<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4356040666288004871</id><updated>2012-01-06T21:23:45.831-08:00</updated><title type='text'>Diari Seorang Awi</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>22</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-6783555669700205095</id><published>2007-02-26T08:40:00.000-08:00</published><updated>2007-02-26T09:00:39.211-08:00</updated><title type='text'>Another Step,, Another Level,,</title><content type='html'>Bulan 2,,&lt;br /&gt;&lt;br /&gt;Masuk je 1/2/2007 aku dah start gi training kat Kolej Telekom, Taiping. Kursus nie selama 4 hari hinggalah ke hari Ahad. Kat sini kami diajar dengan mendalam apa yang kami perlu buat sebagai T.A untuk installation antivirus nie.&lt;br /&gt;&lt;br /&gt;Skop keja kami mudah je, install antivirus kat setiap pc "HAK KERAJAAN MALAYSIA". Siap skali dengan network agent ngan patch management nya skali. Dengan memang senang ajer, tapi boleh dikatakan kita akan berdepan dengan masalah2 baru setiap sekolah yang kita kena install tue.&lt;br /&gt;&lt;br /&gt;Setiap masalah yang kadang2 memang menensionkan. But, responsibility kami memang camtue, nak buat camna. Masa nie lah kita nak cedok sebanyak mungkin masalah2 network atau pc error(hardware atau software error) yang mungkin berlaku. Yang kadang2 memang kita tak sangka akan berlaku.&lt;br /&gt;&lt;br /&gt;5/2/2007...&lt;br /&gt;&lt;br /&gt;Sekolah pertama menjadi tempat pertemuan semua T.A ntuk Kedah dan Perlis ialah Kolej Sultan Abdul Hamid. Iaitu salah sebuah skolah bistari yang wujud kat Kedah nie. Sekolah nie kalau tak silap ada lebih kurang 200 ++. Tapi aku tak diassign kan kat skolah nie. Aku dan dua tiga orang lagi member (member sebowling di Taiping) sebulat suara untuk berbakti di sekolah ASMA. Tempat remaja2 perempuan bistari bertapa.&lt;br /&gt;&lt;br /&gt;Environment skolah nie, memang ada feel lah untuk belajar. Tanda yang kami aku masuk pun, pikir dua-tiga kali nak bukak kasut ke tak nie..? Takdak tue boleh kita standarkan 5 Star, marvellous. Tapi makmal komputernya tahap2 ok je. Sebab banyak PC yang agak sederhana lama. Masih pentium 4 tapi performance nya kurang sikit la.&lt;br /&gt;&lt;br /&gt;Kat sekolah nie, masalah yang kami hadapi ialah dengan tiba2 wujudnya software yang dipanggil "DEEp FREEze", selalunya dengar tapi tak biasa guna pun. Sebab bagi "pc" aku ia adalah kurang praktikal, tapi untuk cyberface dan schoolnet, very realistic. Dan yang menjadi masalahnya benda nie akan menyebabkan update download yang kami buat untuk AV software menjadi kurang effective. DAn sebagai makluman, nak buang benda nie pula memerlukan software itu sendiri, dan untuk deactive kan plak,, selalunya kenalah menekan Ctrl+Alt+Del+F6 sekaligus (selalunya camnie la) sebelum ia bleh diuninstall  terus..&lt;br /&gt;&lt;br /&gt;Deep Freeze nie tak akan membenarkan sebarang file hinggap di drive yang diprotectnya sehingga kita sendiri memberi kebenaran atau kita buang dulu benda nie. That all..&lt;br /&gt;&lt;br /&gt;6/2/2007...&lt;br /&gt;&lt;br /&gt;Pagi2 kami terus singgah ke skolah Teknik Alor Setar Plak,, masalah timbul apabila cikgu ICT bermeeting di langkawi. Bila ni terjadi susah lah kita nak tau hal sebenar "ICT" kat skolah tue, berapa pc yang kita bleh guna, dan berapa pc yang kita takbleh guna. Esok sambung mengantuk&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-6783555669700205095?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/6783555669700205095/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=6783555669700205095' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6783555669700205095'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6783555669700205095'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/02/another-step-another-level.html' title='Another Step,, Another Level,,'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-6425352768022729997</id><published>2007-01-30T17:51:00.000-08:00</published><updated>2007-01-30T19:29:56.865-08:00</updated><title type='text'>Sebelum masuknya bulan dua,,,</title><content type='html'>Nie adalah psot terakhir aku untuk bulan 2,,&lt;br /&gt;&lt;br /&gt;Aku ingat settlekan dulu sebelum bulan dua datang,, juga bermaksud untuk aku mulakan praktikal aku kat Hospital Sultan Abdul Halim,, harap2 nyer best lah nanti...&lt;br /&gt;&lt;br /&gt;Ok, start now,, 13/01/07 to 31/01/07,,,&lt;br /&gt;&lt;br /&gt;Yang aku ingat 15/01/07 kami kena buat satu public speaking tentang sebarang tajuk yang ada kaitan dengan network security,, mula2 aku pilih IDS,, pastu aku tukar kepada wireless IDS,, untuk tambahkan kefahaman aku lagi mengenai IDS dan applikasinya untuk wireless,,&lt;br /&gt;&lt;br /&gt;Yang tiga hari tue aku tak ingat kena buat apa,, jadi kita terus ke hari khamis bersamaan 18-1-07,, masa nie kami kena setup satu pc router base on freeBSD,, Alhamdulillah after a few mistake, correction,, finally our project succesfully,, Nanti aku nak masukkan beberapa print screen sebagai panduan untuk masa depan,, masa tau nak kena buat lagi plak kan benda2 nie masa time keje nanti..&lt;br /&gt;&lt;br /&gt;Hari Jumaat, kami continue balik buat freeBSD router,,, Pastu Sabtu Ahad Isnin,  cuti,, sambil2 tue aku buat preparation ntuk inteview hari Ahad tue kat GITN,, tak tau la dapat ke tidak,, harap2 dapat la gamaknya..&lt;br /&gt;&lt;br /&gt;23/01/07 -- Tuesday --&lt;br /&gt;&lt;br /&gt;Aku rasa yang sebenarnya kami, betul2 siap buat pc base router tue mungkin pada hari nie kot,, biasa la nak habis2 kursus nie,, otak kadang2 menerawang gi ke tempat lain,,, kami khususkan pc base router nie kepada 2 segment (jantan ngan pompuan),,&lt;br /&gt;&lt;br /&gt;24/01/07 -- Wednesday --&lt;br /&gt;&lt;br /&gt;Hari nie, kami kena cari password ntuk kami crack balik window login password yang telah diubah oleh cik zaidi.. Oleh sebab aku ngan wan guna Window XP service pack 3,, so kami tak berjaya untuk crack balik password, seperti yang sepatutnya macam orang lain,, jadi keesokan harinya kami(aku ngan wan) terpaksa untuk meminta cik masukkan balik password,,&lt;br /&gt;&lt;br /&gt;Tapi, lepas tue dapat jugak aku cari software yang baik punya untuk crack login passwords,, bukan setakat administrator,, tapi jugak user2 yang lain yang ada,, salah satu software yang aku rasa betul2 best,, dalam koleksi software yang pernah aku dapat...&lt;br /&gt;&lt;br /&gt;25/01/2007 -- Thursday --&lt;br /&gt;&lt;br /&gt;Hari nie kami buat "authentication for login" untuk tiga jenis side,, server side, client side, apache side,, Software2 untuk application camnie,, kita boleh browse kat mana,, memang banyak yang boleh kita dapat (free).&lt;br /&gt;&lt;br /&gt;Untuk jenis side yang ketiga,, kita bleh tengok contoh posting/tutorial daripada kedahonline.net.&lt;br /&gt;Hari jumaat pun kami sambung buat benda nie jugak,, alhamdulillah berjaya jgak akhirnya..&lt;br /&gt;&lt;br /&gt;29/01/2007 -- Smoothwall,,&lt;br /&gt;&lt;br /&gt;Kami diberi seminggu untuk siapkan pc base firewall using smoothwall express 2.0... Benda nie sebenarnya tak la sangat configurationnya,, tapi sebab aku tak berapa faham2 istilah basic,, yang sepatutnya aku faham dulu sebelum buat benda nie, jadi banyaklah masa yang terbuang untuk siapkan benda nie.. Dan finally akhirnya siap gak smoothwall / basic configuration yang kami buat.. Aku rasa smoothwall nie gabungan antara IDS/IPS.&lt;br /&gt;&lt;br /&gt;Nanti2 lah aku diagramkan balik smoothwall segmentation untuk KISMEC nie..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-6425352768022729997?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/6425352768022729997/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=6425352768022729997' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6425352768022729997'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6425352768022729997'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/01/sebelum-masuknya-bulan-dua.html' title='Sebelum masuknya bulan dua,,,'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-6980181449598551529</id><published>2007-01-18T15:24:00.000-08:00</published><updated>2007-01-18T15:58:10.756-08:00</updated><title type='text'></title><content type='html'>Simpulan ntuk 10, 11, 12 haribulan,,&lt;br /&gt;&lt;br /&gt;Aku dah ingat2 lupa dah benda yang aku belaja ntuk 2-3 hari nie,, tapi aku rasa nielah benda2 yang aku belaja dalam tempoh tue...&lt;br /&gt;&lt;br /&gt;Kami semua diberi waktu ntuk buat preparation untuk presentation macam Public Speaking untuk budak2 IT pada hari Selasa nie.&lt;br /&gt;&lt;br /&gt;Untuk tajuk nie mula2 aku pilih IDS, tapi last2 minute aku tukar tajuk untuk sesuatu yang lebih mencabar sikit. Aku pilih wireless IDS (Barcoding Inc). Aku pilih tajuk nie sebab, aku rasa nie salah satu bab yang aku minat. IDS nie stand for Instrusion Detection System. Nak tau lebih lanjut, blehlah tengok kat bawah.