Archive for November, 2007

My Online World

Friday, November 30th, 2007

So I figured I would post a summary of the things I have going online.

1) My main and longest running blog http://jackshck.livejournal.com (your reading it now). Covering various projects and ideas. Showing progress towards them (scattered though it may be).

2) My corporate project blog. Covering my revenue generating ideas and how I am getting there. Essentially covering the nitty gritty details of building a professional services and corporate Linux/Open Source Operations training firm. http://siliconvs.blogspot.com (Silicon Valley South).

3) My “life blog”. This is a fairly new blog of mine.  Actually its old (created in January 2006). I went to register the blog the other day, and saw it was already registered. I’ll try to post to it each and every day both in person (on topics like what I ate that day and travel times etc) and automated (sending  SNORT and LogWatch reports).  In a similar vein to my twitter ( http://www.twitter.com/charlesnw ) but on a more consistent set of subjects etc. The URL for my “life blog” is http://charlesnw.blogspot.com

And of course I am on LinkedIn for professional networking, and Facebook. I don’t usually do much with Facebook and don’t utilize LinkedIn to a great extent.

There are a myriad of other social networking sites out there. I am not really interested in them per se.

Oh of course I have a youtube account ( http://www.youtube.com/charlesnw) and a blip.tv channel (http://opensrclearn.blip.tv) Both of those are in support of my main 2008 project (the on site corporate training).

So that’s me in a nutshell.

I also have all my online properties linked together. I actually have a spreadsheet with the whole setup. I should post that sometime. :)

Mobility

Tuesday, November 27th, 2007

So a number of the things I will be working on in 2008 will be projects in the field. I have become increasingly mobile in 2007 but a lot of the projects I have been working on were foundational/ core infrastructure tasks. Those are winding down now, and setting the stage for 2008.

So lets start with an inventory of equipment I take with me everywhere in my Targus TXL617 backpack:

1) HP Pavillion dv6000 laptop running Ubuntu Gutsy Gibbon. Dual core AMD Turion 64. 2 gigs of ram. Not an ultra portable system but not a luggable either. A very capable system for all types of projects. I have an incredibly broad spectrum of software installed and as such can easily be a local Ubuntu mirror :)

2) Blackberry Pearl (8100) with an unlimited data plan from t-mobile. I use this device extensively. Its great for taking notes and handling e-mails/twitter alerts.

3) A 62 piece BoXer screwdriver set. Just about every type of screw can be handled with this nifty toy.

4) A no name USB headset. Works like a champ. Great for listening to music, podcasts or doing voice communications.

5) A maxtor USB hard drive. I use that to store my Vista virtual machine as well as audio/video recordings of LUG meetings. Not a lot of that there now, but much more to come in 2008. Much much more.

6) A targus tri pod. Used for video recording of various user group meetings.

7) A raines compact umbrella. Never know when it might be needed. Especially with all of the travel I will be doing in 2008. Won’t always be in sunny so cal. :)

8) An AirLink 101 Super G Wireless Router. Perfect for when I need to setup a quick network.

9) A neck pillow. For all the time I spend on the bus and soon train/plane.

10) A Sansa c140 which I use to record user group meetings. Works incredibly well.

11) A nokia N95 phone.

12) A LaFonera router

13) A keyspan serial to usb converter.

And of course some assorted cables (s-video/firewire/usb/network).

Later on I will post more about productive mobility.

Monsters Lurk….

Tuesday, November 27th, 2007

So I setup logwatch and snort on all my boxes recently.  In todays daily report I see:

Failed logins from these:    122.70.135.124: 68 times       root/password: 68 times    219.129.219.66: 1 time       root/password: 1 time

 Illegal users from these:    219.129.219.66: 1 time       fluffy/password: 1 time

I looked up the two IP addresses:http://isc.sans.org/ipinfo.html?ip=122.70.135.124http://isc.sans.org/ipinfo.html?ip=219.129.219.66

both of them have been bad little boys. 

I turned off direct ssh root login on that box just to be extra safe. 

So I highly recommend deploying logwatch/snort. The default Ubuntu configuration works great. Just make sure you set an alias for root in /etc/aliases. 

2007 Q4 Todo List

Friday, November 23rd, 2007

It has been a long and fairly productive year for me so far. However I haven’t been as productive as I would have liked to be.

I have gone back through an entire year of blog posts, and done a lot of clean up and editing. I have deleted several posts, and consolidated a lot of the information from them into this post.

I have put together the following TODO list for the rest of the year. This will give me something to execute against so I can focus on LA City Wifi and other Known Element Enterprises products and services in 2008.

