tambahkan "init=/bin/bash" pada akhir baris dan tekan enter. Voila, udah masuk single mode.&lt;br /&gt;4. ketikkan "mount -o remount, rw /"&lt;br /&gt;5. ketik passwd, isikan password yang baru&lt;br /&gt;6. kemudian ubah akses ke readonly "mount -o remount, ro /"&lt;br /&gt;7. Selesai dan reboot deh..&lt;br /&gt;&lt;br /&gt;Kalau di freebsd langkahnya lebih mudah,&lt;br /&gt;1. Waktu boot, pada boot menu tekan angka 3&lt;br /&gt;2. mount -a&lt;br /&gt;3. ketik passwd dan isikan password baru dan reboot&lt;br /&gt;&lt;br /&gt;Untuk freebsd ada pilihan untuk tetap prompt password walaupun kita masuk di single mode, bisa di cek /etc/ttys dan ubah pilihan secure menjadi insecure. Itu kalo qta admin paranoid n menjamin kalo qta ga bakalan lupa password kita :p.&lt;br /&gt;Kalo di debian belum tahu sih gmn caranya, tapi kata si ibnu sih di linux yg versi baru u/ single modenya udah diprompt password juga.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1428377125291132038?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1428377125291132038/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1428377125291132038' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1428377125291132038'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1428377125291132038'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/02/reset-root-password-debian-vs-freebsd.html' title='Reset Root Password Debian VS FreeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2413971650470677035</id><published>2008-02-15T13:51:00.001+07:00</published><updated>2008-02-15T14:20:58.232+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='utility'/><category scheme='http://www.blogger.com/atom/ns#' term='carijejak'/><title type='text'>LSOF (list open files)</title><content type='html'>Siang ini makan siang ditemani seporsi mie ayam bakso ples artikel lsof but tanpa teh botol s*sro. Langsung install aja deh, drpd lupa n banyak kerjaan, installnya juga via jalur xpress :P&lt;br /&gt;&lt;br /&gt;# cd /usr/ports/sysutils/lsof&lt;br /&gt;# make install clean&lt;br /&gt;# rehash&lt;br /&gt;&lt;br /&gt;Lsof merupakan utility yang hampir mirip dengan netstat -an tapi mungkin lebih lengkap kali ya, karena qta juga bisa melihat file2 yang sedang dijalakan apa saja oleh suatu program, mulai dr binary file, library dan file2 yang berhubungan dengan program yg sedang berjalan.. la wong namanya aja "List open files" ker..&lt;br /&gt;&lt;br /&gt;ok lanjut...&lt;br /&gt;&lt;br /&gt;# lsof -l &lt;br /&gt;perintah ini akan memperlihatkan smuaaa list prog yang sedang berjalan, sengaja ga dicapture hasilnya (panjang bokkk)&lt;br /&gt;&lt;br /&gt;# lsof -c named&lt;br /&gt;COMMAND   PID  USER   FD   TYPE     DEVICE SIZE/OFF    NODE NAME&lt;br /&gt;named   89535 named  cwd   VDIR       4,12      512   16662 /chroot/named/conf&lt;br /&gt;named   89535 named  rtd   VDIR       4,12      512   16656 /chroot/named&lt;br /&gt;named   89535 named  jld   VDIR       4,12      512   16656 /chroot/named&lt;br /&gt;named   89535 named  txt   VREG       4,17  3507739 7774967 /usr/local/sbin/named&lt;br /&gt;named   89535 named  txt   VREG       4,12   142236   16549 /libexec/ld-elf.so.1&lt;br /&gt;named   89535 named  txt   VREG       4,12  1017456    8301 /lib/libcrypto.so.3&lt;br /&gt;named   89535 named  txt   VREG       4,12   884716    8280 /lib/libc.so.5&lt;br /&gt;named   89535 named    0u  VCHR        2,2      0t0       7 /dev/null&lt;br /&gt;named   89535 named    1u  VCHR        2,2      0t0       7 /dev/null&lt;br /&gt;named   89535 named    2u  VCHR        2,2      0t0       7 /dev/null&lt;br /&gt;named   89535 named    3u  unix 0xc40a0000      0t0         -&gt;0xc181a288&lt;br /&gt;named   89535 named    4u  VCHR        2,2      0t0       7 /dev/null&lt;br /&gt;named   89535 named    5r  VCHR      248,0      0t0      16 /dev/random&lt;br /&gt;named   89535 named   22u  IPv4 0xc3f980b4      0t0     UDP *:54519&lt;br /&gt;&lt;br /&gt;lengkap kan? kalau ga mau panjang2 atau mau lihat file apa yg dijalankan tinggal ketik&lt;br /&gt;# lsof -a -d cwd -c named&lt;br /&gt;named   89535 named  cwd   VDIR   4,12      512 16662 /chroot/named/conf&lt;br /&gt;&lt;br /&gt;kalau mau lihat pakai port berapa ya tinggal &lt;br /&gt;# lsof -a -c named | grep "*:"&lt;br /&gt;named   89535 named   22u  IPv4 0xc3f980b4      0t0     UDP *:54519&lt;br /&gt;&lt;br /&gt;Sep kan? lumayan bisa lihat service yang berjalan apa aja, n dikill aja kalo gak penting, bikin server berat, makan bw or samting else..&lt;br /&gt;&lt;br /&gt;Huekz.. abis makan mie koq rasanya mual.. kayaknya mie/pentol nya byk msgnya niy, oh nooo saya skr ga bisa kena msg.. ora tawar jeesss...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2413971650470677035?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2413971650470677035/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2413971650470677035' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2413971650470677035'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2413971650470677035'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/02/lsof-list-open-files.html' title='LSOF (list open files)'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8329198782090572939</id><published>2008-01-30T10:37:00.000+07:00</published><updated>2008-02-14T11:30:25.216+07:00</updated><title type='text'>backup antar server</title><content type='html'>rsync adalah utility u/ memindah2 file/sinkronisasi file.&lt;br /&gt;Kata manualnya sih rsync bisa digunakan sbb :&lt;br /&gt;&lt;br /&gt;1. for copying local files. This is invoked when neither source nor destination path contains a : separator&lt;br /&gt;2. for copying from the local machine to a remote machine using a remote shell program as the transport (such as rsh or ssh). This is invoked when the destination path contains a single : separator.&lt;br /&gt;3. for copying from a remote machine to the local machine using a remote shell program. This is invoked when the source contains a : separator.&lt;br /&gt;4. for copying from a remote rsync server to the local machine. This is invoked when the source path contains a :: separator or a rsync:// URL.&lt;br /&gt;5. for copying from the local machine to a remote rsync server. This is invoked when the destination path contains a :: separator.&lt;br /&gt;6. for listing files on a remote machine. This is done the same way as rsync transfers except that you leave off the local destination.&lt;br /&gt;&lt;br /&gt;So, yuk mari kita buktikan.&lt;br /&gt;&lt;br /&gt;Anggap saja server utama ipnya 10.10.10.75 dan server backupipnya 10.10.10.60&lt;br /&gt;Nah rsync modenya nanti pakai yang over ssh.&lt;br /&gt;&lt;br /&gt;Login ke 10.10.10.60, di directory /home ketik :&lt;br /&gt;#  ssh-keygen -f qlogin -t rsa&lt;br /&gt;untuk password langsung enter saja, perintah ini akan mengenerate private (qlogin) dan public key (qlogin.pub)&lt;br /&gt;&lt;br /&gt;Selanjutnya copykan qlogin.pub ke server 10.10.10.75 di directory homeuser/.ssh dan rename menjadi authorized_keys2, spt ini nih hasilnya : /home/rahma/.ssh/authorized_keys2&lt;br /&gt;&lt;br /&gt;Kita tes, sukses ga login ssh scr otomatis..&lt;br /&gt;Login ke 10.10.10.60, masuk ke directory dimana qlogin berada dan ketik&lt;br /&gt;# ssh -i qlogin &lt;a href="mailto:rahma@10.10.10.75"&gt;rahma@10.10.10.75&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;OK, setelah sshnya lantjar djaja, tinggal install rsyncnya.. (spt biasa wes.. ndak usah dijelasin yak :P)...&lt;br /&gt;&lt;br /&gt;Nah untuk perintah sinkronisasi/backup filenya spt ini :&lt;br /&gt;masuk ke dir dimana qlogin (private keynya berada), kebetulan punyaku di /home&lt;br /&gt;# cd /home&lt;br /&gt;# /usr/local/rsync/bin/rsync -e "ssh -i qlogin -l rahma -p 2223" -avz &lt;a href="mailto:rahma@10.10.10.75:/home/www"&gt;rahma@10.10.10.75:/home/www&lt;/a&gt; /home/BACKUP75/&lt;br /&gt;&lt;br /&gt;sent 1636 bytes  received 2421838595 bytes  3734526.19 bytes/sectotal size is 2421962606  speedup is 1.00&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8329198782090572939?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8329198782090572939/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8329198782090572939' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8329198782090572939'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8329198782090572939'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/01/rsync.html' title='backup antar server'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4289409729263913004</id><published>2008-01-29T13:55:00.001+07:00</published><updated>2008-02-14T13:44:46.825+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mail'/><title type='text'>SMTP Auth auxprop dengan Postfix</title><content type='html'># cd /usr/local/mysql/lib/mysql/&lt;br /&gt;# cp * /usr/local/lib&lt;br /&gt;# cd /usr/local/mysql/include/&lt;br /&gt;# cp * /usr/local/include/&lt;br /&gt;&lt;br /&gt;Download cyrus-sasl-2.1.19 dan patchnya, kemudian ekstrak dan lakukan patching&lt;br /&gt;&lt;br /&gt;# cd /cyrus-sasl-2.1.19&lt;br /&gt;# patch -p1 &lt; ../cyrus-sasl-2.1.19-checkpw.c+sql.c.patch. # ./configure --enable-static --enable-shared --enable-sql --with-mysql=/usr/local/mysql --enable-login --disable-otp --disable-ntlm # make &amp;amp;&amp;amp; make install # ln -s /usr/local/lib/sasl2 /usr/lib/sasl2 # cd /usr/local/lib/sasl2 # cp *sql* /lib/ # vi /usr/local/lib/sasl2/smtpd.conf &lt;em&gt;&lt;strong&gt;pwcheck_method: auxprop&lt;/strong&gt;&lt;/em&gt; auxprop_plugin: sql sql_engine: mysql mech_list: DIGEST-MD5 CRAM-MD5 PLAIN LOGIN sql_engine: mysql sql_hostnames: localhost sql_user: dbmail sql_passwd: s3cr3t sql_database: dbmail sql_verbose: yes sql_select: SELECT passwd FROM dbmail_users &lt;strong&gt;WHERE userid = '%u@%r'&lt;/strong&gt; # cd postfix-2.4.5 # make tidy&lt;br /&gt;# make makefiles CCARGS="-DUSE_SASL_AUTH -DUSE_CYRUS_SASL -I/usr/local/include/sasl" AUXLIBS="-L/usr/local/lib/ -lsasl2" &lt;em&gt;atau&lt;/em&gt;&lt;br /&gt;# make makefiles CCARGS="-DUSE_SASL_AUTH -DUSE_CYRUS_SASL -I/usr/local/include/sasl -DHAS_MYSQL -I/usr/local/mysql/include/mysql" AUXLIBS="-L/usr/local/lib/ -lsasl2 -L/usr/local/mysql/ -lmysqlclient -lz -lm"&lt;br /&gt;&lt;br /&gt;# make install&lt;br /&gt;&lt;br /&gt;tambahkan baris berikut pada /etc/postfix/main.cf&lt;br /&gt;smtpd_recipient_restrictions =&lt;br /&gt;reject_unauth_pipelining&lt;br /&gt;reject_non_fqdn_recipient&lt;br /&gt;reject_unknown_recipient_domain&lt;br /&gt;permit_mynetworks&lt;br /&gt;permit_sasl_authenticated&lt;br /&gt;reject_unauth_destination&lt;br /&gt;permit&lt;br /&gt;&lt;br /&gt;broken_sasl_auth_clients = yes&lt;br /&gt;smtpd_sender_restrictions = permit_sasl_authenticated, permit_mynetworks&lt;br /&gt;smtpd_sasl_auth_enable = yes&lt;br /&gt;smtpd_sasl_security_options = noanonymous&lt;br /&gt;&lt;br /&gt;=== Selesai ===&lt;br /&gt;&lt;br /&gt;/usr/local/sbin/saslauthd:&lt;br /&gt;libgssapi.so.7 =&gt; /usr/lib/libgssapi.so.7 (0x2807e000)&lt;br /&gt;libkrb5.so.7 =&gt; /usr/lib/libkrb5.so.7 (0x2808c000)&lt;br /&gt;libasn1.so.7 =&gt; /usr/lib/libasn1.so.7 (0x280c4000)&lt;br /&gt;libroken.so.7 =&gt; /usr/lib/libroken.so.7 (0x280e5000)&lt;br /&gt;libcrypt.so.2 =&gt; /lib/libcrypt.so.2 (0x280f3000)&lt;br /&gt;libcrypto.so.3 =&gt; /lib/libcrypto.so.3 (0x2810b000)&lt;br /&gt;libcom_err.so.2 =&gt; /usr/lib/libcom_err.so.2 (0x28202000)&lt;br /&gt;libpam.so.2 =&gt; /usr/lib/libpam.so.2 (0x28204000)&lt;br /&gt;libc.so.5 =&gt; /lib/libc.so.5 (0x2820b000)&lt;br /&gt;&lt;br /&gt;/usr/sbin/postfix:&lt;br /&gt;libsasl2.so.2 =&gt; /usr/local/lib/libsasl2.so.2 (0x28083000)&lt;br /&gt;libc.so.5 =&gt; /lib/libc.so.5 (0x28096000)&lt;br /&gt;libcrypt.so.2 =&gt; /lib/libcrypt.so.2 (0x28170000)&lt;br /&gt;&lt;br /&gt;/usr/libexec/postfix/smtpd:&lt;br /&gt;libsasl2.so.2 =&gt; /usr/local/lib/libsasl2.so.2 (0x280b6000)&lt;br /&gt;libc.so.5 =&gt; /lib/libc.so.5 (0x280c9000)&lt;br /&gt;libcrypt.so.2 =&gt; /lib/libcrypt.so.2 (0x281a3000)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;mail-h# telnet smtpku.co.id 25&lt;br /&gt;Trying 203.134.232.67...&lt;br /&gt;Escape character is '^]'.&lt;br /&gt;220 smtpku.co.id ESMTP Postfix&lt;br /&gt;ehlo a&lt;br /&gt;250-PIPELINING&lt;br /&gt;250-SIZE 5120000&lt;br /&gt;250-VRFY&lt;br /&gt;250-ETRN&lt;br /&gt;250-AUTH LOGIN PLAIN DIGEST-MD5 CRAM-MD5&lt;br /&gt;250-AUTH=LOGIN PLAIN DIGEST-MD5 CRAM-MD5&lt;br /&gt;250-ENHANCEDSTATUSCODES&lt;br /&gt;250-8BITMIME&lt;br /&gt;250 DSN&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4289409729263913004?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4289409729263913004/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4289409729263913004' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4289409729263913004'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4289409729263913004'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2008/01/smtp-auth-auxprop-dengan-postfix.html' title='SMTP Auth auxprop dengan Postfix'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5273466049771598269</id><published>2007-12-31T12:41:00.000+07:00</published><updated>2007-12-31T13:05:05.979+07:00</updated><title type='text'>Hardening FReeBSD</title><content type='html'>Sebelumnya sih sudah pernah posting yang berbau hardening system, tapi sepertinya artikel berikut lebih lengkap deh.. thx to mbah google.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Tips dan trik seputar FreeBSD Security.&lt;/strong&gt;&lt;br /&gt;1. Selalu berdo'a sebelum action&lt;br /&gt;2. Selalu membuat BACKUP sebelum melakukan segala sesuatunya.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;BASIC SYSTEM HARDENING &lt;/strong&gt;&lt;br /&gt;1. Gunakan selalu FreeBSD versi STABLE (heheh..belum saya lakukan, selalu saja pake release). 2. Jangan menjalankan services yang tidak perlu, lihat /etc/inetd.conf, /etc/rc.conf&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;SERVICES PROTECTION &lt;/strong&gt;&lt;br /&gt;1. Gunakan chroot(8) atau jail(8) untuk menjalankan program-program yang berisiko vulnerable.&lt;br /&gt;2.Memfilter setiap akses terhadap services menggunakan Firewall atau Packet Filtering software seperti ipfw atau IPF (ipfilter).&lt;br /&gt;3. Aktifkan option log_in_vain="YES" untuk melihat koneksi ke port-port TCP/UDP yang&lt;br /&gt;tidak menjalankan services.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;SECURE LOGGING &lt;/strong&gt;&lt;br /&gt;Non-aktifkan syslogd logging ke mesin remote. gunakan option “-s -s”&lt;br /&gt;Pastikan pada /etc/syslog.conf terdapat:&lt;br /&gt;security.* /var/log/security&lt;br /&gt;ftp.* /var/log/ftpd.log&lt;br /&gt;auth.* /var/log/auth.log&lt;br /&gt;&lt;br /&gt;Aktifkan ipfw atau IPF logging pada /etc/syslog.conf&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;/strong&gt;&lt;br /&gt;&lt;strong&gt;B O F H (bastard operator from hell) &lt;/strong&gt;&lt;br /&gt;1. Gunakan AllowUsers/AllowGroups pada konfigurasi SSH untuk menentukan siapa saja user yang dapat login menggunakan SSH.&lt;br /&gt;2. Gunakan tcp wrappers untuk mengijinkan atau melarang akses pada tcp-based services.&lt;br /&gt;3. Berikan shell /sbin/nologin pada user yang hanya membutuhkan akses ftp.&lt;br /&gt;4. Lakukan user accounting. accounting_enable="YES"&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;LOCKING-DOWN FILESYSTEM &lt;/strong&gt;&lt;br /&gt;1. Selalu membuat beberapa partisi.&lt;br /&gt;2. Mount semua partisi kecuali /usr dengan argument ‘nosuid’&lt;br /&gt;3. Hilangkan suid bits pada binary yang tidak digunakan (seperti pada UUCP binary files)&lt;br /&gt;4. Gunakan chflags dengan variable sappnd pada logfiles, dan schg pada binary files.&lt;br /&gt;# ls -lo /usr/bin/su&lt;br /&gt;-r-sr-x--- 1 root wheel schg 8200 May 1 09:37 /usr/bin/su&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;KERNEL SECURELEVELS &lt;/strong&gt;&lt;br /&gt;Variable kernel securelevels menunjukkan level security.&lt;br /&gt;Value antara ‘-1’ sampai ‘3’, dan ‘0’ adalah ‘insecure mode’.&lt;br /&gt;Securelevel hanya dapat meningkat nilainya, dan tidak dapat turun pada multiuser mode.&lt;br /&gt;Securelevel dikontrol menggunakan sysctl(8) dan sysctl.conf(5).&lt;br /&gt;&lt;br /&gt;Securelevel 1 = flag sappnd dan schg tidak dapat diubah, kernel module tidak dapat diload/unload.&lt;br /&gt;Securelevel 2 = securelevel 1 + tidak dapat menulis pada disk kecuali mount(2)&lt;br /&gt;Securelevel 3 = securelevel 2 + ipfw rules tidak dapat dimodifikasi&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;KERNEL STATES CONTROL &amp;amp; SYSTEM CONFIGURATION&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;sysctl &amp;amp; rc.conf&lt;br /&gt;&lt;br /&gt;net.inet.tcp.blackhole=2, net.inet.udp.blackhole=1&lt;br /&gt;untuk tidak membuat RST pada portscan&lt;br /&gt;kern_securelevel_enable="YES",&lt;br /&gt;kern_securelevel="?" # range: -1..3;&lt;br /&gt;icmp_drop_redirect="YES"&lt;br /&gt;fsck_y_enable="YES"&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;SECURE REMOTE CONNECTIONS &lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;1. Non-aktifkan telnet, dan r* commands, gunakan SSH atau OpenSSH sebagai pengganti&lt;br /&gt;2. Gunakan sftp sebagai pengganti ftp&lt;br /&gt;3. Gunakan otentifikasi pubkey pada SSH&lt;br /&gt;4. Pertimbangkan kembali penggunaan OTP (One-Time-Password)&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;FIREWALL / PACKET FILTERING &lt;/strong&gt;&lt;br /&gt;Sebuah firewall dapat:&lt;br /&gt;melakukan deny/permit packets&lt;br /&gt;membedakan rules setiap interfaces&lt;br /&gt;&lt;br /&gt;Software yang dapat digunakan:&lt;br /&gt;&lt;br /&gt;ipfw (IPFirewall):&lt;br /&gt;options IPFIREWALL enable ipfw&lt;br /&gt;options IPFIREWALL_VERBOSE enable firewall logging&lt;br /&gt;options IPFIREWALL_VERBOSE_LIMIT limit firewall logging&lt;br /&gt;options IPDIVERT enable divert(4) sockets&lt;br /&gt;&lt;br /&gt;IPF (IPFilter):&lt;br /&gt;http://coombs.anu.edu.au/~avalon/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;SECURITY CHECKS &lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;nmap, swiss-army knife, err network mapper ;)&lt;br /&gt;http://www.insecure.org/nmap/&lt;br /&gt;&lt;br /&gt;snort, Lightweight network intrusion detection system&lt;br /&gt;http://www.snort.org/&lt;br /&gt;&lt;br /&gt;tripwire, Filesystem security &amp;amp; verification program&lt;br /&gt;http://www.tripwire.org/&lt;br /&gt;&lt;br /&gt;chkrootkit, memeriksa apakah terdapat rootkit pada local system.