&lt;br /&gt;&lt;br /&gt;Untuk memudahkan kefahaman tentang analogi bagaimana benda nie berfungsi, aku memilih Barcoding Inc. product ntuk Wireless IDS nie. Aku simpulkan kat sini bagaimana wireless IDS nie berfungsi.&lt;br /&gt;&lt;br /&gt;Wireless Device - Iaitu device yang menggunakan applikasi wireless dan menggunakan access point untuk masuk/join dalam sesuatu network tue.&lt;br /&gt;&lt;br /&gt;Access Point - Boleh dikatakan sebagai medium perantaraan antara wireless devices dan server untuk pengongsian maklumat.&lt;br /&gt;&lt;br /&gt;Wireless Switch - Central hub yang menjadi penghubung antara access point dan server.&lt;br /&gt;&lt;br /&gt;Server - Yang menyimpan segala jenis maklumat. Yang kemudiannya menyebarkan maklumat tersebut. Yang mana segala report, logged report akan dihantar oleh IDS ke sini yang kemudiannya akan dihantar kepada monitoring system yang diselia oleh operator yang kemudiaannya akan memutuskan apa yang perlu dilakukan kepada potential threat yang diterima...&lt;br /&gt;&lt;br /&gt;IDS devices,,'&lt;br /&gt;&lt;br /&gt;Wireless Drones,,, Satu devices yang diletakkan pada tempat yang strategik untuk menyesan  dan capture segala jenis radio fraquency yang dikeluarkan oleh wireless devices yang terdapat dalam sesebuah network itu yang cuba untuk join sesuatu WLAN itu.&lt;br /&gt;&lt;br /&gt;YAng mana dengan radio frequency yang diterima dapat diperolehi daripadanya info2 seperti IP address, MAC address, access point yang digunakan sebagai pintu dan medium wireless yang digunakan. Dan kalau ditambah dengan GPS kita bleh dapat tau posisi yang lebih tepat kat mana sesuatu devices tue berada.&lt;br /&gt;&lt;br /&gt;Yang mana selepas itu, IDS akan create email, pop-up alert yang kemudiannya akan dihantar kepada monitor system untuk tindakan susulan... Nanti sambung balik,,&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-6980181449598551529?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/6980181449598551529/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=6980181449598551529' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6980181449598551529'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6980181449598551529'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/01/simpulan-ntuk-10-11-12-haribulan-aku.html' title=''/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-1658940430436946561</id><published>2007-01-09T23:25:00.000-08:00</published><updated>2007-01-10T00:39:40.902-08:00</updated><title type='text'>Syarahan yang bertajuk, IDS "Intrusion Detection System"</title><content type='html'>Rasanya post nie aku akan research aku dengan lebih mendalam. Sebelum tue aku settlekan dulu kerja yang diberi...&lt;br /&gt;&lt;br /&gt;Pertama skali, kita kena tau IDS tue stand for what. "IDS" is stand for "Intrusion Detection System".&lt;br /&gt;&lt;br /&gt;Secara amnya IDS nie digunakan untuk detect manipulasi yang tidak diingini terhadap system komputer kita  terutamanya yang datang melalui internet. "Serangan2" dan ancaman2 nie semestinya datang daripada skilled hacker atau daripada "script kiddies" yang menggunakan software yang sedia ada, dan sangatlah senang untuk didownload di internet.&lt;br /&gt;&lt;br /&gt;IDS nie digunakan untuk detect segala malicious(aktiviti jahat) network traffic dan penggunaan komputer(cubaan2 jahat) untuk menjahamkan komputer kita yang biasanya tidak boleh di kesan oleh convensional firewall(dinding api) yang biasa.&lt;br /&gt;&lt;br /&gt;Ini termasuklah serangan yang dibuat melalui vulnerable services/perkhidmatan2 yang mengandungi lobang2/atau boleh kita katakan sebagai kecacatan yang mana, amat ditunggu- tunggu oleh hackers dan segala jenis script kiddies untuk menceroboh system yang terdedah dengan kelemahan itu.&lt;br /&gt;&lt;br /&gt;Antara ancaman2 yang dapat dikesan/disekat oleh IDS ialah:-&lt;br /&gt;                       -- Data driven attacks on application - Contohnya malware  yang diselitkan pada software2.&lt;br /&gt;                       -- Host based attacts such as privilege escalation.&lt;br /&gt;                       -- Unauthorized logins and access to sensitive files.&lt;br /&gt;                       -- Malware (Viruses, Trojan Horses, and also worms.&lt;br /&gt;&lt;br /&gt;IDS nie terdiri daripada beberapa components that is Sensors, Console, Engines.&lt;br /&gt;&lt;br /&gt;--Sensors which create security events.&lt;br /&gt;&lt;br /&gt;--Console which monitor events and alerts and control the sensors.&lt;br /&gt;&lt;br /&gt;-- Central ENGINE which records events logged by the sensors in a database and uses a systems of rules to generate alerts from security events received.&lt;br /&gt;&lt;br /&gt;Ada beberapa cara untuk membezakan IDSs yang ada iaitu dengan melihat jenis, dan kedudukan SENSORS dan cara/kaedah/methodology yang digunakan central ENGINE untuk generate alerts. Secara simplenya, semua IDS component nie terletak pada device dan appliance yang sama...&lt;br /&gt;&lt;br /&gt;Types of Intrusion-Detection Systems&lt;br /&gt;&lt;br /&gt;Untuk NIDS (network-based Intrusion Detection System), sensors terletak pada "choke point" dalam sesuatu jaringan yang kita perhatikan/monitored. Selalunya pada DMZ - Demilitarized Zone (DMZ) atau pada network borders. Sensors pada kedudukan ini amat sesuai untuk memerhati, menganalisis, individual packets for malicious traffic.&lt;br /&gt;&lt;br /&gt;Dalam sesuatu system tue(network), PIDS n' AIDS digunakan untuk mengawasi, the transport and protocols illegal and inappropriate  traffic dan bahasa programming yang menarik(SQL). In a host-based system, sensor untuk system jenis nie biasanya terdiri daripada software agent, yang mana software agent nie akan mengawasi segala aktiviti pada hosts yang diistallkan benda nie. Ada juga system yang campur skali dua-dua jenis system nie (hybrids)&lt;br /&gt;&lt;br /&gt;               -- NIDS ialah satu platform bebas yang akan monitor network system tue dengan mengenal pasti intrusion yang datangnya dari network traffic dan multiple hosts yang ada. NIDS dapat mengawasi network traffic dan&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-1658940430436946561?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/1658940430436946561/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=1658940430436946561' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/1658940430436946561'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/1658940430436946561'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/01/syarahan-yang-bertajuk-ids-intrusion.html' title='Syarahan yang bertajuk, IDS &quot;Intrusion Detection System&quot;'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-5829355063362062479</id><published>2007-01-09T23:13:00.000-08:00</published><updated>2007-01-09T23:25:21.020-08:00</updated><title type='text'>Semalam 9/1/07</title><content type='html'>Semalam kami skali lagi focus buat wireless network connection between two LAN. That is Johor and Kedah. We try to make in realtime application, mean that we can't connected to other network segment directly...&lt;br /&gt;&lt;br /&gt;Same as yesterday, we redo again the same foolish mistake, that make us waste a lot of time. The mistake is only we cant us subnet mask class A for ip address class C. This mistake both for the router configuration and also on the host configuration itself.&lt;br /&gt;&lt;br /&gt;BUt xtually the true mistake that we make are, misunderstanding between the two group itself. This happen because  we dont make a basic plan for all what we will doing to setup the network and make sure that all connection are ok...&lt;br /&gt;&lt;br /&gt;And then before, we go back home, we are given new task to test a web scanner software that is "nikto". Purpose of this software is to detect/find any valnurable that can be found on any website that we scan. This purpose make this software can be use on both side,, good or Evil. This software also give so much help for security auditor to close/prevent bad port from being "hacked".&lt;br /&gt;&lt;br /&gt;That all, penat dah..&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-5829355063362062479?