środa, 8 grudnia 2010

BIOS update Intel D510MO

Z powodu braku innych ciekawych zajęć postanowiłem dzisiaj zaktualizować BIOS niedawno zakupionej płyty głównej Intel D510MO.

Płyta dotarła do mnie z BIOS'em w wersji MOPNV10J.86A.0175.2010.0308.0620.
Oczywiscie jak aktualizować .. to do najnowszej na ten moment wersji czyli MOPNV10N.86A.0501.2010.1103.0928. Kilka prób aktualizacji via "F7 BIOS Flash Update" przy zgraną na pen'a nową wesją BIOS'u zakończyła się niepowodzeniem informując Flash update failed. Na szczęście płyta wstawała za każdym razem nie wzruszona. Pokusiłem się nawet o update via opcje "Recovery BIOS Update" co z perspektywy czasu uważam za niezbyt mądrą decyzję, ponieważ update "trwał" w nieskończoność, nie jak to opisywała instrukcja 2-5 minut, a ja nie wiedziałem co z tym fantem zrobić.

Okazuje się że upgrade z MOPNV10J do najnowszej MOPNV10N nalezy wykonać w dwóch krokach. Najpierw robimy update BIOS'u do wesji 0400 (wesja transformacyjna z 10J na 10N), a następnie aktualizujemy do najnowszej wersji 10N. Szkoda tylko że tej informacji nie ma w uwagach do najnowszej wersji.

za: http://downloadcenter.intel.com/Detail_Desc.aspx?agr=Y&DwnldID=19453&lang=eng


Important:

- BIOS version 0311 (MOPNV10J.86A.0311.2010.0802.2346) is the final "10J" BIOS version for D510MO boards. All subsequent BIOS versions will be "10N" BIOS.

- BIOS version 0400 (MOPNV10N.86A.0400.2010.0919.1014) is the transition BIOS for updates from 10J to 10N. To update from 10J BIOS to 10N BIOS, update to version 0400 first. Then update from 0400 to any other subsequent 10N BIOS if needed.

- BIOS version 0400 (updating from 10J to 10N) is supported by any of these BIOS update methods:
iFflash2 Update
Express BIOS Update
F7 Flash Update
Recovery Update

- Updates from any previous "10N" BIOS to version 0400 will fail.

poniedziałek, 8 listopada 2010

pROJEKT-4YOU

Gorąco zachęcam do zainteresowania się firmą pROJEKT-4YOU zajmującą się grafiką i malarstwem. Firmę prowadzi Kinga Fudalej. Pełna oferta na http://www.projekt-4you.com

sobota, 23 października 2010

Przekierwanie wszystkich maili na inne konto

Zmigrowałem kilka domen do GoogleApps'ów. Pojawiła się potrzeba wysłania wszystkich wiadomości z serwera na konto Googlowe. Pomocny okazał się mutt.

Otwieramy interesującą nas skrzynke:

mutt -f path/to/mailbox

Zaznaczamy wszystkie wiadomości tagując je przez wciśnięcie "T" oraz wpisując szablon zaznaczenia ".*". Następnie wciskamy średnik ";" mówiąc mutt'owi że następna akcja będzie dotyczyć zaznaczonych maili. Finalnie wciskamy "b" i wpisujemy adres email na jaki mają zostać wysłane wiadomości.

niedziela, 17 października 2010

Rekord SPF dla domen utrzymywanych w GoogleApps

Google w swojej pomocy nie pisze dokładnie jak ma on wyglądać. Moja propozycja dla tych co nie do końca znają temat to:

nazwa.domeny. IN TXT "v=spf1 a mx ~all"

Wpis ten mówi że tylko serwer spod rekordu A tej domeny, oraz wszystkie serwery wypisane jako rekordy MX mogą wysyłać maila z naszej domeny.

EDIT
A jednak Help Google zawiera dobrą propozycje rekordu SPF. Powyższe niestety nie dokładnie precyzuje wszystkie serwery z których może wychodzić poczta dla danej domeny. Powyższe rozwiązanie powodowało na przykład to że maile wysłane z danej domeny na konta wp.pl lądowały w Spamie.
Propozycja Gogole to:
v=spf1 include:_spf.google.com ~all

Ja jednak ze względu na to że strona danej domeny jest poza serwerami Google, i zawiera mechanizmy wysyłające maile dodaje "a" do opisu rekordu SPF.
v=spf1 a include:_spf.google.com ~all

Teraz powinno być OK :)

niedziela, 26 września 2010

Jak się dostać do menu GRUB w Ubuntu >= 9.10 ?