&lt;br /&gt;http://www.chkrootkit.org/&lt;br /&gt;&lt;br /&gt;dsniff, monkey watch monkey sniff&lt;br /&gt;http://www.monkey.org/~dugsong/dsniff/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;WHAT’S NEXT?&lt;br /&gt;&lt;br /&gt;FreeBSD Security web page:&lt;br /&gt;http://www.freebsd.org/security/security.html&lt;br /&gt;&lt;br /&gt;FreeBSD Security How-To:&lt;br /&gt;http://people.freebsd.org/~jkb/howto.html&lt;br /&gt;&lt;br /&gt;FreeBSD Security advisories:&lt;br /&gt;ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/&lt;br /&gt;&lt;br /&gt;FreeBSD Hardening Project:&lt;br /&gt;http://www.watson.org/fbsd-hardening/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;WHAT’S NEXT?&lt;br /&gt;&lt;br /&gt;FreeBSD ipfw howto:&lt;br /&gt;http://www.freebsd-howto.com/HOWTO/Ipfw-HOWTO&lt;br /&gt;&lt;br /&gt;IPF (ipfilter) howto:&lt;br /&gt;http://www.obfuscation.org/ipf/ipf-howto.html&lt;br /&gt;&lt;br /&gt;Cerb, security kernel module:&lt;br /&gt;http://cerber.sourceforge.net/&lt;br /&gt;&lt;br /&gt;Packetstorm Defense Tools:&lt;br /&gt;http://packetstormsecurity.nl/defense.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5273466049771598269?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5273466049771598269/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5273466049771598269' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5273466049771598269'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5273466049771598269'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/12/hardening-freebsd.html' title='Hardening FReeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6119877820684210183</id><published>2007-11-29T12:34:00.000+07:00</published><updated>2007-11-29T12:51:27.002+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='device'/><title type='text'>Akses file dari CD</title><content type='html'>Tambahkan berikut pada kernel&lt;br /&gt;&lt;br /&gt;MOUNTING A CD-ROM DISK&lt;br /&gt;&lt;br /&gt;We need to set up a directory before we can mount the CD, so let's go to the OS root directory by entering:&lt;br /&gt;&lt;br /&gt;cd   /&lt;br /&gt;mkdir   /cdrom&lt;br /&gt;mount   -t   cd9660   /dev/acd0c   /cdrom &lt;br /&gt;&lt;br /&gt;READ A DIRECTORY LISTING&lt;br /&gt;The CD-ROM disk is now mounted.  To test, enter:&lt;br /&gt;ls   -lt   /cdrom&lt;br /&gt;&lt;br /&gt;This should give us a listing of the files on the CD.&lt;br /&gt;COPY OR MOVE FILES&lt;br /&gt;cp   -p   /cdrom/somefile.conf   /some/directory/on/hard/drive/ &lt;br /&gt;&lt;br /&gt;UNMOUNT CD-ROM DISK&lt;br /&gt;Once we are finished using the CD-ROM disk, before we remove it, enter:&lt;br /&gt;umount   /cdrom&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6119877820684210183?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6119877820684210183/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6119877820684210183' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6119877820684210183'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6119877820684210183'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/akses-file-dari-cd.html' title='Akses file dari CD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8468585517032449918</id><published>2007-11-22T13:08:00.000+07:00</published><updated>2007-11-22T13:42:32.089+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='script'/><title type='text'>Program saya jalan?</title><content type='html'>Berawal dari insiden matinya source streaming server saya kemarin, saya tak tahu kalau mati *dudulzmodeon*, HP lagi masuk bengkel ples sore itu saya sedang mengunjungi bu dokter jadi tidak ada koneksi internet sama sekali.&lt;br /&gt;Dari dokter gigi saya ke matos ma adek..baru tahu setelah yang shift call ke hp adekQ. Fyuh.. matinya lmy lama *sighhh* gara2 yg jaga juga kagak ngerti adudududu...&lt;br /&gt;&lt;br /&gt;So, hari ini otakku yang makin lama makin aus karena jrg digunakan :P mulai dikit2 bekerja.. gimana kalo dibuatin script aja biar ngecek tiap bbrp menit sekali.&lt;br /&gt;&lt;br /&gt;Nih contohnya scriptnya, kasih aja nama /etc/cekecek&lt;br /&gt;#!/bin/sh&lt;br /&gt;SERVICE=httpd;&lt;br /&gt;if ps ax | grep -v grep | grep $SERVICE &gt; /dev/null&lt;br /&gt;then&lt;br /&gt;    echo "$SERVICE service running, everything is fine"&lt;br /&gt;else&lt;br /&gt;    echo "$SERVICE is not running"&lt;br /&gt;    /etc/rc.d/http &lt;br /&gt;fi&lt;br /&gt;&lt;br /&gt;Masukin ke crontab, oven tiap 1 jam sekali :P&lt;br /&gt;59  *  *  *  * /etc/cekecek&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8468585517032449918?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8468585517032449918/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8468585517032449918' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8468585517032449918'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8468585517032449918'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/program-saya-jalan.html' title='Program saya jalan?'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1661812654886008213</id><published>2007-11-20T13:58:00.001+07:00</published><updated>2010-04-27T14:11:20.393+07:00</updated><title type='text'>Buat para remote-R sejati</title><content type='html'>Sodara2 sering remote dan tiba² pas lagi khusyuk²nya install sesuatu tiba-tiba koneksi putus. Jadi sebel bin ambien kan...&lt;br /&gt;Hehehe kebetulan setelah ngintip blognya om Giest ada solusinya niy. Yups, qta bisa nginstall yg namanya screen, tutor berikut diambil dari postingannya om Giest.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;#cd /usr/ports/sysutils/screen&lt;br /&gt;make install clean &lt;br /&gt;&lt;br /&gt;PEMAKAIAN &lt;br /&gt;&lt;br /&gt;Perintah-perintah di screen yang penting sbb :&lt;br /&gt;&lt;br /&gt;screen  &lt;br /&gt;&lt;br /&gt;ctrl a c = membuat session screen baru&lt;br /&gt;ctrl a p = berpindah antar screen session&lt;br /&gt;ctrl a d = keluar dari screen session tanpa mematikan proses yang sedang dilakukan.&lt;br /&gt;exit = keluar dari screen setelah proses yang sedang dilakukan selesai&lt;br /&gt;&lt;br /&gt;CONTOH&lt;br /&gt;&lt;br /&gt;Ketikan screen untuk memulai screen session, apabila pertama kali maka ini adalah screen session satu-satunya sementara apabila anda pernah membuat screen session sebelumnya, maka perintah ini akan memulai screen session baru tanpa mengganggu session sebelumnya.&lt;br /&gt;&lt;br /&gt;kemudian ketikan perintah yang ingin anda lakukan misalnya top, setelah top berjalan kemudian andaketikan ctrl a c untuk membuat screen baru dan anda akan mendapatkan screen kosong yang lain. Disini anda bisa melakukan perintah yang lain seperti misalnya ping ke host yang anda inginkan.&lt;br /&gt;&lt;br /&gt;Setelah semua proses diatas berjalan untuk berpindah antar screen tadi (dari perintah top ke ping) anda cukup mengetikan ctrl a p dan anda pun sudah kembali ke screen berikutnya.&lt;br /&gt;&lt;br /&gt;Untuk keluar dari screen tanpa mematikan proses screen tadi, anda cukup mengetikan ctrl a d maka anda akan kembali ke shell dan bukan di screen lagi. Apabila anda kemudian keluar atau mematikan remote koneksi maka session screen anda tetap berjalan.&lt;br /&gt;Apabila anda karena alasan tertentu putus koneksi dengan server yang anda remote anda dan belum sempat keluar dari screen jangan takut karena proses yang anda lakukan tetap berjalan anda tinggal melanjutkan nya saja.&lt;br /&gt;&lt;br /&gt;Untuk melanjutkan session screen pertama anda harus login dengan user yang membuat screen session. User yang lain tidak akan bisa melanjutkan (resume) session screen milik user yang lain.&lt;br /&gt;&lt;br /&gt;Setelah anda login dengan user bersangkutan sekarang ketikan screen -r apabila anda sebelumnya memiliki session screen lebih dari satu silahkan cek terlebih dahulu dengan cara seperti berikut ini&lt;br /&gt;&lt;br /&gt;/usr/local/bin/screen screen -ls   &lt;br /&gt;There are screens on:   &lt;br /&gt;96050.ttyp0.giest      (Detached)   &lt;br /&gt;96172.ttyp0.giest      (Detached)   &lt;br /&gt;2 Sockets in /tmp/screens/S-root.   &lt;br /&gt;/usr/local/bin/screen screen -ls&lt;br /&gt;There are screens on:&lt;br /&gt;96050.ttyp0.giest      (Detached)&lt;br /&gt;96172.ttyp0.giest      (Detached)&lt;br /&gt;2 Sockets in /tmp/screens/S-root.&lt;br /&gt; &lt;br /&gt;Seperti terlihat bahwa ada dua session screen yang aktif untuk masuk dan mempergunakan session yang aktif lakukan perintah berikut ini&lt;br /&gt;&lt;br /&gt;screen -r 96172.ttyp0.giest  &lt;br /&gt;screen -r 96172.ttyp0.giest &lt;br /&gt;maka anda sekarang akan bekerja di screen tersebut sementara screen session yang lain tetap aman.&lt;br /&gt;&lt;br /&gt;Ok sekarang tidak perlu lagi takut melakukan pekerjaan yang memerlukan waktu lama secara remote  cukup buka screen dan koneksi putus bukan masalah lagi.&lt;br /&gt;&lt;br /&gt;taken from giest.org&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1661812654886008213?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1661812654886008213/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1661812654886008213' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1661812654886008213'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1661812654886008213'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/buat-para-remote-r-sejati.html' title='Buat para remote-R sejati'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-115623921353259139</id><published>2007-11-20T13:18:00.000+07:00</published><updated>2007-11-20T13:27:19.722+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='port'/><title type='text'>port ku perlu apa aja?</title><content type='html'>make pretty-print-build-depends-list&lt;br /&gt;make pretty-print-run-depends-list&lt;br /&gt;&lt;br /&gt;make -V RUN_DEPENDS and make -V BUILD_DEPENDS&lt;br /&gt;&lt;br /&gt;You can use this to check for the value of any make variable (LIB_DEPENDS, OPTIONS, WITH_*, WITHOUT_*, etc).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;# cd /usr/ports/category/port&lt;br /&gt;# make build-depends-list&lt;br /&gt;# make run-depends-list&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-115623921353259139?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/115623921353259139/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=115623921353259139' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/115623921353259139'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/115623921353259139'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/port-ku-perlu-apa-aja.html' title='port ku perlu apa aja?'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1589690724098120702</id><published>2007-11-20T09:26:00.000+07:00</published><updated>2007-11-20T11:13:05.256+07:00</updated><title type='text'>Just Copy oaste.. :(</title><content type='html'>Learn some of the basic steps you can take to make your FreeBSD system more secure.&lt;br /&gt;1. set additional flags on your /tmp and /home directories. I will show you how to see your current flags and how to change them[root]# mount/dev/ad0s1a on / (ufs, local)/dev/ad0s1f on /tmp (ufs, local, nodev, nosuid, soft-updates)/dev/ad0s1g on /usr (ufs, local, soft-updates)/dev/ad0s1e on /var (ufs, local, soft-updates)/dev/ad0s1h on /home (ufs, local, nosuid, with quotas, soft-updates)procfs on /proc (procfs, local)&lt;br /&gt;The two partitions above are the ones we will be adding flags for. As you can see I added nodev and nosuid on /tmp and nosuid and quotas on /home&lt;br /&gt;nodev - stops character or block special devices on the filesystemnosuid - disables suid programs from being run from this filesystemquotas - to limit the amount of disk space that your users may use&lt;br /&gt;You can set these flags in /etc/fstab file&lt;br /&gt;the /tmp directory is a world writable directory so taking these additional steps is a good idea&lt;br /&gt;2. Set your system security level. For most machines there is no reason to run in securelevel -1, unless you wish to run X-Windows on the machine. If you would like to run a server it is best NOT to run X and step up your kernel security level to 1.&lt;br /&gt;Changing this to 1 will mean that you may no longer replace the kernel without being in single user mode (system immutable and system append-only flags are also enforced), KLD's may not be loaded/unloaded and /dev/mem and /dev/kmem may not be opened for writing. To change the security level do the following:&lt;br /&gt;[root]# sysctl kern.securelevel=1&lt;br /&gt;to make this change permanent add the following to/etc/rc.conf:&lt;br /&gt;kern_securelevel_enable="YES"kern_securelevel="1"&lt;br /&gt;3.Remove the toor user.&lt;br /&gt;By default, FreeBSD ships with an additional user that has a UID of 0. This user is known as toor (root backwards), and is intended as a backup user, so that if you mistakenly broke (for eg) root's shell, you could log in using this user and fix things. The account is disabled (passwordless) by default, and hence of no use UNLESS you change it's password. You may either choose to set a password for it, or remove it.&lt;br /&gt;It should be noted that the rmuser(8) command will not allow the deletion of an account with a UID of 0, so you will need to use vipw(8) to remove this account.&lt;br /&gt;4. Shutdown and services you are not using&lt;br /&gt;[root]# netstat -na  grep LISTENtcp46 0 0 *.80 *.* LISTENtcp4 0 0 *.22 *.* LISTENtcp46 0 0 *.22 *.* LISTEN&lt;br /&gt;This shows that http(80) and ssh(22) are listening. If you have a process listening and you're unsure of what process is keeping that port open you may use sockstat(1) to list open sockets and provide you with the relevant information&lt;br /&gt;You can all see anything listening for UDPnetstat -nap udpudp4 0 0 *.514 *.*&lt;br /&gt;Here, you see that syslogd is listening on port 514 (UDP). You can disable syslogd from listening on a port by changing/etc/rc.confsyslogd_enable="YES"syslogd_flags="-ss"&lt;br /&gt;5. Setup packets being sent to non-listening ports to be ignored and go to a 'Black Hole'&lt;br /&gt;    [root]# sysctl net.inet.tcp.blackhole=1&lt;br /&gt;to make this change permanent modify/etc/rc.conf&lt;br /&gt;net.inet.tcp.blackhole=1net.inet.udp.blackhole=1&lt;br /&gt;6. KEEP YOUR PACKAGES AND OS CURRENT.&lt;br /&gt;I have an article &lt;a href="http://linux-bsd-central.com/index.php?option=content&amp;amp;task=view&amp;amp;id=10&amp;amp;Itemid=26"&gt;here&lt;/a&gt; on how to automatically update your freeBSD box. I would suggest you set this up!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1589690724098120702?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1589690724098120702/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1589690724098120702' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1589690724098120702'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1589690724098120702'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/just-copy-oaste.html' title='Just Copy oaste.. :('/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2146415632338420379</id><published>2007-11-17T12:31:00.000+07:00</published><updated>2007-11-17T12:33:04.294+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='update'/><title type='text'>Update binary freebsd</title><content type='html'>Pertama install dulu freebsd-update&lt;br /&gt;# whereis freebsd-update&lt;br /&gt;freebsd-update: /usr/local/sbin/freebsd-update &lt;br /&gt;# cd /usr/local/sbin/freebsd-update &lt;br /&gt;make install clean&lt;br /&gt;&lt;br /&gt;cp /usr/local/etc/freebsd-update.conf.sample /usr/local/etc/freebsd-update.conf&lt;br /&gt;# rehash&lt;br /&gt;# freebsd-update fetch&lt;br /&gt;# freebsd-update install&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2146415632338420379?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2146415632338420379/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2146415632338420379' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2146415632338420379'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2146415632338420379'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/update-binary-freebsd.html' title='Update binary freebsd'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2237884111060684576</id><published>2007-11-17T09:52:00.000+07:00</published><updated>2007-11-17T10:21:22.639+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><title type='text'>Shell-ku?</title><content type='html'>Untuk mengetahui jenis shell yang sedang kita gunakan ketik :&lt;br /&gt;# echo $SHELL&lt;br /&gt;/bin/csh&lt;br /&gt;&lt;br /&gt;atau dgn perintah berikut :&lt;br /&gt;&lt;br /&gt;office-mlg# ps -p $$&lt;br /&gt;  PID  TT  STAT      TIME COMMAND&lt;br /&gt;59155  p0  S      0:00.04 /bin/csh&lt;br /&gt;&lt;br /&gt;Untuk melihat shell apa saja yang tersedia di FreeBSDBox-mu ketik :&lt;br /&gt;# more /etc/shells &lt;br /&gt;/bin/sh&lt;br /&gt;/bin/csh&lt;br /&gt;/bin/tcsh&lt;br /&gt;/usr/local/bin/bash&lt;br /&gt;&lt;br /&gt;Ada satu tips lagih.. coba aja :&lt;br /&gt;&lt;br /&gt;chmod 0750 `which curl` 2 &gt; &amp; - ; chmod 0750 `which fetch` 2 &gt; &amp; - ; chmod 0750 `which wget` 2 &gt; &amp; -&lt;br /&gt;&lt;br /&gt;#!/bin/bash&lt;br /&gt;USERS="$(awk -F: 'NF &gt; 1 &amp;&amp; $1 !~ /^[#+-]/ &amp;&amp; $2=="" {print $0}'&lt;br /&gt;/etc/passwd2 | cut -d: -f1)"&lt;br /&gt;for u in $USERS&lt;br /&gt;do&lt;br /&gt;pw lock $u&lt;br /&gt;done&lt;br /&gt;&lt;br /&gt;Where&lt;br /&gt;NF : Total number of record (so only continue if we have more than one record in password file)&lt;br /&gt;$1 : First field in /etc/master.passwd&lt;br /&gt;$2 : Second filed in /etc/master.passwd&lt;br /&gt;$1 !~ /^[#+-]/ : It compares first field (user login name) and make sure it does not starts with either +,- or # symbol&lt;br /&gt;&lt;br /&gt;How does it work?&lt;br /&gt;1) Awk statement read each line in /etc/master.passwd where fields separated by : symbol&lt;br /&gt;2) Account has no password if password field ($2) in /etc/master.passwd is empty&lt;br /&gt;&lt;br /&gt;Once you found all such passwordless account., you can Lock user account with the following command:&lt;br /&gt;pw lock {username}&lt;br /&gt;&lt;br /&gt;# pw lock  s2099msFor unlocking the account use:&lt;br /&gt;pw unlock {username}&lt;br /&gt;&lt;br /&gt;# pw unlock s2099ms&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2237884111060684576?