<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-5087566969552851971</id><updated>2011-07-31T05:44:40.723-03:00</updated><category term='start init runlevel'/><category term='spamassassin'/><category term='postfix'/><category term='postgrey'/><category term='spam'/><title type='text'>mybox</title><subtitle type='html'>alberto@mybox:$ tail -f /var/log/blog</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>33</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-2306178249103244171</id><published>2011-04-22T23:44:00.000-03:00</published><updated>2011-04-22T23:45:18.568-03:00</updated><title type='text'>Brasil, a piada continua</title><content type='html'>- Tiririca!&lt;br&gt;- Realengo killing spreeeeeed!&lt;br&gt;- Ronaldinho Ga&amp;#250;cho recebendo honraria da ABL!&lt;p&gt;&amp;#201; 2012, chega logo!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-2306178249103244171?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/2306178249103244171/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=2306178249103244171&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2306178249103244171'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2306178249103244171'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2011/04/brasil-piada-continua.html' title='Brasil, a piada continua'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-3743294808609241617</id><published>2011-04-22T23:41:00.001-03:00</published><updated>2011-04-22T23:41:16.573-03:00</updated><title type='text'>Teste de Postagem</title><content type='html'>Isto é um teste de postagem. &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-3743294808609241617?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/3743294808609241617/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=3743294808609241617&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/3743294808609241617'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/3743294808609241617'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2011/04/teste-de-postagem.html' title='Teste de Postagem'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-1847929343226231236</id><published>2009-06-14T23:12:00.001-03:00</published><updated>2009-06-14T23:12:37.741-03:00</updated><title type='text'>Coming soon!</title><content type='html'>Coming soon!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-1847929343226231236?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/1847929343226231236/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=1847929343226231236&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1847929343226231236'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1847929343226231236'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2009/06/coming-soon.html' title='Coming soon!'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-4964164636280154767</id><published>2008-05-02T17:07:00.002-03:00</published><updated>2008-05-02T17:17:26.990-03:00</updated><title type='text'>FUSER, simples e útil.</title><content type='html'>Está vendo aquela porta estranha aberta ? Quer saber qual processo está usando a porta? Simples:&lt;br /&gt;&lt;br /&gt;$fuser -v 31337/tcp&lt;br /&gt;&lt;br /&gt;                     USER        PID ACCESS COMMAND&lt;br /&gt;31337/tcp:              root       2923 F.... e1ee7kit&lt;br /&gt;&lt;br /&gt;Tome suas providências.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-4964164636280154767?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/4964164636280154767/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=4964164636280154767&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4964164636280154767'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4964164636280154767'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/05/fuser-simples-e-til.html' title='FUSER, simples e útil.'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-6142917099750930137</id><published>2008-04-15T09:17:00.002-03:00</published><updated>2008-04-15T09:23:36.186-03:00</updated><title type='text'>A frase do ano!!</title><content type='html'>Retirado de &lt;a href="http://www.kurtkraut.net/blog/"&gt;http://www.kurtkraut.net/blog/:&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;...eu diria que o GNU Linux seria insalubre se não fossem os sistemas de gerenciamento de pacotes. Tais sistemas permitem a mágica do único comando ou com um punhado de cliques, o Apache seja instalado já previamente compilado e pré-configurado para o uso mais comum.&lt;/blockquote&gt;&lt;br /&gt;Gostei desse blog. Recomendo.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-6142917099750930137?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/6142917099750930137/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=6142917099750930137&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6142917099750930137'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6142917099750930137'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/04/frase-do-ano.html' title='A frase do ano!!'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-5643798675412350722</id><published>2008-03-18T17:03:00.002-03:00</published><updated>2008-03-18T17:19:34.333-03:00</updated><title type='text'>Falha nossa: ACK-FLOOD</title><content type='html'>Em resposta ao meu post "&lt;a href="http://betopena.blogspot.com/2007/09/verdadeira-proteo-contra-syn-flood.html"&gt;A verdadeira proteçāo contra SYN-FLOOD&lt;/a&gt;", onde, no final do post, eu questinava sobre uma possível proteçāo contra ACK-FLOOD, recebi um comentário do Prof. &lt;a href="http://gravatai.ulbra.tche.br/%7Eelgio/ulbra/"&gt;Elgio Schlemer&lt;/a&gt;, da Universidade Luterana do Brasil - &lt;a href="http://www.ulbra.br/"&gt;Ulbra&lt;/a&gt;, e autor do artigo "&lt;a href="http://www.vivaolinux.com.br/artigos/verArtigo.php?codigo=7070"&gt;Iptables protege contra SYN FLOOD?&lt;/a&gt;" no Portal Viva o Linux:&lt;br /&gt;&lt;span style="font-style: italic;font-size:85%;" &gt;&lt;br /&gt;http://www.vivaolinux.com.br/artigos/verArtigo.php?codigo=7070&lt;br /&gt;&lt;br /&gt;O artigo é de 28/Agosto de 2007, 12 dias ANTES desta dica. Até então ninguém mais questionava a proteção de firewall.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;font-size:85%;" &gt;E Beto: acho que leste este artigo e não entendeste tudo. Ack flood NÃO COLARIA porque simplesmente seriam descartados por não se relacionar com o SYN inicial. No artigo se fala em ACK/flood de forma didática para EXPLICAR syn cookie.&lt;br /&gt;&lt;br /&gt;Ack Flood não tem como. Só geraria trafego. Até um iptables se livra disso pelo "stablished".&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-size:100%;"&gt;Acho que ficou muito bem esclarecido.&lt;br /&gt;&lt;br /&gt;That's all folks!&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-5643798675412350722?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/5643798675412350722/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=5643798675412350722&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5643798675412350722'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5643798675412350722'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/03/falha-nossa-ack-flood.html' title='Falha nossa: ACK-FLOOD'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-4013908726541089342</id><published>2008-03-15T15:01:00.006-03:00</published><updated>2008-03-15T15:31:04.289-03:00</updated><title type='text'>Mapeando uma rede com o nmap</title><content type='html'>A necessidade de acompanhamento/conhecimento de uma rede de computadores por seu administrador dispensa maiores comentários e explicaçōes.&lt;br /&gt;Existem diversas ferramentas e utilitários que oferecem inúmeras maneiras de se acompanhar uma rede e conhecer seus clientes.&lt;br /&gt;Apresento aqui uma maneira muito simples de se conhecer os clientes conectados em uma rede através do &lt;a href="http://nmap.org/"&gt;nmap&lt;/a&gt;: (...)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;nmap -sP ip/máscara&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;E o resultado seria mais ou menos assim:&lt;span style="font-style: italic;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;mydeck:~# nmap -sP 192.168.15.0/24&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Starting Nmap 4.11 ( http://www.insecure.org/nmap/ ) at 2008-03-15 12:13 BRT&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Host 192.168.15.1 appears to be up.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;MAC Address: 00:19:F4:D4:35:7B (Unknown)&lt;/span&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Host 192.168.15.103 appears to be up.&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;MAC Address: 00:0B:D6:F8:19:39 (Elitegroup Computer System Co. (ECS))&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Nmap finished: 256 IP addresses (2 hosts up) scanned in 35.145 seconds&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;mydeck:~#&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;(...)Explicando:&lt;br /&gt;&lt;br /&gt;A explicaçāo sobre essa flag é muito bem feita na próprio manual do nmap:&lt;br /&gt;&lt;pre&gt;&lt;span style="font-size:100%;"&gt;&lt;span&gt;&lt;tt&gt;&lt;tt&gt;&lt;tt&gt;&lt;tt&gt;&lt;tt&gt;-sP&lt;/tt&gt; Ping Scan : Serve para verificar quais hosts estão online. A idéia&lt;br /&gt;básica é enviar um echo request para a maquina, ou maquinas, que você deseja&lt;br /&gt;saber se estão online. Porém alguns sites costumas bloquear os echo request,&lt;br /&gt;para isso isso o Nmap pode enviar também um pacote ACK se então recebermos um RST&lt;br /&gt;significa que o host esta "de pé".&lt;/tt&gt;&lt;/tt&gt;&lt;/tt&gt;&lt;/tt&gt;&lt;/span&gt;&lt;/span&gt;&lt;/pre&gt;A range testada foi a 192.168.15.0-255.255.255.0, e descobrimos as máquinas 'up' na rede e seus respectivos MAC Address. Isso pode ser muito útil também para identificar algum intruso utilizando seu link de internet através de uma conexāo wireless.