<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-7195174666217314934</id><updated>2012-01-18T14:23:46.384+02:00</updated><category term='install'/><category term='jce'/><category term='OPTIONS * HTTP'/><category term='lighttpd'/><category term='i386'/><category term='center'/><category term='connection'/><category term='truecrypt 5.0'/><category term='restart'/><category term='joomla'/><category term='&quot; command in unix&quot;'/><category term='install lighttpd mysql php fedora core'/><category term='truecrypt'/><category term='cherokee'/><category term='benchmark'/><category term='template'/><category term='rpm'/><category term='ngingx'/><category term='hosts.allow'/><category term='commands'/><category term='truecrypt linux'/><category term='css'/><category term='configuration'/><category term='nginx'/><category term='madeyourweb'/><category term='linux security'/><category term='lighty'/><category term='x86_64'/><category term='&quot;how to install rpm&quot;'/><category term='fail2ban'/><category term='&quot;restart linux&quot;'/><category term='linux'/><category term='apache'/><category term='fedora core'/><category term='ext3'/><category term='centos'/><category term='apache benchmark'/><category term='basic'/><category term='mysql'/><category term='ext'/><category term='truecrypt 5'/><category term='php'/><category term='install fail2ban fedora core'/><category term='httpd'/><category term='configure'/><category term='x11vnc'/><category term='ssh'/><category term='fdupes'/><category term='internal'/><category term='how-to'/><category term='sshd'/><category term='reiser fs'/><category term='compile'/><category term='&quot;install rpm&quot;'/><category term='ext2'/><category term='align'/><category term='hosts.deny'/><category term='tcp wrappers'/><category term='dummy'/><category term='fedora core x86_64'/><category term='unix'/><category term='duplicate files'/><category term='ubuntu'/><category term='compile lighttpd'/><category term='2.2.8'/><category term='problem'/><title type='text'>Linux Guru</title><subtitle type='html'>The Linux Guru blog tries to help people to explore the world of linux!</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>18</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-3204432940157498728</id><published>2008-10-07T13:24:00.002+03:00</published><updated>2008-10-07T13:43:16.181+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ngingx'/><category scheme='http://www.blogger.com/atom/ns#' term='cherokee'/><category scheme='http://www.blogger.com/atom/ns#' term='lighty'/><category scheme='http://www.blogger.com/atom/ns#' term='lighttpd'/><category scheme='http://www.blogger.com/atom/ns#' term='compile'/><category scheme='http://www.blogger.com/atom/ns#' term='apache'/><category scheme='http://www.blogger.com/atom/ns#' term='benchmark'/><category scheme='http://www.blogger.com/atom/ns#' term='apache benchmark'/><title type='text'>Cherokee web server - the next generation?</title><content type='html'>Today I was surfing on the net while I was running some loong SELECT statemens on MySQL server. On the linuxquestions forum I found a thread about new web server called Cherokee. People said Cherokee's supposed to be quite fast (double as fast as Apache!) so I had to try it out myself!&lt;br /&gt;&lt;br /&gt;I compiled Cherokee with basic settings and used default configuration files to run the tests - all I wanted to do was to test how fast Cherokee really is.&lt;br /&gt;&lt;br /&gt;On the first test I used Cherokees default index page (sized 1700 ~bytes). I used Apache Benchmark to test the capacity of the web servers: 20 concurrent connections and 100k requests.&lt;br /&gt;&lt;br /&gt;Here's the results:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Server Software:        &lt;span style="font-weight:bold;"&gt;Apache/2.2.6&lt;/span&gt;&lt;br /&gt;Server Hostname:        localhost&lt;br /&gt;Server Port:            80&lt;br /&gt;&lt;br /&gt;Document Path:          /index.html&lt;br /&gt;Document Length:        1795 bytes&lt;br /&gt;&lt;br /&gt;Concurrency Level:      20&lt;br /&gt;Time taken for tests:   43.383405 seconds&lt;br /&gt;Complete requests:      100000&lt;br /&gt;Failed requests:        0&lt;br /&gt;Write errors:           0&lt;br /&gt;Total transferred:      206406192 bytes&lt;br /&gt;HTML transferred:       179505385 bytes&lt;br /&gt;Requests per second:    &lt;span style="font-weight:bold;"&gt;2305.03&lt;/span&gt; [#/sec] (mean)&lt;br /&gt;Time per request:       8.677 [ms] (mean)&lt;br /&gt;Time per request:       0.434 [ms] (mean, across all concurrent requests)&lt;br /&gt;Transfer rate:          4646.20 [Kbytes/sec] received&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Server Software:        &lt;span style="font-weight:bold;"&gt;Cherokee/0.9.3&lt;/span&gt;&lt;br /&gt;Server Hostname:        localhost&lt;br /&gt;Server Port:            80&lt;br /&gt;&lt;br /&gt;Document Path:          /index.html&lt;br /&gt;Document Length:        1795 bytes&lt;br /&gt;&lt;br /&gt;Concurrency Level:      20&lt;br /&gt;Time taken for tests:   24.177908 seconds&lt;br /&gt;Complete requests:      100000&lt;br /&gt;Failed requests:        0&lt;br /&gt;Write errors:           0&lt;br /&gt;Total transferred:      199401994 bytes&lt;br /&gt;HTML transferred:       179501795 bytes&lt;br /&gt;Requests per second:    &lt;span style="font-weight:bold;"&gt;4136.01 [#/sec] (mean)&lt;/span&gt;&lt;br /&gt;Time per request:       4.836 [ms] (mean)&lt;br /&gt;Time per request:       0.242 [ms] (mean, across all concurrent requests)&lt;br /&gt;Transfer rate:          8053.96 [Kbytes/sec] received&lt;br /&gt;&lt;br /&gt;As you can see, Cherokee is almost double as fast serving single small file. The developers at &lt;a href="http://www.cherokee-project.com"&gt;http://www.cherokee-project.com&lt;/a&gt; say that they have developed some über-cool I/O gadget that makes this possible. &lt;br /&gt;&lt;br /&gt;I also wanted to test the results with a little bigger file: This time we're using 1.7 megabytes jpg image:&lt;br /&gt;&lt;br /&gt;Server Software:        &lt;span style="font-weight:bold;"&gt;Apache/2.2.6&lt;/span&gt;&lt;br /&gt;Server Hostname:        localhost&lt;br /&gt;Server Port:            80&lt;br /&gt;&lt;br /&gt;Document Path:          /playboy/1.jpg&lt;br /&gt;Document Length:        1791791 bytes&lt;br /&gt;&lt;br /&gt;Concurrency Level:      20&lt;br /&gt;Time taken for tests:   52.58448 seconds&lt;br /&gt;Complete requests:      10000&lt;br /&gt;Failed requests:        0&lt;br /&gt;Write errors:           0&lt;br /&gt;Total transferred:      740870816 bytes&lt;br /&gt;HTML transferred:       738040816 bytes&lt;br /&gt;Requests per second:    &lt;span style="font-weight:bold;"&gt;192.09 [#/sec] (mean)&lt;/span&gt;&lt;br /&gt;Time per request:       104.117 [ms] (mean)&lt;br /&gt;Time per request:       5.206 [ms] (mean, across all concurrent requests)&lt;br /&gt;Transfer rate:          13897.96 [Kbytes/sec] received&lt;br /&gt;&lt;br /&gt;And Cherokee:&lt;br /&gt;&lt;br /&gt;Server Software:        &lt;span style="font-weight:bold;"&gt;Cherokee/0.9.3&lt;/span&gt;&lt;br /&gt;Server Hostname:        localhost&lt;br /&gt;Server Port:            80&lt;br /&gt;&lt;br /&gt;Document Path:          /playboy/1.jpg&lt;br /&gt;Document Length:        1791791 bytes&lt;br /&gt;&lt;br /&gt;Concurrency Level:      20&lt;br /&gt;Time taken for tests:   47.941745 seconds&lt;br /&gt;Complete requests:      10000&lt;br /&gt;Failed requests:        0&lt;br /&gt;Write errors:           0&lt;br /&gt;Total transferred:      740070816 bytes&lt;br /&gt;HTML transferred:       738040816 bytes&lt;br /&gt;Requests per second:    &lt;span style="font-weight:bold;"&gt;208.59 [#/sec] (mean)&lt;/span&gt;&lt;br /&gt;Time per request:       95.883 [ms] (mean)&lt;br /&gt;Time per request:       4.794 [ms] (mean, across all concurrent requests)&lt;br /&gt;Transfer rate:          15075.07 [Kbytes/sec] received&lt;br /&gt;&lt;br /&gt;As you can see, this time the difference is allmost next to nothing.