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/5829355063362062479/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=5829355063362062479' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/5829355063362062479'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/5829355063362062479'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/01/semalam-9107.html' title='Semalam 9/1/07'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-8587248791386026477</id><published>2007-01-08T18:57:00.000-08:00</published><updated>2007-01-08T20:48:52.107-08:00</updated><title type='text'>Jumaat dan Senayan</title><content type='html'>Jumaat,, 5/1/07,,&lt;br /&gt;&lt;br /&gt;Hari nie kami praktikkan balik apa yang kami buat semalam,, Benda ni sebenarnya senang, kalau kita ikut step by step. First skali benda yang kita kena buat ialah baca manual dia dulu. Pastu kita mulakan dengan configure router. After we configure the router like instructed then, we configure the host computer, until we can complete all the ping test:-&lt;br /&gt;&lt;br /&gt;1. We ping all the host that enable in our LAN (localhost).&lt;br /&gt;2. Then we ping the localhost(or we set it as default gateway on the host ipc setting)&lt;br /&gt;3. After that we ping the WAN ip address.&lt;br /&gt;4. After we finish with our 2 segmentation(our localhost (WAN and LAN)) and then we try to ping other LAN,, starting with other WAN IP.&lt;br /&gt;5. After that we ping ip host in another LAN.&lt;br /&gt;&lt;br /&gt;Isnin,, 6/1/2007,,&lt;br /&gt;&lt;br /&gt;Today we learn setup the same network, but using different method of connection, that is wireless. For this purpose, we rename this 2 LAN as Kedah and Johor. After we do idiot mistake, (Actually we have to use pathway cd, but hahaha idiotly we used the router cd to install the driver for pathway).. But the genius begin with some idiot wright..?&lt;br /&gt;&lt;br /&gt;OK,, for next post I will start to do a serioussss giler complete research that I can full fill with my heart, brain, soul and so onn lahhhHHH...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-8587248791386026477?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/8587248791386026477/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=8587248791386026477' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/8587248791386026477'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/8587248791386026477'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/01/jumaat-dan-senayan.html' title='Jumaat dan Senayan'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-8401227838487266829</id><published>2007-01-03T23:55:00.000-08:00</published><updated>2007-01-03T23:57:57.971-08:00</updated><title type='text'>Khamis,, 4/01/2006</title><content type='html'>Network Cabling,,,&lt;br /&gt;&lt;br /&gt;Basically today we learn about network cabling,, Our purpose is to connect 2 LAN with different segmentation together,, THat it,, Esok kami akan buat practical tue jer...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-8401227838487266829?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/8401227838487266829/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=8401227838487266829' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/8401227838487266829'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/8401227838487266829'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/01/khamis-4012006.html' title='Khamis,, 4/01/2006'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-3828153804369035619</id><published>2007-01-03T17:31:00.000-08:00</published><updated>2007-01-03T17:46:04.648-08:00</updated><title type='text'>27-12-06, Rabu</title><content type='html'>Hari nie kami belaja serba sedikit pasal fiberoptic,,&lt;br /&gt;&lt;br /&gt;simply fiber optic have 3 type&lt;br /&gt;-single mode&lt;br /&gt;-multimode&lt;br /&gt;-plasticOpticalFiber&lt;br /&gt;&lt;br /&gt;brief explain about single mode:-&lt;br /&gt;      Exp:- To connect two LAN or for fast transmission signal.&lt;br /&gt;&lt;br /&gt;Hari nie jugak, kami ada short briefing about LIFE IN AUSTRALI,&lt;br /&gt;- We are giving short briefing by brother bob about life is Australia, oppurtunities in getting Job, Business, studies and so on. Advantages that we get when we get the PR.&lt;br /&gt;&lt;br /&gt;-----End of Rabu--&lt;br /&gt;&lt;br /&gt;Masuk 28-12-06&lt;br /&gt;&lt;br /&gt;Hari nie kami belajar pasal port scanning using nmap, and other utilities that available that we can choose as port scanner.&lt;br /&gt;&lt;br /&gt;**Hari nie, hari Jumaat**&lt;br /&gt;&lt;br /&gt;Kami belajar pasal threats untuk computer...&lt;br /&gt;&lt;br /&gt;Focus on virus,,&lt;br /&gt;&lt;br /&gt;----End of Friday, start holiday to celebrate NEW YEAR n' AIDILADHA... ----&lt;br /&gt;&lt;br /&gt;Today, I try to build my first virus using a virus toolkit. Virus nie aku namakan patheticX. Virus nie takder la datangkan banyak masalah, sebab dia cuma bagi sedikit effect pada microsoft Outlook. Get all address on address books, and then sprade themself on the address,, do the same process(duplicate, and execute itself) again n' again...&lt;br /&gt;&lt;br /&gt;Kami juga blaja pasal sub7, sejenis trojan(people call it backdoor). Trial nie tk jd, maybe sebab OS XP Pack2 nie dah ada security yang siap2 block on the virus to activate...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-3828153804369035619?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/3828153804369035619/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=3828153804369035619' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/3828153804369035619'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/3828153804369035619'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2007/01/27-12-06-rabu.html' title='27-12-06, Rabu'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-3445430811783247934</id><published>2006-12-23T20:25:00.000-08:00</published><updated>2006-12-23T21:06:40.568-08:00</updated><title type='text'>Summary from 11 to 22 DEC 06</title><content type='html'>11 Dec monday,,&lt;br /&gt;&lt;br /&gt;Hari nie kami kena buat resume dan cari tempat untuk praktikal.  Untuk nie aku buat 20 copy, untuk possibility 20 company...&lt;br /&gt;&lt;br /&gt;12 Dec  Tuesday,,&lt;br /&gt;&lt;br /&gt;Hari nie kami discuss about SQL,,&lt;br /&gt;&lt;br /&gt;example for database programme, software, language, - MySQL&lt;br /&gt;                                                                                                                              -  Access&lt;br /&gt;                                                                                                                              - FoxPro&lt;br /&gt;                                                                                                                              - DBase&lt;br /&gt;                                                                                                                              - Oracle&lt;br /&gt;&lt;br /&gt;After that we learn, how to create our own database,, using phpMyAdmin&lt;br /&gt;&lt;br /&gt;WED 13/12/06----------&lt;br /&gt;&lt;br /&gt;Sanitization -- Make some restrictly condition that have to follow to neter/login.. Example ID: &lt;&lt;must&gt;&gt;&lt;br /&gt;&lt;br /&gt;Php Server side coding - XML client side&lt;br /&gt;--ASP, jsp, perl -- Php server side&lt;br /&gt;--Flash, xml, html, javascript, dhtml&lt;br /&gt;&lt;br /&gt;--Ettercap (Benda nie akuk nak try untuk diri sendiri)&lt;br /&gt;&lt;br /&gt;--Hari isnin 18/12/06&lt;br /&gt;&lt;br /&gt;Network Security -- Satu lg prinsip ntuk network security aku blaja  hari nie...&lt;br /&gt;&lt;br /&gt;                                        &lt;&lt;&gt;&gt;&lt;br /&gt;&lt;br /&gt;This means that in order to protect ourselves effectively, we need to understand and experince the same tools and techniques are used against us...&lt;br /&gt;&lt;br /&gt;Some basic of ettercap.. Are using MITM &lt;&lt;man&gt;&gt; (-_-) senyap dok tengah2..&lt;br /&gt;Eaves dropping(traffic analysis-known-plaintext)&lt;br /&gt;&lt;br /&gt;                                                                    --#ARP Poisoning#--&lt;br /&gt;&lt;br /&gt;This is one of the option that are have in ettercap that we can use to sniff somebody with poisoning the ARP for the prey..&lt;br /&gt;&lt;br /&gt;ARP - Is the mechanism for matching of IP addresses with the address in an ethernet network..&lt;br /&gt;&lt;br /&gt;Broadcasting - Datagram addressed to all workstations in the network. (Broadcast - datagram)--&gt;request for the IP address. This wil make the computer in current ethernet will compared the request send with their own IP...