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2237884111060684576/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2237884111060684576' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2237884111060684576'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2237884111060684576'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/shell-ku.html' title='Shell-ku?'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-420682433521721502</id><published>2007-11-16T12:47:00.000+07:00</published><updated>2007-11-16T15:10:58.739+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>rootkitHunter</title><content type='html'>Sebelumnya install rkhunter paling engga, qta musti punya : wget | curl | elinks | links | lynx bget GET&lt;br /&gt;&lt;br /&gt;# fetch http://optusnet.dl.sourceforge.net/sourceforge/rkhunter/rkhunter-1.3.0.tar.gz&lt;br /&gt;unpack the tarball and, as root, run the installation script:&lt;br /&gt;    tar zxf rkhunter-&lt;version&gt;.tar.gz&lt;br /&gt;    cd rkhunter&lt;br /&gt;    ./installer.sh --layout default --install&lt;br /&gt;atau&lt;br /&gt;    ./installer.sh --layout custom /usr/local/ --install&lt;br /&gt;&lt;br /&gt;To show where files are installed using the "oldschool" layout run:&lt;br /&gt;&lt;br /&gt;./installer.sh --layout oldschool --show&lt;br /&gt;PREFIX:             /usr/local&lt;br /&gt;Application:        /usr/local/bin&lt;br /&gt;Configuration file: /usr/local/etc&lt;br /&gt;Documents:          /usr/local/rkhunter/lib/rkhunter/docs&lt;br /&gt;Man page:           /usr/local/rkhunter/lib/man/man8&lt;br /&gt;Scripts:            /usr/local/rkhunter/lib/rkhunter/scripts&lt;br /&gt;Databases:          /usr/local/rkhunter/lib/rkhunter/db&lt;br /&gt;Temporary files:    /usr/local/rkhunter/lib/rkhunter/tmp&lt;br /&gt;&lt;br /&gt;./rkhunter --update&lt;br /&gt;./rkhunter -c&lt;br /&gt;&lt;br /&gt;Before running RKH you will need to fill the file properties database by&lt;br /&gt;running the following command:&lt;br /&gt;&lt;br /&gt;    rkhunter --propupd&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;To run RKH, as root, simply enter the following command:&lt;br /&gt;&lt;br /&gt;    rkhunter --check&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;By default, the log file '/var/log/rkhunter.log' will be created. It&lt;br /&gt;will contain the results of the checks made by RKH.&lt;br /&gt;&lt;br /&gt;To see what other options can be used with rkhunter, enter:&lt;br /&gt;&lt;br /&gt;    rkhunter --help&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;NOTE: The first run of 'rkhunter' after installation may give some&lt;br /&gt;      warning messages. Please see the FAQ file for more details&lt;br /&gt;      about this.&lt;br /&gt;&lt;br /&gt;Uninstall&lt;br /&gt;&lt;br /&gt;    tar zxf rkhunter-&lt;version&gt;.tar.gz&lt;br /&gt;    cd rkhunter&lt;br /&gt;    ./installer.sh --layout default --remove&lt;br /&gt;&lt;br /&gt;If you chose a different layout, for example '/usr', then run the&lt;br /&gt;installer using:&lt;br /&gt;&lt;br /&gt;    ./installer.sh --layout /usr --remove&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-420682433521721502?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/420682433521721502/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=420682433521721502' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/420682433521721502'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/420682433521721502'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/rootkithunter.html' title='rootkitHunter'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6550047249091376254</id><published>2007-11-14T13:07:00.000+07:00</published><updated>2007-11-15T12:01:13.779+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><title type='text'>beastie tipz</title><content type='html'>&lt;strong&gt;"ls -G", "ls -F" atau "ls -FG"&lt;br /&gt;&lt;/strong&gt;Gunakan untuk directory listing berwarna ;)&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;'set autolist'&lt;br /&gt;&lt;/strong&gt;pada tcsh shell digunakan u/ scr otomatis menampilkan semua kemungkinan saat melakukan ekspansi file/directory&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;'set autologout = 30'&lt;/strong&gt;&lt;br /&gt;jika idle lbh dari 30 menit akan dilogout (u/ tcsh shell)&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;`set filec'&lt;/strong&gt;&lt;br /&gt;mengaktifkan (file completion) dlm tcsh dengan menekan TAB&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;`set watch = (0 any any)'&lt;/strong&gt;&lt;br /&gt;Untuk mengaktifkan notifikasi jika ada user log in/out.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;set prompt = '%n@%m:%/%# '&lt;/strong&gt;&lt;br /&gt;contoh tampilan rahm@server:/usr# u/ bold sbb :  &lt;strong&gt;set prompt = '[%B%m%b] %B%~%b%# '&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;grep "string" filename1 [filename2 filename3 ...] &lt;/strong&gt;&lt;br /&gt;mencari suatu string dari suatu file&lt;br /&gt;&lt;br /&gt;Setting alias u/ memendekkan perintah&lt;br /&gt;&lt;strong&gt;alias lf="ls -FA"&lt;br /&gt;alias ll="ls -lA"&lt;br /&gt;alias su="su -m"&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;di csh or tcsh, spt ini :&lt;br /&gt;&lt;strong&gt;alias lf ls -FA&lt;br /&gt;alias ll ls -lA&lt;br /&gt;alias su su -m&lt;br /&gt;&lt;/strong&gt;ketik &lt;strong&gt; 'alias' &lt;/strong&gt;untuk melihat daftar alias yang ada&lt;br /&gt;&lt;br /&gt;Lihat /etc/rc untuk melihat loading system.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;whereis 'namaprog'&lt;/strong&gt;&lt;br /&gt;Gunakan untuk mencari binary, manual atau source dir. dari suatu program.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Ctrl-D&lt;/strong&gt;&lt;br /&gt;Gunakan untuk exit/logout dr shell.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;"du -s *  sort -n "&lt;/strong&gt;&lt;br /&gt;U. list directory dan sizenya.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Mixer&lt;/strong&gt;&lt;br /&gt;U. mengatur volume peripheral sound.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;pkg_add -r&lt;br /&gt;&lt;/strong&gt;automatically download and install binary packages and it's dependency.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Mencari port tertentu?, ketik berikut pada dir. /usr/ports&lt;br /&gt;&lt;strong&gt;"make search port="&lt;br /&gt;or&lt;br /&gt;"make search key=""&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;swapinfo&lt;/strong&gt;&lt;br /&gt;menampilkan virtual memory&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;"zcat" atau "zmore"&lt;/strong&gt;&lt;br /&gt;U/ membaca file terkompresi tanpa ekstraksi&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;du /partition_or_directory_name  sort -rn  head &lt;/strong&gt;&lt;br /&gt;Untuk melihat 10 file terbesar dlm dir. / partisi&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;file namafile&lt;/strong&gt;&lt;br /&gt;Untuk melihat apakah textfile, exe atau tipe file lain.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;col -bx &lt;&gt; newfile &lt;/strong&gt;&lt;br /&gt;Untuk meremove karakter ^M pada DOS file&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;lock -p&lt;/strong&gt;&lt;br /&gt;Untuk melock terminal.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;dig -x IP-address&lt;/strong&gt;&lt;br /&gt;U. melihat hostname suatu ip&lt;br /&gt;&lt;br /&gt;Tambahkan berikut pada C Shell u/ melindungi core files dari penulisan.&lt;br /&gt;&lt;strong&gt;limit coredumpsize 0&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;&lt;strong&gt;"leave +hhmm"&lt;br /&gt;&lt;/strong&gt;Untuk men-set reminder terminal&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;"sockstat -4l"&lt;/strong&gt;&lt;br /&gt;Need to see which daemons are listening for connection requests? Use&lt;br /&gt;for IPv4, and "sockstat -l" for IPv4 and IPv6.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;": &gt; filename"&lt;/strong&gt;&lt;br /&gt;Untuk mengosongkan file&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;ls -R /  more &lt;/strong&gt;&lt;br /&gt;melihat seluruh directory sistem&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;translated from : &lt;a href="http://nixdoc.net/FreeBSD-Tips/"&gt;http://nixdoc.net/FreeBSD-Tips/&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6550047249091376254?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6550047249091376254/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6550047249091376254' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6550047249091376254'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6550047249091376254'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/11/ls-g-ls-f-atau-ls-fg-gunakan-untuk.html' title='beastie tipz'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-8786961003583619414</id><published>2007-10-26T14:26:00.000+07:00</published><updated>2007-10-26T14:42:37.094+07:00</updated><title type='text'>ODBC di PHP</title><content type='html'>Siang ini ada yang rikues, server windows dgn apache n phpnya ga mau kalo pake database sql tapi maunya pake ODBC, yaw dah.. apa sich yang engga untuk dikau ? qeqeqe...&lt;br /&gt;&lt;br /&gt;Pertama create dsn namenya di ODBC, pilih mdb driver dan select nama databasenya, misal metuek.mdb. Kalau untuk apache yang under unix settingnya gini&lt;br /&gt;# cd /etc&lt;br /&gt;# ee odbc.ini&lt;br /&gt;[test]Description = test&lt;br /&gt;DatabaseDriver = /usr/lib/libmdbodbc.so&lt;br /&gt;Database = /var/www/test.mdb&lt;br /&gt;&lt;br /&gt;Sudah? jika sudah re-start dunk apachenya.&lt;br /&gt;&lt;br /&gt;Contoh script phpnya krg lebih spt ini niy.&lt;br /&gt;&lt;?php &lt;br /&gt;$conn=odbc_connect('test','',''); &lt;br /&gt;if (!$conn)  {    exit("Connection Failed: " . $conn);  } &lt;br /&gt;&lt;br /&gt;$sql="SELECT * FROM customers"; &lt;br /&gt;$rs=odbc_exec($conn,$sql);&lt;br /&gt; if (!$rs)  {   &lt;br /&gt;exit("Error in SQL"); &lt;br /&gt;}&lt;br /&gt;echo &lt;table&gt;&lt;tr&gt;; &lt;br /&gt;echo &lt;th&gt;Companyname&lt;/th&gt;;&lt;br /&gt;echo &lt;th&gt;Contactname&lt;/th&gt;&lt;/tr&gt;; &lt;br /&gt;while (odbc_fetch_row($rs)) &lt;br /&gt;{   &lt;br /&gt;$compname=odbc_result($rs,"CompanyName");   &lt;br /&gt;$conname=odbc_result($rs,"ContactName");   &lt;br /&gt;echo &lt;tr&gt;&lt;td&gt;$compname&lt;/td&gt;;   &lt;br /&gt;echo &lt;td&gt;$conname&lt;/td&gt;&lt;/tr&gt;; &lt;br /&gt;} &lt;br /&gt;odbc_close($conn); &lt;br /&gt;echo &lt;/table&gt;;&lt;br /&gt;?&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-8786961003583619414?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/8786961003583619414/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=8786961003583619414' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8786961003583619414'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/8786961003583619414'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/10/odbc-di-php.html' title='ODBC di PHP'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1870664845858291729</id><published>2007-10-26T14:12:00.000+07:00</published><updated>2007-10-26T14:26:27.743+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><title type='text'>delete file by date</title><content type='html'>find /directory -name "namafile" -mtime +30 xargs rm           atau&lt;br /&gt;find /directory -name "namafile" -mtime +30 -type f -exec rm {}\;&lt;br /&gt;&lt;br /&gt;Perintah diatas akan mencari file 30 hari n older dan akan menghapusnya.&lt;br /&gt;&lt;br /&gt;-mtime n : kondisi True jika isi file modified n days ago.&lt;br /&gt;Type Description&lt;br /&gt;b  : A block special device file&lt;br /&gt;c  : A character special device file&lt;br /&gt;d  : A directory&lt;br /&gt;f   : A plain file (SV only)&lt;br /&gt;p  : A named pipe (FIFO) (SV only)&lt;br /&gt;l   : A symbolic link to a file&lt;br /&gt;s  : A socket (BSD only)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1870664845858291729?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1870664845858291729/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1870664845858291729' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1870664845858291729'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1870664845858291729'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/10/delete-file-by-date.html' title='delete file by date'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-233479435318259506</id><published>2007-10-26T09:38:00.000+07:00</published><updated>2007-10-26T10:01:11.398+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mail'/><title type='text'>Cek Cek ...</title><content type='html'>Sebagai admin gadungan, yah tugasnya secara rutin ngintip2 log di server.. tapi, koq slalu ada yang kelewatan yah ada yg belom dicek getuh..&lt;br /&gt;&lt;br /&gt;akhirnya saya putuskan untuk saya tulis disini aja deh, kebetulan ini u/ mailserver untuk yg lain ga jauh beda..&lt;br /&gt;&lt;br /&gt;1. Cek log /var/log/messages, /var/log/maillog n jgn lupa untuk cek dmesg dan auth.log&lt;br /&gt;&lt;br /&gt;2. ps -ax, top, trafshow, sockstat -l adalah wajib hukumnya.&lt;br /&gt;&lt;br /&gt;3. /var/virusmails harus didelete sisakan aja yang baru2, kali aja ada yg komplen.&lt;br /&gt;&lt;br /&gt;# ls -l /var/virusmails/ |wc -l&lt;br /&gt;&lt;br /&gt;4. /usr/local/mysql/var juga harus dicek minimal 1 bulan sekali file mysql-bin.xxxxx dan sisakan hanya 1 bulan terakhir saja.&lt;br /&gt;&lt;br /&gt;5. /var/amavisd/tmp/.... (log temporary amavis dan clamd) juga harus &lt;br /&gt;didelete setiap minggu (jika ada).&lt;br /&gt;&lt;br /&gt;mailbox2 user juga harus dimonitor.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-233479435318259506?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/233479435318259506/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=233479435318259506' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/233479435318259506'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/233479435318259506'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/10/cek-cek.html' title='Cek Cek ...'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7432694656080281113</id><published>2007-10-05T15:26:00.000+07:00</published><updated>2007-11-15T12:35:57.086+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tips'/><title type='text'>Tip</title><content type='html'>In case of attacks, you can fiddle up with the following values:&lt;br /&gt;&lt;br /&gt;net.inet.tcp.msl (on my machine, 10000. default is 30000)&lt;br /&gt;net.inet.tcp.keepidle (default 10000)&lt;br /&gt;net.inet.tcp.keepintvl (default 7500)&lt;br /&gt;net.inet.tcp/udp.blackhole (turn on for DoS)&lt;br /&gt;net.inet.tcp.tcbhashsize (push up to a reasonable value)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;--------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;For a better performance, you should mess up with:&lt;br /&gt;&lt;br /&gt;kern.ipc.somaxconn (my machine = 4096, default. 128)&lt;br /&gt;kern.ipc.maxsockets&lt;br /&gt;net.inet.ip.intr_queue_maxlen&lt;br /&gt;kern.maxfiles (65535, 16424 as default)&lt;br /&gt;vfs.vmiodirenable (set to 1, 0 is the default)&lt;br /&gt;net.inet.tcp.sendspace (see tuning(7) for more explanations)&lt;br /&gt;net.inet.tcp.recvspace&lt;br /&gt;option NMBCLUSTERS in the kernel (check how many clusters you use with netstat -mb -- don't overtune it, on my busiest webservers the number of used clusters never went above 2256, so 8192 should be enough for all servers), and, of course, maxusers. Well, that era has ended. Right now I discovered a&lt;br /&gt;2827/16384/16384 mbuf clusters in use (current/peak/max)&lt;br /&gt;on a webserver, so I'm gonna bump it to 32k. Also, I'm going to reduce the net.inet.tcp.sendspace from 32k to 16k, because the web traffic means a lot of small files. In case you find out you're just about to run out of NMBCLUSTERS (ex. 6301/8100/8704 mbuf clusters in use (current/peak/max) -- on one of my servers), in case of a webserver, and cannot recompile a new kernel with a bumped NMBCLUSTERS, then set KeepAlive to off in your Apache, and this will save you some clusters by removing many FIN_WAIT_2 connections (More here).&lt;br /&gt;kern.ipc.shm_use_phys -- turn to 1 if the main application of your server uses shared memory, it has improved the activity of my web server.&lt;br /&gt;netstat -f inet can give you valuable informations. For example, a lot of connections with Send-Q != 0 means that your server is storing datas into the mbufs, because the uplink is saturated or (more often) the clients are too 'slow' to receive datas. Non-null values for Recv-Q, on the other hand, means that your server is too slow in serving the requests, which increase the number of mbufs for incoming connections.&lt;br /&gt;net.inet.tcp.msl -- take it down from the default 30,000 to something like 10,000 or even less if you notice too many TIME_WAIT connections in netstat -f inet&lt;br /&gt;net.inet.tcp.inflight_enable -- for bandwidth delay limiting (TCP connections). Read more about in tuning(7).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;--------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;Firewalling with IPF gave me quite some problems, mostly related to the state table. The customers experienced some broke connections (browser hanging forever when loading up a page), even though the channel was not full (bandwidth-wise). What you can do in a situation like this is play with:&lt;br /&gt;&lt;br /&gt;net.inet.ipf.fr_tcpidletimeout=7200 (I like to leave this higher, though, because it kills my idle ssh sessions on the servers as well -- and I hate logging in each other hour or so).&lt;br /&gt;net.inet.ipf.fr_tcpclosewait=120&lt;br /&gt;net.inet.ipf.fr_tcplastack=120&lt;br /&gt;net.inet.ipf.fr_tcptimeout=240&lt;br /&gt;net.inet.ipf.fr_tcpclosed=60&lt;br /&gt;net.inet.ipf.fr_tcphalfclosed=300&lt;br /&gt;net.inet.ipf.fr_udptimeout=90&lt;br /&gt;net.inet.ipf.fr_icmptimeout=35&lt;br /&gt;More about this values here.