The following items are top priority for me. They are part of the core infrastructure work I have been doing most of the year. Before I embark on the other projects, I need to finish the core infrastructure work.

Productivity and personal system related items:

1) Setup backups using a fairly comprehensive home grown shell script which is in production use at multiple sites.

Update: Massive progress made toward this goal. Please see this post, this one, and this one for more details.

2) Setup monitoring using Hyperic and Microsoft System Center.

3) Setup sync4j and sync my blackberry to it.

4) Figure out how to use the remote control that comes with my laptop to perform various actions beyond next/previous. In GNOME when i hit various hot keys on the remote various applications open. Not so outside of GNOME :(

Projects:

1) Setup some clusters. Both for high performance and high availability. See this post (http://jackshck.livejournal.com/76973.html) and this one ( http://jackshck.livejournal.com/78100.html ) for more information on what I plan to do.
2) Setup a VPN and IPv6 cloud for SoCal Linux users. With vmware/xen/uml or whatever people want to use. Also will be looking at mesh stuff and things like Quagga.

Removed / completed items:

LUG Related Items:

1) Do more video/photo blogging and podcasting of group meetings.
I was recording the LiLax and UUASC meetings for a while, and have been remiss about doing so lately. Need to setup reminders in my Blackberry to tell me to do so.

Update: I have launched OpenSrcLearn.org and reorganized my portable storage to support my video needs. Also have been recording the meetings I have attended. So good progress against this goal and I will continue to make progress going forward.

2) Setup calendar.socallugs.com

Update: I am working with various members of the Los Angeles technology community to maintain event information on upcoming.org which can then be consumed by various specialty sites. So I’ll be doing my best to maintain LUG related events on upcoming.org.

3) Setup UPS software on media and vmware server.
This was done, but was lost after the reinstall. Plan to have this done by EOD tomorrow (10/07/2007).

Update: This is now completed on both servers.

Removed the two items below. They really won’t do much for me right now.

1) Purchase a bluetooth keyboard.
2) Get my bluetooth headset working as an audio input/output device.

3) Setup voice control
Complete. See this post for details.

5) Purchase a minipci atheros based wireless card for my laptop.
This will allow me to continue messing with WiFi as detailed here (http://jackshck.livejournal.com/76308.html).

Removing from list. It doesn’t really benefit me in relation to my overall goals and objectives to spend time on hacking/security exploration type tasks.

7) Get internet access via my Phone under Linux over blue tooth.
Removed from list. See this post for details.

Setup a network intrusion detection system.
Original goal of a NIDS completed. See this post for details. Expanded the goal a bit to include file integrity monitoring.

TODO List Progress: Intrusion Detection / Security / System Monitoring

Friday, November 23rd, 2007

One of the items I mentioned in my TODO list was intrusion detection. In support of this goal I have

1) Rolled out LogWatch and SNORT to all of my VmWare, bare metal systems and my vpsland.com Xen Slice.  I get daily summary e-mails of system/network activity.

2) Setup the /etc/aliases file on all systems to send root e-mail to charles@thewybles.com

I am in the process of evaluating file integrity monitoring software for deployment across my systems.

So the original goal of a network intrusion detection system has been met, and I am expanding that to system intrusion detection/monitoring as well.

TODO List Progress: Backups

Wednesday, November 21st, 2007

Well its taken longer then I had hoped, but I am almost done with backups. Please see my previous posts on the topic for some background and earlier attempts.

I have done a number of experiments and test runs, and have come up with the following:

1) A set of scripts on my file server which run out of cron and ssh to the server which hosts my personal home page, and the server which hosts all my corporate pages. It backs up my web pages and e-mail directory. The script is fairly simple:

#!/bin/bash
#A script to backup the content of my vpsland.com sites and my personal homepage

backup_root=”/samba/backups”
backup_storage_root=”$backup_root/backups/web-backups/”
logFile=”$backup_root/logs/remote-backup.log”
private_key=”$backup_root/keys/privateBackupKey”
rsync_opts=”-avz”

echo “To: charles@thewybles.com” > ${logFile}
echo “From: remote-backup@thewybles.com” >> ${logFile}
echo “Subject: E-mail/Web Backup Ran `date`” >> ${logFile}
echo “” >> ${logFile}
echo “Starting E-mail/Web Backup `date`” >> ${logFile}

echo “” >> ${logFile}

rsync $rsync_opts -e “ssh -i $private_key” charles@www.socallugs.com:/home/charles/web $backup_storage_root/vpsland-backup
backupReturnValue=$?
echo “VPSLAND webpage backups returned $backupReturnValue” >> ${logFile}

