I feel that making a clean well preconfigured install is the first step in configuration management. It is also crucial to your backup plan, as it relieves you from making complete system backups. This is not to say that you shouldn't be tracking your installed files via IDS, but the actual files should be already in your repository. I use debian with apt-repositories, but the general idea should be universal. This method lets me make more selective (and smaller) backups.
I started with FAI - http://www.informatik.uni-koeln.de/fai/ which is really good. FAI shares its configuration style with cfengine. You can even use fai and cfengine in tandem with some sort of install/update strategy. I would highly recommend taking a good look at both of these systems.
Both fai and cfengine are written in perl. I can't stand perl, and since I have desperate need of similar tools, I decided to roll my own in python. The project is here -> http://paella.berlios.de/ . This code is still immature and isn't fit to be used for any activites deemed to be critical.
Another method I am using is simple tracking of changes in the/etc directory. I made a simple program for this too. http://developer.berlios.de/projects/etcsvn This program really shines a little more if you have multiple similar hosts, because you can manage some config files with a working copy, patch the corresponding files in the relevant host config directories, commit the changes, and then restore/update the config on those hosts. Its really nothing more than a simple tool to keep your/etc from being a working copy, and keeping track of ownership and permissions of those files.
I am currently looking at bcfg2 http://www.mcs.anl.gov/cobalt/bcfg2/, as a replacement for cfengine. I just found out about it recently, but it's also written in python and has limited client-side dependencies.
Probably the most important thing is to be prepared to spend a great deal of time in planning, implementing and testing your system. Every tool I have seen so far makes assumptions, or has requirements, that don't match yours. Mine do too, and there is really no way to get around this.
As a general rule, you will want to look for a system that stores the configuration in a manner that you can deal with it the easiest, regardless of the configuration that it exports. The mechanics of the configuration processing should be implemented by a language that you are comfortable enough with to make the changes necessary for future strategies.
It may be a better discussion to debate what super(hero/villain) that these people a similiar to. Gates reminds me of Lex Luthor, while Jobs reminds me of Magneto, and Ballmer reminds me of the Hulk.
A camera is a passive monitoring device, not an active one. It only forwards the light that enters the lens. Active monitors are those devices that emit waves and measure their reflective signals. Examples of active monitoring devices are radar, and microwave motion detectors(not the passive IR).
"Would you hold back technology in the worry it could be used for evil ends?"
Can you do anything about the people who hold back technology in the worry that it could be used for evil ends?
The smartest criminals do research. In fact almost any group of criminals that are halfway organized, are likely to do a certain amount of research during the crafting of a caper. In order to bribe a person with some authority, some research is necessary. It is easier to bribe a judge or politician who is living among the shadows of scandal, than it is to bribe a 'Dudley Do Right'. Good bank robbers do research on payroll arrivals, or armored car deliveries. If you run a chop shop, you need to do research on where the uid's are on the equipment that you are chopping up.
With all of the discussion of what words mean, there should be no reason to try to change the meaning of a definition of a word that's been in the vernacular for centuries to clarify a term that's only been used for a few decades.
Publishing a vulnerability cannot be called research, because you already correctly called it publishing, even though the publication could be the product of research. The claim that a group of people who engage in research, aren't researchers because of how they publish their findings is fallacious.
Sorry for posting like this, but I can't stand for people to use a false understanding of words to redefine/clarify other words. It undermines the whole process of building off of other ideas, kind of like weakening the foundation and perpetuating confusion.
umeboshi@bard:~$ apt-cache show rcconf Package: rcconf Priority: optional Section: admin Installed-Size: 112 Maintainer: Atsushi KAMOSHIDA Architecture: all Version: 1.12 Depends: whiptail | whiptail-provider | dialog, sysv-rc, perl, perl-modules Conflicts: file-rc Filename: pool/main/r/rcconf/rcconf_1.12_all.deb Size: 17460 MD5sum: 04ca4de26f8462a85bd11b01ccf7b4d5 Description: Debian Runlevel configuration tool
This tool configures system services in connection with system
runlevels. It turns on/off services using the scripts in/etc/init.d/. Rcconf works with System-V style runlevel configuration.