&lt;br /&gt;&lt;br /&gt;So, which of the web servers is really faster? Can't say. The Apache was default installation that comes with Fedora Core. Cherokee was compiled.  We were testing only one static file. In few days I'm going to make a test including Apache, Lighty, Nginx and Cherokee, testing static files (multifiles!), php scripts and all other kewl stuff. Then we'll see which of 'em is really faster!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-3204432940157498728?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/3204432940157498728/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=3204432940157498728' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/3204432940157498728'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/3204432940157498728'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/10/cherokee-web-server-next-generation.html' title='Cherokee web server - the next generation?'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-396425281331110981</id><published>2008-10-06T19:19:00.002+03:00</published><updated>2008-10-06T19:50:36.830+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='centos'/><category scheme='http://www.blogger.com/atom/ns#' term='lighty'/><category scheme='http://www.blogger.com/atom/ns#' term='compile lighttpd'/><title type='text'>How to compile Lighttpd on CentOS</title><content type='html'>It's very easy and very fast to compile Lighty to your Linux box on default settings. Here's and example how to compile Lighttpd 1.4.20 on CentOS 5.1.&lt;br /&gt;&lt;br /&gt;1) Download latest version of lighty from &lt;a href="http://www.lighttpd.net/download"&gt;http://www.lighttpd.net/download&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;2) Extract the contents to your template directory.&lt;br /&gt;&lt;br /&gt;3) Run .configure. I want to install application to place other than default, therefore I use --prefix -option:&lt;br /&gt;&lt;br /&gt;[root@cluster1 lighttpd-1.4.20]# ./configure --prefix=/opt/lighttpd-1.4.20&lt;br /&gt;&lt;br /&gt;4) After configuring  you receive list of which modules and features are enabled:&lt;br /&gt;&lt;br /&gt;enabled: &lt;br /&gt;  mod_access&lt;br /&gt;  mod_accesslog&lt;br /&gt;  mod_alias&lt;br /&gt;  mod_auth&lt;br /&gt;  mod_cgi&lt;br /&gt;  mod_compress&lt;br /&gt;  mod_dirlisting&lt;br /&gt;  mod_evhost&lt;br /&gt;  mod_expire&lt;br /&gt;  mod_extforward&lt;br /&gt;  mod_fastcgi&lt;br /&gt;  mod_flv_streaming&lt;br /&gt;  mod_indexfiles&lt;br /&gt;  mod_proxy&lt;br /&gt;  mod_redirect&lt;br /&gt;  mod_rewrite&lt;br /&gt;  mod_rrdtool&lt;br /&gt;  mod_scgi&lt;br /&gt;  mod_secdownload&lt;br /&gt;  mod_setenv&lt;br /&gt;  mod_simple_vhost&lt;br /&gt;  mod_ssi&lt;br /&gt;  mod_staticfile&lt;br /&gt;  mod_status&lt;br /&gt;  mod_trigger_b4_dl&lt;br /&gt;  mod_userdir&lt;br /&gt;  mod_usertrack&lt;br /&gt;  mod_webdav&lt;br /&gt;disabled: &lt;br /&gt;  mod_cml&lt;br /&gt;  mod_magnet&lt;br /&gt;  mod_mysql_vhost&lt;br /&gt;&lt;br /&gt;Features:&lt;br /&gt;&lt;br /&gt;enabled: &lt;br /&gt;  auth-crypt&lt;br /&gt;  compress-bzip2&lt;br /&gt;  compress-deflate&lt;br /&gt;  compress-gzip&lt;br /&gt;  large-files&lt;br /&gt;  network-ipv6&lt;br /&gt;  regex-conditionals&lt;br /&gt;disabled: &lt;br /&gt;  auth-ldap&lt;br /&gt;  network-openssl&lt;br /&gt;  stat-cache-fam&lt;br /&gt;  storage-gdbm&lt;br /&gt;  storage-memcache&lt;br /&gt;  webdav-locks&lt;br /&gt;  webdav-properties&lt;br /&gt;&lt;br /&gt;5) Run mtake and after that run make install&lt;br /&gt;&lt;br /&gt;6) If you use another prefix instead of default, you have to copy lighttpd.conf manually. After that you have to make default directories (htdocs &amp; log directory) manually.&lt;br /&gt;&lt;br /&gt;7) Start lighty with option -f to define configuration directory:&lt;br /&gt;&lt;br /&gt;[root@cluster1 man1]# ./lighttpd -f /etc/lighhtpd/lighttpd.conf&lt;br /&gt;&lt;br /&gt;8) Connect localhost:80 with our web browser!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-396425281331110981?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/396425281331110981/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=396425281331110981' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/396425281331110981'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/396425281331110981'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/10/how-to-compile-lighttpd-on-centos.html' title='How to compile Lighttpd on CentOS'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-7004415009280257966</id><published>2008-10-06T12:36:00.003+03:00</published><updated>2008-10-06T12:40:44.582+03:00</updated><title type='text'>Argument list too long</title><content type='html'>Have you ever seen this very annoying error message? I bet you have!&lt;br /&gt;&lt;br /&gt;I had to move little over 36k files in one directory to another box. Scp and both let me know there's too many files for them to handle. So what to do?&lt;br /&gt;&lt;br /&gt;Each shell session has a pre-configured amount of storage with a hard limit. To check it you can type getconf ARG_MAX which will type whatever the max arg is in your box.&lt;br /&gt;&lt;br /&gt;You can work around this easily wit tar. Just pre-build list of filenames and then pass the list to tar:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;find . -iname '*.gif' &gt; list.txt&lt;br /&gt;tar czvf files.tar.gz --files-from list.txt&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Sit back and enjoy the ride while box archives your files!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-7004415009280257966?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/7004415009280257966/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=7004415009280257966' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/7004415009280257966'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/7004415009280257966'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/10/argument-list-too-long.html' title='Argument list too long'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-4063009524279360636</id><published>2008-10-05T23:31:00.006+03:00</published><updated>2008-10-06T19:11:44.413+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='install'/><category scheme='http://www.blogger.com/atom/ns#' term='configuration'/><category scheme='http://www.blogger.com/atom/ns#' term='nginx'/><title type='text'>How to install NGINX</title><content type='html'>Nginx (pronounced Engine-X) is a russian open source httpd server originally written by &lt;a href="http://sysoev.ru/en/"&gt;Igor Sysoev&lt;/a&gt; back in 2005. Nginx is a very light weight httpd server and reverse proxy. It is estimated that approx. 3 per cent of all web servers run nginx. In Russia the number is as high as 20 percent, including some of their biggest web sites. Nginx is also used by Wordpress.com and 4chan.&lt;br /&gt;&lt;br /&gt;Why use Nginx instead of Apache or Lighty? Nginx should be fast. I mean FAST. Fast in a way of over 10000 concurrent requests / sec per server. Now that's fast!&lt;br /&gt;&lt;br /&gt;I have wanted to screw 'round with Nginx for a while, so here goes nothing!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;How to install Nginx on your Linux box&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Nginx can be downloaded from &lt;a href="http://www.nginx.net"&gt;www.nginx.net&lt;/a&gt;. Simple web page displays the latest distribution packages and small introduction. Further instructions can be found from &lt;a href="http://wiki.codemongers.com/"&gt;Nginx Wiki&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;I installed Nginx on my CentOs 5.1 running on VMWare &amp; Macbook. Nginx's version was 0.6.32. The default installation is very straightforward - &lt;span style="font-style:italic;"&gt;configure, make &amp; make install&lt;/span&gt;. I had to install pcre packages to my box before installing httpd server in order to enable rewrite module. I also used --prefix module to install application where i wanted:&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;[root@cluster1 nginx-0.6.32]# ./configure --prefix=/opt/nginx-0.6.32&lt;/span&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;[root@cluster1 nginx-0.6.32]# make&lt;/span&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;[root@cluster1 nginx-0.6.32]# make install&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;After this Nginx is ready to serve static files!