<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Roachys Weblog</title>
	<atom:link href="http://blog.roachy.net/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.roachy.net</link>
	<description>A digital notebook of technical experiences</description>
	<lastBuildDate>Wed, 02 Jun 2010 14:32:26 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='blog.roachy.net' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://1.gravatar.com/blavatar/9f441d6d96c5ab0a3564bf350dd9249d?s=96&#038;d=http://s2.wp.com/i/buttonw-com.png</url>
		<title>Roachys Weblog</title>
		<link>http://blog.roachy.net</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://blog.roachy.net/osd.xml" title="Roachys Weblog" />
	<atom:link rel='hub' href='http://blog.roachy.net/?pushpress=hub'/>
		<item>
		<title>Regional Internet Registrations</title>
		<link>http://blog.roachy.net/2010/06/02/regional-internet-registrations/</link>
		<comments>http://blog.roachy.net/2010/06/02/regional-internet-registrations/#comments</comments>
		<pubDate>Wed, 02 Jun 2010 10:03:53 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.roachy.net/?p=186</guid>
		<description><![CDATA[RIPE and RIR registrations<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=186&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>On a recent search for the RIPE allocation for Hutchinson 3Gs RIPE allocation of IP addresses to limit inbound connections to our firewall, I found the following useful site detailing the allocations assigned to organisations, and thought I&#8217;d document it here:  <a href="http://www-public.int-evry.fr/~maigron/RIR_Stats/">http://www-public.int-evry.fr/~maigron/RIR_Stats/</a></p>
<p>It&#8217;s a nice amalgamation of the information listed on the registrars ftp servers here:</p>
<ul>
<li><a href="ftp://ftp.afrinic.net/pub/stats/afrinic/delegated-afrinic-latest">ftp://ftp.afrinic.net/pub/stats/afrinic/delegated-afrinic-latest</a></li>
<li><a href="ftp://ftp.apnic.net/pub/stats/apnic/delegated-apnic-latest">ftp://ftp.apnic.net/pub/stats/apnic/delegated-apnic-latest</a></li>
<li><a href="ftp://ftp.arin.net/pub/stats/arin/delegated-arin-latest">ftp://ftp.arin.net/pub/stats/arin/delegated-arin-latest</a></li>
<li><a href="ftp://ftp.lacnic.net/pub/stats/lacnic/delegated-lacnic-latest">ftp://ftp.lacnic.net/pub/stats/lacnic/delegated-lacnic-latest</a></li>
<li><a href="ftp://ftp.ripe.net/pub/stats/ripencc/delegated-ripencc-latest">ftp://ftp.ripe.net/pub/stats/ripencc/delegated-ripencc-latest</a></li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/186/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/186/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/186/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/186/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/186/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/186/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/186/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/186/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/186/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/186/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/186/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/186/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/186/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/186/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=186&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2010/06/02/regional-internet-registrations/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>Messagelabs Mail Servers for Firewall Rules</title>
		<link>http://blog.roachy.net/2010/05/18/messagelabs-mail-servers-for-firewall-rules/</link>
		<comments>http://blog.roachy.net/2010/05/18/messagelabs-mail-servers-for-firewall-rules/#comments</comments>
		<pubDate>Tue, 18 May 2010 11:10:56 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://blog.roachy.net/?p=183</guid>
		<description><![CDATA[Messagelabs Mail Servers for Firewall Rules<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=183&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>In case you should need the Messagelabs IP&#8217;s to permit inbound traffic in firewall rules, an up-to-date list is below:</p>
<p><!-- 		@page { margin: 2cm } 		P { margin-bottom: 0.21cm } --></p>
<table border="1" cellspacing="0" cellpadding="0" width="626" rules="ROWS">
<col width="158"></col>
<col width="127"></col>
<col width="78"></col>
<col width="264"></col>
<tbody>
<tr valign="BOTTOM">
<td width="158" height="16" bgcolor="#e6e6e6"><span style="font-family:Arial,serif;"><span style="font-size:x-small;"><strong>Subnet 			IP</strong></span></span></td>
<td width="127" bgcolor="#e6e6e6"><span style="font-family:Arial,serif;"><span style="font-size:x-small;"><strong>Subnet 			mask</strong></span></span></td>
<td width="78" bgcolor="#e6e6e6"><span style="font-family:Arial,serif;"><span style="font-size:x-small;"><strong>Net 			mask</strong></span></span></td>
<td width="264" bgcolor="#e6e6e6"><span style="font-family:Arial,serif;"><span style="font-size:x-small;"><strong>IP 			Range</strong></span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">62.173.108.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.255.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/24</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">62.173.108.0 			- 62.173.108.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">62.231.128.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.224.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/19</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">62.231.128.0 			- 62.231.159.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">195.216.0.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.224.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/19</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">195.216.0.0 			- 195.216.31.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">212.125.64.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.224.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/19</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">212.125.64.0 			- 212.125.95.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">216.82.240.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.240.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/20</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">216.82.240.0 			- 216.82.255.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">67.219.240.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.240.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/20</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">67.219.240.0 			- 67.219.255.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">85.158.136.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.248.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/21</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">85.158.136.0 			- 85.158.143.