Dla nowych instalacji Ubuntu 9.10, 10.04 w góre domyślnym boot loaderem stał się GRUBv2. Zmianie uległa domyślna akcja GRUB'a który do niedawna przy każdym starcie wyświetlał liste w możliwymi opcjami zbootowania maszyny.

Od teraz GRUB od razu startuje domyślny config. Do listy dostaniemy sie przytrzymując SHIFT podczas procesu logowania.

wtorek, 14 września 2010

Monitorowanie ilości maili w mailq

Pojawiła się potrzeba monitorowania mailq. Powstał na tą potrzebe taki oto skrypt:

#!/bin/bash
/usr/bin/mailq | /usr/bin/awk '/Requests?\./ { print $5 } /Mail queue is empty/ { print 0 }'

nastepnie dodajemy flage executable (chmod +x) i wstawiamy do snmpd.conf:
exec "messages in mailq" /usr/local/bin/mailq-count

Teraz już można podpinać pod cacti lub nagios'a

poniedziałek, 30 sierpnia 2010

.procmailrc

Problem na dziś: nie działają/nie są interpretownane pliki .procmailrc na jednym z serwerów którymi się zajmuje.

Przyczyną było wyznaczenie celu dostarczanej wiadomości, poprzez użycie $DEFAULT jako celu, zaraz na początku globalnego pliku procmailrc.

poniedziałek, 23 sierpnia 2010

Redmine 0.9.3 - polskie litery w exporcie PDF

Szybkie howto zakładające iż mamy zainstalowane fonty FreeSans:

Sciągamy http://github.com/edwinmoss/rfpdf/zipball/master i zastepujemy REDMINE_DIR/vendor/plugins/rfpdf
Patch'ujemy plik REDMINE_DIR/lib/redmine/export/pdf.rb używając http://www.redmine.org/attachments/2057/pdf.rb.patch oraz plik REDMINE_DIR/vendor/plugins/rfpdf/lib/tcpdf.rb używając http://www.redmine.org/attachments/2073/tcpdf.rb.patch

To by było na tyle.

sobota, 21 sierpnia 2010

Powrót po "latach"

Postanowiłem dzielić się z Wami moimi "odryciami" bedącymi lekarstwem na problemy etatowego admina. Nie raz traci się sporo czasu .. czasami nawet na jakieś oczywiste sprawy, które przy pierwszym podejściu nie wydają się zbyt trywialne. Niedokładne howto, sprzeczne porady w sieci .. skąd ja to znam?

Dzisiaj konfigurowałem postfix'a, dovecot, deliver, dovecot-sieve, managesieve z roundcubem jako frontend. Piekna sprawa, wszystko świetnie hula ale .. no właśnie.
Podczas ustawienia autoodpowiedzi wakacyjnej, przy dostarczeniu poczty deliver zgłaszał taki oto err:

Error: file_dotlock_create(~/.dovecot.lda-dupes) failed: No such file or directory


Wg dokumentacji plugins sieve powinien sobie rozczaić ścieżke do home user'a z mail_location (który miałem ustawiony jak należy) w moim przypadku /var/vmail/%d/%n. Jednak nie wiedzieć czemu deliver chciał tworzyć sobie plik z cache'm sendersów (co by ich nie spamować wieloma autodpowiedziami) w ~/ zamiast w /var/vmail/%d/%n.

Problem rozwiązało dodanie w sekcji plugins:

home = /var/vmail/%d/%n


Być może jeśli czas pozwoli podziele sie szybkim howto jak poskładać te wszystkie klocki.

czwartek, 11 grudnia 2008

edu-inwencja

Wordpress jest genialny!
Z jego pomocą stworzyłem kolejną stronkę którą możecie narazie znaleźć pod adresem eduinwencja.on1.biz a już niedługo pod adresem eduinwencja.pl.