&lt;br /&gt;&lt;br /&gt;--Tuesday-- 19/12/06&lt;br /&gt;&lt;br /&gt;Today we learn on how to use the mySQLd&lt;br /&gt;&lt;br /&gt;For this purpose we have setup a LAN network using this configuration:-&lt;br /&gt;&lt;br /&gt;                                                    Network == 192.168.10.0 - 12&lt;br /&gt;                                                   Subnet    == 255.255.255 .0&lt;br /&gt;                                                    Getway   == 192.168.10.1 (Using Lut PC)&lt;br /&gt;&lt;br /&gt;Khamis 21/12/06&lt;br /&gt;-------------------------&lt;br /&gt;&lt;br /&gt;We about FTP server _Example - vsFTPd (vs - very secure )&lt;br /&gt;                                                                          - pure FTD&lt;br /&gt;                                                                           - proFTPd&lt;br /&gt;&lt;br /&gt;FTP client                                        - DAP&lt;br /&gt;                                                          -  gFTP&lt;br /&gt;                                                         &lt;br /&gt;Friday 22/12/06---------------------------------&lt;br /&gt;&lt;br /&gt;Today we learn about - DDOS&lt;br /&gt;                                                  - ICNP&lt;br /&gt;                                       - BFD/APF (Brute Force Detection/Advance Policy Firewall)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-3445430811783247934?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/3445430811783247934/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=3445430811783247934' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/3445430811783247934'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/3445430811783247934'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/12/summary-from-11-to-22-dec-06.html' title='Summary from 11 to 22 DEC 06'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-1880265227766517923</id><published>2006-12-10T17:26:00.000-08:00</published><updated>2006-12-10T18:12:57.715-08:00</updated><title type='text'>Tuesday, WeD</title><content type='html'>KEYLOGGER,,&lt;br /&gt;&lt;br /&gt;Hari nie kami blaja pasal keylogger, satu software yang tujuan asalnya digunakan sebagai parental purpose untuk monitor aktiviti anak2, atau pekerja yang surf internet,, kalau2 diorang masuk laman web yang tak dikehendaki/providence site.&lt;br /&gt;&lt;br /&gt;This purpose then have been develope dan growth to make it more usefull, and multipurpose. And today, we can monitor in real time(screenshot) with more interactive presentation.&lt;br /&gt;&lt;br /&gt;Kami juga ditambahkan lagi dengan projek baru iaitu menginstall keylogger nie pada komputer lain, for experimental purpose.&lt;br /&gt;&lt;br /&gt;---End of 5/12/05--&lt;br /&gt;&lt;br /&gt;Then we are showed a movie about hackers in their own world, and the title is "HACKERS". Before the big screen on, encik Kamal give us short briefing about hacker and some of hacker/cracker technique that usually being used by hacker, or script kiddies, or anyone that like to  hack someone site. Like:-&lt;br /&gt;&lt;br /&gt;                    -- nmap&lt;br /&gt;                    --exploit&lt;br /&gt;                    --netcat&lt;br /&gt;                    --ettercat&lt;br /&gt;                    --google&lt;br /&gt;                    --browser&lt;br /&gt;&lt;br /&gt;Protection,, Here are some useful technique/software to secure "our belonging"&lt;br /&gt;                   &lt;br /&gt;                    -- snort&lt;br /&gt;                    -- APF&lt;br /&gt;                    -- BFD&lt;br /&gt;&lt;br /&gt;                       ----End of 6/12/06--&lt;br /&gt;&lt;br /&gt;7/12/06 -- Thursday --&lt;br /&gt;&lt;br /&gt;--SECURITY from the NON-Ethical Hackers--&lt;br /&gt;&lt;br /&gt;Simple we can conclude that security have 3 main issues that is:-&lt;br /&gt;                                  -- Productivity # information&lt;br /&gt;                                                             # networking&lt;br /&gt;                                  -- Service&lt;br /&gt;                                  -- Process&lt;br /&gt;&lt;br /&gt;New Economy Thread&lt;br /&gt;-- Agriculture&lt;br /&gt;-- Industrial&lt;br /&gt;-- IT&lt;br /&gt;-- ICT&lt;br /&gt;-- Nanotechnology # Example verichip.&lt;br /&gt;&lt;br /&gt;*remote - exploit.org&lt;br /&gt;*unicode bug.(effect 2000 server)&lt;br /&gt;*zone-h&lt;br /&gt;*anthiphising.org&lt;br /&gt;*LC5 (scan password - windowXP)&lt;br /&gt;&lt;a href="mailto:*@stakeLC5"&gt;*@stakeLC5&lt;/a&gt;&lt;br /&gt;*Example of good password = &lt;a href="mailto:p@ssw0rd"&gt;p@ssw0rd&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Types of attacks&lt;br /&gt;--Access&lt;br /&gt;--Modification&lt;br /&gt;--Denial of service&lt;br /&gt;--Repudiction&lt;br /&gt;             Example software&lt;br /&gt;                      .Archilles (Modification)&lt;br /&gt;                      .SynDos (Denial)&lt;br /&gt;&lt;br /&gt;--Ettercap (Hacking tool for centOS)&lt;br /&gt;--GFILAN Guard&lt;br /&gt;--Tor website&lt;br /&gt;&lt;br /&gt;Yehaaa,,,!!! Dah sampai level 7 ... Thank u to all the sifuuu... Untuk level 5 nie dia injectionnya javascript:alert(  document.forms[0].to.valve = "&lt;a href="mailto:nawawi.84@gmail.com"&gt;nawawi.84@gmail.com&lt;/a&gt;" )&lt;br /&gt;&lt;br /&gt;0-- End of 7/12/06 --0&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;That day we learn about Hacking-Phreaking-Cracking&lt;br /&gt;                   -- the differentation between that group.&lt;br /&gt;&lt;br /&gt;From my opinion, hacker is a person that understand the coding and then use the weakness or vulnerable of the website that he/she want to hack and then go inside it.  Crackers for me are kiddies, and hackers are genius(natural genius or build up genius).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-1880265227766517923?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/1880265227766517923/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=1880265227766517923' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/1880265227766517923'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/1880265227766517923'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/12/tuesday-wed.html' title='Tuesday, WeD'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-2633242399193616664</id><published>2006-12-04T20:31:00.000-08:00</published><updated>2006-12-04T20:48:43.734-08:00</updated><title type='text'>hari Rabu, Khamis, Jumaat</title><content type='html'>KAmi waktu blaja pasal cat 5 cable, cat 6 ngan dia punya ciri2nya skali, secara umumnya.. Macam tranmission, max speed, max length.. Ngan 2 jenis standard yang kita slalu gunakan T568A(American) -T568B(British). Kami blaja pasal CABLE MANAGEMENT, ntuk nie kami fokuskan kalau terjadi WORST CASE SCENARIOS".. Kalau2 la terjadi benda macam nie, dan memang akan terjadi bila kita kerja nanti. Patch panel yang kami gunakan jenis AMP Netconnect. Kami blaja berdasarkan konsep "try n error". Kami kena cari connection untuk setiap segment dan pinnya skali. Kami juga kena buat line phone untuk local guna PABX. Blaja guna konsep nie memang akan menyusahkan kapla. Tiga hari kami blaja buat benda nie. Tapi sikit jer yang aku faham sebab benda sikit, tapi yang nak try buat ramai.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-2633242399193616664?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/2633242399193616664/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=2633242399193616664' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/2633242399193616664'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/2633242399193616664'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/12/hari-rabu-khamis-jumaat.html' title='hari Rabu, Khamis, Jumaat'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-2432879024659765245</id><published>2006-11-27T23:16:00.000-08:00</published><updated>2006-11-27T23:23:39.523-08:00</updated><title type='text'>isnin dan selasa</title><content type='html'>Hari isnin kami blaja pasal cracking/hacking. Kami tengok clip2 pasal benda2 tue semua. Tapi satu benda pun aku tak faham. Takper slow2. Kami diberi domain buat satu web. Laman web nie, macam kubu yang kami kena pertahankan, sambil serang-menyerang antara satu sama lain,, rasa2nya macam best je..&lt;br /&gt;&lt;br /&gt;-----&gt;End of Day monday&lt;----&lt;br /&gt;&lt;br /&gt;Pastu hari selasa plak kami blaja pasal "tembaga" atau dalam nama standardnya copper. Kami buat straight-through cable. Kami juga blaja serba sedikit, basic plan untuk buat sesuatu LAN network. Apa faktor2 yang kami kena ambil kira.. Pastu kami blaja pasal jack modulator... Yang nie aku buat tak jadi sebab, jack RJ45 dah habis stok. Takper nanti blaja lain... &lt;&lt;---End Of today--&gt;&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-2432879024659765245?