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;How to configure Nginx&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;When you move to your Nginx installation directory, here's what you see:&lt;br /&gt;&lt;br /&gt;   drwxr-xr-x 2 root   root 4096 Oct  5 23:52 sbin&lt;br /&gt;   drwxr-xr-x 2 root   root 4096 Oct  5 23:52 html&lt;br /&gt;   drwxr-xr-x 2 root   root 4096 Oct  5 23:52 conf&lt;br /&gt;   &lt;br /&gt;Sbin directory has only nginx executable file which starts up httpd. Html directory is same as htdocs directory in Apache - copy your files here in order to serve 'em to the world! Conf-file has all configuration files.&lt;br /&gt;&lt;br /&gt;When you start up your nginx (just go to sbin and type ./nginx in order to start your web server!) you get few more directories:&lt;br /&gt;&lt;br /&gt;   drwx------ 2 nobody root 4096 Oct  5 23:52 proxy_temp&lt;br /&gt;   drwxr-xr-x 2 root   root 4096 Oct  5 23:52 logs&lt;br /&gt;   drwx------ 2 nobody root 4096 Oct  5 23:52 fastcgi_temp&lt;br /&gt;   drwx------ 2 nobody root 4096 Oct  5 23:52 client_body_temp&lt;br /&gt;&lt;br /&gt;In the conf-directory you can see the following files:&lt;br /&gt;&lt;br /&gt;   -rw-r--r-- 1 root root 3610 Oct  5 23:52 win-utf&lt;br /&gt;   -rw-r--r-- 1 root root 2726 Oct  5 23:52 nginx.conf.default&lt;br /&gt;   -rw-r--r-- 1 root root 2726 Oct  5 23:52 nginx.conf&lt;br /&gt;   -rw-r--r-- 1 root root 2991 Oct  5 23:52 mime.types.default&lt;br /&gt;   -rw-r--r-- 1 root root 2991 Oct  5 23:52 mime.types&lt;br /&gt;   -rw-r--r-- 1 root root 2223 Oct  5 23:52 koi-win&lt;br /&gt;   -rw-r--r-- 1 root root 2837 Oct  5 23:52 koi-utf&lt;br /&gt;   -rw-r--r-- 1 root root  909 Oct  5 23:52 fastcgi_params.default&lt;br /&gt;   -rw-r--r-- 1 root root  909 Oct  5 23:52 fastcgi_params&lt;br /&gt;&lt;br /&gt;The most important file of them all is of course nginx.conf. The default configuration looks like this after installation:&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;#user  nobody;&lt;br /&gt;   worker_processes  1;&lt;br /&gt;&lt;br /&gt;   #error_log  logs/error.log;&lt;br /&gt;   #error_log  logs/error.log  notice;&lt;br /&gt;   #error_log  logs/error.log  info;&lt;br /&gt;&lt;br /&gt;   #pid        logs/nginx.pid;&lt;br /&gt;   &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;events {&lt;br /&gt;    worker_connections  1024;&lt;br /&gt;}&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;These are default configuration parameters to set user and logging preferences. If you are your box to run many different applications it is a good idea to change default user to something else, like "nginx" or "www_user". &lt;br /&gt;&lt;br /&gt;Worker_connections parameter sets the maximum number of connections each worker can handle. This is quite good default value.&lt;br /&gt;&lt;br /&gt;The following part defines base settings for the http access:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;http {&lt;br /&gt;    include       mime.types;&lt;br /&gt;    default_type  application/octet-stream;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;You should not tamper round with mime types because you will likely end up with screwed up web server!&lt;br /&gt;&lt;br /&gt;If you want to, you can also change default log format in the following part.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;    #log_format  main  '$remote_addr - $remote_user [$time_local] $request '&lt;br /&gt;    #                  '"$status" $body_bytes_sent "$http_referer" '&lt;br /&gt;    #                  '"$http_user_agent" "$http_x_forwarded_for"';&lt;br /&gt;&lt;br /&gt;    #access_log  logs/access.log  main;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;TCP nopush setting means that HTTP response hearders are all sent in one packet. Sendfile setting means that Nginx ignores the details of the file it is sending and uses kernel sendfile support instead. Keepalive setting defines how long server waits for users packets. This should be changed only to few seconds on busy sites. Gzip compression saves bandwith on site, depending what kind of packets server is sending.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;    sendfile        on;&lt;br /&gt;    #tcp_nopush     on;&lt;br /&gt;&lt;br /&gt;    #keepalive_timeout  0;&lt;br /&gt;    keepalive_timeout  65;&lt;br /&gt;&lt;br /&gt;    #gzip  on;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;    &lt;br /&gt;&lt;br /&gt;The following server part is just like server settings on Apache HTTPD and if you have tampered 'round with Apache before this is quite straightforward to you.&lt;br /&gt;&lt;br /&gt;        &lt;span style="font-style:italic;"&gt;server {&lt;br /&gt;        listen       80;&lt;br /&gt;        server_name  localhost;&lt;br /&gt;&lt;br /&gt;        #charset koi8-r;&lt;br /&gt;&lt;br /&gt;        #access_log  logs/host.access.log  main;&lt;br /&gt;&lt;br /&gt;        location / {&lt;br /&gt;            root   html;&lt;br /&gt;            index  index.html index.htm;&lt;br /&gt;        }&lt;br /&gt;&lt;br /&gt;        #error_page  404              /404.html;&lt;br /&gt;&lt;br /&gt;        # redirect server error pages to the static page /50x.html&lt;br /&gt;        #&lt;br /&gt;        error_page   500 502 503 504  /50x.html;&lt;br /&gt;        location = /50x.html {&lt;br /&gt;            root   html;&lt;br /&gt;        }&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Example how to configure virtual host on Nginx:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;    # another virtual host using mix of IP-, name-, and port-based configuration&lt;br /&gt;    #&lt;br /&gt;    #server {&lt;br /&gt;    #    listen       8000;&lt;br /&gt;    #    listen       somename:8080;&lt;br /&gt;    #    server_name  somename  alias  another.alias;&lt;br /&gt;&lt;br /&gt;    #    location / {&lt;br /&gt;    #        root   html;&lt;br /&gt;    #        index  index.html index.htm;&lt;br /&gt;    #    }&lt;br /&gt;    #}&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;These were basic examples of Nginx and what one can do with it. I stripped some configuration examples but here you can see the basics. Later we're going to configure Nginx to use PHP and we're going thru how to use mod_rewrite with Nginx.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-4063009524279360636?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/4063009524279360636/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=4063009524279360636' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4063009524279360636'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4063009524279360636'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/10/how-to-install-nginx.html' title='How to install NGINX'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-924837636889087314</id><published>2008-10-05T00:41:00.004+03:00</published><updated>2008-10-05T00:53:46.262+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='lighty'/><category scheme='http://www.blogger.com/atom/ns#' term='lighttpd'/><category scheme='http://www.blogger.com/atom/ns#' term='apache'/><category scheme='http://www.blogger.com/atom/ns#' term='benchmark'/><title type='text'>Benchmarking Apache 2 vs. Lighttpd</title><content type='html'>Have you ever wondered which is faster, Apache 2 or Lighttpd? Everyone says that Lighttpd (or lighty) is a much faster, but is it really so?&lt;br /&gt;&lt;br /&gt;I found this curious article I'd like to share with you. It can be originally be found  &lt;a href="http://www.howtoforge.com/benchmark-apache2-vs-lighttpd-static-html-files"&gt;here&lt;/a&gt; but I'm also going to write a short version about the article below:&lt;br /&gt;&lt;br /&gt;The benchmark shows how Apache 2.2.3 compares to Lighttpd 1.4.13 when delivering static HTML file approx 50 kilobytes. Test was made with Apache benchmark.