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">95.131.104.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.248.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/21</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">95.131.104.0 			- 95.131.111.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">117.120.16.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.248.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/21</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">117.120.16.0 			- 117.120.23.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">193.109.254.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.254.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/23</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">193.109.254.0 			- 193.109.255.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="17" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">194.106.220.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.254.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/23</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">194.106.220.0 			- 194.106.221.255</span></span></td>
</tr>
<tr valign="BOTTOM">
<td width="158" height="16" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">195.245.230.0</span></span></td>
<td width="127" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">255.255.254.0</span></span></td>
<td width="78" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">/23</span></span></td>
<td width="264" bgcolor="#ffffff"><span style="font-family:Arial,serif;"><span style="font-size:x-small;">195.245.230.0 			- 195.245.231.255</span></span></td>
</tr>
</tbody>
</table>
<p>Hope this is useful to someone <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/183/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=183&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2010/05/18/messagelabs-mail-servers-for-firewall-rules/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>Proving the integrity of a network &#8211; iperf, tcpdump and ping</title>
		<link>http://blog.roachy.net/2010/05/13/proving-the-integrity-of-a-network-iperf-tcpdump-and-ping/</link>
		<comments>http://blog.roachy.net/2010/05/13/proving-the-integrity-of-a-network-iperf-tcpdump-and-ping/#comments</comments>
		<pubDate>Thu, 13 May 2010 16:32:26 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://blog.roachy.net/?p=177</guid>
		<description><![CDATA[Proving network integrity using tcpdump, wireshark, iperf and ping<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=177&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Occassionally when you provide managed services for clients and there are issues, fingers get pointed and accusations get made about the integrity of the network &#8211; particularly if the medium in question uses fibre, or another less common network medium (like wireless).</p>
<p>We host a clients server on our premises for backup purposes, on the end of 2Km of multimode fibre connected to media converters at both sides.  When the client was having issues with the speed and  integrity of the network (packet loss and timeouts), it was necessary to do a little research to initially test and then to prove that the issue was not resultant of the fibre link.  Of course, with the aid of an OTDR it&#8217;s easy to demonstrate that the fibre does not show losses &#8211; but an OTDR is a very expensive piece of equipment to buy or rent, and does not provide any throughput data illustrating whether the endpoints are doing as they should.  As the clients IT support were only testing from a Windows-&gt;Windows box and they were only using ping to illustrate the issue, it was necessary to do a little more digging.</p>
<p>I put together a short test plan:</p>
<blockquote><p>1)A standard ping test<br />
2) A short packet capture while running a standard ping test.<br />
3) An isolated packet capture to ascertain whether there are any obvious network issues<br />
(excessive ARP, retransmission, etc).<br />
4) A flood ping test<br />
5) A bi-directional iperf test to measure the bandwidth and throughput of the fibre link<br />
(through one of the clients network switches)<br />
6) A bi-directional iperf test to measure the bandwidth and throughput of the fibre link<br />
directly from the media converter.</p></blockquote>
<p>As the ping test yielded no unusual results and the packet capture (tcpdump -i eth0 -s0 -w pingtest.pcap) of the ping test didn&#8217;t show anything unusual, I ran the flood ping back to my box (note that it&#8217;s fairly important to only flood ping boxes that are capable of handling more traffic than you can generate (<a href="http://http://en.wikipedia.org/wiki/Ping_flood">wikipedia</a>).</p>
<blockquote><p>#ping 10.202.4.130 -f</p>
<p>&#8212; 10.202.4.130 ping statistics &#8212;<br />
11011 packets transmitted, 11010 received, 0% packet loss, time 1725ms<br />
rtt min/avg/max/mdev = 0.129/0.133/5.692/0.055 ms, ipg/ewma 0.156/0.132 ms</p></blockquote>
<p>Again, this illustrated that even with a massive burst of data in a short space of time that there were no errors in transmission.</p>
<p>Next it was necessary to run test #5.  Iperf was installed on the remote side and on my laptop, so I started the server on the remote side using:</p>
<blockquote><p>#iperf -s</p>
<p>and started the client side on my laptop using:</p>
<p>#iperf -c 10.202.4.130 -r</p></blockquote>
<p>The results showed a slow throughput on the client and server side:</p>
<blockquote><p>ID] Interval  Transfer Bandwidth<br />
[ 5] 0.0-10.0 sec 18.8 MBytes 15.8 Mbits/sec</p></blockquote>
<p>This looked likely to be the cause of the problem, but the fibre link should have been running at 100Mbps.  The next step was to connect directly into the media converter rather than through the clients switch.  I ran the test directly through the media converter:</p>
<blockquote><p>#iperf -c 10.202.4.130 -r<br />
ID] Interval  Transfer Bandwidth<br />
[ 5] 0.0-10.0 sec 112 MBytes 94.2 Mbits/sec</p></blockquote>
<p>A much improved result!  I ran the test again to verify the findings and then plugged into an alternative switch port at the clients side to run the test again, and this time got the 94Mbps I was hoping to see, proving that the issue was with the switch and most likely to be caused by rate-limiting on the switch port.</p>