&lt;br /&gt;&lt;br /&gt;Outra ferramenta muito interessante na hora de mapear uma rede sem fio é o &lt;a href="http://lcamtuf.coredump.cx/p0f.shtml"&gt;p0f&lt;/a&gt;, mas isso é assunto para um outro post qualquer.&lt;br /&gt;&lt;br /&gt;;-)&lt;br /&gt;&lt;br /&gt;Abraços!&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-4013908726541089342?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/4013908726541089342/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=4013908726541089342&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4013908726541089342'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4013908726541089342'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/03/mapeando-uma-rede-com-o-nmap.html' title='Mapeando uma rede com o nmap'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-6266558168763196876</id><published>2008-02-11T17:11:00.002-03:00</published><updated>2008-02-15T10:01:38.805-03:00</updated><title type='text'>Debian SID e Som do Toshiba A100 - ***</title><content type='html'>Estive enfrentando problemas em relaçāo ao volume de som no Toshiba A100 com Debian SID, chip de som Intel Corporation 82801G (ICH7 Family) High Definition Audio Controller.&lt;br /&gt;Resolvi alterando o arquivo /etc/modprobe.d/alsa-base. É necessário adicionar a seguinte linha no final do arquivo:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;font-size:85%;" &gt;options snd-hda-intel model=auto&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Reinicie e aproveite seu SRS TruSurround XT. ;-))&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-6266558168763196876?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/6266558168763196876/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=6266558168763196876&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6266558168763196876'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6266558168763196876'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/02/debian-sid-e-toshiba-a100.html' title='Debian SID e Som do Toshiba A100 - ***'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-7764230062544989748</id><published>2008-02-10T22:52:00.000-03:00</published><updated>2008-02-10T23:18:14.381-03:00</updated><title type='text'>Intel PRO/Wireless 3945ABG no Debian Etch</title><content type='html'>Eis os simples passos que eu utilizo para ativar a placa Intel PRO/Wireless 3945ABG em meu Toshiba Satellite A100-139.&lt;br /&gt;&lt;br /&gt;Antes de tudo, precisamos adicionar as árvores contrib e non-free na sua lista de repositórios do apt.&lt;br /&gt;&lt;br /&gt;Depois disso, é preciso instalar os seguintes pacotes necessários para a contruçāo do módulo ipw3945 de acordo com seu kernel:&lt;br /&gt;# apt-get install module-assistant ipw3945-source ipw3945d firmware-ipw3945&lt;br /&gt;&lt;br /&gt;Após a instalaçāo, o daemon tentará levantar mas nāo terá exito - pois o módulo da placa ainda nāo estará pronto.&lt;br /&gt;Para isso, precisamos preparar a compilaçāo e compilar o driver de acordo com o seu kernel. Entāo execute:&lt;br /&gt;# m-a prepare&lt;br /&gt;# m-a a-i ipw3945&lt;br /&gt;&lt;br /&gt;# modprobe ipw3945&lt;br /&gt;&lt;br /&gt;Verifique se sua placa subiu corretamente com o comando:&lt;br /&gt;# ifconfig&lt;br /&gt;&lt;br /&gt;Verificando as redes ao seu redor:&lt;br /&gt;# iwlist scan&lt;br /&gt;&lt;br /&gt;Bem, no Debian é isso.&lt;br /&gt;&lt;br /&gt;Até.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-7764230062544989748?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/7764230062544989748/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=7764230062544989748&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/7764230062544989748'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/7764230062544989748'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/02/intel-prowireless-3945abg-no-debian.html' title='Intel PRO/Wireless 3945ABG no Debian Etch'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-5665320449318417925</id><published>2008-01-27T22:38:00.000-03:00</published><updated>2008-01-27T22:39:39.927-03:00</updated><title type='text'>Nerd, nerd, nerd...</title><content type='html'>Cansado de ficar boiando em conversas de NERD? Então não boie mais...:&lt;b&gt;&lt;br /&gt;&lt;br /&gt;AFAIK&lt;/b&gt; - &lt;i&gt;As Far As I Know&lt;/i&gt; - Até onde eu sei.&lt;br /&gt;&lt;b&gt;AFK&lt;/b&gt; - &lt;i&gt;Away From Keyboard&lt;/i&gt; - Longe do teclado (longe do micro)&lt;br /&gt;&lt;b&gt;AKA&lt;/b&gt; - &lt;i&gt;Also Known As&lt;/i&gt; - Também conhecido como&lt;br /&gt;&lt;b&gt;ASAP&lt;/b&gt; - &lt;i&gt;As Soon As Possible&lt;/i&gt; - Assim que possível (o mais rápido possível)&lt;br /&gt;&lt;b&gt;BRB&lt;/b&gt; - &lt;i&gt;Be Right Back&lt;/i&gt; - Já volto&lt;br /&gt;&lt;b&gt;BTW&lt;/b&gt; - &lt;i&gt;By The Way&lt;/i&gt; - A propósito&lt;br /&gt;&lt;b&gt;FAQ&lt;/b&gt; - &lt;i&gt;Frequently Asked Question&lt;/i&gt; - Perguntas feitas com frequência&lt;br /&gt;&lt;b&gt;FYI&lt;/b&gt; - &lt;i&gt;For Your Information&lt;/i&gt; - Para sua informação&lt;br /&gt;&lt;b&gt;IMHO&lt;/b&gt; - &lt;i&gt;In My Humble Opinion&lt;/i&gt; - Na minha humilde opinião&lt;br /&gt;&lt;b&gt;IMNSHO&lt;/b&gt; - &lt;i&gt;In My Not So Humble Opinion&lt;/i&gt; - Na minha não tão humilde opinião&lt;br /&gt;&lt;b&gt;IMO&lt;/b&gt; - &lt;i&gt;In My Opinion&lt;/i&gt; - Na minha opinião&lt;br /&gt;&lt;b&gt;IRL&lt;/b&gt; - &lt;i&gt;In Real Life&lt;/i&gt; - Na vida real&lt;br /&gt;&lt;b&gt;JFYI&lt;/b&gt; - &lt;i&gt;Just For Your Information&lt;/i&gt; - Apenas para sua informação&lt;br /&gt;&lt;b&gt;LMAO&lt;/b&gt; - &lt;i&gt;Laughing My Arse Off&lt;/i&gt; - Rindo pra caramba.&lt;br /&gt;&lt;b&gt;LOL&lt;/b&gt; - &lt;i&gt;Laugh(ing) Out Loud&lt;/i&gt; - Rindo bem alto&lt;br /&gt;&lt;b&gt;ROFL&lt;/b&gt; - &lt;i&gt;Rolling On Floor Laughing&lt;/i&gt; - Rolando no chão de tanto rir&lt;br /&gt;&lt;b&gt;ROTF&lt;/b&gt; - &lt;i&gt;Rolling On The Floor&lt;/i&gt; - Rolando no chão&lt;br /&gt;&lt;b&gt;ROTFL&lt;/b&gt; - &lt;i&gt;Rolling On The Floor Laughing&lt;/i&gt; - Rolando no chão de tanto rir&lt;br /&gt;&lt;b&gt;ROTFLMAO&lt;/b&gt; - &lt;i&gt;Rolling On The Floor Laughing My Arse Off&lt;/i&gt; - Rolando no chão rindo pra caramba (ou rindo até...)&lt;br /&gt;&lt;b&gt;ROTFLOL&lt;/b&gt; - &lt;i&gt;Rolled on the Floor Laughing Out Loud&lt;/i&gt; - Rolando no chão rindo muito alto&lt;br /&gt;&lt;b&gt;RTFM&lt;/b&gt; - &lt;i&gt;Read The F***ing Manual (or Message)&lt;/i&gt; - Leia a porcaria do Manual / Mensagem (porcaria foi boa hein?)&lt;br /&gt;&lt;b&gt;RTM&lt;/b&gt; - &lt;i&gt;Read The Manual (or Message)&lt;/i&gt; - Leia o Manual / Mensagem&lt;br /&gt;&lt;b&gt;WTH&lt;/b&gt; - &lt;i&gt;What The Heck (Hell)&lt;/i&gt; - Quê isso!? (outra tradução suave)&lt;br /&gt;&lt;b&gt;WYSIWYG&lt;/b&gt; - &lt;i&gt;What you see is what you get&lt;/i&gt; - O que você está vendo é o que você terá&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-5665320449318417925?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/5665320449318417925/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=5665320449318417925&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5665320449318417925'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5665320449318417925'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/01/nerd-nerd-nerd.html' title='Nerd, nerd, nerd...'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-1481979174443354160</id><published>2008-01-08T20:19:00.000-03:00</published><updated>2008-01-08T20:40:48.729-03:00</updated><title type='text'>Gerando PDF de um arquivo de manual</title><content type='html'>Quer criar um PDF de um manual? Seus problemas acabaram!!!!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;#man -T nmap | ps2pdf - &gt; man-nmap.pdf&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;E para gerar um ps:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;#man -T nmap &gt; man-nmap.ps &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Muito legal, né!?&lt;br /&gt;&lt;br /&gt;Xau.&lt;br /&gt;&lt;b&gt;&lt;span style="font-family:courier new,monospace;"&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-1481979174443354160?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/1481979174443354160/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=1481979174443354160&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1481979174443354160'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1481979174443354160'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2008/01/gerando-pdf-de-um-arquivo-de-manual.html' title='Gerando PDF de um arquivo de manual'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-6817308955909801635</id><published>2007-12-25T21:27:00.000-03:00</published><updated>2007-12-27T17:49:51.804-03:00</updated><title type='text'>mplayer: Algumas opções de linha de comando</title><content type='html'>Enfrentei alguns problemas quando comecei a utilizar o mplayer (não estou falando do GMplayer, e sim do mplayer mesmo) para assistir meus vídeos que vinham com as legendas em arquivos separados, especialmente com o tamanho das legendas que nunca ficavam do jeito que eu queria. Isso me forçou a procurar saber mais sobre as opções de linha de comando desse excelente aplicativo, e com isso aprendi que o mplayer tem diversas funcionalidades e não se resume exclusivamente à exibir filmes e mídias.