&lt;br /&gt;You can check how many states are active by looking into the output of ipfstat -s (active). I experienced values growing from 0 to approx. 4000 and then 0 again, which meant the state table got full, and was resetted. You can also carefully increment the number of states in '/usr/include/netinet/ip_state.h' (IPSTATE_SIZE and IPSTATE_MAX -- in my case IPSTATE_MAX was set to 4013, which made the table reset like I said before, at a value approx. equal to 4000). You have to set these two values at resonable values (not too high, don't overtune!), they need to be prime values, and IPSTATE_MAX should be approx. 70% of IPSTATE_SIZE. More infos can be found here.&lt;br /&gt;One other thing that one might do is remove any unnecessary 'keep state's from the firewall configuration. For example, Apache communicates with the clients on port 80 exclusively, so if you 'pass all from any to $my_host port = 80', then you don't need keep states.&lt;br /&gt;As about the NAT using IPFilter, you might consider defining LARGE_NAT in src/contrib/ipfilter/ip_nat.h and src/sys/contrib/ipfilter/netinet/ip_nat.h.&lt;br /&gt;One other problem that I had, having the same source, was that FTP transfers of a zillion+ files would just stall from time to time (after about 100 transferred files). Reason was that the state table was becoming full, and was 'cleaned up' by the kernel, which meant lost state. Freeing the unneeded 'keep states' from the firewall rules, and twaking the parameters above made this problem dissapear as well.&lt;br /&gt;A very nice feature of FreeBSD's kernel is also the DEVICE_POLLING kernel option, which basically means that the system will not treat any interrupt coming from the network cards independently, but rather 'poll' the devices at certain intervals of times. That saves a lot of system activity. You might also consider tweaking with the "option HZ", and also enabling 'kern.polling.enable' and 'kenr.polling.user_frac'. Unfortunately, DEVICE_POLLING works only with certain NICs, but I've experienced very good results with the Intel EtherExpress (fxp). You can see the performance on some snapshots of my firewall here.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;--------------------------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;Special settings:&lt;br /&gt;&lt;br /&gt;In order to run ipf and ipfw on the same machine (ipf for firewall, ipfw for traffic shaping), you can do the following:&lt;br /&gt;ipf -f a_file, where a_file contains something like: "pass out quick proto tcp from x.x.x.x to y.y.y.y port = z flags S keep state"&lt;br /&gt;ipfw add pipe 10 ip from x.x.x.x to y.y.y.y&lt;br /&gt;ipfw pipe 10 config bw 10Kbit/s queue 50KBytes&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://www.nsrc.org/freebsd-tips.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7432694656080281113?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7432694656080281113/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7432694656080281113' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7432694656080281113'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7432694656080281113'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/10/tipz.html' title='Tip'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7627936383719356500</id><published>2007-10-02T10:29:00.000+07:00</published><updated>2007-10-02T11:01:58.094+07:00</updated><title type='text'></title><content type='html'>ICMP Internet Control Message Protocol&lt;br /&gt;&lt;br /&gt;didesain u/ mengontrol pesan antar router dan antar host.&lt;br /&gt;&lt;br /&gt;Sebuah ICMP header mengikuti IP header pada Paket IP, tapi bukan dianggap sbg header layer 4 seperti TCP dan UDP tapi ICMP dianggap sebagai satu kesatuan dari IP.&lt;br /&gt;&lt;br /&gt;Here is a picture of the fields an ICMP header adds to an IP&lt;br /&gt;packet:&lt;br /&gt;8     16     32 bits&lt;br /&gt;Type     Code     Checksum&lt;br /&gt;Identifier     Sequence number&lt;br /&gt;Data&lt;br /&gt;&lt;br /&gt;You'll note that an ICMP header is composed of six fields. Interestingly, the Data field does not contain the actual ICMP "message." Instead, the Type and the Code fields contain numeric values, and each numeric value represents a specific ICMP message. Every ICMP packet must have a Type value, but only some ICMP types have an associated non-zero Code value.&lt;br /&gt;&lt;br /&gt;RFC 1700 contains the possible values for each ICMP type and code; I've summarized these into the following table:&lt;br /&gt;Type     Name     Code(s)&lt;br /&gt;0     Echo reply     0 - none&lt;br /&gt;1     Unassigned     &lt;br /&gt;2     Unassigned     &lt;br /&gt;3     Destination unreachable     0 - Net unreachable&lt;br /&gt;            1 - Host unreachable&lt;br /&gt;            2 - Protocol unreachable&lt;br /&gt;            3 - Port unreachable&lt;br /&gt;            4 - Fragmentation needed and DF bit set&lt;br /&gt;            5 - Source route failed&lt;br /&gt;            6 - Destination network unknown&lt;br /&gt;            7 - Destination host unknown&lt;br /&gt;            8 - Source host isolated&lt;br /&gt;            9 - Communication with destination network is administratively prohibited&lt;br /&gt;            10 - Communication with destination host is administratively prohibited&lt;br /&gt;            11 - Destination network unreachable for TOS&lt;br /&gt;            12 - Destination host unreachable for TOS&lt;br /&gt;4     Source quench     0 - none&lt;br /&gt;5     Redirect     0 - Redirect datagram for the network&lt;br /&gt;            1 - Redirect datagram for the host&lt;br /&gt;            2 - Redirect datagram for the TOS and network&lt;br /&gt;            3 - Redirect datagram for the TOS and host&lt;br /&gt;6     Alternate host address     0 - Alternate address for host&lt;br /&gt;7     Unassigned     &lt;br /&gt;8     Echo     0 - None&lt;br /&gt;9     Router advertisement     0 - None&lt;br /&gt;10     Router selection     0 - None&lt;br /&gt;11     Time Exceeded     0 - Time to live exceeded in transit&lt;br /&gt;            1 - Fragment reassembly time exceeded&lt;br /&gt;12     Parameter problem     0 - Pointer indicates the error&lt;br /&gt;            1 - Missing a required option&lt;br /&gt;            2 - Bad length&lt;br /&gt;13     Timestamp     0 - None&lt;br /&gt;14     Timestamp reply     0 - None&lt;br /&gt;15     Information request     0 - None&lt;br /&gt;16     Information reply     0 - None&lt;br /&gt;17     Address mask request     0 - None&lt;br /&gt;18     Address mask reply     0 - None&lt;br /&gt;19     Reserved (for security)     &lt;br /&gt;20-29     Reserved (for robustness experiment)     &lt;br /&gt;30     Traceroute     &lt;br /&gt;31     Datagram conversion error     &lt;br /&gt;32     Mobile host redirect     &lt;br /&gt;33     IPv6 where-are-you     &lt;br /&gt;34     IPv6 I-am-here     &lt;br /&gt;35     Mobile registration request     &lt;br /&gt;36     Mobile registration reply     &lt;br /&gt;37-255     Reserved     &lt;br /&gt;&lt;br /&gt;You'll note that the ICMP types that do have associated codes use the Code field to further explain the message value in the Type field. For example, ICMP Type 3 represents "destination unreachable." There can be many reasons why a destination is unreachable; accordingly, every ICMP Type 3 packet will also use one of the codes to explain why the destination was unreachable.&lt;br /&gt;&lt;br /&gt;In our dump file, packets 4-9 contained ICMP information. These packets were created right after ARP had determined the destination MAC address and just before the TCP 3-way handshake. Let's take a look at packets 4 and 5:&lt;br /&gt;&lt;br /&gt;tcpshow &lt; dump&lt;br /&gt;&lt;snipped&gt;&lt;br /&gt;&lt;br /&gt;-------------------------------------------------&lt;br /&gt;Packet 4&lt;br /&gt;TIME: 10:25:28.608640 (0.000355)&lt;br /&gt;LINK: 00:00:B4:3C:56:40 -&gt; 00:50:BA:DE:36:33 type=IP&lt;br /&gt;  IP: 10.0.0.2 -&gt; 10.0.0.1 hlen=20 TOS=00 dgramlen=84 id=0010&lt;br /&gt;      MF/DF=0/0 frag=0 TTL=255 proto=ICMP cksum=A796&lt;br /&gt;ICMP: echo-request cksum=169F&lt;br /&gt;DATA: ....:_.:6....   &lt;br /&gt; ..................... !"#$%&amp;amp;'()*+,-./01234567&lt;br /&gt;-------------------------------------------------&lt;br /&gt;Packet 5&lt;br /&gt;TIME: 10:25:28.608722 (0.000082)&lt;br /&gt;LINK: 00:50:BA:DE:36:33 -&gt; 00:00:B4:3C:56:40 type=IP&lt;br /&gt;  IP: 10.0.0.1 -&gt; 10.0.0.2 hlen=20 TOS=00 dgramlen=84 id=9551&lt;br /&gt;      MF/DF=0/0 frag=0 TTL=255 proto=ICMP cksum=1255&lt;br /&gt;ICMP: echo-reply cksum=1E9F&lt;br /&gt;DATA: ....:_.:6....   &lt;br /&gt; ..................... !"#$%&amp;amp;'()*+,-./01234567&lt;br /&gt;&lt;br /&gt;Notice that these are normal IP packets with the expected IP header fields. Immediately following the IP header is the ICMP header which is followed by some strange-looking data. The tcpshow utility did not show all of the ICMP fields, but you can see that Packet No. 4 was an echo-request and Packet No. 5 was an echo-reply. If we look up these names in the chart, we'll see that Packet 4 contains an ICMP Type 8 Code 0 message, and Packet 5 contains an ICMP Type 0 Code 0 message.&lt;br /&gt;&lt;br /&gt;Let's look at these same packets using Ethereal. Because Ethereal is so verbose, I'll just show the frame number and the ICMP header:&lt;br /&gt;&lt;br /&gt;Also in FreeBSD Basics:&lt;br /&gt;&lt;br /&gt;Fun with Xorg&lt;br /&gt;&lt;br /&gt;Sharing Internet Connections&lt;br /&gt;&lt;br /&gt;Building a Desktop Firewall&lt;br /&gt;&lt;br /&gt;Using DesktopBSD&lt;br /&gt;&lt;br /&gt;Using PC-BSD&lt;br /&gt;&lt;br /&gt;more etherdump&lt;br /&gt;&lt;br /&gt;more etherdump&lt;br /&gt;&lt;br /&gt;&lt;snipped&gt;&lt;br /&gt;Frame 4 (98 on wire, 98 captured)&lt;br /&gt;Internet Control Message Protocol&lt;br /&gt;    Type: 8 (Echo (ping) request)&lt;br /&gt;    Code: 0&lt;br /&gt;    Checksum: 0x169f (correct)&lt;br /&gt;    Identifier: 0xdd00&lt;br /&gt;    Sequence number: 00:00&lt;br /&gt;    Data (56 bytes)&lt;br /&gt;&lt;br /&gt;   0  3a5f a23a 36c3 0600 0809 0a0b 0c0d 0e0f   :_.:6...........&lt;br /&gt;  10  1011 1213 1415 1617 1819 1a1b 1c1d 1e1f   ................&lt;br /&gt;  20  2021 2223 2425 2627 2829 2a2b 2c2d 2e2f    !"#$%&amp;amp;'()*+,-./&lt;br /&gt;  30  3031 3233 3435 3637                       01234567        &lt;br /&gt;&lt;br /&gt;Frame 5 (98 on wire, 98 captured)&lt;br /&gt;Internet Control Message Protocol&lt;br /&gt;    Type: 0 (Echo (ping) reply)&lt;br /&gt;    Code: 0&lt;br /&gt;    Checksum: 0x1e9f (correct)&lt;br /&gt;    Identifier: 0xdd00&lt;br /&gt;    Sequence number: 00:00&lt;br /&gt;    Data (56 bytes)&lt;br /&gt;&lt;br /&gt;   0  3a5f a23a 36c3 0600 0809 0a0b 0c0d 0e0f   :_.:6...........&lt;br /&gt;  10  1011 1213 1415 1617 1819 1a1b 1c1d 1e1f   ................&lt;br /&gt;  20  2021 2223 2425 2627 2829 2a2b 2c2d 2e2f    !"#$%&amp;amp;'()*+,-./&lt;br /&gt;  30  3031 3233 3435 3637                       01234567      &lt;br /&gt;&lt;br /&gt;Notice that Ethereal interprets all of the ICMP fields, including the Type and Code numbers. It also indicates the name of the utility that issued these ICMP packets -- before TCP initiated its 3-way handshake, three "ping" packets were sent out to verify connectivity between my telnet client and the telnet server. The first ping packet contained the echo-request and it was followed by the desired echo-reply.&lt;br /&gt;&lt;br /&gt;Packets 6 and 7 contained the next echo-request/echo-reply pair. These packets were identical, except they both contained a sequence number of 01:00, instead of the sequence number of 00:00 you saw in Packets 4 and 5. Packets 8 and 9 contained the last echo-request/echo-reply pair and both shared a sequence number of 02:00. However, all six packets contained the same Identifier value of 0xdd00; this means that they were all issued from the same ping command.&lt;br /&gt;&lt;br /&gt;To summarize, whenever you run the ping utility, you will send out ICMP Type 8 Code 0 packets. Each packet will have the same identifier, but every packet's sequence number will be increased by 1. If you have connectivity to the other host, you should receive back ICMP Type 0 Code 0 packets with the same identifier. If you don't receive all the packets back in sequence, you don't have a very reliable connection.&lt;br /&gt;&lt;br /&gt;You've probably used the ping utility yourself to test the connection between two hosts running TCP/IP; you may have not known that ping uses ICMP. Here is an interesting article on ping by the author of the utility.&lt;br /&gt;&lt;br /&gt;The traceroute utility is another utility that uses ICMP messages, but its usage is different from that of the ping utility. When you type traceroute hostname, three UDP packets are sent out with a TTL (time to live) value of 1. These three packets will arrive at the router closest to you which will decrease the TTL by one, meaning the TTL will now be 0. When routers notice a TTL of 0, they respond by sending an ICMP packet of Type 11 Code 0, or "time exceeded" as "time to live exceeded in transit." The traceroute utility will make note of the IP address of the router that sent back the three ICMP packets, calculate the time it took to receive each of the packets, then send out three more UDP packets, this time with a TTL of 2.&lt;br /&gt;&lt;br /&gt;Because these packets have a TTL of 2, ICMP packets should be returned by the router that is two hops away from you. Once these packets are received and noted, traceroute sends out three more packets with a TTL of 3. The traceroute utility will continue this pattern until you either reach your final destination or you've gone through the default maximum of 30 routers. The results will be sent to your screen like so:&lt;br /&gt;&lt;br /&gt;traceroute www.freebsd.org&lt;br /&gt;&lt;br /&gt;traceroute to freefall.freebsd.org (216.136.204.21), 30 hops max, 40 byte packets&lt;br /&gt;1 10.69.4.1 (10.69.4.1) 33.137 ms 110.654 ms 52.307 ms&lt;br /&gt;2 d226-12-1.home.cgocable.net (24.226.12.1) 15.413 ms 36.285 ms 12.538 ms&lt;br /&gt;3 cgowave-0-158.cgocable.net (24.226.0.158) 13.857 ms 14.130 ms 16.433 ms&lt;br /&gt;4 cgowave-busy-core.cgocable.net (24.226.1.1) 15.304 ms 15.470 ms 14.940 ms&lt;br /&gt;5 cgowave-0-202.cgocable.net (24.226.0.202) 16.681 ms 14.324 ms 16.357 ms&lt;br /&gt;6 10.0.185.33 (10.0.185.33) 16.066 ms 15.919 ms 17.318 ms&lt;br /&gt;7 c1-pos8-0.bflony1.home.net (24.7.74.29) 18.234 ms 18.063 ms 19.266 ms&lt;br /&gt;8 c1-pos1-0.hrfrct1.home.net (24.7.65.253) 27.590 ms 25.213 ms 48.447 ms&lt;br /&gt;9 c1-pos3-0.nycmny1.home.net (24.7.69.2) 32.722 ms 29.405 ms 29.724 ms&lt;br /&gt;10 ibr02-p1-0.jrcy01.exodus.net (24.7.70.122) 31.728 ms 48.891 ms 29.017 ms&lt;br /&gt;11 bbr02-g4-0.jrcy01.exodus.net (216.32.223.114) 37.117 ms 37.070 ms 62.180 ms&lt;br /&gt;12 bbr01-p2-0.okbr01.exodus.net (216.32.132.109) 59.707 ms 40.090 ms 39.422 ms&lt;br /&gt;13 bbr02-p3-0.sttl01.exodus.net (216.32.132.89) 142.048 ms 101.184 ms 86.259 ms&lt;br /&gt;14 bbr01-g5-0.sttl01.exodus.net (216.32.29.19) 83.362 ms 83.433 ms 83.103 ms&lt;br /&gt;15 bbr01-p1-0.tkwl01.exodus.net (209.185.9.66) 85.309 ms 123.174 ms 83.753 ms&lt;br /&gt;16 bbr01-p4-0.sntc05.exodus.net (216.32.173.229) 88.995 ms 90.207 ms 88.723 ms&lt;br /&gt;17 dcr01-g2-0.sntc05.exodus.net (64.56.192.3) 109.213 ms 90.418 ms 90.458 ms&lt;br /&gt;18 g2-1.bas1-m.sc5.yahoo.com (64.56.207.146) 170.210 ms 164.354 ms 281.053 ms&lt;br /&gt;19 freefall.freebsd.org (216.136.204.21) 91.146 ms 88.509 ms 91.049 ms&lt;br /&gt;&lt;br /&gt;Note that the traceroute utility numbered each hop, gave the name and IP address of the associated router, and recorded the time it took to receive an ICMP response to each of the three UDP packets that were sent to each router.&lt;br /&gt;&lt;br /&gt;The ping and traceroute utilities are the most common utilities used by users that involve the ICMP protocol. However, there is another ICMP type that you should be aware of as it can affect network performance if there are routers between you and your final destination.&lt;br /&gt;&lt;br /&gt;When I captured the packets involved in the telnet session, both the telnet client and the telnet server were cabled onto the same LAN and none of the packets had to pass through a router. During the TCP 3-way handshake, each host indicated the maximum segment size (MSS) it was capable of receiving. The tcpshow utility did not interpret this data, but it can be seen using Ethereal:&lt;br /&gt;&lt;br /&gt;more etherdump&lt;br /&gt;&lt;br /&gt;&lt;snipped&gt;&lt;br /&gt;&lt;br /&gt;Frame 10 (60 on wire, 60 captured)&lt;br /&gt;Internet Protocol&lt;br /&gt;Source: biko (10.0.0.2)&lt;br /&gt;Destination: genisis (10.0.0.1)&lt;br /&gt;Transmission Control Protocol, Src Port: blackjack (1025), Dst Port: telnet (23), Seq: 3205630181, Ack: 0&lt;br /&gt;Source port: blackjack (1025)&lt;br /&gt;Destination port: telnet (23)&lt;br /&gt;Sequence number: 3205630181&lt;br /&gt;Header length: 24 bytes&lt;br /&gt;Flags: 0x0002 (SYN)&lt;br /&gt;Window size: 16384&lt;br /&gt;Checksum: 0x7814&lt;br /&gt;Options: (4 bytes)&lt;br /&gt;  Maximum segment size: 1460 bytes&lt;br /&gt;&lt;br /&gt;Frame 11 (58 on wire, 58 captured)&lt;br /&gt;Internet Protocol&lt;br /&gt;Source: genisis (10.0.0.1)&lt;br /&gt;Destination: biko (10.0.0.2)&lt;br /&gt;Transmission Control Protocol, Src Port: telnet (23), Dst Port: blackjack (1025), Seq: 1746119590, Ack: 3205630182&lt;br /&gt;Source port: telnet (23)&lt;br /&gt;Destination port: blackjack (1025)&lt;br /&gt;Sequence number: 1746119590&lt;br /&gt;Acknowledgement number: 3205630182&lt;br /&gt;Header length: 24 bytes&lt;br /&gt;Flags: 0x0012 (SYN, ACK)&lt;br /&gt;Window size: 17520&lt;br /&gt;Checksum: 0x5fd9&lt;br /&gt;Options: (4 bytes)&lt;br /&gt;  Maximum segment size: 1460 bytes&lt;br /&gt;&lt;br /&gt;Because both computers were cabled onto the same LAN, they both understood and agreed upon a MSS of 1,460 bytes. Note that this is a maximum "segment" size, meaning a segment of data without including the extra bytes needed for the headers and frame. In this example, both hosts agreed that they wouldn't send a segment of data that was bigger than a 1,460-byte chunk.