<p>Sometimes a simple ping is not enough to thoroughly test a network and other tools need to be used to verify findings&#8230;.iperf is excellent for providing a tangible measurement of throughput, and tcpdump &amp; wireshark are useful for looking for packet retransmissions, excessive arp and other clues to performance issues..</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/177/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/177/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/177/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/177/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/177/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/177/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/177/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/177/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/177/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/177/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/177/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/177/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/177/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/177/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=177&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2010/05/13/proving-the-integrity-of-a-network-iperf-tcpdump-and-ping/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>Free Brick Level backups on Exchange 2003/SBS 2003</title>
		<link>http://blog.roachy.net/2010/01/25/free-brick-level-backups-on-exchange-2003sbs-2003/</link>
		<comments>http://blog.roachy.net/2010/01/25/free-brick-level-backups-on-exchange-2003sbs-2003/#comments</comments>
		<pubDate>Mon, 25 Jan 2010 16:32:03 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Exchange]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[BackupPC]]></category>
		<category><![CDATA[Debian]]></category>
		<category><![CDATA[Exmerge]]></category>

		<guid isPermaLink="false">http://blog.roachy.net/?p=170</guid>
		<description><![CDATA[Free Brick Level backups on Exchange 2003/SBS 2003 using exmerge and backuppc<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=170&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve seen so many people attempt to restore Exchange and fail using Microsofts built in tools, or come unstuck because they want to restore a single mailbox, that I thought I&#8217;d document the free method of backing up Exchange that we use, so that it will hopefully help others.</p>
<p>One of the tools available from Microsoft free is Exmerge.  It allows individual mailboxes to be individually exported to PST files, which can then either be re-imported back into Exchange or simply opened in Outlook.  Exmerge is available from <a href="http://www.microsoft.com/downloads/details.aspx?familyid=429163ec-dcdf-47dc-96da-1c12d67327d5&amp;displaylang=en">http://www.microsoft.com/downloads/details.aspx?familyid=429163ec-dcdf-47dc-96da-1c12d67327d5&amp;displaylang=en</a></p>
<p>Extract and save to the Exchsrv/bin directory, and when the appropriate mailboxes have been selected, destinations set save the configuration.  This will create an exmerge.ini file.</p>
<p>This can then be scripted in a batch file and run as a scheduled task.  I create a folder on the local disk of the Exchange server (although this can be done to a mapped drive) for each day I want the backup to run.</p>
<p>My exmon.bat file reads:</p>
<blockquote><p><strong>D:\exchsrvr\bin\exmerge.exe -F C:\scripts\exmon\exmerge.ini -B</strong></p></blockquote>
<p>Which runs the exmerge.exe, with the options specified in scripts\exmon\exmerge.ini and runs the script as a batch job using the -B switch.</p>
<p>To clean the folder prior to running, I have a separate batch file that runs earlier on the same day that runs</p>
<blockquote><p><strong>del /F /Q /S z:\Exchange\exmon\*.*</strong></p></blockquote>
<p>Subsequently to back up the PST files to a separate server I use the excellent BackupPC running on a Debian server.  Installation instructions for Debian are here:<a href="http://www.debianhelp.co.uk/backuppc.htm"> http://www.debianhelp.co.uk/backuppc.htm</a></p>
<p>The BackupPC box is confugured to access the SMB share that the PST&#8217;s are stored in, as well as additional file shares on the server.  BackupPC supports incremental backups and backups via a variety of methods (including SSH and rsync, as well as SMB).</p>
<p>It&#8217;s also possible to archive off historic backups for off-site using the archive functions within BackupPC.  As a free solution for backing up mailboxes and beiong able to recover easily (with version control) this is very effective&#8230;</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/170/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/170/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/170/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/170/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/170/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/170/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/170/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/170/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/170/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/170/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/170/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/170/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/170/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/170/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=170&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2010/01/25/free-brick-level-backups-on-exchange-2003sbs-2003/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>OpenSSH Server hangs on SSH2_MSG_SERVICE_ACCEPT received</title>
		<link>http://blog.roachy.net/2009/12/30/openssh-server-hangs-on-ssh2_msg_service_accept-received/</link>
		<comments>http://blog.roachy.net/2009/12/30/openssh-server-hangs-on-ssh2_msg_service_accept-received/#comments</comments>
		<pubDate>Wed, 30 Dec 2009 11:42:49 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Linux]]></category>

		<guid isPermaLink="false">http://blog.roachy.net/?p=168</guid>
		<description><![CDATA[On trying to connect to a device that has no DNS or public visibility, connecting via SSH seemed to hang for an almost indefinite period of time. This can be avoided by stopping the server from performing a reverse DNS lookup against the connecting IP address by adding the following line to the /etc/ssh/sshd_config: UseDNS    [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=168&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>On trying to connect to a device that has no DNS or public visibility, connecting via SSH seemed to hang for an almost indefinite period of time.</p>
<p>This can be avoided by stopping the server from performing a reverse DNS lookup against the connecting IP address by adding the following line to the /etc/ssh/sshd_config:</p>
<p style="padding-left:30px;">UseDNS    no</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/168/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/168/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/168/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/168/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/168/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/168/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/168/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/168/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/168/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/168/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/168/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/168/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/168/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/168/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=168&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2009/12/30/openssh-server-hangs-on-ssh2_msg_service_accept-received/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>Full Command Line Access and Creating VLANS on a Cisco Linksys SRW2024 Switch</title>