&lt;br /&gt;&lt;br /&gt;Então aí vão algumas linhas que eu costumo usar:&lt;br /&gt;&lt;div style="text-align: left;"&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;Executar um filme exibindo uma legenda externa com fonte em escala 3 e utilizando OpenGL como driver de saída de vídeo:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;mplayer filme.avi -sub legenda.srt -subfont-text-scala 3 -vo gl&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Executar título 1 de um DVD:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;mplayer dvd://1&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Executar um DVD de um diretório com os arquivos .VOB:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;mplayer dvd://1 -dvd-device /caminho/diretorio/vobs&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Streaming HTTP:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;mplayer http://url_desejada&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Exibindo um filme e convertendo a legenda de .srt para .mpsub (a legenda destino ficará no diretório corrente):&lt;br /&gt;&lt;span style="font-style: italic;"&gt;mplayer filme.avi -sub legenda.srt -dumpmpsub&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;br /&gt;&lt;br /&gt;Lembrando que o bom e velho MAN pode ensinar muito mais do que essas simples linhas resumidas tentam apresentar.&lt;br /&gt;&lt;br /&gt;Por hoje é só.&lt;br /&gt;Ah, e Feliz Natal.&lt;br /&gt;&lt;/div&gt;&lt;pre style="margin-top: 0pt; display: inline;"&gt;&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-6817308955909801635?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/6817308955909801635/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=6817308955909801635&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6817308955909801635'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6817308955909801635'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/12/mplayer-algumas-opes-de-linha-de.html' title='mplayer: Algumas opções de linha de comando'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-687006104673001187</id><published>2007-11-23T17:37:00.000-03:00</published><updated>2007-11-23T17:40:33.405-03:00</updated><title type='text'>Estimulando a zuera!</title><content type='html'>Sem maiores explicações por hoje.&lt;br /&gt;&lt;br /&gt;Conecte por SSH na máquina ao lado e:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;br /&gt;export DISPLAY=:0.0&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;Agora, tudo o que você abrir no terminal aparecerá na tela do indivíduo! ;-)&lt;br /&gt;É divertido ver a cara das pessoas qdo alguma janela do firefox abre sozinha no pc, eheh...especialmente se vc estiver numa sala de aula, por exemplo.&lt;br /&gt;&lt;br /&gt;Xauxau&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-687006104673001187?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/687006104673001187/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=687006104673001187&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/687006104673001187'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/687006104673001187'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/11/estimulando-zuera.html' title='Estimulando a zuera!'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-2760797060783437089</id><published>2007-11-17T10:10:00.000-03:00</published><updated>2007-11-17T10:15:34.698-03:00</updated><title type='text'>Comando 'Watch'</title><content type='html'>O comando 'watch' é muito útil por proporcionar a execução de um programa (*) periodicamente, no intervalo de tempo que você definir.&lt;br /&gt;&lt;br /&gt;Por exemplo, eu quero chegar ao resultado de algo parecido com um 'tail -f', mas eu invés de mostrar a saída em tempo real de um arquivo ou log, vou mostrar a saída do comando 'netstat -tupan' em intervalos de atualização de 1s:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;$watch --interval=1 netstat -tupan&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Teste e comprove!&lt;br /&gt;&lt;br /&gt;That's all folks.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-2760797060783437089?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/2760797060783437089/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=2760797060783437089&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2760797060783437089'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2760797060783437089'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/11/comando-watch.html' title='Comando &apos;Watch&apos;'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-6918886881966344057</id><published>2007-11-08T10:15:00.004-03:00</published><updated>2010-12-20T10:07:49.795-03:00</updated><title type='text'>Alterando o Layout do teclado no Debian, facim, facim...</title><content type='html'>O comando '&lt;span style="font-style: italic;"&gt;loaddkeys&lt;/span&gt;' é uma magavilha. Permite carregar layouts de teclado (ou mapas, como queiram) na maior facilidade.&lt;br /&gt;Os mapas ficam em &lt;span style="font-style: italic;"&gt;/usr/share/keymaps/i386 &lt;/span&gt;, e o uso do comando é muito simples:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;loadkeys /usr/share/keymaps/i386/qwerty/us-intl.iso15.kmap.gz&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;Pronto. Teclado reconfigurado com o layout ou mapa us-intl, pc105!!&lt;br /&gt;&lt;br /&gt;Xau xau.&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-6918886881966344057?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/6918886881966344057/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=6918886881966344057&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6918886881966344057'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6918886881966344057'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/11/alterando-o-layout-do-teclado-no-debian.html' title='Alterando o Layout do teclado no Debian, facim, facim...'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-223288290741805133</id><published>2007-09-26T02:32:00.000-03:00</published><updated>2007-09-26T02:45:59.182-03:00</updated><title type='text'>Resolvendo o problema do "Comando da morte"</title><content type='html'>Sem delongas, o problema é o comando abaixo:&lt;br /&gt;&lt;br /&gt;&lt;b&gt;&lt;/b&gt;&lt;blockquote&gt;&lt;b&gt;:(){ :|:&amp;amp; };:&lt;/b&gt; &lt;/blockquote&gt;...quando executado em um terminal (como qualquer usuário do sistema) é capaz de provocar terror!  Essa desgraça ae fica em loop e a solução, até então, é RESET nele!&lt;br /&gt;&lt;br /&gt;Como de costume, testado num &lt;span style="font-style: italic;"&gt;Debian Etch&lt;/span&gt;, blah blah blah...&lt;br /&gt;&lt;br /&gt;Felizmente, quase todo problema tem solução. E esse ae se resolve assim:&lt;br /&gt;&lt;br /&gt;Adicione, ou descomente, a seguinte linha do &lt;span style="font-style: italic;"&gt;/etc/pam.d/login&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt; session &lt;tab&gt; required &lt;tab&gt; pam_limits.so&lt;/tab&gt;&lt;/tab&gt;&lt;/blockquote&gt;E também, adicione a seguinte linha no final do arquivo &lt;span style="font-style: italic;"&gt;/etc/security/limits.conf&lt;/span&gt;:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;span style="font-style: italic;"&gt;hard    nproc    100&lt;tab&gt;&lt;tab&gt;&lt;/tab&gt;&lt;/tab&gt;&lt;/span&gt;&lt;tab&gt;&lt;tab&gt;&lt;/tab&gt;&lt;/tab&gt;&lt;/blockquote&gt;Prontinho! Agora execute o maldito comando novamente, só para ter certeza.&lt;br /&gt;&lt;br /&gt;That's all foooooolks!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-223288290741805133?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/223288290741805133/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=223288290741805133&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/223288290741805133'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/223288290741805133'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/09/resolvendo-o-problema-do-comando-da.html' title='Resolvendo o problema do &quot;Comando da morte&quot;'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-7648414162788214799</id><published>2007-09-19T01:08:00.000-03:00</published><updated>2007-09-19T01:35:57.497-03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='postgrey'/><category scheme='http://www.blogger.com/atom/ns#' term='spamassassin'/><category scheme='http://www.blogger.com/atom/ns#' term='spam'/><category scheme='http://www.blogger.com/atom/ns#' term='postfix'/><title type='text'>Postfix + Postgrey</title><content type='html'>A técnica de &lt;span style="font-style: italic;"&gt;Greylisting&lt;/span&gt; é muito interessante no ponto de vista de bloqueio de SPAM. Diferentemente do &lt;span style="font-style: italic;"&gt;Spamassassin&lt;/span&gt;, que faz análise do conteúdo do email, o &lt;span style="font-style: italic;"&gt;Postgrey&lt;/span&gt; evita os SPAMs controlando, através de uma tabela, quais máquinas estão enviando emails - e segurando-as em fila por um determinado período de tempo. A desvantagem que eu, particularmente, vejo no uso de &lt;span style="font-style: italic;"&gt;Greylisting&lt;/span&gt; é o pequeno delay gerado na entrega das mensagens....o que é perfeitamente aceitável. A grande vantagem é que o email pode ser rejeitado antes mesmo de chegar ao &lt;span style="font-style: italic;"&gt;Spamassasin&lt;/span&gt;, ecomizando processamento.&lt;br /&gt;&lt;br /&gt;O ambiente utilizado é o costumeiro &lt;span style="font-weight: bold;"&gt;Debian Etch&lt;/span&gt;, blah blah blah...&lt;br /&gt;É suposto que você já tenha um ambiente &lt;span style="font-style: italic;"&gt;Postfix&lt;/span&gt; perfeitamente funcional.&lt;br /&gt;&lt;br /&gt;A instalação do &lt;span style="font-style: italic;"&gt;Postgrey&lt;/span&gt; e sua integração com o &lt;span style="font-style: italic;"&gt;Postfix&lt;/span&gt; é extremamente simples.