rsync $rsync_opts -e “ssh -i $private_key” charles@www.socallugs.com:/home/charles/web $backup_storage_root/vpsland-backup
backupReturnValue=$?
echo “VPSLAND webpage backups returned $backupReturnValue” >> ${logFile}

rsync $rsync_opts -e “ssh -p 2345 -i $private_key” charles@www.thewybles.com:/home/charles/public_html $backup_storage_root/homepage-backup
backupReturnValue=$?
echo “Homepage backup returned $backupReturnValue” >> ${logFile}

rsync $rsync_opts -e “ssh -p 2345 -i $private_key” charles@www.thewybles.com:/home/charles/Maildir $backup_storage_root/email-backup
backupReturnValue=$?
echo “E-mail backup returned $backupReturnValue” >> ${logFile}

cat ${logFile} | /usr/sbin/sendmail -t -i

2) A script which backs up the music and pictures on the media server. Same as above just different source server and local storage point.
3) A script which backs up web pages and e-mail to rsync.net. Same as above script just different source and target server.

The above 3 scripts have been running for a week or so (maybe longer I dunno) and work perfectly.

The following tasks remain:

1) Backing up Patti and I laptop.
2) Backing up local VmWare servers.

Both of the above should be doable with the above script, however I have run into a problem attempting to set it up. So going to work on that later today.

3) Backing up MySQL databases. Part of me wants to do a mysqldump, and part of me wants to setup a MySQL replica. In the interest of time and simplicity, I think I’ll do the mysqldump.

So if everything goes well, I should have backups finished by the end of the day today.

LiLAX 2008 Plans

Wednesday, November 21st, 2007

Speaker/Topic Lineup for Q1/Q2

January) System Monitoring Panel. Nagios will be represented and I'll tryto get some sales engineers from Groundworks/Zenoss/Microsoft to comedown and demonstrate their offerings. LiLAX has a history of panel/bakeoff type presentations. I think they allow a lot of ground to be coveredand will attract more professional systems people to LiLAX. 

February) SCALE VoIP shootout. This could really get LiLAX on the map.

March) Donna will be covering Blender. This will appeal to the desktopuser crowd.

April) The guy who runs LinuxHA.com (Neil Cherry) will be doing a remotepresentation on home automation. This will appeal to the desktopuser/hobbyist crowd.

May) Dallas will be doing a "Linux command line power tips" Thisappeals to the professional user and hobbyist/desktop user crowd.

June) Linux accessibility. This is a big topic. Wayne Dick has agreed to speak along with a few other people on this topic. We may get a person or two from the W3C accessibility working group to weigh in as well.  This is a hot topic... I may move it to March so its after SCALE and the accessibility Birds of A Feather session we are putting together.

Venue:

We are going to loose our current venue after December 2007. I am in the process of seeking an alternative venue in the South Bay area. More on this as I have details. If you are able to offer a venue, or have contacts that may be able to help please let me know.

Barcamp SanDiego2

Monday, November 12th, 2007

So one of the things I observed was as you go farther south in California, the technology landscape changes. Or at least the slice I see at user group meetings and other events. 

Los Angeles is very system engineering/application administration oriented.
Orange County and San Diego are heavily oriented towards programming. A lot of .NET and Ruby but not a lot of Java.

The crowd was smaller at BarCampSd2.  I attended and contributed to the Nagios/Groundworks talks quite a bit. Didn’t give my presentation on community websites, as the audience didn’t really seem quite right for it.

The event  was well organized and the food was excellent. However other then the Nagios/Groundworks talks and a talk on a web based IDE, the content didn’t really appeal to me. I made a few connections of some value.

I think I’ll stick to the LA based events from now on.  As its the area I live in and the market that interests me the most. We shall see.

Random Stuff

Friday, November 9th, 2007

So I am in a Motel 6 with Ralf and dallas in San Diego. Doing some random stuff tonight. One of those things is uploading a screenshot of my vmware  control panel at home.

Also working on a spreadsheet with my various web properties and page ranks. Part of my analytics and monitoring project.

Finishing up the backups and ups stuff as well.

Will post more when complete…

Barcamp San Diego

Thursday, November 8th, 2007

I will be in San Diego this weekend at Barcamp San Diego presenting on SoCalLugs.com and community sites in general. Will be carpooling down with some of my  regular crew.

Hope to see a lot of people I know there and meet a number of new people as well. Should be fun!