		<link>http://blog.roachy.net/2009/12/30/full-command-line-access-and-creating-vlans-on-a-cisco-linksys-srw2024-switch/</link>
		<comments>http://blog.roachy.net/2009/12/30/full-command-line-access-and-creating-vlans-on-a-cisco-linksys-srw2024-switch/#comments</comments>
		<pubDate>Wed, 30 Dec 2009 09:54:27 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Cisco Linksys SRW2024]]></category>
		<category><![CDATA[IOS]]></category>
		<category><![CDATA[VLAN]]></category>

		<guid isPermaLink="false">http://technicalmumblings.wordpress.com/?p=166</guid>
		<description><![CDATA[Cisco Linksys SRW2024 CLI access<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=166&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>The Linksys SRW2024 initially appears to be a little strangled in functionality &#8211; the browser based configuration doesn&#8217;t work in Linux/Firefox for example, and the command line menu doesn&#8217;t allow for extended configuration.  I was actually on the cusp of sending the device back (I don&#8217;t really want to have to use a Windows VM to be able to configure a switch), but it turns out there is an option to get into a lightweight IOS style command line interface&#8230;</p>
<p>First, connect to the device using the supplied serial cable and Minicom.  The settings for the device need to be 38400 8N1 and flow control needs to Off (contrary to the documentation on the Linksys website!)</p>
<p>When logged in, configure the IP address and turn on SSH management for ease of configuration &#8211; change the password from the default (admin/blank).</p>
<p>Next, log in using ssh, and once logged in, hold CTRL+Z, then type lcli.</p>
<p>To create a VLAN:</p>
<p style="padding-left:30px;"># configure<br />
(config)# vlan database<br />
(config-vlan)# vlan 993 (enter your VLAN ID of choice here)<br />
(config-vlan)# end</p>
<p>You should now have the VLAN of 993.</p>
<p>This can be verified using the</p>
<p style="padding-left:30px;">#show vlan</p>
<p>To assign ports to VLANs:</p>
<p style="padding-left:30px;"># configure<br />
(config)# interface range ethernet g21-24<br />
(config-if)# switchport access vlan 993<br />
(config-if)# end</p>
<p>To check,</p>
<p style="padding-left:30px;"># show interfaces switchport ethernet g1<br />
# show interfaces switchport ethernet g21</p>
<p>Hope this helps someone&#8230;.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/166/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=166&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2009/12/30/full-command-line-access-and-creating-vlans-on-a-cisco-linksys-srw2024-switch/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>Logmein Client using 64-bit Linux</title>
		<link>http://blog.roachy.net/2009/12/15/logmein-client-using-64-bit-linux/</link>
		<comments>http://blog.roachy.net/2009/12/15/logmein-client-using-64-bit-linux/#comments</comments>
		<pubDate>Tue, 15 Dec 2009 11:56:34 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://technicalmumblings.wordpress.com/?p=163</guid>
		<description><![CDATA[It is now possible to connect to a Windows machine running Logmein from Linux using a Java browser plugin&#8230;..unfortunately if you are using a 64-bit kernel on Ubuntu Karmic, then the java version from the Ubuntu repos is incompatible with the plugin. To work around this, download https://secure.logmein.com/activex/logmein-client-1.0.387-1.tar.gz, and extract to ~/.mozilla/plugins/ then download and [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=163&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>It is now possible to connect to a Windows machine running Logmein from Linux using a Java browser plugin&#8230;..unfortunately if you are using a 64-bit kernel on Ubuntu Karmic, then the java version from the Ubuntu repos is incompatible with the plugin.</p>
<p>To work around this, download <a title="Logmein Linux Java Plugin" href="https://secure.logmein.com/activex/logmein-client-1.0.387-1.tar.gz">https://secure.logmein.com/activex/logmein-client-1.0.387-1.tar.gz</a>, and extract to ~/.mozilla/plugins/ then download and install nspluginwrapper from the repos (sudo apt-get install nspluginwrapper).  Nspluginwrapper is a tool to create a layer of compatibility for non-native browser plugins.</p>
<p>You can then use nspluginwrapper by using:</p>
<p>sudo nspluginwrapper -i ~/.mozilla/plugins/libractrl.so</p>
<p>Restart firefox and navigate to the logmein website again and it should work&#8230;</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/163/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/163/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/163/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/163/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/163/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/163/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/163/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/163/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/163/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/163/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/163/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/163/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/163/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/163/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=163&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2009/12/15/logmein-client-using-64-bit-linux/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>UMA &#8211; Unlicenced Mobile Access on Orange</title>
		<link>http://blog.roachy.net/2009/12/10/uma-unlicenced-mobile-access-on-orange/</link>
		<comments>http://blog.roachy.net/2009/12/10/uma-unlicenced-mobile-access-on-orange/#comments</comments>
		<pubDate>Thu, 10 Dec 2009 12:21:16 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Mobile]]></category>
		<category><![CDATA[UMA]]></category>
		<category><![CDATA[Wireless]]></category>

		<guid isPermaLink="false">http://technicalmumblings.wordpress.com/?p=161</guid>