&lt;br /&gt;&lt;br /&gt;What would happen if these two same hosts were not on the same LAN and their packets had to pass through a network that could only accept frames with a maximum transmission unit (MTU) size of 576 bytes? Because the two end hosts had already agreed upon a segment size of 1,460 bytes, they would be creating their IP packets accordingly. When these IP packets arrive at the router, which is cabled to the network with the smaller MTU, it will have to re-package every packet into smaller segments that will fit into the smaller size frames of that network. The destination host will then have to reassemble all of the fragmented packets back into the original agreed-upon sized segment. This creates more work and definitely slows things down.&lt;br /&gt;&lt;br /&gt;To help prevent this, TCP uses something called Path-MTU Discovery. TCP will send out IP packets using the agreed MSS size, but will set the DF (don't fragment) bit to 1. If this packet is received by a router that needs to fragment the packet so that it will fit over a network that uses smaller-sized frames, the router will respond with an ICMP Type 3 Code 4 packet which translates to "destination unreachable as fragmentation needed" and "DF bit set." When the host receives this ICMP packet, it knows that it needs to start sending smaller packets.&lt;br /&gt;&lt;br /&gt;You can read more about Path-MTU Discovery here.&lt;br /&gt;&lt;br /&gt;The last ICMP type I'd like to cover is Source Quench, or ICMP Type 4 Code 0. This message is sent whenever a router is being overwhelmed by packets. It basically tells the host to slow down the rate it is sending packets so it can have a chance to deal with the packets it has already received. This is an important message -- if the host does not slow down its transmission rate, the router will run out of buffer space to store packets and will have to start throwing packets away. Every packet that is thrown away will have to be re-transmitted which will make the original situation worse.&lt;br /&gt;&lt;br /&gt;The ICMP types we've covered do have implications when you start creating packet filter rules on your FreeBSD system. Next week, we will start looking at creating these rules, I'd like to summarize the ICMP types and codes that we'll need to be mindful of:&lt;br /&gt;ICMP Type     Code     Used By&lt;br /&gt;0     0     Ping&lt;br /&gt;3     4     Path-MTU Discovery&lt;br /&gt;4     0     Source Quench&lt;br /&gt;8     0     Ping&lt;br /&gt;11     0     traceroute&lt;br /&gt;&lt;br /&gt;Dru Lavigne is a network and systems administrator, IT instructor, author and international speaker. She has over a decade of experience administering and teaching Netware, Microsoft, Cisco, Checkpoint, SCO, Solaris, Linux, and BSD systems. A prolific author, she pens the popular FreeBSD Basics column for O'Reilly and is author of BSD Hacks and The Best of FreeBSD Basics.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7627936383719356500?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7627936383719356500/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7627936383719356500' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7627936383719356500'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7627936383719356500'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/10/icmp-internet-control-message-protocol.html' title=''/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6999053630761784553</id><published>2007-09-27T10:03:00.000+07:00</published><updated>2007-09-27T10:10:28.742+07:00</updated><title type='text'>Satpam part 2</title><content type='html'>&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6999053630761784553?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6999053630761784553/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6999053630761784553' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6999053630761784553'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6999053630761784553'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/09/satpam-part-2.html' title='Satpam part 2'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5116749206870001006</id><published>2007-09-26T14:39:00.000+07:00</published><updated>2007-09-26T14:41:37.885+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='satpam'/><title type='text'>Satpam 1</title><content type='html'>Security professionals break the term security into three parts: confidentiality, integrity, and availability.&lt;br /&gt;1. confidentiality (rahasia)&lt;br /&gt;Confidentiality is all about determining the appropriate level of access to information. Hak akses u/ data/file/folder. &lt;br /&gt;&lt;br /&gt;2. Integrity (keutuhan)&lt;br /&gt;Tidak adanya kehilangan data (data tetap utuh tanpa ada modifikasi).&lt;br /&gt;&lt;br /&gt;3. Availability (ketersediaan)&lt;br /&gt;Ketersediaan data yg akan diakses, menuju pada pemikiran back up data or system&lt;br /&gt;&lt;br /&gt;Identifikasi Resiko&lt;br /&gt;1. Attack&lt;br /&gt;An attack against a system is an intentional attempt to bypass system security controls or organizational policies to affect the operation of the system (active attack) or gain access to information (passive attack). Attacks can be classified into insider attacks in which someone from within an organization who is authorized to access a system uses it in an unauthorized way, or outsider attacks, which originate outside of the organization's security perimeter, perhaps on the Internet at large&lt;br /&gt;In order for active and passive attacks to succeed, something must be at fault. Attacks necessarily leverage fundamental behavioral problems in software, improper configuration and use of software, or both. In this chapter, we examine these classes of attacks including the special-case denial of service (DoS) attack.&lt;br /&gt;&lt;br /&gt;2. Problem software&lt;br /&gt;2.1 Buffer OverFlow&lt;br /&gt;2.2 Injeksi SQL&lt;br /&gt;There are, of course, ways to defend against SQL injection attacks from within web applications. One common approach is to parse every value provided by the user. Make sure it doesn't contain any undesirable characters like backticks, quotes, semi-colons, and so on. Also ensure that the valid characters are appropriate for the value being returned. To get around the problem completely, developers may be able to use stored procedures and avoid dynamically creating SQL.&lt;br /&gt;2.3 Software problem lain&lt;br /&gt;&lt;br /&gt;Proteksi :&lt;br /&gt;&lt;br /&gt;Being aware of vulnerabilities is a good first step.&lt;br /&gt;Installah 3rd party soft. yang jelas minim bugnya.&lt;br /&gt;Rajin mengkuti mailing list&lt;br /&gt;Selalu lakukan patch&lt;br /&gt;&lt;br /&gt;3. DOS ATTACK&lt;br /&gt;DoS attacks are active—they seek to consume system resources and deny the availability of your systems to legitimate users. The root cause of a system or network being vulnerable to a DoS attack may be based on a software vulnerability, as a result of improper configuration and use, or both. DoS attacks can be devastating, and depending on how they are carried out, it can be very difficult to find the source. DoS attacks have a diverse list of possible targets.&lt;br /&gt;&lt;br /&gt;Target: physical&lt;br /&gt;DoS attacks can occur at the physical layer. In an 802.11 wireless network, an attacker can flood the network by transmitting garbage in the same frequency band as the 802.11 radios. &lt;br /&gt;&lt;br /&gt;Target: network&lt;br /&gt;At the data link and network layers, traffic saturation can interfere with legitimate communications. Flooding a network with illegitimate and constantly changing arp requests can place an extreme burden on networking devices and confuse hosts. Attempting to push a gigabit of data per second through a 100 Mbps pipe will effectively overrun any legitimate network traffic. Too much traffic is perhaps the quintessential example of a DoS attack&lt;br /&gt;&lt;br /&gt;Target: application&lt;br /&gt;These DoS attacks generally use up some finite resource on a host such as CPU, memory, or disk I/O. An attacker may send several application requests to a single host in order to cause the application to consume an excessive amount of system resources. &lt;br /&gt;She may simply exploit a bug in code once that causes the application to spiral out of control or simply crash. Some services that fork daemons at every new connection may be subject to a DoS if tens or hundreds of thousands of connections are made within a short period of time&lt;br /&gt;&lt;br /&gt;Proteksi :&lt;br /&gt;Physical -&gt; lakukan load balancer&lt;br /&gt;Network -&gt; IDS hosts may be used to help detect these kinds of attacks and automatically update firewall or router configurations to drop the traffic&lt;br /&gt;Application -&gt; secure architecture and build, controlled maintenance, and monitoring logs. &lt;br /&gt;&lt;br /&gt;4. Konfigurasi yang kurang sip.&lt;br /&gt;4.1. Konfigurasi yang ceroboh&lt;br /&gt;4.2 Acccount access.&lt;br /&gt;permission file , setuid (memberikan akses hanya pada id, bukan pada nama user).&lt;br /&gt;-r-sr-xr-x   1 root  wheel     23392 Jun  4 21:57 traceroute&lt;br /&gt;&lt;br /&gt;To find setuid and setgid files on your BSD system, run the following command:&lt;br /&gt;&lt;br /&gt;% find / -type f \( -perm -2000 -o -perm -4000 \) -print&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5116749206870001006?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5116749206870001006/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5116749206870001006' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5116749206870001006'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5116749206870001006'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/09/satpam-1.html' title='Satpam 1'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2436844706516060653</id><published>2007-09-20T11:04:00.000+07:00</published><updated>2007-09-20T11:26:11.948+07:00</updated><title type='text'>Securing apache part 2</title><content type='html'>1. Listen port&lt;br /&gt; Jika ada bbrp ip maka lakukan spesifikasi dgn Listen  : IPV4:80&lt;br /&gt;&lt;br /&gt;&lt;table border="0" cellpadding="3" cellspacing="1" width="410"&gt;&lt;tbody&gt;&lt;tr bg valign="top" style="color:#ffffff;"&gt;&lt;td&gt;&lt;span class="style49"&gt;&lt;a href="http://httpd.apache.org/docs/trunk/mod/core.html#timeout"&gt;TimeOut&lt;/a&gt;&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style25 style47 style50"&gt;300 seconds&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style26 style47 style50"&gt;bisa  dikecilkan  (issue dos attack)&lt;span class="style43"&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr bg valign="top" style="color:#ffffff;"&gt; &lt;td&gt;&lt;span class="style49"&gt;&lt;a href="http://httpd.apache.org/docs/trunk/mod/core.html#keepalivetimeout" class="style41"&gt;KeepAliveTimeout&lt;/a&gt;&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style29 style47 style50"&gt;5 seconds&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style30 style47 style50"&gt;bisa dikecilkan tapi jgn didisable.&lt;br /&gt;&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr bg valign="top" style="color:#ffffff;"&gt; &lt;td&gt;&lt;span class="style49"&gt;&lt;a href="http://httpd.apache.org/docs/trunk/mod/core.html#limitrequestbody" class="style41"&gt;LimitRequestBody&lt;/a&gt;&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style31 style47 style50"&gt;0 bytes (unlimited)&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style32 style47 style50"&gt;Restricts the total size of the HTTP request body sent from the client. If DoS attacks are occurring as a result of large requests, limit request size.&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr bg valign="top" style="color:#ffffff;"&gt; &lt;td&gt;&lt;span class="style49"&gt;&lt;a href="http://httpd.apache.org/docs/trunk/mod/core.html#limitrequestfields" class="style41"&gt;LimitRequestFields&lt;/a&gt;&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style33 style47 style50"&gt;100 fields&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style34 style47 style50"&gt;Limits the number of HTTP request header fields that will be accepted from the client. If DoS attacks are occurring as a result of too many HTTP request headers, lower this number.&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr bg valign="top" style="color:#ffffff;"&gt; &lt;td&gt;&lt;span class="style49"&gt;&lt;a href="http://httpd.apache.org/docs/trunk/mod/core.html#limitrequestfieldsize" class="style41"&gt;LimitRequestFieldSize&lt;/a&gt;&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style35 style47 style50"&gt;8190 bytes&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style36 style47 style50"&gt;Limits the size of the HTTP request header allowed from the client.&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr bg valign="top" style="color:#ffffff;"&gt; &lt;td&gt;&lt;span class="style49"&gt;&lt;a href="http://httpd.apache.org/docs/trunk/mod/core.html#limitrequestline" class="style41"&gt;LimitRequestLine&lt;/a&gt;&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style42 style47 style50"&gt;8190 bytes&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style38 style47 style50"&gt;This directive sets the number of bytes that will be allowed on the HTTP request-line.&lt;/span&gt;&lt;/td&gt; &lt;/tr&gt; &lt;tr bg valign="top" style="color:#ffffff;"&gt; &lt;td&gt;&lt;span class="style49"&gt;&lt;a href="http://httpd.apache.org/docs/trunk/mod/mpm_common.html#maxclients" class="style41"&gt;MaxClients&lt;/a&gt;&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style39 style47 style50"&gt;256 requests&lt;/span&gt;&lt;/td&gt; &lt;td&gt;&lt;span class="style40 style47 style50"&gt;Sets the limit on the number of simultaneous requests that will be served.&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2436844706516060653?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2436844706516060653/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2436844706516060653' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2436844706516060653'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2436844706516060653'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/09/securing-apache-part-2.html' title='Securing apache part 2'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-960828167370023573</id><published>2007-09-20T10:07:00.000+07:00</published><updated>2007-09-20T10:30:42.548+07:00</updated><title type='text'>Securing apache</title><content type='html'>Cara securing apache part 1 :&lt;br /&gt;1. Pastikan install security patch terbaru.&lt;br /&gt;2. Sembunyikan informasi mengenai server dgn menambahkan baris berikut di httpd.conf&lt;br /&gt;ServerSignature Off&lt;br /&gt;ServerTokens Prod&lt;br /&gt;3. Jangan jalankan apache dgn user administratif, buat saja user n group lain, misal www group www.&lt;br /&gt;4. Untuk memblok agar apache tidak bisa mengakses selain document rootnya, lakukan sbb :&lt;br /&gt;&lt;Directory /&gt;&lt;br /&gt;  Order Deny,Allow&lt;br /&gt;  Deny from all&lt;br /&gt;  Options None&lt;br /&gt;  AllowOverride None&lt;br /&gt;&lt;/Directory&gt;&lt;br /&gt;&lt;Directory /web&gt;&lt;br /&gt;  Order Allow,Deny&lt;br /&gt;  Allow from all&lt;br /&gt;&lt;/Directory&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Untuk disable directory browsing, tambahkan berikut pada tag setelah &lt;directory&gt;&lt;br /&gt;Options -Indexes&lt;br /&gt;&lt;br /&gt;Untuk disable server side includes tambahkan berikut pada tag setelah &lt;directory&gt;&lt;br /&gt;Options -Includes&lt;br /&gt;&lt;br /&gt;Bisa juga spt ini : Options -ExecCGI -FollowSymLinks -Indexes&lt;br /&gt;Atau jika ingin mendisable langsung aja Options None.&lt;br /&gt;&lt;br /&gt;5. Mematikan support u/ .htaccess files&lt;br /&gt;Tambahkan AllowOverride None pada tag setelah &lt;directory&gt;&lt;br /&gt;&lt;br /&gt;Note : &lt;br /&gt;Jika menggunakan pilihan Overrides pastikan file .htaccess tdk bisa didownloaded atau ubah namanya selain .htaccess. Misal, bisa kita ubah ke .httpdoverride dan block smua akses agar tdk bisa mendownload files start with .ht dgn cara sbb :&lt;br /&gt;&lt;br /&gt;AccessFileName .httpdoverride&lt;br /&gt;&lt;Files ~ "^\.ht"&gt;&lt;br /&gt;    Order allow,deny&lt;br /&gt;    Deny from all&lt;br /&gt;    Satisfy All&lt;br /&gt;&lt;/Files&gt;&lt;br /&gt;&lt;br /&gt;6. Disable module yang tidak diperlukan :&lt;br /&gt;grep LoadModule httpd.conf&lt;br /&gt;mod_imap, mod_include, mod_info, mod_userdir, mod_status, mod_cgi, mod_autoindex&lt;br /&gt;Modul² tersebut biasaya jarang diperlukan.&lt;br /&gt;&lt;br /&gt;7. Pastikan hanya root yang bisa mempunyai hak akses binary dan config filenya&lt;br /&gt;chown -R root:root /usr/local/apache&lt;br /&gt;chmod -R o-rwx /usr/local/apache&lt;br /&gt;&lt;br /&gt;8. Kurangi TimeOut valuenya untuk menghindari DOS Attack&lt;br /&gt;Timeout 60&lt;br /&gt;&lt;br /&gt;9. Limiting large requests&lt;br /&gt;LimitRequestBody 1048576 (akan melimit upload hanya sampai 1MB)&lt;br /&gt;&lt;br /&gt;10. Limiting Concurrency&lt;br /&gt;Apache mempunyai bbrp konfigurasi u/ menangani request berjamaah :P.&lt;br /&gt;MaxClients : adl max. child proses yg akan dicreate u/ memenuhi request. Jangan diset terlalu tinggi jika memori anda ecek2.&lt;br /&gt;&lt;br /&gt;Perintah yg lain adl MaxSpareServers, MaxRequestsPerChild, ThreadsPerChild, ServerLimit, MaxSpareThreads. Sesuaikan pilihan tersebut dgn OS dan hardware sistem.&lt;br /&gt;&lt;br /&gt;11. Membatasi akses web dari IP / Network tertentu &lt;br /&gt;&lt;br /&gt;Order Deny,Allow&lt;br /&gt;Deny from all&lt;br /&gt;Allow from 176.16.0.0/16&lt;br /&gt;&lt;br /&gt;12. KeepAlive setting&lt;br /&gt;Defaultnya on. Bisa diubah ke MaxKeepAliveRequests 100, and the KeepAliveTimeout 15. Lihat log dan sesuaikan kebutuhan. &lt;br /&gt;&lt;br /&gt;13. Jika sudah biasa menggunakan chroot atau jail maka lebih sip :P.&lt;br /&gt;&lt;br /&gt;Sumpah ini bukan hasil oprekan saya :P, ini adalah kumpulan hasil gugling n coba² :P.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-960828167370023573?