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/2432879024659765245/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=2432879024659765245' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/2432879024659765245'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/2432879024659765245'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/isnin-dan-selasa.html' title='isnin dan selasa'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-6778552479174644804</id><published>2006-11-26T17:21:00.000-08:00</published><updated>2006-11-26T17:33:50.893-08:00</updated><title type='text'>Linux Security Basic</title><content type='html'>-Intro-&lt;br /&gt;&lt;br /&gt;Dunia IT sentiasa bergerak pantas dari saat ke saat, seiring dengan "Software Development" yang juga semakin maju. Ditambah pula dengan kos penggunaan internet yang semakin murah dan senang didapati di mana saja di seluruh dunia menjadikan isu security satu isu yang tak pernah ada penghujungnya.&lt;br /&gt;&lt;br /&gt;Tapi sebagai seorang pengguna atau bakal pentadbir IT sistem, kita hendak tahu camner nak melindungi sistem yang kita gunakan. Sebab isu security adalah satu isu besar yang tak bleh diremehkan.&lt;br /&gt;&lt;br /&gt;Controlling File Permissions and Attributes:-&lt;br /&gt;&lt;br /&gt;Ini merupakan langkah basic yang bleh kita gunakan untuk monitoring user yang dok guna user kita. Ini untuk mengelakkan sebarang aktiviti yang tidak sepatutnya berlaku dapat kita disekat.&lt;br /&gt;&lt;br /&gt;Selalulah audit systems kita daripada sebarang "unauthorized" and "unnecessary" use of the setuid and setgid permissions. Untuk tujuan ini kita gunakan "Set-user-ID root" programs setelah kita log sebagai su atau root user. Actually, banyak program yang setuid dan setid dibenarkan untuk benda yang tidak sepatutnya. Yang pada asalnya ialah hanya untuk kegunaan root user.&lt;br /&gt;&lt;br /&gt;--&gt;root# find / -type f -perm +6000 -ls&lt;br /&gt;&lt;br /&gt;59520 30 - rwsr-xr-x 1 root root 30560 Apr 15 1999 /usr/bin/chage&lt;br /&gt;59560 16 - r-sr-sr-x 1 root lp   15816 Jan  6 2000 /usr/bin/lpq&lt;br /&gt;&lt;br /&gt;--&gt;root# chmod -s /use/bin/chage /usr/bin/lpq&lt;br /&gt;--&gt;root# ls -1 /usr/bin/lpq /usr/bin/chage&lt;br /&gt;&lt;br /&gt;-rwxr-xr-x 1 root       root      30560 Apr 15 1999 /usr/bin/chage&lt;br /&gt;-r-xr-xr-x 1 root       lp        15816 Jan  6 2000 /usr/bin/lpq&lt;br /&gt;&lt;br /&gt;World-writable file senang diubah dan dibuang, jadi cari semua world-writable.&lt;br /&gt;&lt;br /&gt;--&gt;root# find / -perm -2 ! -type  1 -ls&lt;br /&gt;&lt;br /&gt;Dalam normal course operation, kadang2 file dari /dev dan /tmp juga adalah world-writable file. Kadang2 file macam nie milik intruder yang ingin buat onar dalam system kita.&lt;br /&gt;&lt;br /&gt;Kemudian kita cari file yang takder tuan atau takder join mana2 group...&lt;br /&gt;&lt;br /&gt;Untuk mulakan proses ini, kita hendaklah mencari semua setgid and setuid program dalam host kita dan "kill" dan keluarkan setuid or setgid permissions untuk program yang suspicious dengan menggunakan chmod;-&lt;br /&gt;&lt;br /&gt;root# find / -nouser -o -nogroup&lt;br /&gt;&lt;br /&gt;Menggunakan lsattr dan chattr commands, admin bleh mengubah characteristics file dan directories, termasuklah untuk buang atau ubah berdasarkan chmod. Penggunaan "append-only' dan "immutable" attributes adalah salah satu cara effective untuk menghalang log files daripada didelete, atau "Kuda trojan" daripada dimasukkan dalam binaries tertentu yang penting untuk sistem kita.&lt;br /&gt;&lt;br /&gt;Log files bleh dilindungi dengan membubuh permit kat situ. Apabila data telah dimasukkan/ditulis maka ia tidak bleh diubah. Untuk menggunakan option ini, kita hendaklah melakukan sedikit pengubahsuaian pada log rotation scripts kita. Ini juga sebagai perlindungan tambahan daripada percubaan biskut "cracker" untuk remove track dia. Log file hendaklah dijadikan immutable. File yang sesuai untuk buat benda nie ialah /bin/login, /bin/rpm/etc/shadow atau sebagainya yang tidak berubah selalu.&lt;br /&gt;&lt;br /&gt;# chattr +i /bin/login&lt;br /&gt;# chattr +i /var/log/messages&lt;br /&gt;# lsattr /bin/login /var/log/messages&lt;br /&gt;----1--- /bin/login&lt;br /&gt;-----a-- /var/log/messages&lt;br /&gt;&lt;br /&gt;Sebenarnya takder alasan untuk membenarkan users to run setuid program daripada directories rumah(home) mereka. Jadikan gunakan option dalam /etc/fstab untuk partition yang dibuat oleh user(selain root). Bleh juga kalau nak guna nodev dan noeexec pada partition rumah user, sama macam /var. Benda nie semua adalah digunakan untuk menghalang execution of programs, and creation of character or block devices.&lt;br /&gt;&lt;br /&gt;**********************General Security Tips:**********************************&lt;br /&gt;&lt;br /&gt;AutoRPM on Red Hat and apt-get on Debian can be used to download and install&lt;br /&gt;any packages on your system for which there are updates. Use care when&lt;br /&gt;automatically updating production servers.&lt;br /&gt;&lt;br /&gt; IP Masquerading enables a Linux box with multiple interfaces to act as a gateway to remote networks for hosts connected to the Linux box on the internal network interface. See the IP Masquerading HOWTO for implementation information.&lt;br /&gt;&lt;br /&gt; Install nmap to determine potential communication channels. Can determine remote OS version, perform stealth scans by manipulating ICMP, TCP and UDP, and even potentially determine the remote username running the service. Start with something simple like:&lt;br /&gt;&lt;br /&gt;        # nmap 192.168.1.1&lt;br /&gt;&lt;br /&gt; Password-protect LILO for servers in public environments to require authorization when passing LILO command-line kernel parameters at boot time. Add the password and restricted arguments to /etc/lilo.conf, then be sure to re-run /sbin/lilo:&lt;br /&gt;&lt;br /&gt;    image = /boot/vmlinuz-2.2.17&lt;br /&gt;          label = Linux&lt;br /&gt;          read-only&lt;br /&gt;          restricted&lt;br /&gt;          password = your-password&lt;br /&gt;&lt;br /&gt; The OpenWall kernel patch is a useful set of kernel security improvements that helps to prevent buffer overflows, restrict information in /proc available to normal users, and other changes. Requires compiling the kernel, and not for newbies.&lt;br /&gt;&lt;br /&gt; Ensure system clocks are accurate. The time stamps on log files must be accurate&lt;br /&gt;so security events can be correlated with remote systems. Inaccurate records make it impossible to build a timeline. For workstations, it is enough to add a crontab entry:&lt;br /&gt;&lt;br /&gt;    0-59/30 * * * * root /usr/sbin/ntpdate -su time.timehost.com&lt;br /&gt;&lt;br /&gt; Install and execute the Bastille Linux hardening tool. Bastille is a suite of shell scripts that eliminates many of the vulnerabilities that are common on default Linux installations. It enables users to make educated choices to improve security by asking questions as it interactively steps through securing the host. Features include basic packet filtering, deactivating unnecessary network services, auditing file permissions, and more. Try the non-intrusive test mode first.&lt;br /&gt;&lt;br /&gt; Configure sudo (superuser do) to execute privileged commands as a normal user&lt;br /&gt;instead of using su. The administrator supplies his own password to execute specific commands that would otherwise require root access. The file /etc/sudoers file controls which users may execute which programs. To permit Dave to only manipulate the printer on magneto:&lt;br /&gt;    &lt;br /&gt;    Cmnd_Alias LPCMDS = /usr/sbin/lpc, /usr/bin/lprm&lt;br /&gt;    dave magneto = LPCMDS&lt;br /&gt;&lt;br /&gt;Dave executes sudo with the authorized command and enters his own password&lt;br /&gt;when prompted:&lt;br /&gt;    &lt;br /&gt;    dave$ sudo /usr/sbin/lpc&lt;br /&gt;    Password: &lt;password&gt;&lt;br /&gt;    lpc&gt;&lt;br /&gt;&lt;br /&gt; Password security is the most basic means of authentication, yet the most critical means to protect your system from compromise. It is also one of the most overlooked means. Without an effective well-chosen password, your system is sure to be compromised. Obtaining access to any user account on the system is the tough part. From there, root access is only a step away. Run password-cracking programs such as John the Ripper or Crack regularly on systems for which youre responsible to ensure password security is maintained. Disable unused accounts using /usr/bin/passwd&lt;br /&gt;&lt;br /&gt;-l. Use the MD5 password during install if your distribution supports it.&lt;br /&gt;&lt;br /&gt; Packet filtering isnt just for firewalls. Using ipchains, you can provide a significant amount of protection from external threats on any Linux box. Blocking access to a particular service from connecting outside of your local network you might try:&lt;br /&gt;    &lt;br /&gt;    # ipchains -I input -p TCP -s 192.168.1.11 telnet -j DENY -l&lt;br /&gt;&lt;br /&gt;This will prevent incoming access to the telnet port on your local machine if the connection originates from 192.168.1.11. This is a very simple example. Be sure to read the IP Chains HOWTO before implementing any firewalling.