		<description><![CDATA[UMA is also known as 3GPP GAN - and is used to provide a an internet based access point for mobile communications over the internet - in for example, areas where signal is weak, but there is a good wireless internet connection, this internet connection can be utilised to provide good quality voice calls over the data network.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=161&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>UMA is also known as 3GPP GAN &#8211; and is used to provide a an internet based access point for mobile communications over the internet &#8211; in for example, areas where signal is weak, but there is a good wireless internet connection, this internet connection can be utilised to provide good quality voice calls over the data network.</p>
<p>Given that there is a distinct lack of documentation on appropriate firewall configuration for UMA on the net, I thought I&#8217;d document the ports and protocols required to get this working.</p>
<p>UMA requires:</p>
<p>UDP/500<br />
UDP/4500<br />
IP Protocol 50 (ESP)<br />
IP Protocol 51 (AH)</p>
<p>In the UK this traffic needs to be permitted to the Orange network (no other carriers support this service yet) 193.35.128.0/20 (thanks Andy for this!)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/161/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/161/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/161/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=161&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2009/12/10/uma-unlicenced-mobile-access-on-orange/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>Remote install of a Linux Distro on top of an exsiting distro</title>
		<link>http://blog.roachy.net/2009/07/03/remote-install-of-a-linux-distro-on-top-of-an-exsiting-distro/</link>
		<comments>http://blog.roachy.net/2009/07/03/remote-install-of-a-linux-distro-on-top-of-an-exsiting-distro/#comments</comments>
		<pubDate>Fri, 03 Jul 2009 07:53:40 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Remote Install]]></category>
		<category><![CDATA[Remote Wipe]]></category>

		<guid isPermaLink="false">http://technicalmumblings.wordpress.com/?p=157</guid>
		<description><![CDATA[I stumbled across this as a result of a thread on Experts Exchange (http://www.experts-exchange.com/OS/Linux/Distributions/Red_Hat/Q_24539260.html?cid=359) and it made for fantastic reading, just highlighting what can be possible if the need ever arises to do a remote secure wipe of a server.  This can be achieved by installing an OS by using the /swap partition as / [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=157&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I stumbled across this as a result of a thread on Experts Exchange (http://www.experts-exchange.com/OS/Linux/Distributions/Red_Hat/Q_24539260.html?cid=359) and it made for fantastic reading, just highlighting what can be possible if the need ever arises to do a remote secure wipe of a server.  This can be achieved by installing an OS by using the /swap partition as /</p>
<p>Many thanks to Emma Jane Hogbin for this.  I&#8217;ve copied the notes here purely in case of the original found <a href="http://www.emmajane.net/node/916">here</a> being deleted.</p>
<blockquote>
<div>
<p>A very long time ago I leased some server space that had RedHat and I wanted Debian. So I did a remote install using the /swap partition as a / partition. I thought the notes were lost, but I found them. I include them here for historical (hysterical?) purposes only.</p>
<p># One hundred thank yous to Azhrarn and Karsten.<br />
# Their HOWTOs and personal support were infinitely useful<br />
# <a title="http://twiki.iwethey.org/Main/DebianChrootInstall" href="http://twiki.iwethey.org/Main/DebianChrootInstall">http://twiki.iwethey.org/Main/DebianChrootInstall</a> by Karsten<br />
# <a title="http://trilldev.sourceforge.net/files/remotedeb.html" href="http://trilldev.sourceforge.net/files/remotedeb.html">http://trilldev.sourceforge.net/files/remotedeb.html</a> by Azhrarn (Erik Jacobson)<br />
# ~ emma jane hogbin</p>
<p># First grab the base system that you&#8217;re going to be using<br />
# wget -q <a title="http://archive.debian.org/dists/Debian-2.2/main/disks-i386/current/base2_2.tgz" href="http://archive.debian.org/dists/Debian-2.2/main/disks-i386/current/base2_2.tgz">http://archive.debian.org/dists/Debian-2.2/main/disks-i386/current/base2&#8230;</a></p>
<p># Make sure you have the full archive<br />
# md5sum base2_2.tgz<br />
# should give: 8010d9f0467ebbb54d89ac84261cb696</p>
<p># Install debootstrap<br />
rpm -ivh <a title="http://azhrarn.underhanded.org/debootstrap-0.2.23-1.i386.rpm" href="http://azhrarn.underhanded.org/debootstrap-0.2.23-1.i386.rpm">http://azhrarn.underhanded.org/debootstrap-0.2.23-1.i386.rpm</a></p>
<p># output of /sbin/lsmod<br />
ipt_state               1080   0 (autoclean)<br />
ipt_REJECT              3992   0 (autoclean)<br />
ipt_LOG                 4184   0 (autoclean)<br />
ipt_limit               1560   0 (autoclean)<br />
iptable_filter          2412   0 (autoclean)<br />
ip_tables              15096   5 [ipt_state ipt_REJECT ipt_LOG ipt_limit iptable_filter]<br />
ip_conntrack_ftp        5296   0 (autoclean) (unused)<br />
ip_conntrack           27272   2 (autoclean) [ipt_state ip_conntrack_ftp]<br />
autofs                 13268   0 (autoclean) (unused)<br />
8139too                18120   1<br />
mii                     3976   0 [8139too]<br />
keybdev                 2976   0 (unused)<br />
mousedev                5556   0 (unused)<br />
hid                    22244   0 (unused)<br />
input                   5856   0 [keybdev mousedev hid]<br />
ehci-hcd               20072   0 (unused)<br />
usb-uhci               26412   0 (unused)<br />
usbcore                79040   1 [hid ehci-hcd usb-uhci]<br />
ext3                   70784   2<br />
jbd                    51924   2 [ext3]</p>
<p># figure out some information about your current setup<br />
# ssh in to your machine and check the network information with<br />
/sbin/ifconfig</p>
<p># You&#8217;ll need the following information from the output<br />
# eth0 will have a line that starts with &#8220;inet&#8230;&#8221;<br />
inet addr:66.98.212.88  Bcast:66.98.213.255  Mask:255.255.254.0</p>
<p># Partition the harddrive to match the above configuration<br />
su<br />
mkdir /mnt/debinstall</p>
<p># try working out of swap instead<br />
/sbin/swapoff -a<br />
/sbin/fdisk /dev/hda<br />
p # look at the list of partitions<br />
t # change the type<br />
2 # of swap<br />
83 # to regular linux<br />
w # write and quit<br />
/sbin/mke2fs /dev/hda2 # convert the partition to ext2 &#8212; do not use ext3<br />
/sbin/tune2fs -O ^dir_index /dev/hda2 # from remotedb.html on sf</p>
<p># edit the /etc/fstab file to change the /swap partition to<br />
# /mnt/debinstall<br />
/etc/fstab<br />
/dev/hda3    /                        ext3            defaults 1 1<br />
/dev/hda1    /boot                    ext3            defaults 1 2<br />
none            /dev/pts             devpts        gid=5,mode=620 0 0<br />
none            /proc                    proc            defaults 0 0<br />
none            /dev/shm             tmpfs            defaults 0 0<br />