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/960828167370023573/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=960828167370023573' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/960828167370023573'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/960828167370023573'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/09/securing-apache.html' title='Securing apache'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6649302104379993200</id><published>2007-09-06T10:13:00.000+07:00</published><updated>2007-09-06T10:54:32.627+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tembokgeni'/><title type='text'>Ngeblok MAC address</title><content type='html'>Tambahkan baris berikut di sysctl.conf (u/ mengaktifkan filtering pada layer 2)&lt;br /&gt;# sysctl net.link.ether.ipfw=1&lt;br /&gt;&lt;br /&gt;Contoh :&lt;br /&gt;# ipfw -q add 2 deny mac 00:21:E8:21:A4:BD any&lt;br /&gt;Deny from any source MAC address to destination MAC address 00:21:E8:21:A4:BD. &lt;br /&gt;Sebagaimana dijelaskan di manualnya...&lt;br /&gt;{ MAC | mac } dst-mac src-mac. &lt;br /&gt;&lt;br /&gt;Lengkapnya check this out! : http://www.hmug.org/man/8/ipfw.php&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6649302104379993200?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6649302104379993200/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6649302104379993200' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6649302104379993200'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6649302104379993200'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/09/ngeblok-mac-address.html' title='Ngeblok MAC address'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-6972269349960150896</id><published>2007-08-25T21:29:00.000+07:00</published><updated>2007-08-25T22:06:06.858+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='freebsd'/><category scheme='http://www.blogger.com/atom/ns#' term='port'/><title type='text'>Port di FReeBSD</title><content type='html'>cd /usr/ports/ports-mgmt/portupgrade&lt;br /&gt;make install clean&lt;br /&gt;It's now possible to update all the software on the system by running the command:&lt;br /&gt;portupgrade -ai&lt;br /&gt;&lt;br /&gt;portaudit&lt;br /&gt;which shows the published vulnerabilities affecting the packages installed on your system&lt;br /&gt;As the superuser root, run:&lt;br /&gt;cd /usr/ports/ports-mgmt/portaudit&lt;br /&gt;and then&lt;br /&gt;make install clean &lt;br /&gt;&lt;br /&gt;It's now possible to update the vulnerabilities database and audit the installed packages by running the command:&lt;br /&gt;portaudit -Fa&lt;br /&gt;&lt;br /&gt;Those are some tricks you may find useful:&lt;br /&gt;to show the differences between the version of the installed packages and the ones of the ports collection currently present on the system, run:&lt;br /&gt;pkg_version -v&lt;br /&gt;&lt;br /&gt;to print some informations of a port, like it's dependencies, for example of asterisk, run, in the /usr/ports folder, the command:&lt;br /&gt;make search name=asterisk&lt;br /&gt;&lt;br /&gt;to print the dependencies of an installed package, for example of gmake, run:&lt;br /&gt;pkg_info -xr gmake &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;to print the dependencies of a package, even not installed, for example of proftpd, run, in the folder of it's port, the command:&lt;br /&gt;make pretty-print-build-depends-list&lt;br /&gt;but first you have to run, in the /usr/ports folder, the command:&lt;br /&gt;make index&lt;br /&gt;which, after a while, will build an index with the informations of the packages&lt;br /&gt;&lt;br /&gt;And if, for example, the package portupgrade is installed, it's manual can be viewed by running:&lt;br /&gt;man portupgrade&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-6972269349960150896?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/6972269349960150896/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=6972269349960150896' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6972269349960150896'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/6972269349960150896'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/08/port-di-freebsd.html' title='Port di FReeBSD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-633672289256876014</id><published>2007-08-23T22:02:00.000+07:00</published><updated>2007-08-23T22:18:23.281+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='NMS'/><title type='text'>bwD</title><content type='html'>libpcap from http://www.tcpdump.org/&lt;br /&gt;libpng from http://www.libpng.org/&lt;br /&gt;libgd from http://www.boutell.com/gd/&lt;br /&gt;&lt;br /&gt;Download libcap in http://www.tcpdump.org/ and install&lt;br /&gt;&lt;br /&gt;zlib – Free open source compression library&lt;br /&gt;fetch  http://www.zlib.net/zlib-1.2.3.tar.gz&lt;br /&gt;tar xvf zlib-1.2.3.tar.gz&lt;br /&gt;cd zlib-1.2.3&lt;br /&gt;./configure&lt;br /&gt;make &amp;&amp;amp; make install&lt;br /&gt;&lt;br /&gt;libpng – PNG reference library for creating graphics / images&lt;br /&gt;&lt;br /&gt;fetch http://easynews.dl.sourceforge.net/sourceforge/libpng/libpng-1.2.10.tar.gz&lt;br /&gt;tar xvf libpng-1.2.10.tar.gz&lt;br /&gt;cd libpng-1.2.10&lt;br /&gt;./configure&lt;br /&gt;make &amp;&amp;amp; make install&lt;br /&gt;&lt;br /&gt;fetch http://www.boutell.com/gd/http/gd-2.0.33.tar.gz&lt;br /&gt;tar xvf gd-2.0.33.tar.gz&lt;br /&gt;cd gd-2.0.33&lt;br /&gt;./configure --disable-shared --with-gd-lib=/usr/local/lib --with-gd-inc=/usr/local/include/&lt;br /&gt;make&lt;br /&gt;make install&lt;br /&gt;&lt;br /&gt;Download bandwidthd-2.0.1.tgz&lt;br /&gt;./configure &amp;&amp;amp;amp; make &amp;&amp;amp; make install&lt;br /&gt;ee /usr/local/bandwidthd/etc/bandwidthd.conf&lt;br /&gt;subnet 10.10.10.0/25&lt;br /&gt;dev "rl0"&lt;br /&gt;&lt;br /&gt;/usr/local/bandwidthd/bandwidthd, akan mengcreate /usr/local/bandwidthd/htdocs&lt;br /&gt;arahkan document directory webserver ke folder tsb &amp; aktifkan webserver.&lt;br /&gt;&lt;br /&gt;^___________^&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-633672289256876014?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/633672289256876014/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=633672289256876014' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/633672289256876014'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/633672289256876014'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/08/bwd.html' title='bwD'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-4721251301376761721</id><published>2007-08-23T11:19:00.000+07:00</published><updated>2007-09-07T13:21:50.072+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='radius'/><title type='text'>FreeRadius dan my SQL</title><content type='html'>INSTALL mySQL: &lt;br /&gt;Pertama install dulu mysql, saya menggunakan mySql 5.&lt;br /&gt;Jika sudah jalankan dan otomatisasi shg berjalan sewaktu reboot.&lt;br /&gt;&lt;br /&gt;INSTALL FreeRadius: &lt;br /&gt;cd /usr/ports/net/freeradius&lt;br /&gt;% make &amp;&amp; make install&lt;br /&gt;Pilih mySQL support dan SNMP (optional).&lt;br /&gt;&lt;br /&gt;CONFIGURE freeRADIUS:&lt;br /&gt;% cd /usr/local/etc/raddb&lt;br /&gt;Pastikan file² berikut ada &lt;br /&gt;&lt;br /&gt;% clients.conf (basic config cukup &amp; memakai localhost)&lt;br /&gt;&lt;br /&gt;% users&lt;br /&gt;Untuk pengetesan pertama tambahkan baris&lt;br /&gt;ainoer Auth-Type := Local, User-Password == "testpass"&lt;br /&gt;&lt;br /&gt;% cp snmp.conf.sample snmp.conf&lt;br /&gt;% cp sql.conf.sample sql.conf&lt;br /&gt;% cp huntgroups.sample huntgroups&lt;br /&gt;% cp dictionary.sample dictionary&lt;br /&gt;% cp hints.sample hints&lt;br /&gt;% cp acct_users.sample acct_users&lt;br /&gt;% cp preproxy_users.sample preproxy_users&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;% cp radiusd.conf.sample radiusd.conf&lt;br /&gt;Edit radiusd.conf, &lt;br /&gt;log_auth = yes&lt;br /&gt;log_auth_badpass = yes&lt;br /&gt;log_auth_goodpass = yes&lt;br /&gt;&lt;br /&gt;% radiusd -X &amp;&lt;br /&gt;% radtest ainoer testpass localhost 1812 testing123&lt;br /&gt;&lt;br /&gt;Jika berhasil ada indikasi sbb : &lt;br /&gt;rad_recv: Access-Accept packet from host 127.0.0.1:1812, id=119, length=20&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;CREATE DATABASE &amp; TABEL&lt;br /&gt;Login ke mysql dan create database dengan nama radius.&lt;br /&gt;Carilah file dengan nama db_mysql.sql kemudian import ke database.&lt;br /&gt;/bin/mysql -u root radius &lt; /usr/local/share/examples/freeradius/db_mysql.sql&lt;br /&gt;&lt;br /&gt;Masukkan record² berikut :&lt;br /&gt;INSERT INTO radcheck (UserName, Attribute, Value) VALUES ('rahma', 'Password', 'passku');&lt;br /&gt;INSERT INTO radgroupcheck (GroupName, Attribute, Value) VALUES ('dynamic', 'Auth-Type', 'Local');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'Framed-Compression', ':=', 'Van-Jacobsen-TCP-IP');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'Framed-Protocol', ':=', 'PPP');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'Service-Type', ':=', 'Framed-User');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'Framed-MTU', ':=', '1500');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'X-Ascend-Assign-IP-Pool', ':=', '0');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'X-Ascend-Maximum-Time', ':=', '7200');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'X-Ascend-Route-IP', ':=', 'Route-IP-Yes');&lt;br /&gt;INSERT INTO radgroupreply (GroupName, Attribute, op, Value) VALUES ('dynamic', 'Idle-Timeout', ':=', '1800');&lt;br /&gt;INSERT INTO usergroup (UserName, GroupName) VALUES ('rahma', 'dynamic');&lt;br /&gt;&lt;br /&gt;select * from radcheck;&lt;br /&gt;+----+----------+-----------+----+--------+&lt;br /&gt;| id | UserName | Attribute | op | Value  |&lt;br /&gt;+----+----------+-----------+----+--------+&lt;br /&gt;|  1 | rahma    | Password  | == | passku |&lt;br /&gt;+----+----------+-----------+----+--------+&lt;br /&gt;&lt;br /&gt;mysql&gt; select * from radgroupcheck;&lt;br /&gt;+----+-----------+-----------+----+-------+&lt;br /&gt;| id | GroupName | Attribute | op | Value |&lt;br /&gt;+----+-----------+-----------+----+-------+&lt;br /&gt;|  1 | dynamic   | Auth-Type | := | Local |&lt;br /&gt;+----+-----------+-----------+----+-------+&lt;br /&gt;&lt;br /&gt;select * from radgroupreply;&lt;br /&gt;+----+-----------+-------------------------+----+---------------------+------+&lt;br /&gt;| id | GroupName | Attribute               | op | Value               | prio |&lt;br /&gt;+----+-----------+-------------------------+----+---------------------+------+&lt;br /&gt;|  1 | dynamic   | Framed-Compression      | := | Van-Jacobsen-TCP-IP |    0 |&lt;br /&gt;|  2 | dynamic   | Framed-Protocol         | := | PPP                 |    0 |&lt;br /&gt;|  3 | dynamic   | Service-Type            | := | Framed-User         |    0 |&lt;br /&gt;|  4 | dynamic   | Framed-MTU              | := | 1500                |    0 |&lt;br /&gt;|  5 | dynamic   | X-Ascend-Assign-IP-Pool | := | 0                   |    0 |&lt;br /&gt;|  6 | dynamic   | X-Ascend-Maximum-Time   | := | 7200                |    0 |&lt;br /&gt;|  7 | dynamic   | X-Ascend-Route-IP       | := | Route-IP-Yes        |    0 |&lt;br /&gt;|  8 | dynamic   | Idle-Timeout            | := | 1800                |    0 |&lt;br /&gt;+----+-----------+-------------------------+----+---------------------+------+&lt;br /&gt;&lt;br /&gt;select * from usergroup;&lt;br /&gt;+----------+-----------+----------+&lt;br /&gt;| UserName | GroupName | priority |&lt;br /&gt;+----------+-----------+----------+&lt;br /&gt;| rahma    | dynamic   |        1 |&lt;br /&gt;+----------+-----------+----------+&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;% cd /usr/local/etc/raddb/&lt;br /&gt;Edit sql.conf &lt;br /&gt;Isikan password database( root dgn pass = "" jika masih belum diberi password)&lt;br /&gt;&lt;br /&gt;Edit radiusd.conf.&lt;br /&gt;Pada bagian authorize{}:&lt;br /&gt;Hilangkan # pada 'sql' &lt;br /&gt;Pada bagian accounting {}:&lt;br /&gt;Hilangkan # pada 'sql' accounting{}. &lt;br /&gt;&lt;br /&gt;Pada post-auth ():&lt;br /&gt;Hilangkan # pada 'sql' &lt;br /&gt;Hilangkan # 3 baris terkahir dari post-auth dan ganti ke sql modul.&lt;br /&gt;&lt;br /&gt;        Post-Auth-Type REJECT {&lt;br /&gt;                sql&lt;br /&gt;        }&lt;br /&gt;kill &amp; restart in debug.&lt;br /&gt;% radiusd -X&lt;br /&gt;&lt;br /&gt;Selamat mencoba ;)&lt;br /&gt;&lt;br /&gt;Edited :&lt;br /&gt;&lt;br /&gt;Ternyata ada yang kurang, settingan di atas kan database mysqlnya masih belum diberi password..&lt;br /&gt;Setelah diberi password kmudain dijalankan la koq error... &lt;br /&gt;rlm_sql_mysql: Mysql error 'Client does not support authentication please upgrade mysql client dst..&lt;br /&gt;&lt;br /&gt;Coba cek librarynya :&lt;br /&gt;# ldd /usr/local/lib/rlm_sql_mysql.so/usr/local/lib/rlm_sql_mysql.so:&lt;br /&gt;        libmysqlclient.so.12 =&gt; /usr/local/lib/mysql/libmysqlclient.so.12 (0x28157000)&lt;br /&gt;        libz.so.2 =&gt; /lib/libz.so.2 (0x28177000)&lt;br /&gt;        libcrypt.so.2 =&gt; /lib/libcrypt.so.2 (0x28187000)&lt;br /&gt;        libm.so.3 =&gt; /lib/libm.so.3 (0x2819f000)&lt;br /&gt;        libc.so.5 =&gt; /lib/libc.so.5 (0x28079000)&lt;br /&gt;Udah sip tuw.. but why.. masak harus upgrade mysql clientnya kan versine udah 5.0 ach ngga harus dech kayaknya.. jgn percaya begitu saja sama warning :P .. googling dulu ach.. &lt;br /&gt;Setelah berpusing² eh jadi ingat instalasi pureftpd dgn mysql.. so aku coba dey..&lt;br /&gt;# cd /usr/local/mysql/lib/mysql/&lt;br /&gt;# cp * /usr/local/lib&lt;br /&gt;&lt;br /&gt;Cihuy! Alhamdulillah..berhasil pemirsa..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-4721251301376761721?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/4721251301376761721/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=4721251301376761721' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4721251301376761721'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/4721251301376761721'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/08/freeradius-dan-my-sql.html' title='FreeRadius dan my SQL'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2032585504256554737</id><published>2007-07-16T14:43:00.000+07:00</published><updated>2007-07-16T14:54:40.798+07:00</updated><title type='text'>Webstatistik dgn awstat</title><content type='html'># Download source awstat dan ekstrak&lt;br /&gt;# Kopi directory "js", "classes", "css" and "icon" ke "/www/awstats" &lt;br /&gt;# Kopi folder cgi-bin ke directory cgi-bin apache anda &lt;br /&gt;&lt;br /&gt;Edit awstats.model.conf file &amp; ubah bbrp parameternya :&lt;br /&gt;LogFile = "../www/log.%YYYY%MM" (assuming your log files are being placed in the www root directory).&lt;br /&gt;SiteDomain = "www.yourdomain.com"&lt;br /&gt;DirIcons = "http://www.yourdomain.com/awstats/icon"&lt;br /&gt;AllowToUpdateStatsFromBrowser = 1&lt;br /&gt;/usr/local/nf/bin/perl ../cgi-bin/awstats.pl -config=model -update&lt;br /&gt;&lt;br /&gt;Statistik bisa diakses di :&lt;br /&gt;http://www.domain.com/cgi-bin/awstats.pl?config=model&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2032585504256554737?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2032585504256554737/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2032585504256554737' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2032585504256554737'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2032585504256554737'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/07/webstatistik-dgn-awstat.html' title='Webstatistik dgn awstat'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2153234670910015637</id><published>2007-07-12T15:02:00.000+07:00</published><updated>2007-07-12T15:04:06.496+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='php'/><category scheme='http://www.blogger.com/atom/ns#' term='web'/><title type='text'>PHP lagi..</title><content type='html'>Singkatan dari PHP: Hypertext Preprocessor adalah salah satu bahasa pemrograman web yang paling populer digunakan. Pada saat ini pengguna PHP mencapai sekitar 7 juta domain meliputi sekitar 1 juta IP address.&lt;br /&gt;&lt;br /&gt;Instalasi PHP pada Server&lt;br /&gt;Berbeda dari kebanyakan penyedia layanan web hosting lainnya, PHP pada indoglobal.com kami konfigurasikan dengan tujuan supaya lebih fleksibel dengan menghindari kelemahan-kelemahan keamanan pada PHP.&lt;br /&gt;&lt;br /&gt;Pada sistem kami, PHP kami install secara modular, dengan komponen-komponennya dipisahkan dari intinya. Hal ini kami lakukan untuk meningkatkan kapabilitas PHP pada server-server kami dan meminimalkan penggunaan sumber daya memori.