Gorąco zapraszam.

niedziela, 23 marca 2008

Ubuntu 8.04 .LTS .. już tuż tuż

wtorek, 15 stycznia 2008

MikroTik RouterOS 3.0 !!!

No nareszcie :) stabilna wersja 3.0 ujrzała światło dzienne.

changelog:

What's new in 3.0:

* fix for rb100 - can change ethernet settings when interface in bridge/bond;
* fixed auto upgrade on RB333 & RB600;
* made RB411 bootup more stable;
* made DNS & WINS setting work again in PPP;
* fixed bug - dhcp client did not update NTP server list;

What's new in 3.0rc14:

* fixed locking up in PPPoE server;
* fixed bridging in PPTP, L2TP an PPPoE;
* fixed bug - MPPE encryption keys received from RADIUS server were decoded improperly on RB333;
* added support for BGP signalled VPLS;
* fixed bug in port remote-access - it was inserting random data, mostly nulls, in data sent to serial port and to tcp connection;
* fixed bug in console error propagation, code like the example below caused console to enter busy loop:
:do { badcommandname; } while=(true);
* fixed hotspot https walled-garden;
* fixed bug - dhcp server failed to give out options with code > 127;
* console - fixed numeric parameters that accept negative values, were broken in rc12;
* fixed port line-state values on MIPS RouterBoards;
* fixed bug - idle-timeout & session-timeout were not disabled if they were unset in ppp profiles;
* fixed OSPF compatibility bug with v2.9 (and some other vendor implementations): LS Acknowledgments were sent to wrong address;
* fixed Broadcast flag for DHCP on RB300/RB600;
* fix wireless nstreme packing problem;
* improved layer7 firewall matcher memory usage;
* console - do not add input to history if it is the same as previous line;
* fixed bridge to forward (R)STP frames as regular if (R)STP not enabled;
* fixed bug - configuration for missing serial ports was not tagged inactive;
* console - fixed safe mode, it was causing wery high cpu usage and terminal traffic;
* console - added login parameters, passed as part of login name, after '+'; can be used to disable colors (+c) and terminal autodetection (+t), e.g. "admin+ct";
* fixed problem - bandwidth shaping on ARES traffic was not working properly;
* user manager - fixed security bug in user page;
* dns resolver has configurable max UDP packet size;
* fixed dns resolver - tcp queries were broken without ipv6 package;
* added ingress priority matcher to firewall rules;
* added number of active pcq queues to queue stats;
* made advanced mode for wireless interface configuration in WinBox;

What's new in 3.0rc13:

* fixed problem - clean install on x86 & adding new ethernet interfaces on x86 did not work (introduced in 3.0rc12);

What's new in 3.0rc12:

* added support for MPLS & VPLS;
* added ability to specify & disable winbox port under "/ip services";
* fixed bug - DFS was not taking into account channel usage when selecting channel;
* fixed bug - simultaneously monitoring wireless interface and changing settings could cause crash;
* improved memory usage under RB133C;
* fixed bug - MAC Winbox connection was not very stable;
* fixed bug in graphing;
* fixed problem - routerboard sometimes did not upgrade & reboot if serial cable was not plugged in;
* interface routing now works with PPPoE 'dial-on-demand' interfaces;
* fixed dial-on-demand;
* routing - fixed 'set-in-nexthop' filter (broken in 3.0rc7);
* implemented more registered client flushing on access-list and connect-list changes - now connect-list changes disconnect affected APs, wildcard mac address entry changes disconnect all clients;
* fixed bug - Windows could not synchronize to NTP server if local clock was used as time source (changed stratum from 6 to 4);

What's new in 3.0rc11:

* added filters to WinBox lists, and added ability to filter routes without downloading all of them to the client;
* updated WinBox Loader to v2.2.12 - clicking on IP address in router discovery list selects ip address not mac address;
* added '/tool sms send' in advanced-tools package;
* fixed problem - PPPoE, PPTP, L2TP could restart if user disconnected at wrong time;
* fixed problem - PPPoE, PPTP, L2TP static server interfaces disappeared after disconnect;
* added support for adding OVPN interfaces to bridge through specifying bridge in ppp profile;
* multicast - fixed IGMP Leave message handling;
* nand improvement for RB532A;
* fixed user-manager database restore from backup for RB500;
* fixed bonding - when bonding iface was put in bridge arp link monitoring did not work properly;