/dev/hda2    /mnt/debinstall    ext2             defaults 1 1</p>
<p># NB this is how big they have their partitions<br />
[root@plain root]# df -h<br />
Filesystem            Size  Used Avail Use% Mounted on<br />
/dev/hda5              71G  1.4G   66G   3% /<br />
/dev/hda1              99M   15M   80M  16% /boot<br />
/dev/hda3            1012M   33M  928M   4% /tmp<br />
none                  247M     0  247M   0% /dev/shm</p>
<p># reboot the system<br />
reboot</p>
<p># on the reboot the /swap partition should now be mounted as the new<br />
# partition. Double check to see that it&#8217;s actually working though<br />
df # confirm that it&#8217;s actually mounted<br />
#cd /mnt/debinstall<br />
# su<br />
#cp /home/admin/base2_2.tgz .</p>
<p># unpack the base system<br />
#gunzip base2_2.tgz<br />
#tar -xvf base2_2.tar</p>
<p># install the base system<br />
/usr/sbin/debootstrap &#8211;arch i386 woody /mnt/debinstall <a title="http://http.us.debian.org/debian" href="http://http.us.debian.org/debian">http://http.us.debian.org/debian</a></p>
<p># copy over the important config files<br />
# according to remotedeb.html<br />
cp /etc/resolv.conf etc/resolv.conf<br />
cp /etc/hosts etc/hosts<br />
cp /etc/fstab etc/fstab</p>
<p># the default EV1 server does not have an /etc/hostname<br />
hostname xtrinsic.net # sets the host name<br />
hostname &#8211;fqdn # tests to see if it&#8217;s set</p>
<p># configure network stuff<br />
# this can be done either from the original system or the new one<br />
route -n</p>
<p>Kernel IP routing table<br />
Destination     Gateway         Genmask         Flags Metric Ref    Use Iface<br />
66.98.212.0     0.0.0.0         255.255.254.0   U     0      0        0 eth0<br />
169.254.0.0     0.0.0.0         255.255.0.0     U     0      0        0 eth0<br />
127.0.0.0       0.0.0.0         255.0.0.0       U     0      0        0 lo<br />
0.0.0.0         66.98.212.1     0.0.0.0         UG    0      0        0 eth0</p>
<p># enter into chroot.<br />
/usr/sbin/chroot . bin/bash</p>
<p># the prompt has now changed to:<br />
xtrinsic:/#</p>
<p># vi is installed but won&#8217;t run because it doesn&#8217;t know the term type<br />
# set that now with:<br />
export TERM=vt100<br />
export PATH=/usr/local/sbin:/usr/sbin/:/sbin:/usr/bin:/bin</p>
<p>xtrinsic:/# cat &gt; /etc/fstab &lt;&lt; &#8220;EOF&#8221;<br />
&gt; # filesystem   mount-point fs-type    options     dump    fsck-order<br />
&gt; /dev/sda5      /           auto       defaults    0       1<br />
&gt; proc           /proc       proc       defaults    0       0<br />
&gt; EOF</p>
<p># mount proc<br />
mount -t proc proc /proc</p>
<p># edit the following files<br />
etc/resolv.conf # should be ok because it was cped from RedHat<br />
etc/network/interfaces # this will be a new file and should have the following</p>
<p>&#8212;&#8212;&#8212; /etc/network/interfaces &#8212;&#8212;&#8212;<br />
# the loopback interface<br />
auto lo<br />
iface lo inet loopback</p>
<p># the first (and only) network card<br />
auto eth0<br />
iface eth0 inet static<br />
# 1st from ifconfig<br />
address 66.98.212.88<br />
# 3rd from ifconfig<br />
netmask 255.255.254.0<br />
# 1st from route -n<br />
network 66.98.212.0<br />
# 2nd from ifconfig<br />
broadcast 66.98.213.255<br />
# last line, 2nd column of route -n<br />
gateway 66.98.212.1<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p># run the base configuration<br />
/usr/sbin/base-config</p>
<p>yes # gmt<br />
Canada EST # time zone</p>
<p># next configure the base system<br />
# this worked the first time (i.e. Server V. 1), but refused to work the<br />
# second time (citing nmap running out of space, or something). I tried<br />
# increasing the Cache in /etc/apt/apt.conf but it didn&#8217;t work<br />
# dpkg-reconfigure &#8211;install base-config<br />
# the rest of the questions<br />
No # md5 passwords<br />
Yes # shadow passwords<br />
root password<br />
Yes # new user</p>
<p>Yes # Remove pcmcia<br />
no # PPP<br />
simple # for how to install software<br />
# then wait for it to chug a bit<br />
http # method for installing<br />
yes # non-free<br />
yes # non-us<br />
yes # contrib<br />
[pick a mirror]<br />
&lt;blank&gt; # no proxy to get out<br />
[get ready to install some stuff, yes to security updates]<br />
no # taskel to install new software</p>
<p>dialog # for installing<br />
medium # for questions<br />
no # readable home directories<br />
ask # about PCMCIA card when installing new things<br />
yes # start support after install<br />
american # spelling stuff<br />
no locales # for now<br />
leave alone # default locale<br />
auto save once # type of automatic serial port configuration<br />
yes # upgrade glibc now</p>
<p>apt-get install netselect wget<br />
cd /etc/apt; netselect-apt woody<br />
echo &#8220;deb <a title="http://security.debian.org" href="http://security.debian.org/">http://security.debian.org</a> stable/updates main contrib non-free&#8221; &gt;&gt; /etc/apt/sources.list</p>
<p># install a few more packages<br />
apt-get install aptitude screen ssh vim gpw</p>
<p># config options<br />
Allow only SSH2? Yes</p>
<p>Do you want /usr/lib/ssh-keysign to be installed SUID root? Yes # default<br />
Run the sshd server? Yes # default</p>
<p>default # all exim stuff (to be replaced by postfix)</p>
<p># utility to see what modules you need loaded<br />
apt-get install discover<br />
discover &#8211;enable-all &#8211;format=&#8221;%m on %d &#8211; %V %M\n&#8221; bridge ide scsi usb ethernet<br />
xtrinsic:/# discover &#8211;format=&#8221;%m on %d &#8211; %V %M\n&#8221; bridge ide scsi usb ethernet<br />
discover: Bus not found.</p>
<p># edit the modutils file and add the ethernet stuff<br />
vi  /etc/modutils/aliases<br />
alias eth0 8139too<br />
update-modules</p>
<p># remove the /sbin/unconfigured.sh file<br />
# rm /sbin/unconfigured.sh &#8212; didnt&#8217; exist</p>
<p># run the base-config again, there are other options you don&#8217;t have yet<br />
base-config<br />
# edit the apt.sources list by hand and don&#8217;t run any other software stuff<br />
# don&#8217;t run taskel, and don&#8217;t run dselect</p>
<p># configure the discover bit<br />
vi /etc/discover.conf<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />
# Enable the PCMCIA scan<br />
# accorinding to remotedb.html<br />
skip=&#8221;pcmcia rtl8139&#8243;<br />
# Scan for the following types of hardware at boot time:<br />
types=&#8221;boot bridge ethernet ide scsi usb&#8221;<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p># install a new kernel with patches for various security things<br />
# apt-get install kernel-image-2.4.18-1-686<br />
apt-get install kernel-image-2.4.27-2-686<br />
Ignore error messages about initrd (answer &#8220;no&#8221;)<br />
Create the link, when it asks<br />
Do NOT do anything that lilo asks you about</p>
<p># make sure the right devices are in place for the kernel/system<br />
cd /dev<br />