&lt;br /&gt;&lt;br /&gt;Modul-modul PHP yang kami install pada server kami adalah:&lt;br /&gt;&lt;br /&gt;Module Description &lt;br /&gt;bcmath BCMath arbitrary precision mathematics module &lt;br /&gt;bz2 Bzip2 compression module &lt;br /&gt;calendar Calendar module &lt;br /&gt;ctype Character type module &lt;br /&gt;curl Client URL library module &lt;br /&gt;dba Hash file (DBM or similar) abstraction layer module &lt;br /&gt;dbase dBase module &lt;br /&gt;dbx Database abstraction layer module &lt;br /&gt;dio Direct I/O Module &lt;br /&gt;domxml Document object model (DOM) module &lt;br /&gt;exif EXIF JPEG header module &lt;br /&gt;filepro Filepro database module &lt;br /&gt;fribidi Bidirectional text module &lt;br /&gt;ftp FTP module &lt;br /&gt;gd Image generation module &lt;br /&gt;gettext Native language support and internationalization module &lt;br /&gt;gmp GNU MP library for arbitrary precision arithmetic &lt;br /&gt;iconv Character set conversion module using IConv &lt;br /&gt;imap IMAP, POP3 and NNTP module &lt;br /&gt;interbase Interbase database module &lt;br /&gt;ldap LDAP client module &lt;br /&gt;mcrypt MCrypt encryption module &lt;br /&gt;mhash MHash hashing algorithm module &lt;br /&gt;mime_magic MIME type detection module &lt;br /&gt;ming Shockwave flash creation module using ming library &lt;br /&gt;mnogosearch MnogoSearch search engine module &lt;br /&gt;mysql MySQL database client module &lt;br /&gt;ncurses Ncurses terminal screen control module &lt;br /&gt;odbc UNIX ODBC module &lt;br /&gt;overload Object property and method call overloading module &lt;br /&gt;pcntl Process control functions module &lt;br /&gt;pgsql PostgreSQL database client module &lt;br /&gt;posix Module for accessing POSIX system interface &lt;br /&gt;pspell PSpell spell checking module &lt;br /&gt;recode Character sets encoding conversion using GNU Recode &lt;br /&gt;shmop Shared memory module using SHMOP &lt;br /&gt;snmp SNMP client module &lt;br /&gt;sockets Low level sockets module &lt;br /&gt;swf Shockwave Flash module using libswf library &lt;br /&gt;sybase Sybase database client module &lt;br /&gt;sysvmsg System V messages module &lt;br /&gt;sysvsem System V semaphore module &lt;br /&gt;sysvshm System V shared memory module &lt;br /&gt;tokenizer Tokenizer module &lt;br /&gt;wddx Web Distributed Data Exchange (WDDX) module &lt;br /&gt;xmlrpc XMLRPC and SOAP module &lt;br /&gt;xslt XSLT processor module &lt;br /&gt;yaz YAZ module &lt;br /&gt;yp YP module &lt;br /&gt;zip ZIP files read access module &lt;br /&gt;zlib Zlib compression module &lt;br /&gt;&lt;br /&gt;Sedangkan modul-modul yang selalu termuat pada PHP karena alasan teknis adalah:&lt;br /&gt;&lt;br /&gt;Module Description &lt;br /&gt;openssl OpenSSL for SSL related cryptographic functions &lt;br /&gt;pcre Perl compatible regular expression library &lt;br /&gt;session HTTP session support &lt;br /&gt;wddx Web Distributed Data Exchange module &lt;br /&gt;xml Extensible Markup Language (XML) parser module &lt;br /&gt;&lt;br /&gt;Module PHP Custom&lt;br /&gt;Terkadang dibutuhkan module PHP yang tidak terdapat pada daftar kami di atas (misalnya: module PHP dari pihak ketiga), atau anda memrogram module PHP anda sendiri. Pada kasus-kasus tersebut anda dapat menginstall module PHP yang anda butuhkan.&lt;br /&gt;&lt;br /&gt;Konfigurasi PHP di SiteManager&lt;br /&gt;Segala sesuatu mengenai konfigurasi PHP dapat dilakukan pada SiteManager dengan menggunakan antarmuka yang intuitif dan mudah digunakan.&lt;br /&gt;&lt;br /&gt;Anda dapat melakukan konfigurasi PHP untuk account anda secara global, dan untuk setiap subdomain anda. Subdomain-subdomain anda bisa memiliki konfigurasi masing-masing jika anda menginginkannya. Misalnya anda menginginkan pada subdomain 1 diinstall dukungan MySQL dan PCRE, namun pada subdomain 2 diinstall dukungan PostgreSQL dan GD.&lt;br /&gt;&lt;br /&gt;Selain konfigurasi modul yang diinstall, anda juga dapat mengubah setting-setting PHP yang lainnya seperti penggunaan tag ASP, penanganan kondisi error dan lain-lain. Hampir semua setting yang biasanya harus diedit secara manual pada file php.ini kini dapat anda edit dengan mudah melalui SiteManager.&lt;br /&gt;&lt;br /&gt;Dukungan PEAR&lt;br /&gt;Sistem kami juga mendukung PEAR, apapun module PEAR yang anda perlukan dapat anda install dengan mudah melalui SiteManager. Termasuk di antaranya adalah module PECL. Dari SiteManager anda juga dapat menghapus instalasi module PEAR yang telah terinstall sebelumnya dan melihat informasi mengenai module PEAR. Anda juga dapat menggunakan antarmuka command line standard jika anda menginginkannya, seluruhnya telah kami set untuk anda.&lt;br /&gt;&lt;br /&gt;Keamanan dan Fleksibilitas&lt;br /&gt;Konfigurasi PHP pada lingkungan web hosting sudah biasa menjadi masalah. Hampir semua perusahaan web hosting mengkonfigurasikan PHP dalam bentuk module Apache. Konfigurasi ini memiliki masalah tergantung dari apakah safe mode dinyalakan atau tidak.&lt;br /&gt;&lt;br /&gt;Tanpa safe mode, PHP sangatlah tidak aman. Seorang pengguna di sebuah sistem dapat melihat atau mendownload file miliki pengguna lain pada sistem yang sama. Kode PHP seperti akan dapat digunakan untuk melihat isi dari file-file milik pengguna lain, termasuk yang bersifat sensitif misalnya yang mengandung password database, nomor kartu kredit atau informasi lainnya. &lt;br /&gt;Dengan safe mode, PHP sangatlah tidak fleksibel. Anda tidak akan dapat menggunakan sebagian besar program pihak ketiga karena safe mode akan menonaktifkan sebagian fungsi dari PHP. Seluruh program yang memerlukan penulisan atau pembacaan file sama sekali tidak akan berfungsi sama sekali. &lt;br /&gt;indoglobal.com menggunakan konfigurasi lain. Kami menggunakan versi CGI dari PHP, dan bukan Apache module. Dengan cara ini, pelanggan-pelanggan kami dapat menggunakan PHP dengan aman dan seluruh program PHP akan berfungsi tanpa bermasalah. Dalam sebagian besar kasus anda bahkan tidak akan menyadari bahwa PHP dijalankan dalam mode CGI.&lt;br /&gt;&lt;br /&gt;indoglobal.com adalah salah satu perusahaan web hosting pertama yang menyadari akan isu ini. Semenjak kami berdiri (tahun 1997, sebelum PHP 3 dirilis) kami telah nencoba berbagai macam konfigurasi PHP untuk mencari cara terbaik menjalankan PHP pada lingkungan shared hosting tanpa mengorbankan keamanan pengguna serta fasilitas dari PHP. Dari bertahun-tahun pengalaman kami, kami yakin bahwa konfigurasi ini merupakan cara terbaik untuk menjalankan PHP pada sistem shared hosting.&lt;br /&gt;&lt;br /&gt;Ampun dech…..Guru Pembimbing aq memang sangat jeniuz orang nya tapi selalu merendah klo dipuji, jadi gua blom selesai yang diatas akan dikasih buku pemograman PHP dengan format bahasa Inggris….ehemmm pasti yang ini sangat favorite, dengan ketebalan hampir 1000 halaman coy…kira2 sendiri aja kalinya. Tapi yang namanya belajar tidak sulit kita harus niat.&lt;br /&gt;&lt;br /&gt;diambil dr : http://paulvandyk.wordpress.com/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2153234670910015637?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2153234670910015637/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2153234670910015637' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2153234670910015637'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2153234670910015637'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/07/php-lagi.html' title='PHP lagi..'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7690920208055241064</id><published>2007-07-12T13:33:00.000+07:00</published><updated>2007-07-12T13:41:04.231+07:00</updated><title type='text'>Ini dan itu di webserver</title><content type='html'>Mendisable phpinfo function di PHP yg kiranya membahayakan :p (kecuali bagi admin).&lt;br /&gt;&lt;br /&gt;If you leave phpinfo enabled and use some file other than phpinfo.php, it can still be found. It is pretty trivial to figure out that if you search for a couple specific terms, that you will find the PHP test page that somebody created and forgot about. Consider using safe mode. Just set: &lt;br /&gt;; Safe Mode&lt;br /&gt;;&lt;br /&gt;safe_mode = On&lt;br /&gt;&lt;br /&gt;in php.ini and restart your webserver to use this. You can verify whether safe mode is enabled using the above phpinfo technique. Another item to consider is the disable_functions directive. For instance, you could set this: &lt;br /&gt;&lt;br /&gt;disable_functions = "dl,phpinfo,shell_exec,passthru,exec,popen,system,&lt;br /&gt;proc_get_status,proc_nice,proc_open,proc_terminate,proc_close"&lt;br /&gt;&lt;br /&gt; &lt;br /&gt;Sedangkan di apache tambahkan line berikut :&lt;br /&gt;&lt;br /&gt;ServerTokens Prod &lt;br /&gt;ServerSignature Off&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7690920208055241064?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7690920208055241064/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7690920208055241064' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7690920208055241064'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7690920208055241064'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/07/ini-dan-itu-di-webserver.html' title='Ini dan itu di webserver'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7971291837340296326</id><published>2007-07-12T10:28:00.000+07:00</published><updated>2007-07-12T10:44:36.075+07:00</updated><title type='text'>where's my bug??</title><content type='html'>Sebelumnya test dulu sekuritas *satpam kalee* webserver qta, bisa menggunakan nikto.&lt;br /&gt;&lt;br /&gt;# wget http://cirt.net/nikto/nikto-current.tar.gz&lt;br /&gt;# tar -xvzf nikto-current.tar.gz&lt;br /&gt;masuk directory nikto dan lakukan update.&lt;br /&gt;# ./nikto.pl -update&lt;br /&gt;Nah.. siap u/ testing :&lt;br /&gt;# ./nikto.pl -h www.yahoo.com&lt;br /&gt;&lt;br /&gt;Selamat mencoba... ;)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7971291837340296326?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7971291837340296326/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7971291837340296326' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7971291837340296326'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7971291837340296326'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/07/wheres-my-bug.html' title='where&apos;s my bug??'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-1420029402553652328</id><published>2007-07-10T21:42:00.000+07:00</published><updated>2007-07-12T15:08:47.788+07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mail'/><title type='text'>pospix</title><content type='html'>Dari source file pospix lakukan sbb :&lt;br /&gt;% make -f Makefile.init makefiles&lt;br /&gt;% make tidy&lt;br /&gt;% make&lt;br /&gt;# mv /usr/sbin/sendmail /usr/sbin/sendmail.OFF&lt;br /&gt;# mv /usr/bin/newaliases /usr/bin/newaliases.OFF&lt;br /&gt;# mv /usr/bin/mailq /usr/bin/mailq.OFF&lt;br /&gt;# chmod 755 /usr/sbin/sendmail.OFF /usr/bin/newaliases.OFF /usr/bin/mailq.OFF&lt;br /&gt;/etc/passwd:&lt;br /&gt;   postfix:*:12345:12345:postfix:/no/where:/no/shell&lt;br /&gt;/etc/group:&lt;br /&gt;   postfix:*:12345:&lt;br /&gt;/etc/group:&lt;br /&gt;   postdrop:*:54321:&lt;br /&gt;# make install       (interactive version, first time install)&lt;br /&gt;# make upgrade       (non-interactive version, for upgrades)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-1420029402553652328?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/1420029402553652328/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=1420029402553652328' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1420029402553652328'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/1420029402553652328'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/07/pospix.html' title='pospix'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-954663202418391671</id><published>2007-06-08T15:47:00.000+07:00</published><updated>2007-06-08T16:27:16.336+07:00</updated><title type='text'>Radio Serper</title><content type='html'>Bagi kamu2 yang punya bakat presenter tapi belom kesampaian, ngga ada salahnya siaran di radio sendiri.. yuk2...buat stesyen radio sendiri..&lt;br /&gt;Pertama siapkan dolo seperangkat *Nix box dengan soundcardnya&lt;br /&gt;n then install icecast2 ama darkice..&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;ICECAST2&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;icecast membutuhkan pendukung sbb:&lt;br /&gt;libxml2 - http://xmlsoft.org/downloads.html&lt;br /&gt;libxslt - http://xmlsoft.org/XSLT/downloads.html&lt;br /&gt;curl - http://curl.haxx.se/download.html (&gt;= version 7.10 required)&lt;br /&gt;NOTE: icecast may be compiled without curl, however this will disable all Directory server interaction (YP).&lt;br /&gt;ogg/vorbis - http://www.vorbis.com/files (&gt;= version 1.0 required)&lt;br /&gt;&lt;br /&gt;Nah stl itu baru d/l souce icecast di www.icecast.org dan lakukan instalasi.&lt;br /&gt;Jika setelah mencoba instalasi beberapa kali gagal terus dan sudah berputus asa dijalan Allah.. maka via port saja yha..&lt;br /&gt;&lt;br /&gt;cd /usr/ports/audio/icecast2 &amp;&amp;amp; make install clean&lt;br /&gt;proses instalasi akan berjalan dgn sendirinya, semetara anda harus bertobat dulu karena anda telah putus asa.. :P&lt;br /&gt;&lt;br /&gt;Lakukan edit /usr/local/etc/icecast.xml dengan editor favorit ..&lt;br /&gt;&lt;br /&gt;&lt;icecast&gt;&lt;br /&gt;&lt;limits&gt;&lt;br /&gt;&lt;clients&gt;50&lt;/clients&gt;&lt;br /&gt;&lt;sources&gt;2&lt;/sources&gt;&lt;br /&gt;&lt;threadpool&gt;5&lt;/threadpool&gt;&lt;br /&gt;&lt;queue-size&gt;102400&lt;/QUEUE-SIZE&gt;&lt;br /&gt;&lt;client-timeout&gt;30&lt;/CLIENT-TIMEOUT&gt;&lt;br /&gt;&lt;header-timeout&gt;15&lt;/HEADER-TIMEOUT&gt;&lt;br /&gt;&lt;source-timeout&gt;10&lt;/SOURCE-TIMEOUT&gt;&lt;br /&gt;&lt;burst-on-connect&gt;1&lt;/BURST-ON-CONNECT&gt;&lt;br /&gt;&lt;burst-size&gt;65535&lt;/BURST-SIZE&gt;&lt;br /&gt;&lt;/limits&gt;&lt;br /&gt;&lt;br /&gt;&lt;authentication&gt;&lt;br /&gt;&lt;source-password&gt;passku&lt;/SOURCE-PASSWORD&gt;&lt;br /&gt;&lt;br /&gt;&lt;relay-password&gt;passku2&lt;/RELAY-PASSWORD&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;admin-user&gt;admin&lt;/ADMIN-USER&gt;&lt;br /&gt;&lt;admin-password&gt;12345&lt;/ADMIN-PASSWORD&gt;&lt;br /&gt;&lt;/authentication&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;hostname&gt;123.134.237.237&lt;/hostname&gt;&lt;br /&gt;&lt;bind-address&gt;123.134.237.237&lt;/BIND-ADDRESS&gt;&lt;br /&gt;&lt;listen-socket&gt;&lt;br /&gt;&lt;port&gt;8000&lt;/port&gt;&lt;br /&gt;&lt;bind-address&gt;123.134.237.237&lt;/BIND-ADDRESS&gt;&lt;br /&gt;&lt;/LISTEN-SOCKET&gt;&lt;br /&gt;&lt;username&gt;admin&lt;/username&gt;&lt;br /&gt;&lt;password&gt;runia&lt;/password&gt;&lt;br /&gt;&lt;max-listeners&gt;2&lt;/MAX-LISTENERS&gt;&lt;br /&gt;&lt;dump-file&gt;/tmp/dump-example1.ogg&lt;/DUMP-FILE&gt;&lt;br /&gt;&lt;burst-size&gt;65536&lt;/BURST-SIZE&gt;&lt;br /&gt;&lt;fallback-mount&gt;/test.ogg&lt;/FALLBACK-MOUNT&gt;&lt;br /&gt;&lt;fallback-override&gt;1&lt;/FALLBACK-OVERRIDE&gt;&lt;br /&gt;&lt;hidden&gt;1&lt;/hidden&gt;&lt;br /&gt;&lt;no-yp&gt;1&lt;/NO-YP&gt;&lt;br /&gt;&lt;authentication type="htpasswd"&gt;&lt;br /&gt;&lt;option value="myauth" name="filename"&gt;&lt;br /&gt;&lt;option value="0" name="allow_duplicate_users"&gt;&lt;br /&gt;&lt;/authentication&gt;&lt;br /&gt;&lt;paths&gt;&lt;br /&gt;&lt;br /&gt;&lt;basedir&gt;/usr/local/share/icecast&lt;/basedir&gt;&lt;br /&gt;&lt;br /&gt;&lt;logdir&gt;/var/log/icecast&lt;/logdir&gt;&lt;br /&gt;&lt;webroot&gt;/usr/local/share/icecast/web&lt;/webroot&gt;&lt;br /&gt;&lt;adminroot&gt;/usr/local/share/icecast/admin&lt;/adminroot&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;alias dest="/status.xsl" source="/"&gt;&lt;br /&gt;&lt;/paths&gt;&lt;br /&gt;&lt;br /&gt;&lt;logging&gt;&lt;br /&gt;&lt;accesslog&gt;access.log&lt;/accesslog&gt;&lt;br /&gt;&lt;errorlog&gt;error.log&lt;/errorlog&gt;&lt;br /&gt;&lt;br /&gt;&lt;loglevel&gt;4&lt;/loglevel&gt;&lt;br /&gt;&lt;/logging&gt;&lt;br /&gt;&lt;br /&gt;&lt;security&gt;&lt;br /&gt;&lt;chroot&gt;0&lt;/chroot&gt;&lt;br /&gt;&lt;br /&gt;&lt;/security&gt;&lt;br /&gt;&lt;/icecast&gt;&lt;br /&gt;&lt;br /&gt;OKeh2 sekarang jalankan icecast2nya&lt;br /&gt;/usr/local/bin/icecast -c /usr/local/etc/icecast.xml &amp;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;DARKICE&lt;/strong&gt;&lt;br /&gt;cd /usr/ports/audio/darkice &amp;amp;&amp; make install clean&lt;br /&gt;edit /usr/local/etc/darkice.cfg&lt;br /&gt;# this section describes general aspects of the live streaming session&lt;br /&gt;[general]&lt;br /&gt;duration = 0 # duration of encoding, in seconds. 0 means forever&lt;br /&gt;bufferSecs = 5 # size of internal slip buffer, in seconds&lt;br /&gt;reconnect = yes&lt;br /&gt;# this section describes the audio input that will be streamed&lt;br /&gt;[input]&lt;br /&gt;device = /dev/dsp # OSS DSP soundcard device for the audio input&lt;br /&gt;sampleRate = 22050 # sample rate in Hz. try 11025, 22050 or 44100&lt;br /&gt;bitsPerSample = 16 # bits per sample. try 16&lt;br /&gt;channel = 1 # channels. 1 = mono, 2 = stereo&lt;br /&gt;&lt;br /&gt;# this section describes a streaming connection to an IceCast server&lt;br /&gt;# there may be up to 8 of these sections, named [icecast-0] ... [icecast-7]&lt;br /&gt;# these can be mixed with [icecast2-x] and [shoutcast-x] sections&lt;br /&gt;[icecast2-0]&lt;br /&gt;format = mp3&lt;br /&gt;bitrateMode = cbr # constant bit rate&lt;br /&gt;bitrate = 16 # bitrate of the mp3 stream sent to the server&lt;br /&gt;quality = 0.8 # encoding quality&lt;br /&gt;server = 123.134.237.237&lt;br /&gt;# host name of the server&lt;br /&gt;port = 8000 # port of the IceCast server, usually 8000&lt;br /&gt;password = passku # source password to the IceCast server&lt;br /&gt;mountPoint = radio # mount point of this stream on the IceCast server&lt;br /&gt;name = Radio - Trial&lt;br /&gt;# name of the stream&lt;br /&gt;description = This is only a trial&lt;br /&gt;# description of the stream&lt;br /&gt;url = http://123.134.237.237:8000&lt;br /&gt;# URL related to the stream&lt;br /&gt;genre = my own # genre of the stream&lt;br /&gt;public = yes # advertise this stream?&lt;br /&gt;&lt;br /&gt;/usr/local/bin/darkice -c /usr/local/etc/darkice.cfg &amp;;&lt;br /&gt;&lt;br /&gt;Sekarang akses http://123.134.237.237:8000 untuk melihat status servernya dan http://123.134.237.237:8000/admin/ untuk administrator.&lt;br /&gt;&lt;br /&gt;Apa skr radiyo Qta sudah bisa on-er? tentu belum.. kalau sound cardnya belum diaktifken hihih...&lt;br /&gt;&lt;br /&gt;# kldload snd_ich (jenis sonkarmu)&lt;br /&gt;# ee /boot/default/loader.conf&lt;br /&gt;snd_ich_load="YES"              # Intel ICH&lt;br /&gt;snd_driver_load="YES"           # All sound drivers&lt;br /&gt;&lt;br /&gt;Edit kernel dan compile&lt;br /&gt;device sound&lt;br /&gt;device snd_ich&lt;br /&gt;&lt;br /&gt;Reboot... dan jalankan icecast &amp; darkice&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-954663202418391671?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/954663202418391671/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=954663202418391671' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/954663202418391671'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/954663202418391671'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/06/radio-serper.html' title='Radio Serper'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-2594308526886932183</id><published>2007-06-07T13:43:00.000+07:00</published><updated>2007-06-07T14:18:27.717+07:00</updated><title type='text'>VipiEn ples Radiyus alias radi jayus hihihi...