&lt;br /&gt;&lt;br /&gt;The test was made on a Debian Etch running inside VMware. The box was quite old but it shouldn't affect on the tendency. &lt;br /&gt;&lt;br /&gt;Versions were:&lt;br /&gt;&lt;br /&gt;   *Apache 2.2.3 mpm-prefork with default Debian configuration.&lt;br /&gt;   *Lighttpd 1.4.13 with default Debian configuration.&lt;br /&gt;&lt;br /&gt;The HTML file was approx 50 kilobytes in size and it was saved as test.html.&lt;br /&gt;&lt;br /&gt;I've run the following commands ten times each and calculated the average requests per second that the web server could handle:&lt;br /&gt;&lt;br /&gt;   *ab -n 100 -c 5 http://localhost/test.html&lt;br /&gt;   *ab -n 1000 -c 5 http://localhost/test.html&lt;br /&gt;   *ab -n 10000 -c 5 http://localhost/test.html&lt;br /&gt;   *ab -n 100 -c 50 http://localhost/test.html&lt;br /&gt;   *ab -n 1000 -c 50 http://localhost/test.html&lt;br /&gt;   *ab -n 10000 -c 50 http://localhost/test.html&lt;br /&gt;   *ab -n 100 -c 100 http://localhost/test.html&lt;br /&gt;   *ab -n 1000 -c 100 http://localhost/test.html&lt;br /&gt;   *ab -n 10000 -c 100 http://localhost/test.html&lt;br /&gt;&lt;br /&gt;-n is the number of requests to perform for the benchmarking session; -c is the number of multiple requests to perform at a time.&lt;br /&gt;&lt;br /&gt;Here's result of the test:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://images.howtoforge.com/images/benchmark_static_html_page_apache_lighttpd/3.png"&gt;&lt;img style="cursor:pointer; cursor:hand;width: 320px;" src="http://images.howtoforge.com/images/benchmark_static_html_page_apache_lighttpd/3.png" border="0" alt="" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;As you can see, lighty is almost one third faster on static pages! Knowin this one has to consider if it is worth using lighty instead of Apache. Personally I choose Apache? Why? More modules and knowledge. Maybe some day I'll start using Lighty. Or Nginx. Woudln't that be kewl?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-924837636889087314?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/924837636889087314/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=924837636889087314' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/924837636889087314'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/924837636889087314'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/10/benchmarking-apache-2-vs-lighttpd.html' title='Benchmarking Apache 2 vs. Lighttpd'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-598914400745259593</id><published>2008-09-30T21:02:00.003+03:00</published><updated>2008-09-30T21:19:34.370+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='unix'/><category scheme='http://www.blogger.com/atom/ns#' term='basic'/><category scheme='http://www.blogger.com/atom/ns#' term='&quot; command in unix&quot;'/><category scheme='http://www.blogger.com/atom/ns#' term='commands'/><title type='text'>Basic Commands in UNIX</title><content type='html'>Here's a short list of basic commands in UNIX. I have copied the list originally from another page which I cannot remember and I did some editing to it.&lt;br /&gt;&lt;br /&gt;Files&lt;br /&gt;&lt;br /&gt;    * ls --- lists your files&lt;br /&gt;    * ls -l --- lists your files in 'long format'&lt;br /&gt;    * ls -a --- lists all files&lt;br /&gt;    * more filename --- shows the first part of a file. Hit the space bar to see more or q to quit. You can use /pattern to search for a pattern.&lt;br /&gt;    * emacs filename --- is an editor that lets you create and edit a file. &lt;br /&gt;    * mv filename1 filename2 --- moves a file&lt;br /&gt;    * cp filename1 filename2 --- copies a file&lt;br /&gt;    * rm filename --- removes a file. &lt;br /&gt;    * diff filename1 filename2 --- compares files, and shows where they differ&lt;br /&gt;    * wc filename --- tells you how many lines, words, and characters there are in a file&lt;br /&gt;    * chmod options filename --- lets you change the read, write, and execute permissions on your files. For example, chmod 777 file&lt;br /&gt;&lt;br /&gt;File Compression&lt;br /&gt;    * gzip filename --- compresses files, so that they take up much less space. &lt;br /&gt;    * gunzip filename --- uncompresses files compressed by gzip.&lt;br /&gt;&lt;br /&gt;Directories&lt;br /&gt;&lt;br /&gt;    * mkdir dirname --- make a new directory&lt;br /&gt;    * cd dirname --- change directory. &lt;br /&gt;    * pwd --- tells you where you currently are. &lt;br /&gt;&lt;br /&gt;Finding things&lt;br /&gt;&lt;br /&gt;    * grep string filename(s) --- looks for the string in the files. This can be useful a lot of purposes, e.g. finding the right file among many.&lt;br /&gt;&lt;br /&gt;About your (electronic) self&lt;br /&gt;&lt;br /&gt;    * whoami --- returns your username. &lt;br /&gt;    * passwd --- lets you change your password.&lt;br /&gt;    * ps -u yourusername --- lists your processes.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-598914400745259593?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/598914400745259593/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=598914400745259593' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/598914400745259593'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/598914400745259593'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/09/basic-commands-in-unix.html' title='Basic Commands in UNIX'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-203002223707068246</id><published>2008-09-30T20:45:00.003+03:00</published><updated>2008-09-30T21:05:59.914+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='restart'/><category scheme='http://www.blogger.com/atom/ns#' term='how-to'/><category scheme='http://www.blogger.com/atom/ns#' term='&quot;restart linux&quot;'/><title type='text'>How to restart linux</title><content type='html'>There are many ways to restart your linux computer. &lt;br /&gt;&lt;br /&gt;If you are using GUI interface, shutting down or rebooting the computer depends of the GUI you are using. Usually shutdown, reboot etc. commands are located thru the GUI's main menu or bar located at the bottom of the screen.&lt;br /&gt;&lt;br /&gt;If you are using shell window, the easiest way to restart linux is to use "reboot" command:&lt;br /&gt;&lt;br /&gt;*Change to root user&lt;br /&gt;*simpy type &lt;span style="font-style:italic;"&gt;reboot&lt;/span&gt; and hit enter, and the computer restarts.&lt;br /&gt;&lt;br /&gt;Hope this helps you linux newbies to restart linux :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-203002223707068246?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/203002223707068246/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=203002223707068246' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/203002223707068246'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/203002223707068246'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/09/how-to-restart-linux.html' title='How to restart linux'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-5218305316352595224</id><published>2008-09-30T00:07:00.002+03:00</published><updated>2008-09-30T00:20:59.308+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='rpm'/><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='&quot;how to install rpm&quot;'/><category scheme='http://www.blogger.com/atom/ns#' term='&quot;install rpm&quot;'/><title type='text'>How to install RPM</title><content type='html'>&lt;span style="font-weight:bold;"&gt;What is RPM?&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Many Linux distributions use RPM as the default application management system. This means that when using RPM packages, it is quite easy to install applications to your favorite Linux distributions.&lt;br /&gt;&lt;br /&gt;RPM is originally developed by Red Hat, but nowadays you can run into rpm in many other linux distributions (for example Fedora Core, CentOS, Mandriva or Yellow Dog Linux) and even on other operating systems (Novel Netware and IBM Aix).