What's new in 3.0rc10:

* fixed problem - sometimes PPTP, L2TP, PPPoE and OpenVPN connections were not accounted properly, and no new connections could be established;
* fixed problem - L2TP sometimes could not establish connections through firewall or with Windows;
* bgp - fixed TCP MD5 authentication on RB300;
* fixed bug - route did not work with Level 1 license and routing package enabled;
* api - '/quit' command now immediately terminates session;
* console: 'and' operator in expressions that follow 'find' and 'print where' now is optional, pre-rc9 syntax 'find mtu=1480 type=ether' works as it used to; added back filters to firewall print commands, filtering by chain now is 'print chain=input' instead of 'print input'; fixed 'print count-only', it was ignoring any additional 'print' arguments that selected only part of items;

wtorek, 1 stycznia 2008

iptables v1.4.0

22 grudnia pojawiła się nowa wersja iptables. Dla nie zaznajomych w temacie:

iptables is built on top of netfilter, the packet alteration framework for Linux 2.4.x and 2.6.x. It is a major rewrite of its predecessor ipchains, and is used to control packet filtering, Network Address Translation (masquerading, portforwarding, transparent proxying), and special effects such as packet mangling.

Changes from 1.4.0rc1:

- Don't use dlfcn.h if NO_SHARED_LIBS is defined
[ Mike Frysinger ]

- Fix showing help text for matches/targets with revision as user
[ Patrick McHardy ]

- Print warnings to stderr
[ Max Kellermann ]

- Fix sscanf type errors
[ Patrick McHardy ]

- Always print mask in iptables-save
[ Jan Engelhardt ]

- Don't silenty exit on failure to open /proc/net/{ip,ip6}_tables_names
[ Victor Stinner ]

- Adds --table to iptables-restore
[ Peter Warasin ]

- Make DO_MULTI=1 work for ip6tables* binaries
[ Hann-huei Chiou ]

- Add ip6tables-{save,restore} to non-experimental target, fix strict aliasing
warnings
[ Patrick McHardy ]

- Introducing libxt_*.man files. Sorted matches and modules
[ Laszlo Attila Toth ]

- Install ip6tables-{save,restore} manpages
[ Patrick McHardy ]

- Performance optimization in sorting chain during pull-out
[ Jesper Dangaard Brouer ]

- Fix sockfd use accounting for kernels without autoloading
[ Patrick McHardy ]

- use
[ Jan Engelhardt ]

- Fix make/compile error for iptables-1.4.0rc1
[ Jesper Dangaard Brouer ]

- Fix for --random option in DNAT and REDIRECT
[ Tom Eastep ]

- Document xt_statistic
[ Stefano Sabatini ]

- sctp: fix - mistake to pass a pointer where array is required
[ Li Zefan ]

- Fix connlimit output for inverted --connlimit-above: ! > is <=, not <
[ Patrick McHardy ]

- Add NFLOG manpage
[ Patrick McHardy ]

- Move libipt_DSCP.man to libxt_DSCP.man for ip6tables.8
[ Yasuyuki Kozakai ]

- Unifies libip[6]t_CONNSECMARK.man to libxt_CONNSECMARK.man
[ Yasuyuki Kozakai ]

- Moves libipt_CLASSYFY.man to libxt_CLASSYFY.man for ip6tables.8
[ Yasuyuki Kozakai ]

- fix check_inverse() call
[ Jan Engelhardt ]

- Bump version to 1.4.0 final
[ Pablo Neira Ayuso ]

niedziela, 2 grudnia 2007

Ubuntu 8.04 Hardy Heron Alpha 1

Jest świeżutka Alpha 1 Ubuntu Hardy Heron.

Jak zwykle zaleca się, by z wersji tej skorzystali przede wszystkim deweloperzy oraz ludzie, którzy chcieliby pomóc w testowaniu i zgłaszaniu/naprawianiu błędów.