&lt;br /&gt;&lt;br /&gt;Instalando:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;aptitude install postgrey&lt;/blockquote&gt;&lt;br /&gt;Para integrar ao &lt;span style="font-style: italic;"&gt;Postfix&lt;/span&gt;, basta adicionar à classe de restrição smtpd_recipient_restrictions a linha seguinte linha:&lt;br /&gt;&lt;br /&gt;check_policy_service inet:127.0.0.1:60000&lt;br /&gt;&lt;br /&gt;Deve ficar mais ou menos assim:&lt;br /&gt;&lt;br /&gt;smtpd_recipient_restrictions = permit_sasl_authenticated,check_policy_service inet:127.0.0.1:60000,                                                               (suas restrições, ... )reject&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;/blockquote&gt;&lt;span style="font-weight: bold;"&gt;Algumas dicas:&lt;/span&gt;&lt;br /&gt;- Para diminuir o tempo de delay é só alterar o arquivo &lt;span style="font-style: italic;"&gt;/etc/default/postgrey&lt;/span&gt;:&lt;br /&gt;De: &lt;span style="font-style: italic;"&gt;POSTGREY_OPTS="--inet=127.0.0.1:60000"&lt;/span&gt;&lt;br /&gt;Para: &lt;span style="font-style: italic;"&gt;POSTGREY_OPTS="--inet=127.0.0.1:60000 --delay=90"&lt;/span&gt;&lt;br /&gt;                                                                   &lt;br /&gt;-  Para Listar TODAS as msgs na fila de espera:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;cat /var/log/mail.info | postgreyreport&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;-  Para CONTAR o numero de msgs na fila de espera:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;cat /var/log/mail.info | postgreyreport | wc -l&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;-  Para Verificar as msgs para determinado email:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;cat /var/log/mail.info | postgreyreport | grep email@domain.com.br&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;É isso. E Funciona!!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-7648414162788214799?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/7648414162788214799/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=7648414162788214799&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/7648414162788214799'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/7648414162788214799'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/09/postfix-postgrey.html' title='Postfix + Postgrey'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-5061987792325131311</id><published>2007-09-10T16:19:00.000-03:00</published><updated>2007-09-10T16:34:12.269-03:00</updated><title type='text'>A verdadeira proteção contra SYN-FLOOD</title><content type='html'>Vejo muitos documentos por aí ensinando a se proteger de SYN-FLOOD assim:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt; iptables -A FORWARD -p tcp --syn -m limit --limit 10/s -j ACCEPT&lt;br /&gt;iptables -A FORWARD -p tcp --syn -j DROP&lt;/blockquote&gt;&lt;br /&gt;Mentiraaaaa!!! O 11º pacote do segundo (10/s) pode ser legítimo!&lt;br /&gt;Tá, e daí? E daí que você fez o trabalho do atacante e está aplicando um D-DOS-Y  (Do-a-Denial-Of-Service-Yourself, eheheh...essa definição é minha).&lt;br /&gt;&lt;br /&gt;Então qual é maneira betopena-like de fazer a coisa certa??&lt;br /&gt;Eu acho que é assim:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt; echo 1 &gt; /proc/sys/net/ipv4/tcp_syncookies &lt;/blockquote&gt;&lt;br /&gt;Tá, blza! Mas e se ao invés de SYN-FLOOD nós tivermos um ACK-FLOOD??&lt;br /&gt;Hmm. Boa pergunta. Ainda não havia pensado nisso.&lt;br /&gt;&lt;br /&gt;That's all folks!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-5061987792325131311?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/5061987792325131311/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=5061987792325131311&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5061987792325131311'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5061987792325131311'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/09/verdadeira-proteo-contra-syn-flood.html' title='A verdadeira proteção contra SYN-FLOOD'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-2479246840731468681</id><published>2007-09-09T23:29:00.000-03:00</published><updated>2007-09-10T00:17:59.677-03:00</updated><title type='text'>Crie sua própria RBL</title><content type='html'>Se você não sabe o que é, e nem como funciona um servidor de email, nem leia essa dica. Antes disso, pesquise sobre Postfix e técnicas de bloqueio de SPAM, especialmente RBL (Real-time DNS Black List). Ah, e claro, BIND.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Utilizando Debian + Postfix (etc...) + BIND9.&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;Edite o arquivo de configuração do Bind e adicione uma zona, de acordo com suas necessidades, assim:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;span style="font-style: italic;"&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;/span&gt;zone "&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://rbl.seudominio.com.br/" target="_blank"&gt;rbl.dominio.com.br&lt;/a&gt;" {&lt;br /&gt; type master;&lt;br /&gt; file "/etc/bind/db.rbl";&lt;br /&gt;}&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;...agora crie o arquivo db da zona criada. (use o db.local como modelo, e faça os ajustes necessários). Seu db.rbl deve se parecer com isso:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://10.0.168.192/" target="_blank"&gt;32.4.0.10&lt;/a&gt;                    IN                A                 &lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://127.0.0.1/" target="_blank"&gt;127.0.0.1&lt;/a&gt;&lt;br /&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://222.0.16.172/" target="_blank"&gt;221.5.0.10&lt;/a&gt;                  IN                A                &lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://127.0.0.1/" target="_blank"&gt;127.0.0.1&lt;/a&gt;&lt;br /&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://101.1.123.10/" target="_blank"&gt;101.1.16.172&lt;/a&gt;          IN                A                &lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://127.0.0.1/" target="_blank"&gt;127.0.0.1&lt;/a&gt;&lt;br /&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://101.1.123.10/" target="_blank"&gt;1.3.168.192&lt;/a&gt;                IN                A         &lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://127.0.0.1/" target="_blank"&gt;127.0.0.1&lt;/a&gt;&lt;/blockquote&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://127.0.0.1/" target="_blank"&gt;&lt;/a&gt;&lt;br /&gt;Os ips bloqueados, no exemplo acima, são 10.0.4.32, 10.0.5.221, 172.16.1.101 e 192.168.3.1.&lt;br /&gt;&lt;br /&gt;Agora é só inserir a sua blacklist numa diretiva de restrição do Postfix (smtpd_client_restrictions, por exemplo), mais ou menos assim:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;smtpd_client_restrictions = reject_rbl_client &lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://rbl.seudominio.com.br/" target="_blank"&gt;rbl.dominio.com.br&lt;/a&gt;&lt;/blockquote&gt;&lt;a onclick="return top.js.OpenExtLink(window,event,this)" href="http://rbl.seudominio.com.br/" target="_blank"&gt;&lt;/a&gt;&lt;br /&gt;A alimentação da blacklist é por sua conta, e pode ser automatizada por um script que lê os logs do Postfix.&lt;br /&gt;&lt;br /&gt;That's all folks!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-2479246840731468681?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/2479246840731468681/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=2479246840731468681&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2479246840731468681'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2479246840731468681'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/09/crie-sua-prpria-rbl.html' title='Crie sua própria RBL'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-707087533492119667</id><published>2007-09-08T12:06:00.000-03:00</published><updated>2007-09-08T12:43:55.170-03:00</updated><title type='text'>Aumentando o limite de tamanho dos anexos enviados pelo SquirrelMail</title><content type='html'>&lt;span style="font-size:100%;"&gt;&lt;span style="font-family:arial;"&gt;Versão dos softwares envolvidos (dpkg --list pacote):&lt;br /&gt;- Debian Etch Kernel 2.6.18&lt;br /&gt;- Postfix 2.3.8-2+b1&lt;br /&gt;- Apache 2.2.3-4&lt;br /&gt;- PHP 4&lt;br /&gt;- Squirrelmail 1.4.9a-2&lt;br /&gt;&lt;br /&gt;O tamanho dos anexos enviados pelo Squirrelmail é, por padrão, 2M. Precisei alterar esse limite para 10M. Fiz isso alterando os seguintes arquivos:&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;ul&gt;&lt;li&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-family:arial;"&gt;     /etc/squirrelmail/config.php:&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-family:arial;"&gt;De:&lt;br /&gt;$abook_file_line_length = 2048;&lt;br /&gt;&lt;br /&gt;Para:&lt;br /&gt;$abook_file_line_length = 10240;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;ul&gt;&lt;li&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-family:arial;"&gt;     /etc/php4/apache2/php.ini:&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-size:100%;"&gt;&lt;span style="font-family:arial;"&gt;&lt;br /&gt;memory_limit = 10M        ;Quantidade máxima de memória que o PHP pode consumir (8MB).&lt;br /&gt;post_max_size = 10M        ;Tamanho máximo de dados que o POST do PHP aceitará.&lt;br /&gt;upload_max_filesize = 10M  ;Tamanho máximo permitido para tranferência de arquivos.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;E deu certo!!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-707087533492119667?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/707087533492119667/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=707087533492119667&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/707087533492119667'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/707087533492119667'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/09/aumentando-o-limite-de-tamanho-dos.html' title='Aumentando o limite de tamanho dos anexos enviados pelo SquirrelMail'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-9104302296001350285</id><published>2007-08-06T20:26:00.000-03:00</published><updated>2007-08-08T19:11:54.266-03:00</updated><title type='text'>Ctrl+Alt+Del: Perigo à vista!