&lt;br /&gt;&lt;br /&gt;RPM packaged software follows usually the following format:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;(name)-(version)-(release).(arch).rpm&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;For example: httpd-2.23-2.i386.rpm&lt;br /&gt;&lt;br /&gt;Also source codes can be downloaded in rpm packages. For example httpd-2.23-2.i386.src.rpm. RPM files with the noarch.rpm extension refer to files that don't depend on a computer's architecture. &lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Install RPM&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Installing RPM package is very easy and straightforward:&lt;br /&gt;&lt;br /&gt;    * rpm -ivh package.rpm - installs package.rpm&lt;br /&gt;    * rpm -Uvh package.rpm - updates package.rpm&lt;br /&gt;    * rpm -qi package - displays (already installed ) information about application "package"&lt;br /&gt;    * rpm -qpi package.rpm - displays information about rpm-file&lt;br /&gt;    * rpm -qpl package.rpm - displays files included in package.rpm&lt;br /&gt;    * rpm -qa - lists all rpm packages installed to your distribution&lt;br /&gt;    * rpm --rebuilddb - rebuilds your rpm database&lt;br /&gt;&lt;br /&gt;With these simple commands you can install rpm packages to your linux distribution!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-5218305316352595224?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/5218305316352595224/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=5218305316352595224' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/5218305316352595224'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/5218305316352595224'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/09/how-to-install-rpm.html' title='How to install RPM'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-6380745086005756304</id><published>2008-09-14T10:08:00.004+03:00</published><updated>2008-09-14T10:24:52.549+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='install fail2ban fedora core'/><category scheme='http://www.blogger.com/atom/ns#' term='configure'/><category scheme='http://www.blogger.com/atom/ns#' term='fedora core'/><category scheme='http://www.blogger.com/atom/ns#' term='linux security'/><category scheme='http://www.blogger.com/atom/ns#' term='fail2ban'/><title type='text'>Secure linux server with fail2ban</title><content type='html'>I have written shortly about fail2ban &lt;a href="http://thelinuxguru.blogspot.com/2008/02/tightening-sshd-security-on-fedora-core.html"&gt;earlier&lt;/a&gt;, but since fail2ban is so awesome application, I wanted to tell a little more about the application. It works like DenyHosts, which I am planning to test later.&lt;br /&gt;&lt;br /&gt;Fail2ban is basically a tool that observers all login attempts to your server thru various services, like SSH, HTTPD, FTP, Telnet (oh god, no telnet, please!). If it finds failed login attempt many times in a row from the same IP / host, it blocks that IP / host with an iptables firewall rule. Handy piece of software, I say!&lt;br /&gt;&lt;br /&gt;We're going to configure fail2ban to monitor SSH server, because I'm not using any other open service in my linux server. If you're using proftpd or some else server that requires authentication, it is quite easy to implement the changes to those servers, too! &lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;1) Install fail2ban&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Easiest way to install fail2ban is to use yum. As I have said before, it is easy to use yum and you win a lots of time when using it. If you know exactly what you're doing, go ahead and compile your own applications!&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;yum install fail2ban&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Start fail2ban and create system startup links:&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;/etc/init.d/fail2ban start&lt;br /&gt;   chkconfig --levels 235 fail2ban on&lt;br /&gt;   &lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;2) Configuring fail2ban&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Fail2ban configuration files can be found in the /etc/fail2ban directory. The default configuration is in &lt;span style="font-style:italic;"&gt;jail.conf&lt;/span&gt; file. Take a look and you see it is not hard to understand! You can see [default] section at the beginning of the configuration file. You can override the settings below.&lt;br /&gt;&lt;br /&gt;Here's explanations for the settings:&lt;br /&gt;&lt;br /&gt;    *  ignoreip: This is a space-separated list of IP addresses that cannot be blocked by fail2ban. For example, if the computer from which you're connecting to the server has a static IP address, you might want to list it here.&lt;br /&gt;&lt;br /&gt;    * bantime: Time in seconds that a host is blocked if it was caught by fail2ban (600 seconds = 10 minutes).&lt;br /&gt;&lt;br /&gt;    * maxretry: Max. number of failed login attempts before a host is blocked by fail2ban.&lt;br /&gt;&lt;br /&gt;    * filter: Refers to the appropriate filter file in /etc/fail2ban/filter.d.&lt;br /&gt;&lt;br /&gt;    * action: Refers to the appropriate action file in /etc/fail2ban/action.d.&lt;br /&gt;&lt;br /&gt;    * logpath: The log file that fail2ban checks for failed login attempts.&lt;br /&gt;&lt;br /&gt;Make sure to replace the email address you@mail.com with your own email address so that you get notified when someone gets blocked by fail2ban. &lt;br /&gt;&lt;br /&gt;After you have edited your configuration to the way you want it, restart your fail2ban and you're good to go!&lt;br /&gt;&lt;br /&gt;Fail2ban logs to /var/log/fail2ban.log, so you can check that file to find out if/what hosts got blocked. If a host got blocked by fail2ban, it looks like this:&lt;br /&gt;&lt;br /&gt;2008-08-08 17:49:09,466 fail2ban.actions: WARNING [sshd] Ban 1.2.3.4&lt;br /&gt;2008-08-08 18:08:33,213 fail2ban.actions: WARNING [sshd] Ban 1.2.3.4&lt;br /&gt;&lt;br /&gt;You can also check your firewall to see if any hosts are currently blocked. Simply run&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;iptables -L&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;For services that use TCPWrappers to block hosts, take a look at /etc/hosts.deny.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-6380745086005756304?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/6380745086005756304/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=6380745086005756304' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/6380745086005756304'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/6380745086005756304'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/09/secure-linux-server-with-fail2ban.html' title='Secure linux server with fail2ban'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-6525996235000124301</id><published>2008-09-14T08:51:00.006+03:00</published><updated>2008-09-14T10:06:09.411+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mysql'/><category scheme='http://www.blogger.com/atom/ns#' term='nginx'/><category scheme='http://www.blogger.com/atom/ns#' term='lighttpd'/><category scheme='http://www.blogger.com/atom/ns#' term='php'/><category scheme='http://www.blogger.com/atom/ns#' term='httpd'/><category scheme='http://www.blogger.com/atom/ns#' term='install lighttpd mysql php fedora core'/><title type='text'>How to install Lighttpd with PHP and MySQL to Fedora Core</title><content type='html'>Lighttpd, or light, is a fast, light and secure webserver which is designed and optimized for speed-critical environments. Many huge websites (Youtube, Wikipedia for example) use lighttpd to serve static content. Also  many sites that get more than thousand hits / second use lighty. &lt;br /&gt;&lt;br /&gt;Compared to Apache HTTPD or nginx, Lighttpd is not as fust as nginx but it is easier to configure and implement. Compared to Apache, it is faster but has less options. You have to consider which httpd server to use. I personally love to use Apache because of its modules, but I wouldn't hesitate to change to lighty!