It is a TUI(Text User Interface) frontend to the update-rc.d command.
While I agree with that, I was thinking more of the people who are living from paycheck to paycheck. These are people who are likely to be in debt for some reason or another (car/student loan/house) and have few assets worth seizing. I wager that it would take a person who has no assets, or is tired of paying on their debt to be more likely to face the consequences of witholding their taxes. I know of at least one person who hasn't paid any income tax or social security since the turn of the century, has little to nothing in the bank, and the resale value on his assets hardly pays for the cost of assigning an auditor.
I do know that it is a pipe dream to think that there are enough people to reach the level of concern to go through with what is required to wage an economic war with the government's revenue. My main purpose in the post was to show another tool that can be utilized to help regain control of the government, rather than the more common gun/vote tools. My theory is that revenue and productive citizens are the main resources of government. Facing incarceration for tax evasion is like killing two birds with one stone. They already have tools and systems to deal with guns or votes. While I agree with you that they have the tools to counter tax evasion, I wager that they are less equipped to handle it. In other words, a movement which utilizes either guns/votes/taxes to enforce their will would probably make the most effect going the tax route.
The witholding of tax dollars is one of the most fundamental methods the people can use to regain control of a runaway government. When/If there are enough people willing to refuse to pay taxes despite prosecution or incarceration, the effect would probably be more effective than either a vote or a gun in this day and age.
For children, I recommend that you get scummvm from scummvm.org . This is a engine for LucasArts point and click adventures. There are two games that you can get from the scummvm.org site, and if you can find copies of some of the games, they are well suited for children. These games are/were AAA type commercial games. I installed it on my cousin's computer, and his daughters play the games all of the time. Their favorites are Day of the Tentacle and Flight of the Amazon Queen.
We used to use notch cutters to circumvent a single sided disk, making it double sided. We also used to always buy ss/dd disks for that purpose, because they were cheaper and just as good as the ds/dd disks that were around. The disk manufacturer had no idea which side of the ss/dd disk would be used (and claim compatibility with various drives), so they dd both sides anyways.
Bittorrent works in a kind of supply/demand environment. I can easily imagine a system where you can buy songs more cheaply, and perhaps possibly pay them off using bittorrent to help distribute them.
Ha! I got a better one. Try to setup irc clients capable of dcc transfers between two NAT's. You have to port forward a specific range of ports for each client on the lan, and have those ports configured on each irc client. Adding and removing hosts to the network can be a pain, and you can just about forget about dynamic address allocation, due to having to configure the irc clients anyway. I admit that the problem is mostly in the weak spec for dcc transfers, but ipv6 would make that much easier to handle (and firewall).
I agree, people seem to have forgotten that IP is supposed to be logically peer to peer, and how this has been constrained by NAT. I still believe in the average host on the internet running a http server containing at least a simple whoami page.
You have very poor reasons for legislation. I can hear our founding fathers rolling in their graves. The pursuit of happiness can often be detrimental to one's time/revenue ratio. Have you ever traded cards, or comics? Do you have a large collection of guns and a practice range in the backyard? Do you watch a lot of new movies when they come out (Popcorn is real expensive.)?
bs This statement is a statement. This is a truth that can be held to be self-evident, it is internally reflexive. There is a concept of tautology as much as there is falsehood.
Tell me how you restore from Echelon, and I'm sure many of us will start using the service ;)
I feel that making a clean well preconfigured install is the first step in configuration management. It is also crucial to your backup plan, as it relieves you from making complete system backups. This is not to say that you shouldn't be tracking your installed files via IDS, but the actual files should be already in your repository. I use debian with apt-repositories, but the general idea should be universal. This method lets me make more selective (and smaller) backups.
/etc directory. I made a simple program for this too. http://developer.berlios.de/projects/etcsvn /etc from being a working copy, and keeping track of ownership and permissions of those files.