</title><content type='html'>Se você tem um estagiário igual ao meu, que sempre pressiona Ctrl+Alt+Del 'só para ver o que acontece' - SEUS PROBLEMAS ACABARAM:&lt;br /&gt;&lt;br /&gt;Edite o arquivo &lt;span style="font-style: italic;"&gt;/etc/inittab&lt;/span&gt; e COMENTE a seguinte linha:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;#ca::ctrlaltdel:/sbin/shutdown -t3 -r now &lt;/blockquote&gt;Pronto. Solução anti-estagiário-que-pressiona-Ctrl+Alt+Del instalada com sucesso!&lt;br /&gt;&lt;br /&gt;(Feito num Debian Etch)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-9104302296001350285?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/9104302296001350285/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=9104302296001350285&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/9104302296001350285'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/9104302296001350285'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/08/ctrlaltdel-perigo-vista.html' title='Ctrl+Alt+Del: Perigo à vista!'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-1846075889222687987</id><published>2007-07-11T17:52:00.000-03:00</published><updated>2007-07-12T16:55:14.248-03:00</updated><title type='text'>Variável TMOUT - Logout automático</title><content type='html'>Esqueceu o terminal do servidor aberto logado como root?? Seus problemas acabaram!! Utilize a variável TMOUT!&lt;br /&gt;&lt;br /&gt;Essa variável recebe valores numéricos que serão considerados como 'segundos'. Isso faz com que o usuário seja expurgado (eheh) baseando-se no tempo de inatividade do mesmo, ou seja, seu estagiário não vai mais dar a-que-la sorte e poder mexer no seu servidor sem supervisão...&lt;br /&gt;&lt;br /&gt;Aqui no meu debian eu adicionei essa variável no final do arquivo .bashrc do usuário root:&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;TMOUT=120&lt;/blockquote&gt;&lt;br /&gt;Depois de 120 segundos de inatividade, babau - logout!&lt;br /&gt;&lt;br /&gt;That's all folks!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-1846075889222687987?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/1846075889222687987/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=1846075889222687987&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1846075889222687987'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1846075889222687987'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/07/varivel-tmout-logout-automtico.html' title='Variável TMOUT - Logout automático'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-1503045101268957485</id><published>2007-06-11T00:44:00.001-03:00</published><updated>2010-12-20T10:12:28.279-03:00</updated><title type='text'>update-rc.d - Manipulando scripts de inicialização</title><content type='html'>O &lt;span style="font-style: italic;"&gt;uptade-rc.d&lt;/span&gt; é uma ferramenta que nos permite configurar quais scripts &lt;span style="font-style: italic;"&gt;&lt;/span&gt;serão executados na inicialização (ou no shutdown) e em que runlevel isso se dará.&lt;br /&gt;Utilização:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;update-rc.d &lt;nome&gt; start NN runlevel . stop NN runlevel .&lt;/nome&gt;&lt;/span&gt;&lt;br /&gt;Onde:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;nome&gt;&lt;/nome&gt;&lt;/span&gt; = é o nome do arquivo contido em &lt;span style="font-style: italic;"&gt;/etc/init.d&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;start/stop NN&lt;/span&gt; =  é a ordem em que o  script será  executado no start/stop (man init para mais informações)&lt;br /&gt;&lt;span style="font-style: italic;"&gt;runlevel&lt;/span&gt; = é o runlevel que o script será executado&lt;br /&gt;&lt;br /&gt;Exemplo 1:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;update-rc.d firewall start 20 2 3 4 5 . stop 20 0 1 6 .&lt;/span&gt;&lt;br /&gt;Faz com que o script /etc/init.d/firewall seja executado (S20firewall) nos runlevels 2,3,4 e 5, e (K20firewall) nos runlevels 0,1 e 6&lt;br /&gt;&lt;br /&gt;ou&lt;br /&gt;&lt;br /&gt;Exemplo 2:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;update-rc.d firewall defaults&lt;/span&gt;&lt;br /&gt;Faz o mesmo que o comando anterior, especificando automaticamente a inicialização (S20firewall) nos runlevels 2,3,4 e 5 e kill (K20firewall) nos runlevels 0,1 e 6.&lt;br /&gt;&lt;br /&gt;Removendo um script:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;update-rc.d -f firewall remove&lt;/span&gt;&lt;br /&gt;A flag -f força a remoção do script /etc/init.d/firewall de todos os runlevels (/etc/rcx.d/).&lt;br /&gt;&lt;br /&gt;Recomendo a leitura do manual do init (&lt;span style="font-style: italic;"&gt;man init&lt;/span&gt;)&lt;br /&gt;&lt;br /&gt;That's all folks!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-1503045101268957485?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/1503045101268957485/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=1503045101268957485&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1503045101268957485'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/1503045101268957485'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/06/update-rcd-manipulando-scripts-de.html' title='update-rc.d - Manipulando scripts de inicialização'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-6581960797340082853</id><published>2007-06-06T17:24:00.000-03:00</published><updated>2007-06-06T17:27:43.586-03:00</updated><title type='text'>squid.conf sem comentários, literalmente!</title><content type='html'>Puxa vida, cansei de passear pelo exteeeeeeenso arquivo de configuração do Squid. Concordo que a leitura daquele montão de comentários é muito proveitosa, mas cansa. Sendo assim:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;$egrep -v "^#|^$" /etc/squid/squid.conf.sample &gt; /etc/squid/squid.conf&lt;/blockquote&gt;&lt;br /&gt;Eheheh.&lt;br /&gt;Faz um teste ae pra ver como fica bonitinho.&lt;br /&gt;&lt;br /&gt;Xauxau.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-6581960797340082853?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/6581960797340082853/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=6581960797340082853&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6581960797340082853'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/6581960797340082853'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/06/squidconf-sem-comentrios-literalmente.html' title='squid.conf sem comentários, literalmente!'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-2766831538661293446</id><published>2007-06-04T15:21:00.000-03:00</published><updated>2007-06-04T15:37:58.826-03:00</updated><title type='text'>Iptables - Módulo String</title><content type='html'>O módulo &lt;span style="font-style: italic;"&gt;string&lt;/span&gt; do &lt;span style="font-style: italic;"&gt;iptables&lt;/span&gt; permite a inspeção de conteúdo de um pacote e aplicar uma ação baseada no que for encontrado dentro do pacote.&lt;br /&gt;Um exemplo de restrição direta é o bloqueio do envio de qualquer informação conﬁdencial sigilosa para fora da rede interna (número de contas, tudo que conferir com CPF, RG, endereços de e-mail, memorandos, etc). De qualquer forma, faça uma análise do tráfego de sua rede antes de querer implementar qualquer solução baseada neste método sob o risco de afetar tráfego legítimo.&lt;br /&gt;&lt;br /&gt;Meus testes foram feitos utilizando um Debian com kernel 2.6.18, e iptables v.1.3.6.&lt;br /&gt;&lt;br /&gt;Alguns exemplos:&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;# bloqueia saída de informações confidenciais (exemplo hipotético)&lt;br /&gt;iptables -A OUTPUT -m string --string "conta" -j DROP&lt;br /&gt;&lt;br /&gt;# não permite a entrada de executáveis (string .exe)&lt;br /&gt;iptables -A INPUT -m string --string ! ".exe" -j DROP&lt;br /&gt;&lt;br /&gt;# bloqueia tentativas de acesso ao programa Kazaa&lt;br /&gt;iptables -A INPUT -m string --string "X-Kazaa" -j DROP&lt;/blockquote&gt;&lt;br /&gt;O módulo string permite uma interação maior com o conteúdo dos pacotes, mas tome muito cuidado para não barrar tráfego legítimo!!&lt;br /&gt;&lt;br /&gt;That's all folks!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-2766831538661293446?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/2766831538661293446/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=2766831538661293446&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2766831538661293446'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2766831538661293446'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/06/iptables-mdulo-string.html' title='Iptables - Módulo String'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-8810724863076372672</id><published>2007-06-04T00:43:00.000-03:00</published><updated>2007-06-04T00:59:00.387-03:00</updated><title type='text'>Autenticação SSH lenta</title><content type='html'>Eu estava enfrentando alguns 'problemas' na hora de fazer conexões SSH com alguns servidores que eu administro. A conexão era estabelecida, mas a solicitação da senha demoraaaava para ser apresentada na tela...e algumas vezes até gerava &lt;span style="font-style: italic;"&gt;time out&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;Resolvi, comentando as seguintes linhas do &lt;span style="font-style: italic;"&gt;sshd_config&lt;/span&gt;:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;#GSSAPIAuthentication yes&lt;br /&gt;#GSSAPIDelegateCredentials no&lt;br /&gt;&lt;/blockquote&gt;E não é que resolveu!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-8810724863076372672?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/8810724863076372672/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=8810724863076372672&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/8810724863076372672'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/8810724863076372672'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/06/autenticao-ssh-lenta.html' title='Autenticação SSH lenta'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-3866729252487917821</id><published>2007-06-01T17:56:00.000-03:00</published><updated>2007-06-01T18:00:23.281-03:00</updated><title type='text'>Google Command Line</title><content type='html'>Nerd faz cada coisa!!