&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;1) Install MySQL&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;First thing you need to do - if you don't allready have MySQL installed - is to install MySQL.&lt;br /&gt;&lt;br /&gt;You can do this any way you want, but the easiest way is to use YUM:&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;yum install mysql mysql-server&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Make sure you start mysqld. You should also make sure your mysqld starts when your linux starts up:&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;chkconfig --levels 235 mysqld on&lt;br /&gt;   /etc/init.d/mysqld start&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;I personally install mysql server from binaries but this is the easiest and fastest way to get your mysql server up and running.&lt;br /&gt;&lt;br /&gt;When you install your mysql server, there is no password set for mysql root user. Unless you're using some virtual linux running on your personal laptop used only for developing things, change this immediatelly!&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;mysqladmin -u root password newpassword&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Installing Lighttpd&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Since we're using Fedora and we're able to use Yum to install applications, we install lighty this way:&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;yum install lighttpd&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Next, start up your lighty and make sure it starts up when restarting your linux server: &lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;chkconfig --levels 235 lighttpd on&lt;br /&gt;   /etc/init.d/lighttpd start&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;You can now test your ligty. Go to &lt;a href="http://127.0.0.1"&gt;http://127.0.0.1&lt;/a&gt; and you should get a page like this:&lt;br /&gt;&lt;center&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_Eh3clBjjR2g/SMy0yjGuocI/AAAAAAAAAAQ/N5NHgt_r7gU/s1600-h/1.png"&gt;&lt;img style="cursor:pointer; cursor:hand;" src="http://3.bp.blogspot.com/_Eh3clBjjR2g/SMy0yjGuocI/AAAAAAAAAAQ/N5NHgt_r7gU/s320/1.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5245766446489706946" /&gt;&lt;/a&gt;&lt;/center&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;3) Install PHP&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Lighttpd can use FastCGI to render PHP pages. This can be also installed with YUM:&lt;br /&gt;&lt;br /&gt;   &lt;span style="font-style:italic;"&gt;yum install lighttpd-fastcgi php-cli&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;That's it! Restart your lighty and you're all good to go!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-6525996235000124301?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/6525996235000124301/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=6525996235000124301' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/6525996235000124301'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/6525996235000124301'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/09/how-to-install-lighthttpd-with-php-and.html' title='How to install Lighttpd with PHP and MySQL to Fedora Core'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_Eh3clBjjR2g/SMy0yjGuocI/AAAAAAAAAAQ/N5NHgt_r7gU/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-6117681354838417950</id><published>2008-05-05T15:39:00.003+03:00</published><updated>2008-05-05T16:10:01.691+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nginx'/><title type='text'>Nginx</title><content type='html'>Today I ran up to quite intresting product from Russia - Nginx.&lt;br /&gt;&lt;br /&gt;Nginx is high performance web and proxy server and, what I have heard, it's capable to run quite high load on very low requirements. Regarding to &lt;a href="http://barry.wordpress.com/2008/04/28/load-balancer-update/"&gt;this&lt;/a&gt; article, Wordpress.com is using Nginx as load balancer, handling over 8000 requests / sec. That's quite impressive!&lt;br /&gt;&lt;br /&gt;What's best, Nginx is really lightweight. According to testimonials in &lt;a href="http://wiki.codemongers.com"&gt;Nginx wiki,&lt;/a&gt; this web server can be run with really low RAM. Excellent.&lt;br /&gt;&lt;br /&gt;I'm going to screw 'round with this piece of software now. Going to report you back later!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-6117681354838417950?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/6117681354838417950/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=6117681354838417950' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/6117681354838417950'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/6117681354838417950'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/05/nginx.html' title='Nginx'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-4869743676512755099</id><published>2008-03-13T09:02:00.003+02:00</published><updated>2008-03-13T09:14:09.217+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='OPTIONS * HTTP'/><category scheme='http://www.blogger.com/atom/ns#' term='dummy'/><category scheme='http://www.blogger.com/atom/ns#' term='2.2.8'/><category scheme='http://www.blogger.com/atom/ns#' term='connection'/><category scheme='http://www.blogger.com/atom/ns#' term='internal'/><category scheme='http://www.blogger.com/atom/ns#' term='apache'/><category scheme='http://www.blogger.com/atom/ns#' term='httpd'/><title type='text'>Apache Internal Dummy Connection</title><content type='html'>Yesterday I updated our Apache HTTPD to the latest version (2.2.8). Soon after this I noticed that HTTPD's access log was logging some stange requests:&lt;br /&gt;&lt;br /&gt;   ::1 - - [13/Mar/2008:09:05:13 +0200] "OPTIONS * HTTP/1.0" 200 -&lt;br /&gt;&lt;br /&gt;And what does the request do?&lt;br /&gt;&lt;br /&gt;   [asdf@foobar logs]# telnet localhost 5453&lt;br /&gt;   Trying 127.0.0.1...&lt;br /&gt;   Connected to localhost (127.0.0.1).&lt;br /&gt;   Escape character is '^]'.&lt;br /&gt;   OPTIONS * HTTP/1.0&lt;br /&gt;&lt;br /&gt;   HTTP/1.1 200 OK&lt;br /&gt;   Date: Thu, 13 Mar 2008 07:06:43 GMT&lt;br /&gt;   Server: Apache/2.2.8 (Unix) PHP/5.2.5&lt;br /&gt;   Content-Length: 0&lt;br /&gt;   Connection: close&lt;br /&gt;   Content-Type: text/plain; charset=UTF-8&lt;br /&gt;&lt;br /&gt;   Connection closed by foreign host.&lt;br /&gt;&lt;br /&gt;I did a little research on the web and came up with the following links:&lt;br /&gt;http://vdachev.net/blog/2007/02/01/apache-internal-dummy-connection/&lt;br /&gt;http://apache.hpi.uni-potsdam.de/document/4_3Multitasking_server.html&lt;br /&gt;&lt;br /&gt;It seems like the request above is called "Internal Dummy Connection", and it's a way for apache to let it's children processes know it's time to die. It's usually nothing you should worry about, but if you see many child processes spawn and die, you may want to configure MinSpareServers and MaxSpareServers directives, and your MaxRequestsPerChild.&lt;br /&gt;&lt;br /&gt;If you want to clean up your HTTPD access logs, you can do the following:&lt;br /&gt;&lt;br /&gt;SetEnvIf Remote_Addr “::1″ dontlog&lt;br /&gt;CustomLog /foo/bar/access.log combined env=!dontlog&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-4869743676512755099?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/4869743676512755099/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=4869743676512755099' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4869743676512755099'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4869743676512755099'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/03/apache-internal-dummy-connection.html' title='Apache Internal Dummy Connection'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-1354906011269661909</id><published>2008-03-05T15:03:00.002+02:00</published><updated>2008-03-05T15:09:18.927+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='fdupes'/><category scheme='http://www.blogger.com/atom/ns#' term='duplicate files'/><title type='text'>Discovering duplicate files</title><content type='html'>A while ago I had a problem. I had to change my file servers hard drives, and I didn't have large enough hard drive to take copies of. This lead to the situation where I had copies of my data spread on various computers, and after I got my server up and running again, I realized there were quite many duplicate files on my server.