</title><content type='html'>Instalasi Mysql&lt;br /&gt;Set password&lt;br /&gt;&lt;br /&gt;shell&gt; mysql --user=root mysql&lt;br /&gt;mysql&gt; SET PASSWORD FOR 'root'@'localhost' = PASSWORD('&lt;password_mysql_root&gt;');&lt;br /&gt;mysql&gt; flush privileges;&lt;br /&gt;mysql&gt; quit;2.3- &lt;br /&gt;&lt;br /&gt;Buat database&lt;br /&gt;mysqladmin --user=root -p&lt;password_mysql_root&gt; create radius&lt;br /&gt;&lt;br /&gt;Buat user mengakses database radius&lt;br /&gt;shell&gt; mysql --user=root -p&lt;password_mysql_root&gt; mysql&lt;br /&gt;mysql&gt; GRANT ALL ON ftp.* TO radius@localhost IDENTIFIED BY '&lt;password_mysql_radius&gt;';&lt;br /&gt;mysql&gt; flush privileges;&lt;br /&gt;mysql&gt; quit;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;shell&gt; gunzip /usr/share/doc/freeradius/examples/db_mysql.sql.gz&lt;br /&gt;shell&gt; mysql --user=radius -p&lt;password_mysql_radius&gt; radius &lt; /usr/share/doc/freeradius/examples/db_mysql.sql&lt;br /&gt;&lt;br /&gt;shell&gt; gunzip /usr/share/doc/freeradius/examples/mysql.sql.gz&lt;br /&gt;shell&gt; mysql --user=radius -p&lt;password_mysql_radius&gt; radius &lt; /usr/share/doc/freeradius/examples/mysql.sql&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The data base is made up of 8 tables making it possible to define: rights of each user drooits of each groups &lt;br /&gt;&lt;br /&gt;The table: nas &lt;br /&gt;Cetta table contains same information as the /etc/freeradius/clients.conf file. It makes it possible to add NAS. &lt;br /&gt;key          value&lt;br /&gt;nasname      127.0.0.1&lt;br /&gt;shortname    nas1&lt;br /&gt;type         other&lt;br /&gt;ports&lt;br /&gt;secret       mySecret&lt;br /&gt;community    public&lt;br /&gt;description  NAS1 for the tests &lt;br /&gt;&lt;br /&gt;The table: radacct This table contains all information of connection, disconnection, etc… It is a table which you accederer in reading primarily. No parameter to be carried out in this table. &lt;br /&gt;&lt;br /&gt;The table: radcheck This table contains information to be checked at the time of the authentification. Primarily it will contain login/password. &lt;br /&gt;key        value&lt;br /&gt;UserName   yoann&lt;br /&gt;Attribute  User-Password&lt;br /&gt;op         ==&lt;br /&gt;Value      test&lt;br /&gt;&lt;br /&gt;This table functions like the table radcheck, but with a concept of group. (It allows for example checked that the users of group PPTP have well the value “1” (PPP) for the Framed-Protocol key, value 2 would have been for SLIPWAY) &lt;br /&gt;key        value&lt;br /&gt;GroupName  PPTP&lt;br /&gt;Attribute  Framed-Protocol&lt;br /&gt;op         ==&lt;br /&gt;Value      1&lt;br /&gt;&lt;br /&gt;The table: radreply This table contains the parameters returned with the customers after an authentification succeeded. (It makes it possible for example to allot an address IP specific to a user.) &lt;br /&gt;key        value&lt;br /&gt;UserName   yoann&lt;br /&gt;Attribute  Framed-IP-Address&lt;br /&gt;op         :=&lt;br /&gt;Value      192.168.40.101&lt;br /&gt;&lt;br /&gt;The table: radgroupreply This table functions like the table radreply, but with a concept of group. (It makes it possible for example to allot the IP of a waiter DNS has all the users of group PPTP) &lt;br /&gt;key        value&lt;br /&gt;GroupName  PPTP&lt;br /&gt;Attribute  MS-Primary-DNS-Server&lt;br /&gt;op         :=&lt;br /&gt;Value      192.168.40.1&lt;br /&gt;&lt;br /&gt;The table: usergroup This table definite the membership of a user has a group. It is indeed possible to define duties applicable to a user group.&lt;br /&gt;key        value&lt;br /&gt;UserName   yoann&lt;br /&gt;GroupName  PPTP&lt;br /&gt;priority   1&lt;br /&gt;&lt;br /&gt;The table: radpostauth To define… &lt;br /&gt;&lt;br /&gt;KONFIGURASI RADIUS&lt;br /&gt;/etc/freeradius/sql.conf&lt;br /&gt;sql {&lt;br /&gt;# Database type&lt;br /&gt;driver = "rlm_sql_mysql"&lt;br /&gt;&lt;br /&gt;# Connect info&lt;br /&gt;server = "localhost"&lt;br /&gt;login = "radius"&lt;br /&gt;password = "&lt;password_mysql_radius&gt;"&lt;br /&gt;&lt;br /&gt;# Database table configuration&lt;br /&gt;radius_db = "radius"&lt;br /&gt;&lt;br /&gt;...&lt;br /&gt;&lt;br /&gt;# Set to 'yes' to read radius clients from the database ('nas' table)&lt;br /&gt;readclients = yesFramed-IP-Address&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;Note: The value readclients with yes, makes it possible to store the list of the NAS in the table nas of the data base radius, in addition to the NAS present in the /etc/freeradius/clients.conf file. The addition of a new entry in the table nas is not dynamic, enframed-IP-Address effect the list of the NAS is built with the launching of freeradius starting from the /etc/freeradius/clients.conf file and the table sql nas. &lt;br /&gt;&lt;br /&gt;To take into account the changes, it to reload the files of configuration: &lt;br /&gt;shell&gt; /etc/init.d/freeradius &lt;br /&gt;the /etc/freeradius/radiusd.conf file &lt;br /&gt;modules {&lt;br /&gt;chap {&lt;br /&gt; authtype = CHAP&lt;br /&gt; }&lt;br /&gt;&lt;br /&gt;mschap {&lt;br /&gt; authtype = MS-CHAP&lt;br /&gt; use_mppe = yes&lt;br /&gt; require_encryption = yes&lt;br /&gt; require_strong = yes&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;$INCLUDE  ${confdir}/sql.conf #1249&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;authorize { #1774&lt;br /&gt; chap&lt;br /&gt; mschap&lt;br /&gt; suffix&lt;br /&gt; sql&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;authenticate { #1887&lt;br /&gt; Auth-Type CHAP {&lt;br /&gt;   chap&lt;br /&gt; }&lt;br /&gt;&lt;br /&gt; Auth-Type MS-CHAP {&lt;br /&gt;   mschap&lt;br /&gt; }&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;accounting {&lt;br /&gt; sql&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;session {&lt;br /&gt;  sql&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt; Test of the installation of freeradius  &lt;br /&gt;We will add a local NAS to test the configuration. For that it is necessary to publish the /etc/freeradius/clients.conf file &lt;br /&gt;client 127.0.0.1 {&lt;br /&gt;   secret    = mySecret&lt;br /&gt;   shortname = localhost&lt;br /&gt;   nastype   = other&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;It is necessary for us to create an entry for the NAS whose IP is 127.0.0.1, and to specify a key secrecy which will be used for encoding of information between the NAS and the Waiter Radius. Note: We could here, to add an entry in the table nas base sql, but we will approach this solution further. &lt;br /&gt;To launch freeradius in mode comforts: debug mode &lt;br /&gt;&lt;br /&gt;To have a maximum of information for debuger our installation, and to include/understand what it occurs, we will stop the service freeradius and the throw in mode comforts with the options which are well: &lt;br /&gt;&lt;br /&gt;shell&gt; /etc/init.d/freeradius stop&lt;br /&gt;shell&gt; freeradius -XXX&lt;br /&gt;&lt;br /&gt;To add an account of test in our table radcheck &lt;br /&gt;&lt;br /&gt;shell&gt; mysql --user=radius -p&lt;password_mysql_radius&gt; radius&lt;br /&gt;mysql&gt; INSERT INTO radcheck(UserName,Attribute,op,Value) VALUES ('yoann','User-Password','==','test');&lt;br /&gt;mysql&gt; quit;&lt;br /&gt;&lt;br /&gt;We added here the user “yoann” with the password “test”&lt;br /&gt;Test of the authentification We go use the tool radtest whose syntax is as follows: &lt;br /&gt;radtest &lt;login&gt; &lt;password&gt; &lt;ip_radius&gt; &lt;port_radius&gt; &lt;secret_radius&gt;&lt;br /&gt;Note: to use the port by default radius you can use 0. &lt;br /&gt;&lt;br /&gt;shell&gt; radtest yoann test 127.0.0.1 0 mySecret&lt;br /&gt;Sending Access-Request of id 186 to 127.0.0.1 port 1812&lt;br /&gt;       User-Name = "yoann"&lt;br /&gt;       User-Password = "test"&lt;br /&gt;       NAS-IP-Address = 255.255.255.255&lt;br /&gt;       NAS-Port = 0&lt;br /&gt;rad_recv: Access-Accept packet from host 127.0.0.1:1812, id=186, length=20&lt;br /&gt;&lt;br /&gt;If the authentification is correct, you will receive the Access-Accept message. You can now stop freeradius in mode comforts (Ctrl+C) and start again it in time that service. shell&gt; /etc/init.d/freeradius start &lt;br /&gt;&lt;br /&gt;Installation/Configuration of pptpd&lt;br /&gt;You must, above all, you ensure that your kernel supports the MMPE Encryption which will allow us crypter the data in MPPE-128, in addition to authentification MS-CHAP-V2 &lt;br /&gt;&lt;br /&gt;/etc/pptpd.conf&lt;br /&gt;option /etc/ppp/pptpd-options&lt;br /&gt;logwtmp&lt;br /&gt;localip 10.1.100.254&lt;br /&gt;remoteip 10.1.100.1-200&lt;br /&gt;Note: The line remoteip optional, because it is perhaps replaced by the value of attribute Framed-IP-Address contained in our table radreply&lt;br /&gt;&lt;br /&gt;/etc/ppp/pptpd-options&lt;br /&gt; Name of the local system for authentication purposes&lt;br /&gt;# (must match the second field in /etc/ppp/chap-secrets entries)&lt;br /&gt;name pptpd&lt;br /&gt;&lt;br /&gt;# Authentification Encryption&lt;br /&gt;refuse-pap&lt;br /&gt;refuse-chap&lt;br /&gt;refuse-mschap&lt;br /&gt;require-mschap-v2&lt;br /&gt;&lt;br /&gt;# Data Encryption&lt;br /&gt;require-mppe-128&lt;br /&gt;&lt;br /&gt;# Disable BSD Compression&lt;br /&gt;nobsdcomp&lt;br /&gt;&lt;br /&gt;# Network and Routing&lt;br /&gt;ms-dns 10.1.100.254&lt;br /&gt;proxyarp&lt;br /&gt;nodefaultroute&lt;br /&gt;&lt;br /&gt;# Create a UUCP-style lock file for the pseudo-tty to ensure exclusive access.&lt;br /&gt;lock&lt;br /&gt;&lt;br /&gt;# Enable connection debugging facilities.&lt;br /&gt;debug&lt;br /&gt;&lt;br /&gt;# Print out all the option values which have been set.&lt;br /&gt;# (often requested by mailing list to verify options)&lt;br /&gt;dump&lt;br /&gt;&lt;br /&gt;# Miscellaneous&lt;br /&gt;ipcp-accept-local&lt;br /&gt;ipcp-accept-remote&lt;br /&gt;&lt;br /&gt;lcp-echo-failure 3&lt;br /&gt;lcp-echo-interval 5&lt;br /&gt;&lt;br /&gt;# Plugins&lt;br /&gt;plugin radius.so&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-2594308526886932183?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/2594308526886932183/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=2594308526886932183' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2594308526886932183'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/2594308526886932183'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/06/vipien-ples-radiyus-alias-radi-jayus.html' title='VipiEn ples Radiyus alias radi jayus hihihi...'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-251228422963498508</id><published>2007-06-04T10:50:00.000+07:00</published><updated>2007-06-04T10:51:28.103+07:00</updated><title type='text'>Menyiasati partisi penuh dgn Linking</title><content type='html'>First of all, you must have available empty space contiguous with&lt;br /&gt;the partition you wish to expand.   If you do not have that, then&lt;br /&gt;you will have to start from scratch, or add another disk drive.&lt;br /&gt;&lt;br /&gt;You can use sysinstall to recreate partitions and modify slices as&lt;br /&gt;long as there is space available and as long as the drive or slice&lt;br /&gt;is not mounted and in use.    (drive is you are modifying slices and&lt;br /&gt;slice if you are modifyine partitions)&lt;br /&gt;&lt;br /&gt;If you do not use sysinstall then fdisk is used to change slices.  You &lt;br /&gt;may need to do it from a fixit disk because it is likely you will be &lt;br /&gt;modifying the FreeBSD slice that the system normally uses to boot.&lt;br /&gt;&lt;br /&gt;If you want to change a partition within a slice (namely the FreeBSD &lt;br /&gt;slice) you need to use bsdlabel(8).  That creates and writes the slice's &lt;br /&gt;label and defines partitions.  After using bsdlabel, you must use &lt;br /&gt;newfs(8) to create the file system on the newly created/modified partition.&lt;br /&gt;&lt;br /&gt;But, still, to add space to a partition, there must be free space - &lt;br /&gt;eg space that is not in a partition already - right next to the &lt;br /&gt;partition you want to expand.  &lt;br /&gt;&lt;br /&gt;Alternatively, you do not specifically have to increase the /var partition.&lt;br /&gt;you can move some of its contents to another partition where there is&lt;br /&gt;sufficient free space (if such exists) and then create symbolic links&lt;br /&gt;to the new location[s].   Common candidated for such moving and linking&lt;br /&gt;are /var/spool, /var/log, /var/db and/or /var/mail.&lt;br /&gt;&lt;br /&gt;My habit is to have a large partition that contains home directories&lt;br /&gt;and other overflows.    Typical mount point is /home.  &lt;br /&gt;Then, I usually put /var/spool and /var/log there as directories&lt;br /&gt;named /home/var.spool  and  /home/var.log  and link them back to&lt;br /&gt;the original names in /var.  eg, after copying those directories &lt;br /&gt;over to /home/var.spool  and /home/var.log   respectively, I then&lt;br /&gt;rm the original /var/spool and /var/log and then create links.&lt;br /&gt;Actually, first I rename them, then do the link and check things&lt;br /&gt;before actually rm-ing the originals.   Something like this:&lt;br /&gt;&lt;br /&gt;All must be done as root (and probably best in single user, but not required).&lt;br /&gt;  cd /var&lt;br /&gt;use tar | tar or cp -Rp to make a new copy in /home&lt;br /&gt;  cp -Rp spool /home/var.spool&lt;br /&gt;  mv spool oldspool&lt;br /&gt;  ln -s /home/var.spool spool&lt;br /&gt;  cp -Rp log   /home/var.log&lt;br /&gt;  mv log oldlog&lt;br /&gt;  ln -s /home/var.log log&lt;br /&gt;Check it all out to make sure it is just fine&lt;br /&gt;  cd /var&lt;br /&gt;  rm -rf oldspool&lt;br /&gt;  rm -rf oldlog&lt;br /&gt;&lt;br /&gt;I like to use the naming convention of var.spool and var.log for the&lt;br /&gt;copies because it reminds me of where there come from.&lt;br /&gt;&lt;br /&gt;I a similar thing with /var/db in /var&lt;br /&gt;and with /uar/local, /usr/ports, and /usr/src  in /usr&lt;br /&gt;&lt;br /&gt;Then those things which grow, sometimes unexpectedly can have room&lt;br /&gt;without me constantly monitoring them.   It also makes backups more&lt;br /&gt;straightforward.   Everything that is frequently changing is in /home.&lt;br /&gt;&lt;br /&gt;Of course, if you do not have  a large directory with plenty of&lt;br /&gt;space available, then you may be looking to add some disk space.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-251228422963498508?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/251228422963498508/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=251228422963498508' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/251228422963498508'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/251228422963498508'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/06/menyiasati-partisi-penuh-dgn-linking.html' title='Menyiasati partisi penuh dgn Linking'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-5077514442133386619</id><published>2007-06-02T18:27:00.000+07:00</published><updated>2007-06-02T18:31:12.368+07:00</updated><title type='text'>Tipz</title><content type='html'>&lt;strong&gt;FSCK Otomatis&lt;/strong&gt;&lt;br /&gt;If your server/box gets stuck at fsck after a reboot or a crash, then just add the following lines to /etc/rc.conf:&lt;br /&gt;&lt;br /&gt;fsck_y_enable=”YES”&lt;br /&gt;&lt;br /&gt;It will run fsck automatically and will avoid your box getting stuck after reboot waiting for somebody to manually run fsck.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;IPFW tanpa compile kernel&lt;/strong&gt;&lt;br /&gt;IF you don’t want to recompile kernel, just because you want to enable ipfw, you can use the following command to do so:&lt;br /&gt;&lt;br /&gt;kldload ipfw &amp;&amp; ipfw add 65534 allow all from any to any&lt;br /&gt;&lt;br /&gt;Never issue the above command without ipfw add 65534 allow all from any to any else you might end up with a locked box.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-5077514442133386619?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/5077514442133386619/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=5077514442133386619' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5077514442133386619'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/5077514442133386619'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/06/fsck-ostomastis.html' title='Tipz'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-20127583.post-7466391124025870326</id><published>2007-06-02T18:26:00.000+07:00</published><updated>2007-06-02T18:27:52.408+07:00</updated><title type='text'>twiking</title><content type='html'>sysctl.conf for your high traffic server - under high load :&lt;br /&gt;&lt;br /&gt;security.bsd.see_other_uids=0&lt;br /&gt;net.inet.tcp.recvspace=65535&lt;br /&gt;net.inet.tcp.sendspace=65535&lt;br /&gt;#kern.ps_showallprocs=0&lt;br /&gt;kern.ipc.shmmax=67108864&lt;br /&gt;kern.ipc.shmall=32768&lt;br /&gt;net.inet.tcp.inflight.enable=1&lt;br /&gt;net.inet.tcp.blackhole=2&lt;br /&gt;net.inet.udp.blackhole=1&lt;br /&gt;net.inet.ip.rtexpire=2&lt;br /&gt;net.inet.ip.rtminexpire=2&lt;br /&gt;kern.ipc.somaxconn=1024&lt;br /&gt;net.inet.ip.check_interface=1&lt;br /&gt;&lt;br /&gt;kern.maxfiles=32768&lt;br /&gt;kern.maxfilesperproc=2000&lt;br /&gt;&lt;br /&gt;kern.ipc.maxsockets=163840&lt;br /&gt;kern.ipc.maxsockbuf=2097152&lt;br /&gt;&lt;br /&gt;net.inet.ip.fw.dyn_syn_lifetime=1&lt;br /&gt;net.inet.ip.fw.dyn_max=65535&lt;br /&gt;net.inet.ip.fw.dyn_buckets=256&lt;br /&gt;net.inet.ip.fw.dyn_udp_lifetime=5&lt;br /&gt;&lt;br /&gt;net.inet.tcp.msl=7500&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/20127583-7466391124025870326?l=runia2001.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://runia2001.blogspot.com/feeds/7466391124025870326/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=20127583&amp;postID=7466391124025870326' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7466391124025870326'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/20127583/posts/default/7466391124025870326'/><link rel='alternate' type='text/html' href='http://runia2001.blogspot.com/2007/06/twiking.html' title='twiking'/><author><name>ainoer</name><uri>http://www.blogger.com/profile/01330647731817385931</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