./MAKEDEV generic # wait patiently, this may take a minute</p>
<p># exit the chroot environment<br />
exit</p>
<p># copy over the new kernel (you should still be root)<br />
cp /mnt/debinstall/boot/vmlinuz-2.4.18-1-686 /boot/.<br />
cp /mnt/debinstall/boot/initrd.img-2.4.18-1-686 /boot/.</p>
<p># edit /etc/lilo.conf and add the following information<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br />
default=redhat<br />
image=/boot/vmlinuz-2.4.18-1-686<br />
label=Debian<br />
initrd=/boot/initrd.img-2.4.18-1-686<br />
read-only<br />
append=&#8221;panic=30&#8243;<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p># copy the new lilo over to the /mnt/debinstall<br />
cp /etc/lilo.conf /mnt/debinstall/etc/lilo.conf<br />
# make sure all kernels which are listed in /etc/lilo.conf are in the new /boot<br />
cp $(grep &#8220;image.*=&#8221; /etc/lilo.conf | cut -f 2 -d &#8220;=&#8221;) /mnt/debinstall/boot</p>
<p># -R means use the specified image only for the next boot<br />
# therefore if the system panics it will reboot into redhat<br />
/sbin/lilo -v<br />
/sbin/lilo -v -R Debian</p>
<p>touch /mnt/debinstall/fastboot</p>
<p># and finally &#8212; reboot<br />
# wait at least 5-10 minutes before trying to log back in again<br />
# remember to try the new accounts first and the old accounts second<br />
# and remember to delete your old SSH authentication key from teh old username<br />
reboot</p>
<p># After getting the remote install working, I moved onto post install<br />
# configuration. I started out by adding the following packages:<br />
apt-get install mysql-server php4 php4-mysql apache postfix lynx<br />
(postfix replaces exim)</p>
<p># to reset the hostname I edited /etc/hostname and added my domain name<br />
# I then reset the hostname with hostname &lt;domainname&gt; and checked it with<br />
# hostname &#8211;fqdn &#8220;fully qualified domain name&#8221;</p>
<p># A very weird thing has happened. I appear to be running an OS off of a<br />
# partition that isn&#8217;t mounted.<br />
emmajane@(none):/$ df -h<br />
Filesystem            Size  Used Avail Use% Mounted on<br />
/dev/hda3             1.9G  226M  1.6G  13% /<br />
/dev/hda1              99M   13M   81M  14% /boot</p>
<p>emmajane@(none):/$ more /etc/fstab<br />
/dev/hda3 /       ext3    defaults 1 1<br />
/dev/hda1 /boot   ext3    defaults 1 2<br />
none      /dev/pts devpts gid=5,mode=620 0 0<br />
none      /proc   proc    defaults 0 0<br />
none      /dev/shm tmpfs  defaults 0 0<br />
/dev/hda2 /mnt/debinstall    ext2    defaults 1 1</p>
<p>emmajane@(none):/$ more /etc/lilo.conf<br />
image=/boot/vmlinuz-2.4.18-1-686<br />
label=debian-2418<br />
initrd=/boot/initrd.img-2.4.18-1-686<br />
read-only<br />
append=&#8221;panic=30&#8243;<br />
root=/dev/hda2</p>
<p>My debian is calling itself /dev/hda3 for some reason, when really it&#8217;s hda2</p>
<p>xtrinsic:/# more /etc/lilo.conf<br />
prompt<br />
timeout=50<br />
default=debian<br />
boot=/dev/hda<br />
map=/boot/map<br />
install=/boot/boot.b<br />
message=/boot/message<br />
linear</p>
<p>image=/boot/vmlinuz-2.4.18-1-686<br />
label=debian<br />
initrd=/boot/initrd.img-2.4.18-1-686<br />
read-only<br />
root=/dev/hda2<br />
append=&#8221;panic=30&#8243;</p>
<p>image=/boot/vmlinuz-2.4.20-24.9<br />
label=redhat<br />
initrd=/boot/initrd-2.4.20-24.9.img<br />
read-only<br />
append=&#8221;root=/dev/hda3&#8243;</p>
<p>xtrinsic:/# lilo -v<br />
LILO version 22.2, Copyright (C) 1992-1998 Werner Almesberger<br />
Development beyond version 21 Copyright (C) 1999-2001 John Coffman<br />
Released 05-Feb-2002 and compiled at 20:57:26 on Apr 13 2002.<br />
MAX_IMAGES = 27</p>
<p>Reading boot sector from /dev/hda<br />
Merging with /boot/boot.b<br />
Fatal: First boot sector is version 21.4. Expecting version 22.2.</p>
<p><a title="http://software.cfht.hawaii.edu/linuxpc/sidious/6_Kernel_Options.html" href="http://software.cfht.hawaii.edu/linuxpc/sidious/6_Kernel_Options.html">http://software.cfht.hawaii.edu/linuxpc/sidious/6_Kernel_Options.html</a><br />
Change the line which refers to /boot/boot.b to /boot/boot-menu.b</p>
<p>Now the boot-menu.b file is &#8220;missing&#8221; though because it&#8217;s in<br />
/deb/mntinstall/boot, not in /boot. This will need fixing. There appear<br />
to be instructions in remotedeb.html</p>
<p>apt-get install man less<br />
export TERM=vt100</p>
<p>0. backup /boot to a very safe place<br />
1. comment out the /boot partition from /etc/fstab<br />
change your debian install directory to /mnt/tmp (instead of /mnt/deb..)<br />
comment out the old data partition (/dev/hda3)<br />
2. mount /mnt/tmp<br />
3. the new boot information should now be in /mnt/tmp/boot/<br />
pack it up with tar and copy it to the / directory<br />
4. umount /mnt/tmp<br />
5. unpack the contents into /boot-deb<br />
6. edit lilo.conf and change boot to boot-deb<br />
7. run lilo (expect errors) this seems to have cleared out /boot<br />
8. copy boot-deb to /boot and add back any files from your backup of<br />
/boot (for me it was message and the red hat images)<br />
9. edit lilo.conf again and change /boot-deb back to /boot. To be safe, leave<br />
redhat as the default for now and leave the panic set on debian and set lilo<br />
to lilo -v -R debian (reboot into debian only this once)<br />
10. Now you should be able to run lilo<br />
11. Quadruple check your /etc/fstab to make sure it has the right values.<br />
Values should be updated according to the instructions above (but not the<br />
sample /etc/fstab which is way above)<br />
12. as long as there are no errors, reboot</p>
<p># Re-partition the old data drive<br />
# in the end I decided not to use parted and stuck with good ol&#8217; cfdisk<br />
apt-get install cfdisk # it was already installed</p>
<p># do the actual partitioning<br />
cfdisk /dev/hda<br />
# cfdisk is just a nicer interface for fdisk<br />
# replace /dev/hda3 with smaller logical partitions<br />
select /dev/hda3<br />
d # delete it</p>
<p># Now create all of your new partitions<br />
n # create a new partition<br />
L # for logical<br />
&lt;size in megs&gt; # used the sizes below for each of the partitions<br />
B # add the new partition to the beginning of the free space</p>
<p>2000    /usr/local    /dev/hda5<br />
10000    /var            /dev/hda6<br />
# users shouldn&#8217;t be storing email on<br />
#    the server<br />
500    /swap            /dev/hda7<br />
t # change the type<br />
82 # linux swap<br />
300    /tmp             /dev/hda8     # bigger than required<br />
5000    /home            /dev/hda9     # most data will be in /web<br />
500    /config        /dev/hda10     # a safe place for config files<br />
5000    /cvsroot        /dev/hda11    # cvs repository<br />
40000    /var/www        /dev/hda12    # all web sites<br />
[~ 14Gigs left open to assign as necessary]</p>
<p># write this new partition table<br />