&lt;br /&gt;&lt;br /&gt;Luckily I found a nice small application called fdupes. This program goes thru directories and creates MD5 sum of every file. After the process it compares the MD5 sums and lets the user know which files are duplicates.&lt;br /&gt;&lt;br /&gt;Fdupes can be found on regular Fedora Core yum repository and the usage of the program is quite easy:&lt;br /&gt;&lt;br /&gt;fdupes -r /share &lt;&lt; the directory you want to scan, recursively&lt;br /&gt;&lt;br /&gt;The program gives you nice list of the duplicate files&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-1354906011269661909?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/1354906011269661909/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=1354906011269661909' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/1354906011269661909'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/1354906011269661909'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/03/discovering-duplicate-files.html' title='Discovering duplicate files'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-4849652598370426368</id><published>2008-02-26T10:32:00.004+02:00</published><updated>2008-02-26T10:57:25.125+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='truecrypt linux'/><category scheme='http://www.blogger.com/atom/ns#' term='ext'/><category scheme='http://www.blogger.com/atom/ns#' term='problem'/><category scheme='http://www.blogger.com/atom/ns#' term='reiser fs'/><category scheme='http://www.blogger.com/atom/ns#' term='fedora core x86_64'/><category scheme='http://www.blogger.com/atom/ns#' term='ext2'/><category scheme='http://www.blogger.com/atom/ns#' term='ubuntu'/><category scheme='http://www.blogger.com/atom/ns#' term='ext3'/><title type='text'>Truecrypt 5.0 on Fedora Core</title><content type='html'>That's it! I've had enough with TC on my box. And all it took was six days. Before it, I ran TC on Ubuntu for one week. And now it's history!&lt;br /&gt;&lt;br /&gt;My problems began when I was installing TC on Ubuntu. Or actually, there was no problem when installing Truecrypt. I found &lt;a href="http://rapidshare.com/files/89758961/truecrypt_5.0-0ubuntu1_amd64.deb.html"&gt;this&lt;/a&gt;  version of Truecrypt, build on X86_64. The problems began when I was trying to use ext2 or ext3 -filesystem on Ubuntu. Truecrypt supports FAT32 and NTFS -filesystems straight out of the box. Can you imagine Linux box using FAT filesystem?&lt;br /&gt;&lt;br /&gt;Well, luckily there is a way &lt;a href="http://sudan.ubuntuforums.com/showthread.php?t=690827"&gt;how to use some other filesystem on Truecrypt&lt;/a&gt;. Well, did it work? No, sir! mkfs.ext3 crashed my machine. So did mkfs.ext2. What's the solution? &lt;a href="http://ubuntuforums.org/showthread.php?t=478424"&gt;Reiserfs!&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;After few hours of struggle, I finally had my (k)Ubuntu installation with a hard drive encrypted with Truecrypt. The filesystem had to be Reiserfs, because mkfs with ext2/ext3 failed.&lt;br /&gt;&lt;br /&gt;After few days of usage, I ran into problem that my box started to crash randomly. I thought that the problem was xscreensaver, so I disabled it. I also had problems with (k)Ubuntu's firewall &gt;&gt; I decided to install my beloved Fedora Core. I managed to install Truecrypt using .deb files, and I allready had my hard drives encrypted with reiserfs.&lt;br /&gt;&lt;br /&gt;Goodbye, problems? So I thought. I started to move backups from my other boxes to ecrypted filesystems, and I ran into problems of crashing box. Again. Luckily this time I had my ssh session open with top runnig on the screen. I saw that my box's iowait was 99% and system load near 50 before crashing. Conclusion: Truecrypt doesn't like small files (like your picture collection, large amount of midi files, or even mp3 files. I tried to copy one 12gb tar archive from encrypted filesystem to "clean" filesystem, iowait 99% and crash. Again. At this point I decided that this is no time for me to use ecryption. Adios, Truecrypt! Maybe next time!&lt;br /&gt;&lt;br /&gt;I have to say, that the usage of TC was quite easy. Point n' click. But the results were bogus. What a shame.&lt;br /&gt;&lt;br /&gt;I must admit that I will follow truecrypt forums and if I find out that the performance problems are gone, I'll give it another shot.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-4849652598370426368?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/4849652598370426368/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=4849652598370426368' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4849652598370426368'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4849652598370426368'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/02/truecrypt-50-on-fedora-core.html' title='Truecrypt 5.0 on Fedora Core'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-4274174659580585263</id><published>2008-02-25T11:38:00.005+02:00</published><updated>2008-02-26T10:32:00.148+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tcp wrappers'/><category scheme='http://www.blogger.com/atom/ns#' term='hosts.allow'/><category scheme='http://www.blogger.com/atom/ns#' term='sshd'/><category scheme='http://www.blogger.com/atom/ns#' term='hosts.deny'/><category scheme='http://www.blogger.com/atom/ns#' term='ssh'/><category scheme='http://www.blogger.com/atom/ns#' term='fail2ban'/><title type='text'>Tightening SSHD security on Fedora Core</title><content type='html'>Here's few tips how to improve your SSHD security on your Fedora Core box. With these easy steps you can make sure no-one's gonna hack into your box.&lt;br /&gt;&lt;br /&gt;1) Install fail2ban&lt;br /&gt;&lt;br /&gt;Fail2ban is a script, that actively tracks the connections against sshd. If someone tries to scan your sshd using many different account names and passwords, fail2ban denies connections from that IP for 15 minutes. &lt;br /&gt;&lt;br /&gt;You can install fail2ban easily with yum: &lt;br /&gt;[root@machine ssh]# yum install -y fail2ban.noarch&lt;br /&gt;&lt;br /&gt;You can start using fail2ban straight after installation is complete:&lt;br /&gt;&lt;br /&gt;[root@machine ssh]# /etc/init.d/fail2ban start&lt;br /&gt;&lt;br /&gt;The log file is found at /var/log. Fail2ban can also send email with information about banned IP-addresses.&lt;br /&gt;&lt;br /&gt;2) Restricted ssh connections&lt;br /&gt;&lt;br /&gt;You can allow ssh connections only for specified accounts.&lt;br /&gt;&lt;br /&gt;Emacs your /etc/ssh/sshd_config and add following line:&lt;br /&gt;&lt;br /&gt;AllowUsers username1 username2&lt;br /&gt;&lt;br /&gt;You should allso make sure Root cannot access your ssh:&lt;br /&gt;&lt;br /&gt;PermitRootLogin no&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;After this, restart your sshd.&lt;br /&gt;&lt;br /&gt;3) Change your SSHD port&lt;br /&gt;&lt;br /&gt;By default, SSHD is located at port 22. Many port scanners try to locate ssh servers running at that address. If you change your sshd to a high port (above 1024), you get rid of many port scanning attempts. For example, nmap cannot scan ports above 1024.&lt;br /&gt;&lt;br /&gt;In sshd_config, change:&lt;br /&gt;&lt;br /&gt;#Port 22 &gt;&gt; Port 1100&lt;br /&gt;&lt;br /&gt;Restart your sshd.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;4) Allow only specific hosts to connect using TCP wrappers&lt;br /&gt;&lt;br /&gt;You should allow SSH connections to your machine only from wanted IP addresses. Anything else is unwanted, and possibly hazadrous. For this you can use two files: /etc/hosts.deny and /etc/hosts.allow&lt;br /&gt;&lt;br /&gt;Hosts.deny controls which traffic you want to deny, and /etc/hosts.allow which traffic you want to allow.