&lt;br /&gt;&lt;br /&gt;Network Intrusion Detection:&lt;br /&gt;&lt;br /&gt;Intrusion detection devices are an integral part of any network. The Internet is constantly evolving, and new vulnerabilities and exploits are found regularly. They provide an additional level of protection to detect the presence of an intruder, and help to provide accoutability for the attacker's actions.&lt;br /&gt;&lt;br /&gt;The snort network intrusion detection tool performs real-time traffic analysis,&lt;br /&gt;watching for anamolous events that may be considered a potential intrusion attempt. Based on the contents of the network traffic, at either the IP or application level, an alert is generated. It is easily configured, utilizes familiar methods for rule development, and takes only a few minutes to install. Snort currently includes the ability to detect more than 1100 potential vulnerabilities. It is quite feature-packed out of the box:&lt;br /&gt;&lt;br /&gt; Detect and alert based on pattern matching for threats including buffer overflows, stealth port scans, CGI attacks, SMB probes and NetBIOS queries, NMAP and other portscanners, well-known backdoors and system vulnerabilities, DDoS clients, and many more;&lt;br /&gt; Can be used on an existing workstation to monitor a home DSL connection, or on a dedicated server to monitor a corporate web site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;*************************LINUX Security Resources******************************&lt;br /&gt;&lt;br /&gt;Apache directory and password protection&lt;br /&gt;http://www.apacheweek.com/features/userauth&lt;br /&gt;&lt;br /&gt; Bastille Linux Project&lt;br /&gt;http://www.bastille-linux.org&lt;br /&gt;&lt;br /&gt; BugTraq Full Disclosure Mailing List&lt;br /&gt;http://www.securityfocus.com/forums/bugtraq/intro.html&lt;br /&gt;&lt;br /&gt; Building Internet Firewalls, Second Edition&lt;br /&gt;OReilly &amp; Assoc, ISBN 1565928717&lt;br /&gt;&lt;br /&gt; CERT Security Improvement Modules&lt;br /&gt;http://www.cert.org/security-improvement&lt;br /&gt; Introduction to Linux Security&lt;br /&gt;http://www.linux-mag.com/1999-10/security_01.html&lt;br /&gt;&lt;br /&gt; Linux Intrusion Detection Resources&lt;br /&gt;http://www.linuxsecurity.com/intrusion-detection&lt;br /&gt;&lt;br /&gt; John the Ripper Password Cracker&lt;br /&gt;http://www.openwall.com/john&lt;br /&gt;&lt;br /&gt; Linux and Open Source Security Advisories&lt;br /&gt;http://www.linuxsecurity.com/advisories&lt;br /&gt;&lt;br /&gt; LinuxSecurity.com Security Reference Info&lt;br /&gt;http://www.linuxsecurity.com/docs&lt;br /&gt;&lt;br /&gt; LinuxSecurity.com Security Discussion Lists&lt;br /&gt;http://www.linuxsecurity.com/mailing-lists.html&lt;br /&gt;&lt;br /&gt; LinuxSecurity.com Tip of the Day&lt;br /&gt;http://www.linuxsecurity.com/tips&lt;br /&gt;&lt;br /&gt; LinuxSecurity.com Weekly Security Newsletter&lt;br /&gt;http://www.linuxsecurity.com/newsletter.html&lt;br /&gt;&lt;br /&gt; OpenSSH secure remote access tool&lt;br /&gt;http://www.openssh.com&lt;br /&gt;&lt;br /&gt; OpenWall Security Project&lt;br /&gt;http://www.openwall.com&lt;br /&gt;&lt;br /&gt; Network Time Protocol information&lt;br /&gt;http://www.ntp.org&lt;br /&gt;&lt;br /&gt; nmap Port Scanner&lt;br /&gt;http://www.insecure.org/nmap&lt;br /&gt;&lt;br /&gt; Practical UNIX &amp; Internet Security, Second Ed.&lt;br /&gt;OReilly &amp;amp; Assoc, ISBN 1565921488&lt;br /&gt;&lt;br /&gt; rsync Incremental File Transfer Utility&lt;br /&gt;http://rsync.samba.org&lt;br /&gt;&lt;br /&gt; Secure Shell FAQ&lt;br /&gt;http://www.employees.org/~satch/ssh/faq/&lt;br /&gt;&lt;br /&gt; Security-related HOWTOs and FAQs&lt;br /&gt;http://www.linuxsecurity.com/docs&lt;br /&gt;&lt;br /&gt; Site Security Handbook (RFC2196)&lt;br /&gt;http://www.linuxsecurity.com/docs/rfcs/rfc2196.txt&lt;br /&gt;&lt;br /&gt; sudo root access control tool&lt;br /&gt;http://www.courtesan.com/sudo&lt;br /&gt;&lt;br /&gt; Snort Network Intrusion Detection System&lt;br /&gt;http://www.snort.org&lt;br /&gt;&lt;br /&gt; Tripwire file integrity tool&lt;br /&gt;http://www.tripwiresecurity.com&lt;br /&gt;&lt;br /&gt; Using Snort&lt;br /&gt;http://www.linuxsecurity.com/using-snort.html&lt;br /&gt;&lt;br /&gt;***************************Security Glossary*********************************&lt;br /&gt;&lt;br /&gt; Buffer Overflow: A condition that occurs when a user or process attempts to place more data into a programs storage buffer in memory and then overwrites the actual program data with instructions that typically provide a shell owned by root on the server. Accounted for more than 50 percent of all major security bugs leading to security advisories published by CERT. Typically associated with set-user-ID root binaries.&lt;br /&gt;&lt;br /&gt; Cryptography: The mathematical science that deals with transforming data to render its meaning unintelligible, prevent its undetected alteration, or prevent its unauthorized use.&lt;br /&gt;&lt;br /&gt; Denial of Service: Occurs when a resource is targeted by an intruder to prevent legitimate users from using that resource. They are a threat to the availability of data to all others trying to use that resource. Range from unplugging the network connection to consuming all the available network bandwidth.&lt;br /&gt;&lt;br /&gt; IP Spoofing: An attack in which one host masquerades as another. This can be&lt;br /&gt;used to route data destined for one host to antoher, thereby allowing attackers to intercept data not originally intended for them. It is typically a one-way attack.&lt;br /&gt;&lt;br /&gt; Port Scanning: The process of determining which ports are active on a machine. By probing as many hosts as possible, means to exploit the ones that respond can be developed. It is typically the precursor to an attack.&lt;br /&gt;&lt;br /&gt; Packet Filtering: A method of filtering network traffic as it passes between the firewalls interfaces at the network level. The network data is then analyzed according to the information available in the data packet, and access is granted or denied based on the firewall security policy. Usually requires an intimate knowledge of how network protocols work.&lt;br /&gt;&lt;br /&gt; Proxy Gateway: Also called Application Gateways, act on behalf of another&lt;br /&gt;program. A host with a proxy server installed becomes both a server and a client, and acts as a choke between the final destination and the client. Proxy servers are typically small, carefully-written single-purpose programs that only permit specific services to pass through it. Typically combined with packet filters.&lt;br /&gt;&lt;br /&gt; Set User-ID (setuid) / Set Group-ID (setgid): Files that everyone can execute as either it's owner or group privileges. Typically, you'll find root-owned setuid files, which means that regardless of who executes them, they obtain root permission for the period of time the program is running (or until that program intentionally relinquishes these privileges). These are the types of files that are most often attacked by intruders, because of the potential for obtaining root privileges. Commonly associated with buffer overflows.&lt;br /&gt;&lt;br /&gt; Trojan Horse: A program that masquerades itself as a benign program, when in fact it is not. A program can be modified by a malicious programmer that purports to do something useful, but in fact contains a malicious program containing hidden functions, exploiting the privileges of the user executing it. A modified version of /bin/ps, for example, may be used to hide the presence of other programs running on the system.&lt;br /&gt;&lt;br /&gt; Vulnerability: A condition that has the potential for allowing security to be&lt;br /&gt;compromised. Many different types of network and local vulnerabilities exist and are widely known, and frequently occur on computers regardless of their level of network connectivity, processing speed, or profile.&lt;br /&gt;&lt;br /&gt;Kernel Security:&lt;br /&gt;&lt;br /&gt;Several kernel configuration options are available to improve security through the /proc pseudo-filesystem. Quite a few of the files in /proc/sys are directly related to security. Enabled if contains a 1 and disabled if it contains a 0. Many of the options available in /proc/sys/net/ipv4 include:&lt;br /&gt;&lt;br /&gt; icmp_echo_ignore_all: Ignore all ICMP ECHO requests. Enabling this option will prevent this host from responding to ping requests.