Firefox Stop Home Calls

During my last Network Monitoring found out that MANY of „free“ Software calls home permanent

Article:
https://support.mozilla.org/en-US/kb/how-stop-firefox-making-automatic-connections

.. if you want to be safe, block all OUTGOING Traffic by a Firewall or local DNS Server and use a Proxy with Auth Mechanism!

Major Bug: UFW stopped thru logrotate

On Debian Sid i have seen that ufw service is stopped on logrotate!!

Its a bad known bug!

Workaround:

  • Set all Services like Dovecot, Postfix to listen on LOCALHOST (127.0.0.1) if not needed over Internet
  • Enable ONLY encrypted AUTH (Login) to Postfix! (TLS 1.2)
  • Disable unneeded Services ! like Samba, FTP…
  • move config from /etc/logrotate.d/ufw to /root/ to disable ufw logrotate !!
  • edit /etc/ufw/ufw.conf set LOGLEVEL to „off“
  • restart the Server and check open Ports next Days from outside with:

$sudo nmap -PN my.server.com

Split Files on embedded Linux Systems

If you run a embedded Linux PC like raspi often some Linux Commands fail without error messages, cause the hardware performance is low tech.

Same i have seen on the split command..

to split a 50GB Photos-Archive File to 4Gb on a USB Drive i found out that:

sudo split -b 4096m -d -u Photos.tgz Photos-Archive_

fix the job..
Cause option -u disable IO-Caching over the 2.0 USB Port to the RAM of the raspi that the Data of the Output Stream is written direct to the Drive.

FastGlacier Client on Linux AWS Cloud Backup

If you are a Newbie on AWS Glacier Cloud Backup you want to use a simple Backup Uploader you can use FastGlacier inside Wine!

Major Info: Glacier puts only Files up to 4GB size, split 50GB Tar/Zip Files to 4GB!!

  1. Setup AWS free Account !!
  2. Go to IAM create User, set User Role to Glacier full access
  3. Write down User and Password key at IAM
  4. now go right to you loved Cloud Area like Frankfurt or Asia
  5. Setup new vault, logout..
  6. install wine
  7. install winetricks dotnet40 Framework
  8. install FastGlacier
  9. have fun..

sudo apt-get install wine 
sudo apt-get winetricks

Run winetricks installer now via X-Desktop it needs X-Output!! for the Dialog to you!
inside terminal from GUI
winetricks dotnet40

Download free FastGlacier search on Google..
Double klick at the FastGlacier.exe
Setup your Client with AWS User+KEY
…enjoy..

Remark: Glacier need often 3-4 hours between updates !! (retrieve Inventory and Delete Folders) If Popups shows Erros try it hours later again!! Glacer is slow but cheap backup solution against lost Hardware thru fire!

Don’t upload confidential data without ENCRYPTION !!

Smartmontools unlisted Devices

If you use a Toshiba Canvio 3tb Drive at a raspi then smartmontools will not see the usb drive.

Try:

sudo smartctl -t long -d sat -s on /dev/sdb

-t test long or short
-d drive protocol sata = sat
-s enforce smart which is off by the usb drive firmware
wait XXX Minutes then:
sudo smartctl -H -d sat -s on /dev/sdb

get status..

Amazon AWS Howtos

Here some Bookmarks if you want to try Amazon AWS Cloud Services like S3 (Cloud File Storage), EC2 (VM Instances..)

Howtos / Basics :
https://github.com/open-guides/og-aws#aws-data-transfer-costs

Remark:

  • AWS Services mostly priced by data transfers and online time! Checkout daily „Billing Monitor“ !

Amazon AWS:
https://aws.amazon.com/

Remark:

  • S3 is the Standard Cloud Storage, cheaper is S3-IA or long term Backups use „Glacier“ where you first upload files to S3 and set a „Rule“ on a „Bucket“ move files to Glacier Long Term Backup!

Amazon Admin Console:
https://aws.amazon.com/de/console/

Security:

Howto Create ENCRYPTED Containers for AWS on Linux? Klick

  • At the End.. don’t forget the Security Problems for all Cloud Services !!
  • Most of them can be scanned easy by foreign governments!! (Safe Habour / EU) cause most big Companies must offer interfaces to the data stores by law enforcement!

 

Ubuntu Snap on Bionic 18.04 Reasons

If you upgrade or install Ubuntu to 18.04 the last and current LTS Version you have may asked yourself „what the hell is snap loop device?“

Easy Snap was hidden built in to print MONEY, sure?? YES see manpage snap.. “ BUY A SNAP !!“
snap-ubuntu-print-money

.. its a new try to get money since Amazon Shop Link implementation.. like others from Appstores..

Howto get rid off? Removing of snapd with purge app Apps by deps..

# sudo apt-get remove snapd --purge

Some may ask do i need snaps? No cause most packages still live at the debian apt repository

Snap Shop of ubuntu:

https://snapcraft.io/

If you want to learn and config Linux use apt..

Openwrt LEDE ath9k bugs fixed

If you use a TP Link Router like 3600, 4300 or a other brand with ATH9K Chipset you should upgrade to OPENWRT 18.06 with Kernel 4.9

Tested: OpenWrt 18.06.0 r7188-b0b5c64c22 / LuCI openwrt-18.06 branch (git-18.210.69179-6df9a57) – Atheros AR9344 rev 2

cause:

  • more stable
  • less load
  • no ath9k Wifi Lookup on high transfers

Same seen on other TP Link Routers like 841 Series, remark last Version 13 not supported

Hope that the Freifunk Software will be updated fast!

More Information go: https://openwrt.org/