I started with FAI - http://www.informatik.uni-koeln.de/fai/
which is really good. FAI shares its configuration style with cfengine. You can even use fai and cfengine in tandem with some sort of install/update strategy. I would highly recommend taking a good look at both of these systems.
Both fai and cfengine are written in perl. I can't stand perl, and since I have desperate need of similar tools, I decided to roll my own in python. The project is here -> http://paella.berlios.de/ . This code is still immature and isn't fit to be used for any activites deemed to be critical.
Another method I am using is simple tracking of changes in the
This program really shines a little more if you have multiple similar hosts, because you can manage some config files with a working copy, patch the corresponding files in the relevant host config directories, commit the changes, and then restore/update the config on those hosts. Its really nothing more than a simple tool to keep your
I am currently looking at bcfg2 http://www.mcs.anl.gov/cobalt/bcfg2/, as a replacement for cfengine. I just found out about it recently, but it's also written in python and has limited client-side dependencies.
Probably the most important thing is to be prepared to spend a great deal of time in planning, implementing and testing your system. Every tool I have seen so far makes assumptions, or has requirements, that don't match yours. Mine do too, and there is really no way to get around this.
As a general rule, you will want to look for a system that stores the configuration in a manner that you can deal with it the easiest, regardless of the configuration that it exports. The mechanics of the configuration processing should be implemented by a language that you are comfortable enough with to make the changes necessary for future strategies.
I guess being modded Troll for a comment in this story would be a good thing.
:)
Unless you get a flaming reply
Farm implements, dirt bikes and four wheelers don't need registration to cross roads.
It may be a better discussion to debate what super(hero/villain) that these people a similiar to. Gates reminds me of Lex Luthor, while Jobs reminds me of Magneto, and Ballmer reminds me of the Hulk.
God has a patent on the "Hello World" program. We are still waiting for Him to finish His "Goodbye Cruel World" program.
A camera is a passive monitoring device, not an active one. It only forwards the light that enters the lens. Active monitors are those devices that emit waves and measure their reflective signals. Examples of active monitoring devices are radar, and microwave motion detectors(not the passive IR).
"Would you hold back technology in the worry it could be used for evil ends?"
Can you do anything about the people who hold back technology in the worry that it could be used for evil ends?
Take a look here http://www.wassenaar.org/
Pay special attention to the sections on dual use technologies.
The smartest criminals do research. In fact almost any group of criminals that are halfway organized, are likely to do a certain amount of research during the crafting of a caper. In order to bribe a person with some authority, some research is necessary. It is easier to bribe a judge or politician who is living among the shadows of scandal, than it is to bribe a 'Dudley Do Right'.
Good bank robbers do research on payroll arrivals, or armored car deliveries.
If you run a chop shop, you need to do research on where the uid's are on the equipment that you are chopping up.
With all of the discussion of what words mean, there should be no reason to try to change the meaning of a definition of a word that's been in the vernacular for centuries to clarify a term that's only been used for a few decades.
Publishing a vulnerability cannot be called research, because you already correctly called it publishing, even though the publication could be the product of research. The claim that a group of people who engage in research, aren't researchers because of how they publish their findings is fallacious.
Sorry for posting like this, but I can't stand for people to use a false understanding of words to redefine/clarify other words. It undermines the whole process of building off of other ideas, kind of like weakening the foundation and perpetuating confusion.
They've done this for microsoft before when people were selling windows cd's. This was about five years ago.
umeboshi@bard:~$ apt-cache show rcconf /etc/init.d/. Rcconf works with System-V style runlevel configuration.
Package: rcconf
Priority: optional
Section: admin
Installed-Size: 112
Maintainer: Atsushi KAMOSHIDA
Architecture: all
Version: 1.12
Depends: whiptail | whiptail-provider | dialog, sysv-rc, perl, perl-modules
Conflicts: file-rc
Filename: pool/main/r/rcconf/rcconf_1.12_all.deb
Size: 17460
MD5sum: 04ca4de26f8462a85bd11b01ccf7b4d5
Description: Debian Runlevel configuration tool
This tool configures system services in connection with system
runlevels. It turns on/off services using the scripts in
It is a TUI(Text User Interface) frontend to the update-rc.d command.
poor ~= per which implies division to me.