# note: I got this error message:<br />
Wrote partition table, but re-read table failed.  Reboot to update<br />
table.</p>
<p># quit and reboot the system&#8211;remember to give the system a minute or two<br />
# to reboot</p>
<p># format the partitions and add labels for each of the partitions<br />
# while you&#8217;re at it, add a label for the / partition<br />
e2label /dev/hda2 /<br />
mkfs.ext2 /dev/hda5<br />
e2label /dev/hda5 /usr/local<br />
mkfs.ext2 /dev/hda6<br />
e2label /dev/hda6 /var<br />
# don&#8217;t touch swap<br />
mkfs.ext2 /dev/hda8<br />
e2label /dev/hda8 /tmp<br />
mkfs.ext2 /dev/hda9<br />
e2label /dev/hda9 /home<br />
mkfs.ext2 /dev/hda10<br />
e2label /dev/hda10 /config<br />
mkfs.ext2 /dev/hda11<br />
e2label /dev/hda11 /cvsroot<br />
mkfs.ext2 /dev/hda12<br />
e2label /dev/hda12 /var/www</p>
<p># confirm all of the labels have been added with cfdisk<br />
# &#8220;q&#8221; without doing anyting to any of the partitions</p>
<p># Now add all of the new partitions to the /etc/fstab file<br />
&#8212;&#8212;&#8212;&#8212;&#8212;- /etc/fstab &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;<br />
# Partition table<br />
# make sure there are no trailing slashes on any of the directories<br />
/dev/hda1       /boot           ext3    defaults        1 2<br />
/dev/hda2       /               ext2    defaults        1 1<br />
/dev/hda5       /usr/local      ext2    defaults        0 2<br />
/dev/hda6       /var            ext2    defaults        0 2<br />
/dev/hda8       /tmp            ext2    defaults        0 2<br />
/dev/hda9       /home           ext2    defaults        0 2<br />
/dev/hda10      /config         ext2    defaults        0 2<br />
/dev/hda11      /cvsroot        ext2    defaults        0 2<br />
/dev/hda12      /var/www        ext2    defaults        0 2</p>
<p># swap partition<br />
/dev/hda7       none            swap    sw              0 0</p>
<p># and then some other stuff that EV1 set up<br />
none      /dev/pts devpts gid=5,mode=620 0 0<br />
none      /proc   proc    defaults 0 0<br />
none      /dev/shm tmpfs  defaults 0 0<br />
&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-</p>
<p># after adding the new partitions, labelling and adding them to the<br />
# /etc/fstab, copy the information to the new partitions<br />
1. archive the information currently in the directory you&#8217;re going to<br />
replace<br />
2. delete the contents of the directory<br />
3. mount the directory<br />
4. copy the files back in<br />
5. Activate and mount the /swap partition<br />
mkswap /dev/hda7<br />
swapon -a<br />
sync;sync;sync</p>
<p>6. Check the /etc/fstab against what&#8217;s currently mounted<br />
7. reboot</p></div>
</blockquote>
<p>Many thanks again to Emma for this fantastic guide.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/157/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/157/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/157/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/157/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/157/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/157/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/157/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/157/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/157/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/157/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/157/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/157/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/157/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/157/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=157&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2009/07/03/remote-install-of-a-linux-distro-on-top-of-an-exsiting-distro/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
		<item>
		<title>DTMF Tones not audible using IAX2 Trunk</title>
		<link>http://blog.roachy.net/2009/06/25/dtmf-tones-not-audible-using-iax2-trunk/</link>
		<comments>http://blog.roachy.net/2009/06/25/dtmf-tones-not-audible-using-iax2-trunk/#comments</comments>
		<pubDate>Thu, 25 Jun 2009 07:33:16 +0000</pubDate>
		<dc:creator>Paul Morgan-Roach</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Asterisk]]></category>
		<category><![CDATA[DTMF]]></category>
		<category><![CDATA[IAX]]></category>
		<category><![CDATA[IAX2]]></category>
		<category><![CDATA[UDP]]></category>
		<category><![CDATA[VoIP]]></category>

		<guid isPermaLink="false">http://technicalmumblings.wordpress.com/?p=154</guid>
		<description><![CDATA[IAX2 DTMF tones being blocked, Asterisk.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=154&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>We&#8217;ve had a recent issue with IAX2 trunks whereby any DTMF tones played locally are not audible at the remote side of the connection&#8230;</p>
<p>Interestingly tones were audible on inbound and internal calls, however, this means that IVR&#8217;s are completely non-navigable.</p>
<p>The problem turned out to be due to the fact that it appears DTMF traffic was being sent out over a separate UDP port to the rest of the IAX traffic&#8230;.calls sounded fine, but DTMF traffic was being blocked due to it running on port 4571.  We&#8217;ve opened the range 4569-4571 and now all is working fine&#8230;.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/technicalmumblings.wordpress.com/154/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/technicalmumblings.wordpress.com/154/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/technicalmumblings.wordpress.com/154/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/technicalmumblings.wordpress.com/154/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/technicalmumblings.wordpress.com/154/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/technicalmumblings.wordpress.com/154/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/technicalmumblings.wordpress.com/154/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/technicalmumblings.wordpress.com/154/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/technicalmumblings.wordpress.com/154/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/technicalmumblings.wordpress.com/154/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/technicalmumblings.wordpress.com/154/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/technicalmumblings.wordpress.com/154/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/technicalmumblings.wordpress.com/154/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/technicalmumblings.wordpress.com/154/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.roachy.net&blog=2880390&post=154&subd=technicalmumblings&ref=&feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.roachy.net/2009/06/25/dtmf-tones-not-audible-using-iax2-trunk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="" medium="image">
			<media:title type="html">roachy1979</media:title>
		</media:content>
	</item>
	</channel>
</rss>