Podobnie jak to było w przypadku GG Tribe, także i tym razem zdecydowano się na serię wydawniczą (a w niej również JeOS!), która obejmie kilka wydań. Na dobry początek zostały przygotowane obrazy:

http://cdimage.ubuntu.com/releases/hardy/alpha-1/ (Ubuntu)
http://cdimage.ubuntu.com/kubuntu/releases/hardy/alpha-1/ (Kubuntu)
http://cdimage.ubuntu.com/edubuntu/releases/hardy/alpha-1/ (Edubuntu)
http://cdimage.ubuntu.com/jeos/releases/hardy/alpha-1/ (Ubuntu JeOS)
http://cdimage.ubuntu.com/xubuntu/releases/hardy/alpha-1/ (Xubuntu)
http://cdimage.ubuntu.com/gobuntu/releases/hardy/alpha-1/ (Gobuntu)
http://cdimage.ubuntu.com/ubuntustudio/releases/hardy/alpha-1/ (UbuntuStudio)

Pełna lista mirrorów pod http://wiki.ubuntu.com/Mirrors.

Full Circle issue 7 - Ubuntu Community Magazine


A w nim:
* Ubuntu Studio - instalacja krok po kroku
* How-to:
- Prosta instalacja SSH
- Terminal na Twoim pulpicie
- Bezbolesna przesiadka z Windowsa
- Poznaj Scribusa, cz. 7
* Recenzja: Instalator Wubi
* rubryki stałe

http://www.fullcirclemagazine.org/issue-7/

piątek, 30 listopada 2007

Google powie ci, gdzie jesteś

Z wprowadzoną wczoraj kolejną wersją Google Maps na urządzenia mobilne użytkownicy otrzymali nową funkcjonalność, nazwaną My Location. Dzięki niej bez posiadania systemu GPS będzie można za pomocą telefonu komórkowego sprawdzić swoją lokalizację na mapie.



Technologia My Location wykorzystuje informacje z nadajników telefonii komórkowej, te same, które służą do wykonywania połączeń telefonicznych. Przetwarzane są one przez stworzone do tego celu algorytmy aby pokazać na mapie lokalizację osoby korzystającej z Google Maps.

Obsługa My Location jest bardzo prosta. Po pobraniu ze strony www.google.com/gmm i zainstalowaniu Google Maps na swoim telefonie komórkowym lub palmtopie, wystarczy po uruchomieniu aplikacji nacisnąć klawisz 0, aby uzyskać informacje o swojej lokalizacji.

W urządzeniach obsługujących technologię GPS lokalizacja będzie dokładniejsza, zaznaczona na mapie za pomocą niebieskiej kropki. Jeśli GPS nie jest dostępny, zaznaczony zostanie większy teren, sugerujący przybliżoną lokalizację z dokładnością do ok. 1000 metrów.

Google deklaruje, że technologia ta jest całkowicie anonimowa i żadne informacje osobiste nie są przez firmę z Mountain View gromadzone. Osoby nie chcące korzystać z My Location w Google Maps mogą tę opcję bez problemu wyłączyć.

Więcej informacji o produktach mobilnych przeczytać można na stronie www.mobile.google.com.

źródło: di.com.pl

środa, 21 listopada 2007

VMware Server 2.0 Beta

Co cieszy .. VMware poza płatnymi produktami rozwija także te bezpłatne. Przykładem jest VMware Server 2.0 którego pierwsza wersja beta pojawiła się kilka dni temu.

Co nowego w stosunku do wersji 1.x?

* Web-based management interface: A new Web-based user interface provides a simple, flexible, intuitive and productive way for you to manage your virtual machines.
* Expanded operating system support: VMware Server now supports Windows Vista Business Edition and Ultimate Edition (guest only), Windows Server 2008 (Longhorn Server Beta 3), Red Hat Enterprise Linux 5 and Ubuntu 7.1, among others.
* Greater scalability: Take full advantage of high-end hardware with support for up to 8GB of RAM per virtual machine, up to two virtual SMP (vSMP) processors and up to 64 virtual machines per host.
* 64-bit guest operating system support: Run high-performance operating systems in virtual machines with support for Intel EM64T VT-enabled processors and AMD64 processors with segmentation support.
* Support for VIX API 1.2: This feature provides a programming interface for automating virtual machine and guest operations.
* Support for Virtual Machine Interface (VMI): This feature enables transparent paravirtualization, in which a single binary version of the operating system can run either on native hardware or in paravirtualized mode.
* Support for USB 2.0 devices: Transfer data at faster data rates from USB 2.0 devices.