While I agree with that, I was thinking more of the people who are living from paycheck to paycheck. These are people who are likely to be in debt for some reason or another (car/student loan/house) and have few assets worth seizing. I wager that it would take a person who has no assets, or is tired of paying on their debt to be more likely to face the consequences of witholding their taxes.
I know of at least one person who hasn't paid any income tax or social security since the turn of the century, has little to nothing in the bank, and the resale value on his assets hardly pays for the cost of assigning an auditor.
I do know that it is a pipe dream to think that there are enough people to reach the level of concern to go through with what is required to wage an economic war with the government's revenue. My main purpose in the post was to show another tool that can be utilized to help regain control of the government, rather than the more common gun/vote tools. My theory is that revenue and productive citizens are the main resources of government. Facing incarceration for tax evasion is like killing two birds with one stone. They already have tools and systems to deal with guns or votes. While I agree with you that they have the tools to counter tax evasion, I wager that they are less equipped to handle it. In other words, a movement which utilizes either guns/votes/taxes to enforce their will would probably make the most effect going the tax route.
The witholding of tax dollars is one of the most fundamental methods the people can use to regain control of a runaway government. When/If there are enough people willing to refuse to pay taxes despite prosecution or incarceration, the effect would probably be more effective than either a vote or a gun in this day and age.
For children, I recommend that you get scummvm from scummvm.org . This is a engine for LucasArts point and click adventures. There are two games that you can get from the scummvm.org site, and if you can find copies of some of the games, they are well suited for children. These games are/were AAA type commercial games. I installed it on my cousin's computer, and his daughters play the games all of the time. Their favorites are Day of the Tentacle and Flight of the Amazon Queen.
We used to use notch cutters to circumvent a single sided disk, making it double sided. We also used to always buy ss/dd disks for that purpose, because they were cheaper and just as good as the ds/dd disks that were around. The disk manufacturer had no idea which side of the ss/dd disk would be used (and claim compatibility with various drives), so they dd both sides anyways.
Bittorrent works in a kind of supply/demand environment. I can easily imagine a system where you can buy songs more cheaply, and perhaps possibly pay them off using bittorrent to help distribute them.
Ha! I got a better one. Try to setup irc clients capable of dcc transfers between two NAT's. You have to port forward a specific range of ports for each client on the lan, and have those ports configured on each irc client. Adding and removing hosts to the network can be a pain, and you can just about forget about dynamic address allocation, due to having to configure the irc clients anyway. I admit that the problem is mostly in the weak spec for dcc transfers, but ipv6 would make that much easier to handle (and firewall).
I agree, people seem to have forgotten that IP is supposed to be logically peer to peer, and how this has been constrained by NAT. I still believe in the average host on the internet running a http server containing at least a simple whoami page.
If you can find the DOS or Amiga versions of your games, you can use frotz on the .dat files.
My apologies.
It had appeared that you did.
You have very poor reasons for legislation. I can hear our founding fathers rolling in their graves. The pursuit of happiness can often be detrimental to one's time/revenue ratio. Have you ever traded cards, or comics? Do you have a large collection of guns and a practice range in the backyard? Do you watch a lot of new movies when they come out (Popcorn is real expensive.)?
bs
This statement is a statement.
This is a truth that can be held to be
self-evident, it is internally reflexive.
There is a concept of tautology as much
as there is falsehood.
Yes, when I see a picture of him now, I
instantly start hiding my bad thoughts and
reciting "Mary Had a Little Lamb".
he was hired as a technical advisor/agent of chaos, by j.m.s. for the production of the b5 series.
maybe they have,
http://www.operationarnold.com/home/
did you see 60min?