&lt;br /&gt;Google Command Line é para quem gosta, digo AMA, trabalhar em linha de comando. Através desse projeto você poderá fazer suas pesquisas simples e também as pesquisas avançadas por linha de comando.&lt;br /&gt;Vale a pena dar uma olhada.&lt;br /&gt;&lt;br /&gt;Fonte:&lt;br /&gt;&lt;a href="http://projects.felipc.com/gcl/"&gt;http://projects.felipc.com/gcl/&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-3866729252487917821?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/3866729252487917821/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=3866729252487917821&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/3866729252487917821'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/3866729252487917821'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/06/google-command-line.html' title='Google Command Line'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-8305043956852887211</id><published>2007-06-01T00:29:00.000-03:00</published><updated>2007-06-01T00:51:00.391-03:00</updated><title type='text'>Phrack #64 - ...made by and for hackers...</title><content type='html'>A revista Hacker mais famosa do mundo voltou depois de quase 2 anos sem liberar qualquer release!! (o release 63 é datado de 30 de julho de 2005)&lt;br /&gt;De acordo com a Wikipedia(EN) a Phrack foi a primeira 'revista eletronicamente distribuída' que se tem notícia.&lt;br /&gt;&lt;br /&gt;Recomendo para quem se interessa pelo assunto, especialmente o artigo "&lt;a href="http://www.phrack.org/issues.html?issue=64&amp;amp;id=16#article"&gt;Hacking your brain: The projection of consciousness&lt;/a&gt;".&lt;br /&gt;&lt;br /&gt;Fonte:&lt;br /&gt;.:: &lt;a href="http://www.phrack.org/"&gt;Phrack Magazine&lt;/a&gt; ::.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-8305043956852887211?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/8305043956852887211/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=8305043956852887211&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/8305043956852887211'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/8305043956852887211'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/06/phrack-64-made-by-and-for-hackers.html' title='Phrack #64 - ...made by and for hackers...'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-4323129394655466861</id><published>2007-05-28T00:36:00.000-03:00</published><updated>2007-05-28T01:42:43.851-03:00</updated><title type='text'>Servindo SSH com mais segurança em 4 passos</title><content type='html'>Nada de scanning, tampouco bruteforce. O negócio é 'segurar'.&lt;br /&gt;Como melhorar, e muito, a segurança de um servidor ssh &lt;span style="font-weight: bold;"&gt;4&lt;/span&gt; passos (sem utilização de firewall)? Simples assim:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;1.&lt;/span&gt; Desabilite o login da conta root. (&lt;span style="font-style: italic;"&gt;PermitRootLogin no&lt;/span&gt;)&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;2.&lt;/span&gt; Desabilite logins baseados em usuário/senha. (&lt;span style="font-style: italic;"&gt;PasswordAuthentication no&lt;/span&gt;) - Assim, a permissão de acesso ao servidor ssh será baseado em verificação de '&lt;span style="font-style: italic;"&gt;ssh keys&lt;/span&gt;'.&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;3.&lt;/span&gt; Coloque o serviço sshd para escutar em uma porta diferente da usual. (&lt;span style="font-style: italic;"&gt;Port 9522&lt;/span&gt;, ex.)&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;4.&lt;/span&gt; Instale o &lt;a href="http://denyhosts.sourceforge.net/"&gt;DenyHosts&lt;/a&gt;!&lt;br /&gt;&lt;br /&gt;O &lt;a href="http://denyhosts.sourceforge.net/"&gt;DenyHosts&lt;/a&gt; é uma ferramenta que bloqueia hosts que estão tentando efetuar&lt;br /&gt;ataques de força bruta contra servidores SSH. Desenvolvido em Python por &lt;span style="font-style: italic;"&gt;Phil Schwartz&lt;/span&gt;, o DenyHosts está atualmente na versão &lt;a href="http://ufpr.dl.sourceforge.net/sourceforge/denyhosts/DenyHosts-2.6.tar.gz"&gt;2.6&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;Pré-Requisitos (ambiente utilizado: &lt;span style="font-style: italic;"&gt;Debian Etch - Kernel 2.6.18-4&lt;/span&gt;):&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;1.&lt;/span&gt;&lt;span style="font-style: italic;"&gt;OpenSSH-Server&lt;/span&gt; compilado com suporte à &lt;span style="font-style: italic;"&gt;TCP_WRAPPERS&lt;/span&gt;. Para saber se no seu caso o suporte foi habilitado, faça o seguinte teste:&lt;br /&gt;Altere o arquivo &lt;span style="font-style: italic;"&gt;/etc/hosts.deny&lt;/span&gt; e acrescente a seguinte linha no final do arquivo:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;$ sshd: 127.0.0.1&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Agora tente fazer uma conexão ssh em localhost, e se a resposta for algo como isto abaixo...:&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;[alberto@mybox:~]$ ssh localhost&lt;br /&gt;ssh_exchange_identification: Connection closed by remote host&lt;br /&gt;[alberto@mybox:~]$&lt;/blockquote&gt;&lt;br /&gt;...gotcha! Isso significa que o suporte à &lt;span style="font-style: italic;"&gt;TCP_WRAPPERS&lt;/span&gt; está habilitado.&lt;br /&gt;&lt;br /&gt;Ah, não se esqueça de remover a linha "&lt;span style="font-style: italic;"&gt;sshd: 127.0.0.1&lt;/span&gt;" do arquivo &lt;span style="font-style: italic;"&gt;/etc/hosts.deny&lt;/span&gt;!!!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;2. &lt;/span&gt;&lt;span style="font-style: italic;"&gt;Python v2.3&lt;/span&gt; ou superior. (Eu usei a versão 2.4.4)&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;font-size:130%;" &gt;&lt;br /&gt;Instalando o DenyHosts&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;[alberto@mybox:~]$ wget &lt;a href="http://ufpr.dl.sourceforge.net/sourceforge/denyhosts/DenyHosts-2.6.tar.gz"&gt;http://ufpr.dl.sourceforge.net/sourceforge/denyhosts/DenyHosts-2.6.tar.gz&lt;/a&gt;&lt;br /&gt;[alberto@mybox:~]$ tar zxvf DenyHosts-2.6.tar.gz&lt;/blockquote&gt;&lt;br /&gt;Dentro do diretório criado existe um arquivo chamado setup.py. Este script automatiza o processo de instalação fazendo com que os arquivos sejam alocados em /usr/share/denyhosts/. Sendo assim, faça o seguinte:&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;[alberto@mybox:~]$ cd DenyHosts-2.6 &amp;&amp;amp; python setup.py install&lt;/blockquote&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;span style="font-size:130%;"&gt;Agora é só configurar:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;Vou utilizar o próprio arquivo de configuração de exemplo:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-style: italic;"&gt;[alberto@mybox:~]$ cd /usr/share/denyhosts&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;[alberto@mybox:/usr/share/denyhosts]$  cp denyhosts.cfg-dist denyhosts.cfg&lt;/span&gt;&lt;/blockquote&gt;&lt;br /&gt;As únicas opções que eu precisei alterar foram o caminho do arquivo de log que a ferramenta vai ler e o caminho do &lt;span style="font-style: italic;"&gt;lock file/PID&lt;/span&gt; do DenyHosts (caminhos para ambiente Debian):&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;SECURE_LOG = /var/log/auth.log&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;span style="font-style: italic;"&gt;LOCK_FILE = /var/run/denyhosts.pid&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;Para que possamos utilizar p DenyHosts como daemon, iremos precisar do script &lt;span style="font-style: italic;"&gt;daemon-control&lt;/span&gt;. Novamente utilizando o script de modelo como base:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;blockquote&gt;[alberto@mybox:/usr/share/denyhosts]$ cp daemon-control-dist daemon-control&lt;/blockquote&gt;&lt;/span&gt;&lt;br /&gt;Certifique-se de que os valores das opções &lt;span style="font-style: italic;"&gt;DENYHOSTS_BIN, DENYHOSTS_LOCK E DENYHOSTS_CFG&lt;/span&gt; estejam assim (valores para Debian):&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;DENYHOSTS_BIN = "/usr/bin/denyhosts.py"&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;DENYHOSTS_LOCK = "/var/run/denyhosts.pid"&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;DENYHOSTS_CFG = "/usr/share/denyhosts/denyhosts.cfg"&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Não alterei nenhuma outra opção do script &lt;span style="font-style: italic;"&gt;daemon-control&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;Agora, altere algumas permições:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;blockquote&gt;[alberto@mybox:/usr/share/denyhosts]$ chown root daemon-control &amp;&amp;amp; chmod 770 daemon-control&lt;/blockquote&gt;&lt;/span&gt;&lt;br /&gt;Para finalizar, crie o link para que o DenyHosts seja executado automaticamente durante o boot:&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;[alberto@mybox:/usr/share/denyhosts]$ ln -s daemon-control  /etc/init.d/denyhosts&lt;br /&gt;[alberto@mybox:/usr/share/denyhosts]$ update-rc.d denyhosts defaults&lt;/blockquote&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Agora, let's start:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;blockquote&gt;[alberto@mybox:~]$  /etc/init.d/denyhosts start&lt;/blockquote&gt;&lt;/span&gt;&lt;br /&gt;Pronto! Seu DenyHosts está funcionando e bloqueando os hosts que estiverem tentando atacar seu servidor ssh por &lt;span style="font-style: italic;"&gt;brute force&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;Faça um teste: Tente se conectar localmente por ssh com algum usuário inexistente por umas 5 vezes (valor padrão de &lt;span style="font-style: italic;"&gt;DENY_THRESHOLD_INVALID&lt;/span&gt;) e depois verifique o arquivo &lt;span style="font-style: italic;"&gt;/etc/hosts.deny&lt;/span&gt; ou o log do DenyHosts (&lt;span style="font-style: italic;"&gt;/var/log/denyhosts&lt;/span&gt;) para ver o que acontece.