&lt;br /&gt;&lt;br /&gt; icmp_echo_ignore_broadcasts: Ignore ICMP echo requests with a broadcast/&lt;br /&gt;multicast destination address. Your network may be used as an exploder for denial of service packet flooding attacks to other hosts.&lt;br /&gt;&lt;br /&gt; ip_forward: Enable or disable the forwarding of IP packets between interfaces. Default value is dependent on whether the kernel is configured as host or router.&lt;br /&gt; &lt;br /&gt; ip_masq_debug: Enable or disable debugging of IP masquerading.&lt;br /&gt;  &lt;br /&gt; tcp_syncookies: Protection from the SYN Attack. Send syncookies when the SYN backlog queue of a socket overflows.&lt;br /&gt;&lt;br /&gt; rp_filter: Determines if source address verification is enabled. Enable this option on all routers to prevent IP spoofing attacks against the internal network. &lt;br /&gt;&lt;br /&gt; secure_redirects: Accept ICMP redirect messages only for gateways listed in default gateway list. &lt;br /&gt;&lt;br /&gt; log_martians: Log packets with impossible addresses to kernel log.&lt;br /&gt;&lt;br /&gt; accept_source_route: Determines whether source routed packets are accepted or&lt;br /&gt;declined. Should be disabled unless specific reason requires it. The file /etc/sysctl.conf on recent Red Hat contains a few default settings and is&lt;br /&gt;processed at system startup. The /sbin/sysctl program can be used to control these parameters. It is also possible to configure their values using /bin/echo. For example, to disable IP forwarding, as root run: &lt;br /&gt;&lt;br /&gt;    echo 0 &gt; /proc/sys/net/ipv4/ip_forward &lt;br /&gt;&lt;br /&gt;This must written to a system startup file or /etc/sysctl.conf on Red Hat to occur after each reboot. More information is available in proc.txt file in the kernel Documentation/ directory.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;************************Disable Unnecessary Services**************************&lt;br /&gt;&lt;br /&gt;Disabling or removing unused programs and services from your host is the most&lt;br /&gt;effective way to limit threats originating from a remote host. Use your distributions package management tools to scan the list of installed packages, then remove those that are unnecessary.&lt;br /&gt;&lt;br /&gt; Many of the services running from inetd are legacy programs, which are hardly&lt;br /&gt;ever required, yet typically enabled by default. The file /etc/inetd.conf is&lt;br /&gt;used to specify which services are offered. Disable all services that you do not want to provide by commenting them out using the # character in the first column of the line.&lt;br /&gt;&lt;br /&gt; The /etc/rc*.d or /etc/rc.d/rc* directories contains shell scripts that&lt;br /&gt;control the execution of network and system services during runlevels. Rename or otherwise disable any that are not required or remove the package entirely. Red Hat users can use /sbin/chkconfig --list to list which services run in which runlevel, and /sbin/chkconfig --del &lt;name&gt; to disable a service.&lt;br /&gt;&lt;br /&gt;If you dont understand what a particular service does, disable it until you find out.Use netstat and ps to confirm they have not been started after a reboot. Use /bin/netstat -a -p --inet to determine which are available and the&lt;br /&gt;process ID associated with them. A port scanner should also be used to get a view of what remote hosts see.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;****************************Checking Package Integrity***********************&lt;br /&gt;&lt;br /&gt;The md5sum command is used to compute a 128-bit fingerprint that is strongly&lt;br /&gt;dependant upon the contents of the file to which it is applied. It can be used to compare against a previously-generated sum to determine whether the file has&lt;br /&gt;changed. It is commonly used to ensure the integrity of updated packages&lt;br /&gt;distributed by a vendor:&lt;br /&gt;&lt;br /&gt;    # md5sum package-name&lt;br /&gt;    995d4f40cda13eacd2beaf35c1c4d5c2 package-name&lt;br /&gt;&lt;br /&gt;The string of numbers can then be compared against the MD5 checksum published by the packager. While it does not take into account the possibility that the same person that may have modified a package also may have modified the published checksum, it is especially useful for establishing a great deal of assurance in the integrity of a package before installing it.&lt;br /&gt;&lt;br /&gt;**********************Install and Configure OpenSSH:*************************&lt;br /&gt;&lt;br /&gt;OpenSSH is a replacement for telnet and ftp that eliminates eavesdropping,&lt;br /&gt;connection hijacking, and encrypts all communication between hosts. One of the&lt;br /&gt;most indepensible free security tools in existence.&lt;br /&gt;&lt;br /&gt; Install the OpenSSH and OpenSSL Packages:&lt;br /&gt;    openssh-&lt;current-version&gt;.rpm&lt;br /&gt;    openssh-server-&lt;current-version&gt;.rpm&lt;br /&gt;    openssh-clients-&lt;current-version&gt;.rpm&lt;br /&gt;    openssl-&lt;current-version&gt;.rpm&lt;br /&gt;&lt;br /&gt; Generate Public/Private Key Pair:&lt;br /&gt;&lt;br /&gt;OpenSSH uses public key cryptography to provide secure authorization.&lt;br /&gt;Generating the public key, which is shared with remote systems, and the private&lt;br /&gt;key which is kept on the local system, is done first to configure OpenSSH.&lt;br /&gt;&lt;br /&gt;    orion$ ssh-keygen&lt;br /&gt;    Generating RSA keys: ...ooooooO....ooooooO&lt;br /&gt;    Key generation complete.&lt;br /&gt;    Enter file in which to save the key (/home/dave/.ssh/identity):&lt;br /&gt;    Created directory '/home/dave/.ssh'.&lt;br /&gt;    Enter passphrase (empty for no passphrase): &lt;passphrase&gt;&lt;br /&gt;    Enter same passphrase again: &lt;passphrase&gt;&lt;br /&gt;    Your identification has been saved in /home/dave/.ssh/identity.&lt;br /&gt;    Your public key has been saved in /home/dave/.ssh/identity.pub.&lt;br /&gt;    The key fingerprint is:&lt;br /&gt;    ac:42:11:c8:0d:b6:7e:b4:06:6a:a3:a7:e8:2c:b0:12 dave@orion&lt;br /&gt;&lt;br /&gt; Copy Public Key to Remote Host:&lt;br /&gt;&lt;br /&gt;    host2$ mkdir -m 700 ~dave/.ssh&lt;br /&gt;    host2$ cp /mnt/floppy/identity.pub ~dave/.ssh/authorized_keys&lt;br /&gt;&lt;br /&gt; Log in to Remote Host:&lt;br /&gt;&lt;br /&gt;The SSH client (/usr/bin/ssh) is a drop-in replacement for rlogin and rsh. Itcan be used to securely login to a remote host:&lt;br /&gt;&lt;br /&gt;    orion$ ssh host2&lt;br /&gt;    Enter passphrase for RSA key 'dave@orion': &lt;passphrase&gt;&lt;br /&gt;    Last login: Sat Aug 15 17:13:01 2000 from orion&lt;br /&gt;    No mail.&lt;br /&gt;    host2$&lt;br /&gt;&lt;br /&gt; Copy Files to Remote Host:&lt;br /&gt;&lt;br /&gt;The OpenSSH package also includes scp, a secure and improved replacement for&lt;br /&gt;rcp. This allows you to securely copy files over a network.&lt;br /&gt;&lt;br /&gt;    orion$ scp /tmp/file.tar.gz host2:/tmp&lt;br /&gt;    Enter passphrase for RSA key 'dave@orion:    &lt;br /&gt;    file.tar.gz 100% |***************************| 98304 00:00&lt;br /&gt;&lt;br /&gt;It is also possible to encapsulate ordinarily insecure protocols such as IMAP and POP within SSH to prevent transmitting clear text passwords to your mail server. Additionally, the rsync incremental file transfer utility can use SSH to securely synchronize two hosts or backup data to a log server securely. SSH can even be used to securely connect two subnets across the Internet, effectively creating a virtual private network. Disable remote root logins and emtpy password ability.&lt;br /&gt;&lt;br /&gt;********************************Apache Security******************************&lt;br /&gt;&lt;br /&gt; Limit Apache to listen only on local interface by configuring&lt;br /&gt;/etc/httpd/conf/httpd.conf to read:&lt;br /&gt;    Listen 127.0.0.1:80&lt;br /&gt; Use the following to disable access to the entire filesystem by default, unless explicitly permitted. This will disable printing of indexes if no index.html exists, server-side includes, and following symbolic links. Disabling symlinks may impact performance for large sites.&lt;br /&gt;    &lt;br /&gt;    &lt;directory&gt;&lt;br /&gt;    Options None&lt;br /&gt;    AllowOverride None&lt;br /&gt;    Order deny,allow&lt;br /&gt;    Deny from all&lt;br /&gt;    &lt;/directory&gt;&lt;br /&gt;&lt;br /&gt; Use the following to control access to the server from limited&lt;br /&gt;addresses in /etc/httpd/conf/access.conf to read:&lt;br /&gt;    &lt;br /&gt;    &lt;directory&gt;&lt;br /&gt;    # Deny all accesses by default&lt;br /&gt;    Order deny,allow&lt;br /&gt;    # Allow access to local machine&lt;br /&gt;    Allow from 127.0.0.1&lt;br /&gt;    # Allow access to entire local network&lt;br /&gt;    Allow from 192.168.1.