&lt;br /&gt;&lt;br /&gt;Here's an example how to deny all ssh access. Simply type the following to your hosts.deny:&lt;br /&gt;&lt;br /&gt;sshd: ALL&lt;br /&gt;&lt;br /&gt;Now, after you restart your sshd, all sshd traffic is blocked.&lt;br /&gt;&lt;br /&gt;If you want to have access from your IP-addresses 192.168.1.1 and some public address, simply type the following to your hosts.allow:&lt;br /&gt;&lt;br /&gt;sshd: 192.168.1 xxx.xxx.xxx.xxx yyy.yyy.yyy.yyy&lt;br /&gt;&lt;br /&gt;If you want to allow all traffic from .se -domains, simply type this to your hosts.allow:&lt;br /&gt;&lt;br /&gt;sshd: .se&lt;br /&gt;&lt;br /&gt;This can be done allso with hosts.deny:&lt;br /&gt;&lt;br /&gt;sshd : ALL EXCEPT .se&lt;br /&gt;&lt;br /&gt;And if you want to block traffic from some countries but allow everything else, you can type this to hosts.allow&lt;br /&gt;&lt;br /&gt;# Allow SSH (http://en.wikipedia.org/wiki/Country_code_top-level_domain)&lt;br /&gt;sshd : ALL EXCEPT .br .cl .cn .hk .in .kr .mx .my .ro .ru .tw .ua&lt;br /&gt;&lt;br /&gt;# Allow everything else&lt;br /&gt;ALL : ALL&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-4274174659580585263?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/4274174659580585263/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=4274174659580585263' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4274174659580585263'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4274174659580585263'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/02/tightening-sshd-security-on-fedora-core.html' title='Tightening SSHD security on Fedora Core'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-7386882779275659977</id><published>2008-02-20T10:27:00.003+02:00</published><updated>2008-02-20T10:42:00.047+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='joomla'/><category scheme='http://www.blogger.com/atom/ns#' term='center'/><category scheme='http://www.blogger.com/atom/ns#' term='jce'/><category scheme='http://www.blogger.com/atom/ns#' term='madeyourweb'/><category scheme='http://www.blogger.com/atom/ns#' term='align'/><category scheme='http://www.blogger.com/atom/ns#' term='template'/><category scheme='http://www.blogger.com/atom/ns#' term='css'/><title type='text'>Fixing Joomla + JCE + madeyourweb center align</title><content type='html'>I wanted to use Joomla + JCE editor + madeyourweb -template on a web site.&lt;br /&gt;&lt;br /&gt;After installing all necessary stuff, I realized that JCE editor uses madeyourweb -template's align=center - setting. Here's two ways to fix this:&lt;br /&gt;&lt;br /&gt;1) Open Joomla administrator &gt;&gt; goto Mambots &gt;&gt; Site Mambots and open JCE Editor Mambot&lt;br /&gt;&lt;br /&gt;On left side there's a text saying "Template CSS classes", change this setting to No, and Voilá, align is left again.&lt;br /&gt;&lt;br /&gt;Here's more advanced option:&lt;br /&gt;&lt;br /&gt;2) Edit your template_css.css and change align=center to align=left&lt;br /&gt;&lt;br /&gt;Or&lt;br /&gt;&lt;br /&gt;3) Copy your template_css.css to another file, edit this file and force JCE Mambot to use this CSS file in "Custom CSS Classes" -option.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-7386882779275659977?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/7386882779275659977/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=7386882779275659977' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/7386882779275659977'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/7386882779275659977'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/02/fixing-joomla-jce-madeyourweb-center.html' title='Fixing Joomla + JCE + madeyourweb center align'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-4529939505106388947</id><published>2008-02-19T21:30:00.002+02:00</published><updated>2008-02-19T21:36:58.910+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='install'/><category scheme='http://www.blogger.com/atom/ns#' term='x11vnc'/><category scheme='http://www.blogger.com/atom/ns#' term='fedora core'/><title type='text'>Installing x11vnc on Fedora Core</title><content type='html'>This is a very short guide how to install x11vnc to your Fedora Core.&lt;br /&gt;&lt;br /&gt;x11vnc allows one to view remotely and interact with real X displays (i.e. a display corresponding to a physical monitor, keyboard, and mouse) with any VNC viewer. In this way it plays the role for Unix/X11 that WinVNC plays for Windows.&lt;br /&gt;&lt;br /&gt;x11vnc is by far the easiest available vnc server for Linux. Just download, configure/make, and off you go! And it works like a charm over ssh tunnel!&lt;br /&gt;&lt;br /&gt;Here's how I installed x11vnc on my FC8:&lt;br /&gt;&lt;br /&gt;1) Download .tar.gz from http://www.karlrunge.com/x11vnc/&lt;br /&gt;&lt;br /&gt;2) Make sure you have X Software Development packets installed on your FC. To be sure, just open your sytem &gt;&gt; add/remove software, scroll down to development, and make sure you have X on your "x11 development".&lt;br /&gt;&lt;br /&gt;3) After downloading http://www.karlrunge.com/x11vnc/x11vnc-0.9.4.tar.gz, just tar zxvf x11vnc-0.9.4.tar.gz, ./configure, make and make install&lt;br /&gt;&lt;br /&gt;4) Now you have your x11vnc server ready to be tested... It's propably installed at /usr/bin/x11vnc, and you can test drive it by just typing the command "x11vnc".&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-4529939505106388947?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/4529939505106388947/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=4529939505106388947' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4529939505106388947'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/4529939505106388947'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/02/installing-x11vnc-on-fedora-core.html' title='Installing x11vnc on Fedora Core'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7195174666217314934.post-8194734572736417883</id><published>2008-02-19T21:21:00.000+02:00</published><updated>2008-02-19T21:26:02.374+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='truecrypt 5'/><category scheme='http://www.blogger.com/atom/ns#' term='linux'/><category scheme='http://www.blogger.com/atom/ns#' term='i386'/><category scheme='http://www.blogger.com/atom/ns#' term='truecrypt 5.0'/><category scheme='http://www.blogger.com/atom/ns#' term='fedora core'/><category scheme='http://www.blogger.com/atom/ns#' term='truecrypt'/><category scheme='http://www.blogger.com/atom/ns#' term='x86_64'/><title type='text'>Installing Truecrypt 5 on Fedora Core X86_64</title><content type='html'>This is a *VERY* short guide how to install Truecrypt 5.0 on Fedora Core x86_64. I installed TC on FC8, but this guide *should* work on any FC platform.&lt;br /&gt;&lt;br /&gt;1) Download .deb -package (originally made for Ubuntu):&lt;br /&gt;http://rapidshare.com/files/89758961/truecrypt_5.0-0ubuntu1_amd64.deb.html&lt;br /&gt;&lt;br /&gt;2) Extract file with archive manager &gt;&gt; you get two different .tar.gz -files&lt;br /&gt;&lt;br /&gt;3) Extract data.tar.gz to the root of your system.&lt;br /&gt;&lt;br /&gt;4) start truecrypt from location /usr/sbin/truecrypt&lt;br /&gt;&lt;br /&gt;If you are using i386 -version of Fedora Core, you can download Ubuntu packet from TC's homepage and use it to install Truecrypt on your FC.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7195174666217314934-8194734572736417883?l=thelinuxguru.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://thelinuxguru.blogspot.com/feeds/8194734572736417883/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7195174666217314934&amp;postID=8194734572736417883' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/8194734572736417883'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7195174666217314934/posts/default/8194734572736417883'/><link rel='alternate' type='text/html' href='http://thelinuxguru.blogspot.com/2008/02/installing-truecrypt-5-on-fedora-core.html' title='Installing Truecrypt 5 on Fedora Core X86_64'/><author><name>anonymous</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