więcej: http://www.vmware.com/beta/server/

niedziela, 18 listopada 2007

Ubuntu 7.10 JeOS

No i jest ... Ubuntu 7.10 JeOS :)
Waży tylko 151 MB i jest do pobrania spod http://cdimage.ubuntu.com/jeos/releases/gutsy/release/

sobota, 27 października 2007

MikroTik RouterOS 3.0 RC9

Prace nad finalną wersją 3.0 tak przyspieszyły że mamy już RC9 ... a ja przegapiłem RC7 i 8.

changelog RC9:

* fix for rb100 - can change ethernet settings when interface in bridge/bond;
* fixed problem - RouterOS did not boot on some routers (reported disk not found);
* fixed dns resolver - sometimes could not parse packets with AAAA records;
* hide ppp interface & wireless passwords and keys in WinBox as well;
* fixed traffic-flow - could hang multi cpu router and ignore targets sometimes;
* fixed rb100 - ethernets could be set at random bandwidth limit after reboot;
* console:
repaint whole screen after terminal size change while in editor
(same as pressing F5 or Ctrl-L). this solves numerous issues with
terminal resizing;
added more workarounds for the case when terminal is too narrow
(<4 interface="wlan1">" and
"print from=[find ]" are equal;
removed filters from firewall print commands, now write, e.g.,
"/ip firewall filter print where !dynamic" instead of
"/ip firewall filter print static";
* web proxy: fixed crash on stopping proxy;


changelog RC8:

* fixed problem - console did not accept ip address ranges correctly;
* user manager - fixed problem with accounting creating too many sessions;
* console:
added ip-prefix and ip6-prefix datatypes, written in address/mask
notation;
INCOMPATIBLE CHANGE: expressions of the form "(123/45)" (where first
operand is literal unquoted value) currently will be parsed as single
string, to write division put space before '/' (like with '.' operator);
added operator 'in' that checks if first argument is inside second
argument, currenty implemented for the case where second argument is
ip-prefix or ip6-prefix and first argument is either address or
another prefix;
don't perform full reset of terminal on login;
fixed terminal capability detection, now windows telnet client
works better. TERM environment variable is ignored completely now,
it was overriding detected values before;
* added support for Huawei E220 USB modem;


changelog RC7:

* ftpd - automatically reboot after finishing upload that has name *.auto.npk;
* added support for Sierra Wireless AirCard 595U;
* ping - show more types of ICMP reply messages, like in 2.9 versions;
* add ICMP MPLS extension support to traceroute;
* console detects terminal size and capabilities, TERM environment variable is not used, so now this works even over serial;
* console - fixed crash on non-ASCII characters in input and output;
* console - export correctly strings that contain control characters;
* fixed in console - when argument value evaluation produces error, report that error instead of "invalid value for ..." message;
* console - changed the way how required command arguments are processed,
now commands like "enable [find]" don't fail with error when find returns
nothing;
* fixed memory leak on RB500;
* fixed layer7 protocol matcher, did not handle \x.. sequences correctly;
* fixed allow-shared-key mode for wireless;
* fixed station-pseudobridge mode when used in combination with nstreme framer-policy;
* fixed hidden ssid issues with wds links;
* SNTP client - adjust DST according to timezone settings when clock changes;
* console - fixed crash when terminal size is extremely small (like 1x1), assume default width 80 if terminal is too narrow;
* SNTP - fixed overflow bug, now clocks are adjusted correctly if initial time is way back (like jan/01/1970 on routerboards);
* added RIPng support in WinBox;
* added BGP for IPv6 support in WinBox;
* added PIM support in WinBox;
* added hide passwords option to WinBox;
* added regular expression matching to dns resolver static entries;
* user manager - fixed bug for credit extension using PayPal payments;

poniedziałek, 22 października 2007

tar-krusz.pl

Do mojego "portfolio" dołączyła strona którą wykonałem dla Kopalni Kruszyw TAR-KRUSZ Sp. z o.o.
Przy okazji tego projektu miałem okazje przetestować opensource'owe rozwiązanie jakim jest WordPress oraz usługi hostingowe firmy home.pl. Z obu jestem bardzo zadowolony :D