&lt;br /&gt;&lt;br /&gt;O arquivo de configuração &lt;span style="font-style: italic;"&gt;/usr/share/denyhosts.cfg&lt;/span&gt; é muito simples e bem comentado. Vale a pena dar uma lida e aprimorar as suas configurações.&lt;br /&gt;&lt;br /&gt;Comente, sugira, critique ou corrija.&lt;br /&gt;&lt;br /&gt;That's all folks!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-4323129394655466861?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/4323129394655466861/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=4323129394655466861&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4323129394655466861'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4323129394655466861'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/05/servindo-ssh-com-mais-segurana-em-4.html' title='Servindo SSH com mais segurança em 4 passos'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-4162832659885061660</id><published>2007-05-27T01:38:00.000-03:00</published><updated>2007-05-27T02:02:16.644-03:00</updated><title type='text'>CIGE - Centro Integrado de Guerra Eletrônica</title><content type='html'>&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;Histórico&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;A 19 de março de 1984, foi criado o Núcleo de Implantação      do Centro de Instrução de Guerra Eletrônica.   &lt;p&gt;Instalado, em 10 de março de 1989, o então Centro de Instrução      de Guerra Eletrônica (CIGE) especializou em Guerra Eletrônica      (GE), naquele ano, as primeiras turmas de oficiais e sargentos.&lt;/p&gt;     Com a mudança de denominação para Centro Integrado de      Guerra Eletrônica (CIGE), ocorrida em 30 de abril de 1998, a Unidade      manteve a sigla tradicional e adotou uma denominação coerente      com sua evolução.&lt;br /&gt;    &lt;p&gt;A missão do CIGE é a formação de recursos humanos      nos sistemas de GE. Para tal, faz uso dos seguintes vetores: ensino, tático,      manutenção, suprimento e administração.&lt;/p&gt;&lt;span style="font-size:130%;"&gt;&lt;span style="font-weight: bold;"&gt;Principais Atividades&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;A Divisão de Ensino do CIGE, que materializa o vetor de ensino, ministra      diversos cursos de especialização e extensão de GE para      oficiais e sargentos do Exército e das Forças Singulares, atuando,      inclusive, nos C Mil A, com estágios de área de GE. Fornece,      ainda, subsídios ao EME para a elaboração e o aperfeiçoamento      da doutrina de GE.&lt;/p&gt;   &lt;p&gt;A 1ª Cia GE, que materializa o vetor tático, participa de manobras      nos diferentes C Mil A, sob a coordenação do COTer, e, ainda,      realiza demonstrações do emprego do seu material em cooperação      de instrução proporcionada pelo CIGE. &lt;/p&gt;   &lt;p&gt;A Divisão de Engenharia e Logística, que materializa o vetor      de manutenção/suprimento, é responsável pela manutenção      e suprimento do material de GE.&lt;/p&gt;   &lt;p&gt;O CIGE atende, anualmente, cerca de 50 pedidos de cooperação      de instrução oriundos das três Forças Armadas,      os quais são realizados na própria OM, em exercícios      no terreno ou na OM solicitante.&lt;/p&gt;&lt;p style="font-weight: bold;"&gt;&lt;span style="font-size:130%;"&gt;Atualmente:&lt;/span&gt;&lt;/p&gt;&lt;p&gt;O &lt;a href="http://www.sgex.eb.mil.br/be_ostensivo/BE2007/be2007pdf/be06-07.pdf"&gt;Boletim do Exército N. 06/2007 de 9 de Fevereiro de 2007&lt;/a&gt;, através da Portaria N. 063-DCT, de 31 de Janeiro de 2007 "Aprova as Instruções Reguladoras para Criação de Estágio Setorial de Guerra Cibernética (IR-1309)".&lt;br /&gt;&lt;/p&gt;   &lt;span style="font-size:85%;"&gt;&lt;span style="font-style: italic;"&gt;Fontes:&lt;/span&gt;&lt;br /&gt;&lt;a href="http://www.exercito.gov.br/06OMs/centros/cige/indice.htm"&gt;&lt;span style="font-style: italic;"&gt;http://www.exercito.gov.br/06OMs/centros/cige/indice.htm&lt;/span&gt;&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.cige.eb.mil.br/"&gt;&lt;span style="font-style: italic;"&gt;http://www.cige.eb.mil.br/&lt;/span&gt;&lt;/a&gt;&lt;/span&gt;&lt;span style="font-weight: bold;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-4162832659885061660?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/4162832659885061660/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=4162832659885061660&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4162832659885061660'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/4162832659885061660'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/05/cige-centro-integrado-de-guerra.html' title='CIGE - Centro Integrado de Guerra Eletrônica'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-8918157447063033810</id><published>2007-05-25T01:57:00.000-03:00</published><updated>2007-05-25T03:07:47.072-03:00</updated><title type='text'>Nikto - Web Server Scanner</title><content type='html'>No post de hoje quero apresentar uma excelente ferramenta de segurança. Trata-se do &lt;a href="http://www.cirt.net/code/nikto.shtml"&gt;Nikto&lt;/a&gt; - um scanner de vulnerabilidades para web servers escrito em Perl muito interessante, rápido e simples de usar.&lt;br /&gt;Uma característica muito peculiar do Nikto é que ele possibilita a atualização da sua base de dados de vulnerabilidades, bem como a atualização de seu próprio código!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Ambiente utilizado para o teste:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Debian Etch kernel 2.6.18-4&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Perl 5.8.8&lt;/span&gt;&lt;br /&gt;&lt;a style="font-style: italic;" href="http://search.cpan.org/CPAN/authors/id/F/FL/FLORA/Net_SSLeay.pm-1.30.tar.gz"&gt;Net_SSLeay.pm-1.30&lt;/a&gt;&lt;br /&gt;&lt;a style="font-style: italic;" href="http://www.cirt.net/nikto/nikto-1.36.tar.bz2"&gt;Nikto 1.36&lt;/a&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;Apache 1.3.34&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Antes de começar a brincar eu tive que instalar a extensão &lt;a href="http://search.cpan.org/CPAN/authors/id/F/FL/FLORA/Net_SSLeay.pm-1.30.tar.gz"&gt;Net_SSLeay.pm-1.30&lt;/a&gt; para que o Perl pudesse utilizar OpenSSL. Simples assim:&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-style: italic;"&gt;$tar -xzvf Net_SSLeay.pm-1.30.tar.gz&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;$cd ./Net_SSLeay.pm-1.30&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;$perl Makefile.PL&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;$make&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;$make install&lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;/blockquote&gt;&lt;span&gt;&lt;blockquote&gt;&lt;/blockquote&gt;&lt;/span&gt;Agora, 'instalando' o Nikto:&lt;br /&gt;&lt;blockquote&gt;&lt;span style="font-style: italic;"&gt;$tar zxvf nikto-1.36.tar.gz&lt;/span&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;$cd nikto-1.36&lt;/span&gt;&lt;/blockquote&gt;A instalação basicamente se resume a isso. Todos os arquivos que o Nikto utiliza estão dentro dessa pasta, portanto, não faz diferença nenhuma a localização da mesma.&lt;br /&gt;&lt;br /&gt;Antes de iniciarmos a utilização é interessante que façamos uma atualização, simples assim:&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;$./nikto.pl -update&lt;/blockquote&gt;E agora sim:&lt;br /&gt;&lt;br /&gt;&lt;blockquote style="font-style: italic;"&gt;alberto@mybox:~$./nikto.pl -h localhost&lt;br /&gt;---------------------------------------------------------------------------&lt;br /&gt;- Nikto 1.36/1.39     -     www.cirt.net&lt;br /&gt;+ Target IP:       127.0.0.1&lt;br /&gt;+ Target Hostname: localhost&lt;br /&gt;+ Target Port:     80&lt;br /&gt;+ Start Time:      Fri May 25 02:49:13 2007&lt;br /&gt;---------------------------------------------------------------------------&lt;br /&gt;- Scan is dependent on "Server" string which can be faked, use -g to override&lt;br /&gt;+ Server: Apache/1.3.34 (Debian)&lt;br /&gt;+ Allowed HTTP Methods: GET, HEAD, OPTIONS, TRACE&lt;br /&gt;+ HTTP method ('Allow' Header): 'TRACE' is typically only used for debugging--it should be disabled. Note, this does not mean the server is vulnerable to XST. OSVDB-877.&lt;br /&gt;+ Apache/1.3.34 appears to be outdated (current is at least Apache/2.2.3). Apache 1.3.33 is still maintained and considered secure.&lt;br /&gt;+ / - TRACE option appears to allow XSS or credential theft. See http://www.cgisecurity.com/whitehat-mirror/WhitePaper_screen.pdf for details (TRACE)&lt;br /&gt;+ / - TRACK option ('TRACE' alias) appears to allow XSS or credential theft. See http://www.cgisecurity.com/whitehat-mirror/WhitePaper_screen.pdf for details (TRACK)&lt;br /&gt;+ 2673 items checked - 2 item(s) found on remote host(s)&lt;br /&gt;+ End Time:        Fri May 25 02:49:19 2007 (6 seconds)&lt;br /&gt;---------------------------------------------------------------------------&lt;br /&gt;+ 1 host(s) tested&lt;br /&gt;alberto@mybox:~$&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Lembre-se que nem todos os items encontrados são problemas de segurança, pois alguns podem ser só avisos sobre algo que nem o administrador do web server (no caso VOCÊ) sabe que está presente no servidor. Mesmo assim, a maioria dos itens SÂO PROBLEMAS DE SEGURANÇA SIM! Eheh.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Conclusão&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Rápido, customizável, atualizável e 100% software livre. Recomendo!&lt;br /&gt;&lt;br /&gt;Happy Scanning!!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;br /&gt;&lt;script type="text/javascript"&gt;&lt;!--&lt;br /&gt;google_ad_client = "pub-0057265664036140";&lt;br /&gt;google_ad_width = 728;&lt;br /&gt;google_ad_height = 90;&lt;br /&gt;google_ad_format = "728x90_as";&lt;br /&gt;google_ad_type = "text";&lt;br /&gt;google_ad_channel = "";&lt;br /&gt;google_color_border = "E6E6E6";&lt;br /&gt;google_color_bg = "E6E6E6";&lt;br /&gt;google_color_link = "0000FF";&lt;br /&gt;google_color_text = "000000";&lt;br /&gt;google_color_url = "008000";&lt;br /&gt;//--&gt;&lt;br /&gt;&lt;/script&gt;&lt;br /&gt;&lt;script type="text/javascript"&lt;br /&gt;  src="http://pagead2.googlesyndication.com/pagead/show_ads.js"&gt;&lt;br /&gt;&lt;/script&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-8918157447063033810?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/8918157447063033810/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=8918157447063033810&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/8918157447063033810'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/8918157447063033810'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/05/nikto-web-server-scanner.html' title='Nikto - Web Server Scanner'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-2163937471909333911</id><published>2007-05-22T23:35:00.001-03:00</published><updated>2008-04-10T09:09:16.032-03:00</updated><title type='text'>THC Hydra - Brute Force a rolé!</title><content type='html'>&lt;span style="font-size:85%;"&gt;Dia desses revolvi desligar meu &lt;a href="http://denyhosts.sourceforge.net/"&gt;DenyHosts&lt;/a&gt; para ver o que acontecia. Depois disso fui dar uma olhada no meu /var/log/auth.log. A surpresa:&lt;br /&gt;&lt;/span&gt;&lt;div  style="text-align: left;font-family:webdings;"&gt;&lt;blockquote&gt;&lt;span style="font-size:85%;"&gt;May 20 10:51:07 admin sshd[8236]: Did not receive identification string from 61.152.162.183&lt;br /&gt;May 20 11:28:36 admin sshd[8301]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=61.152.162.183  user=root&lt;br /&gt;May 20 11:28:38 admin sshd[8301]: Failed password for root from 61.152.162.183 port 47342 ssh2&lt;br /&gt;May 20 11:28:38 admin sshd[8302]: Received disconnect from 61.152.162.183: 11: Bye Bye&lt;br /&gt;May 20 11:28:41 admin sshd[8303]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=61.152.162.183  user=ftp&lt;br /&gt;May 20 11:28:43 admin sshd[8303]: Failed password for ftp from 61.152.162.183 port 47666 ssh2&lt;br /&gt;May 20 11:28:43 admin sshd[8304]: Received disconnect from 61.152.162.183: 11: Bye Bye&lt;/span&gt;&lt;/blockquote&gt;&lt;/div&gt;&lt;span style="font-size:85%;"&gt;Num momento de ira! resolvi contra-atacar o tal "61.152.162.183", eheh. Saí buscando algo para fazer o 'talzinho' provar do próprio veneno. Foi quando encontrei a ferramenta &lt;a href="http://www.thc.org/thc-hydra/"&gt;THC - Hydra&lt;/a&gt;, desenvolvida por Van Hauser do &lt;a href="http://www.thc.org/"&gt;THC&lt;/a&gt;.&lt;br /&gt;O THC-Hydra pode ser classificado como um &lt;/span&gt;&lt;span style="font-style: italic;font-size:85%;" &gt;network logon cracker&lt;/span&gt;&lt;span style="font-size:85%;"&gt; multiplataforma que faz ataques de força bruta contra uma gama considerável de serviços. Atualmente, na versão 5.4, os serviços suportados são: &lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-size:85%;"&gt;SSH2, TELNET, FTP, HTTP, HTTPS, HTTP-PROXY, SMB, SMBNT, MS-SQL, MYSQL, REXEC, RSH, RLOGIN, CVS, SNMP, SMTP-AUTH, SOCKS5, VNC, POP3, IMAP, NNTP, PCNFS, ICQ, SAP/R3, LDAP2, LDAP3, Postgres, Teamspeak, Cisco auth, Cisco enable, LDAP2, Cisco AAA &lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-size:85%;"&gt;Tem versões para Windows (Win32/Cywin), iPaq e Zaurus (handhelds com processadores ARM rodando Linux) e, claro,  seu código fonte pode ser compilado em 'todas' as plataformas 'UNIX based'.&lt;br /&gt;Minha aventura se desenrolou num Debian Etch, com Kernel 2.6.18-4, e o roteiro de instalação foi o seguinte:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;font-size:100%;" &gt;- Pacotes Utilizados:&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;ul&gt;&lt;li&gt;&lt;span style="font-weight: bold;font-size:85%;" &gt;*libssl0.9.6&lt;/span&gt;&lt;span style="font-size:85%;"&gt; (requisito para o pacote libssh0.11)&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-size:85%;"&gt;# Repositório para o apt:&lt;br /&gt;# deb http://tinkerbell.dyndns.biz/debian woody main contrib non-free non-US&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-style: italic;"&gt;$apt-get update&lt;br /&gt;$apt-get install libssl0.9.6&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;ul&gt;&lt;li&gt;&lt;span style="font-weight: bold;font-size:85%;" &gt;*libssh0.11&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-size:85%;"&gt;&lt;a href="http://0xbadc0de.be/libssh/libssh-0.11.tgz"&gt;http://0xbadc0de.be/libssh/libssh-0.11.tgz&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-style: italic;"&gt;$tar zxvf libssh-0.11.tgz&lt;br /&gt;$cd libssh-0.11&lt;br /&gt;$./configure &amp;amp;&amp;amp;  make &amp;amp;&amp;amp; make install&lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;ul&gt;&lt;li&gt;&lt;span style="font-weight: bold;font-size:85%;" &gt;*Hydra 5.4&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;span style="font-size:85%;"&gt;&lt;a href="http://www.thc.org/releases/hydra-5.4-src.tar.gz"&gt;hydra-5.4-src.tar.gz&lt;/a&gt;&lt;br /&gt;Encontrei alguns probleminhas na hora de compilar o Hydra, especialmente pq o Makefile não encontrava a biblioteca libssh.so e apresentava um crash no módulo Postgres. Resolvi alterando algumas variávies do Makefile produzido pelo ./configure e deixando assim:&lt;br /&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-size:85%;"&gt;(&lt;span style="font-style: italic;"&gt;...)&lt;br /&gt;XDEFINES= -DLIBOPENSSL -DLIBSSH&lt;br /&gt;XLIBS= -lssl -lssh -lcrypto&lt;br /&gt;XLIBPATHS=-L/usr/lib -L/usr/local/lib -L/lib -L/usr/lib -L/var/lib -L/lib -L /usr/include -L/usr/include/libssh&lt;br /&gt;(...)&lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-size:85%;"&gt;..depois disso:&lt;br /&gt;&lt;blockquote&gt;&lt;span style="font-style: italic;"&gt;$make &amp;amp;&amp;amp; make install&lt;/span&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Aí foi partir para o abraço. Olha o testdrive:&lt;br /&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span style="font-size:85%;"&gt;&lt;span style="font-style: italic;"&gt;alberto@mybox:~$ hydra 127.0.0.1 -L file.txt -P file.txt ssh2&lt;br /&gt;Hydra v5.4 (c) 2006 by van Hauser / THC - use allowed only for legal purposes.&lt;br /&gt;Hydra (http://www.thc.org) starting at 2007-05-23 01:13:00&lt;br /&gt;[DATA] 4 tasks, 1 servers, 4 login tries (l:2/p:2), ~1 tries per task&lt;br /&gt;[DATA] attacking service ssh2 on port 22&lt;br /&gt;&lt;span style="font-weight: bold;font-size:100%;" &gt;[STATUS] attack finished for 127.0.0.1 (waiting for childs to finish)&lt;/span&gt;&lt;span style="font-size:100%;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-size:100%;" &gt;[22][ssh2] host: 127.0.0.1   login: admin   password: mypass&lt;/span&gt;&lt;br /&gt;Hydra (http://www.thc.org) finished at 2007-05-23 01:13:08&lt;br /&gt;alberto@mybox:~$&lt;/span&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-size:85%;"&gt;Onde:&lt;br /&gt;hydra 127.0.0.1 -&gt; Meu alvo (eu mesmo)&lt;br /&gt;-L file.txt -&gt; Wordlist de usuários que eu usei&lt;br /&gt;-P file.txt -&gt; Wordlist de senhas que eu usei&lt;br /&gt;ssh2 -&gt; Serviço atacado.&lt;br /&gt;&lt;br /&gt;Lembrando que um &lt;span style="font-style: italic;"&gt;'hydra -h'&lt;/span&gt; apresenta um help bem didático com todas as opções.&lt;br /&gt;Agora é com você. Use para fins didáticos e não siga meu exemplo de contra-atacar seus atacantes, eheh.&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-weight: bold;font-size:85%;" &gt;Conclusão&lt;/span&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;O THC-Hydra é a melhor ferramenta para ataques de força bruta que eu tive acesso até hoje. Desempenho satisfatório, multiplataforma, váááárias opções interessantes, desenvolvimento constante e código 100% aberto.&lt;br /&gt;Aprenda a usar e use...antes que alguém o faça em seus servidores por você.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-2163937471909333911?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/2163937471909333911/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=2163937471909333911&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2163937471909333911'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/2163937471909333911'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/05/thc-hydra-brute-force-rol.html' title='THC Hydra - Brute Force a rolé!'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-5087566969552851971.post-5078727918902526889</id><published>2007-05-21T03:03:00.000-03:00</published><updated>2007-05-23T14:45:24.771-03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='start init runlevel'/><title type='text'>Start</title><content type='html'>$init 5&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5087566969552851971-5078727918902526889?l=betopena.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://betopena.blogspot.com/feeds/5078727918902526889/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5087566969552851971&amp;postID=5078727918902526889&amp;isPopup=true' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5078727918902526889'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5087566969552851971/posts/default/5078727918902526889'/><link rel='alternate' type='text/html' href='http://betopena.blogspot.com/2007/05/start.html' title='Start'/><author><name>Alberto Andrade</name><uri>http://www.blogger.com/profile/17494691817215918705</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/-C1SjRbGj-k0/TbIvsPyvpzI/AAAAAAAAAEg/hOLYxX_dMUo/s220/218904_2001297076638_1369904680_2309487_4262965_o.jpg'/></author><thr:total>0</thr:total></entry></feed>