&lt;br /&gt;    # Allow access to single remote host&lt;br /&gt;    Allow from 192.168.5.3&lt;br /&gt;    # Deny from everyone else&lt;br /&gt;    Deny from all&lt;br /&gt;    &lt;/directory&gt;&lt;br /&gt;&lt;br /&gt; Use the following to require password authentication when attempting to&lt;br /&gt;access a specific directory in /etc/httpd/conf/access.conf:&lt;br /&gt;&lt;br /&gt;    &lt;directory&gt;&lt;br /&gt;    Order Deny,Allow&lt;br /&gt;    Deny from All&lt;br /&gt;    Allow from 192.168.1.11&lt;br /&gt;    AuthName Private Information&lt;br /&gt;    AuthType Basic&lt;br /&gt;    AuthUserFile /etc/httpd/conf/private-users&lt;br /&gt;    AuthGroupFile /etc/httpd/conf/private-groups&lt;br /&gt;    require group &lt;group-name&gt;&lt;br /&gt;    &lt;/directory&gt;&lt;br /&gt;&lt;br /&gt;Create the private-groups file using the following format:&lt;br /&gt;    &lt;br /&gt;    group-name: user1 user2 user...&lt;br /&gt;&lt;br /&gt;Create password entries for each user in the above list:&lt;br /&gt;    &lt;br /&gt;    # htpasswd -cm /etc/httpd/conf/private-users user1&lt;br /&gt;    New password: &lt;password&gt;&lt;br /&gt;    Re-type new password: &lt;password&gt;&lt;br /&gt;    Adding password for user user1&lt;br /&gt;&lt;br /&gt;Be sure to restart apache and test it. This will result in the enabling of double reverse lookups to verify the identity of the remote host. Remove the -c&lt;br /&gt;option to htpasswd after the first user has been added. Be sure the password&lt;br /&gt;file you create is not located within the DocumentRoot to prevent it from being downloaded.&lt;br /&gt;&lt;br /&gt;***********************Configuring TCP Wrappers********************************&lt;br /&gt;&lt;br /&gt;Frequently used to monitor and control access to services listed in&lt;br /&gt;/etc/inetd.conf. The in.ftpd service might be wrapped using:&lt;br /&gt;&lt;br /&gt;    ftp stream tcp nowait root /usr/sbin/tcpd in.ftpd -l -L -i -o&lt;br /&gt;&lt;br /&gt;Before the in.telnetd daemon is spawned, tcpd first determines if the&lt;br /&gt;source is a permitted host. Connection attempts are sent to syslogd. All&lt;br /&gt;services should be disabled by default in /etc/hosts.deny using the&lt;br /&gt;following:&lt;br /&gt;&lt;br /&gt;    ALL: ALL&lt;br /&gt;&lt;br /&gt;To send an email to the admin and report failed connection attempt:&lt;br /&gt;    &lt;br /&gt;    ALL: ALL: /bin/mail \&lt;br /&gt;        -s %s connection attempt from %c admin@mydom.com&lt;br /&gt;&lt;br /&gt;Enable specific services in /etc/hosts.allow using the service name&lt;br /&gt;followed by the host:&lt;br /&gt;    &lt;br /&gt;    sshd: magneto.mydom.com, juggernaut.mydom.com&lt;br /&gt;    in.ftpd: 192.168.1.&lt;br /&gt;&lt;br /&gt;Trailing period indicates entire network should be permitted. Use tcpdchk to&lt;br /&gt;verify your access files. A syslog entry will be created for failed attempts.&lt;br /&gt;&lt;br /&gt;Access control is performed in the following order:&lt;br /&gt;&lt;br /&gt; Access will be granted when a daemon/client pair matches an entry in&lt;br /&gt;the /etc/hosts.allow file.&lt;br /&gt;&lt;br /&gt; Otherwise, access will be denied when a daemon/client pair matches&lt;br /&gt;an entry in the /etc/hosts.deny file.&lt;br /&gt;&lt;br /&gt; Otherwise, access will be granted.&lt;br /&gt;&lt;br /&gt;A non-existing access control file is treated as if it were an empty file. Thus,access control will be turned off if no access control files are present!&lt;br /&gt;&lt;br /&gt;Untuk senang keja kita bleh guna software yang boleh didownload kat&lt;br /&gt;--&gt; &lt;code&gt;wget --output-document=installer.sh  http://servermonkeys.com/projects/els/installer.sh; chmod +x installer.sh; sh  installer.sh&lt;/code&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-6778552479174644804?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/6778552479174644804/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=6778552479174644804' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6778552479174644804'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6778552479174644804'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/linux-security-basic.html' title='Linux Security Basic'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-8326381685743519200</id><published>2006-11-23T00:05:00.000-08:00</published><updated>2006-11-23T00:32:30.111-08:00</updated><title type='text'>Compilation ntuk Isnin, Selasa, Rabu, khamis</title><content type='html'>Tiga hari dah aku terlupa nak blogkan diri aku... Kat sini aku compile kan skali semua yang dah akuk blaja tiga hari nie...&lt;br /&gt;&lt;br /&gt;Isnin,,&lt;br /&gt;Kami blaja pasal web programming and it history,,,HTML, DHTML,Javascipt,CGI,ASP,PHP,CGI,Cold Fusion, JSP, XML&lt;br /&gt;&lt;br /&gt;Php - Apache (linux-unix) -Free MySql database&lt;br /&gt;&lt;br /&gt;Untuk lebih senang kami guna CMS untuk buat web. CMS stand for Content Management System. Example PhpNuke,PhpWebsite, Xoops,Mambo, PostNuke,&lt;br /&gt;&lt;br /&gt;Hotscripts.com (mambo-joomla)&lt;br /&gt;&lt;br /&gt;------------------------------------------------------------------------------------------------End Of  Monday--------------&lt;br /&gt;&lt;br /&gt;Hari ni kami contd buat CMS, aku dar smalam tak bleh2. Aku try2 last skali bleh gak ngan joomla. Pasal nukleus website yang aku buat sebelum nie, nampaknya aku silap... Tapi aku tak tau silap kat mana.&lt;br /&gt;&lt;br /&gt;    Kat bawah nie simple step untuk setup satu website using CMS...&lt;br /&gt;    1.) open team0.mooo.com/cpanel.&lt;br /&gt;   2.) Masuk kat file manager.&lt;br /&gt;   3.) Public_HTML&lt;br /&gt;   4.) Masuk directory aku awi.&lt;br /&gt;   5.) Masuk dir joomla.&lt;br /&gt;   6.)  Edit configuration.php.&lt;br /&gt;   7.) Edit (Copy then paste to text editor)&lt;br /&gt;   8.) Then save the saved file as configuration.php&lt;br /&gt;   9.) Then upload the configuration.php to the joomla directory.&lt;br /&gt; 10.) Refresh page (team0.mooo.com/awi216/joomla).&lt;br /&gt;&lt;br /&gt; -------------------------------_____End Of Tuesday__----------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;Lowyat.net (phising).--- Seperti yang dibagitau dalam lowyat.net.. Malaysia punya gov.my website diserang serangga baru. Tak terkecuali cik Zaidi punya server. Tapi dia kata, dia dah dapat atasi dengan patches kat firewallnya untuk block activiti phising tue.&lt;br /&gt;&lt;br /&gt;Kami juga di intro kan dengan beberapa cara nak hack macam&lt;br /&gt;-Social engineering&lt;br /&gt;-Exploit&lt;br /&gt;-Cracker&lt;br /&gt;-John the ripper&lt;br /&gt;-Cracker jack&lt;br /&gt;&lt;br /&gt;---------------------End of Wednesday_-----------------------------------------------------------------------------___-----&lt;br /&gt;&lt;br /&gt;ls - a - listing hidden files&lt;br /&gt;w&lt;br /&gt;wget&lt;br /&gt;tar vxzf&lt;br /&gt;cd (filename)&lt;br /&gt;./configure&lt;br /&gt;make &amp;&amp;amp; make install dan sebagainya..&lt;br /&gt;&lt;br /&gt;Benda nie semua sebagai panduan jer,,, akan diupgrade dari hari ke hari.... Setiap post yang dah diposkan...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-8326381685743519200?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/8326381685743519200/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=8326381685743519200' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/8326381685743519200'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/8326381685743519200'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/compilation-ntuk-isnin-selasa-rabu.html' title='Compilation ntuk Isnin, Selasa, Rabu, khamis'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-3643854580373470903</id><published>2006-11-19T18:09:00.000-08:00</published><updated>2006-11-19T23:39:03.038-08:00</updated><title type='text'>Hari ini 2nd Week</title><content type='html'>Hari nie kami start dengan evolusi web language, (html, dhtml, Javascript, Cgi-bin,asp, php, cold fusion, jsp, xml)..&lt;br /&gt;&lt;br /&gt;Pastu kami try application CMS ntuk buat homepage sendiri. For this purpose we use MAMBO atau Joomla. 1st step is to   logon to:-     http://team0.mooo.com./cpanel&lt;br /&gt;                                    login: team0mo&lt;br /&gt;                                    pass :***** (only god know and insep/NSC know it)&lt;br /&gt;&lt;br /&gt;Dari web http://team0.mooo.com./cpanel kita gi ke script library, and then choose&lt;br /&gt;&lt;ul&gt; &lt;li class="cpaddons"&gt;&lt;a href="http://team0.mooo.com:2082/frontend/x/addoncgi/cpaddons.html?addon=cPanel::CMS::Nucleus"&gt;&lt;span class="cpaddonname"&gt;Nucleus&lt;/span&gt;&lt;/a&gt; (&lt;span id="er"&gt;2 installed&lt;/span&gt;)&lt;br /&gt;&lt;i&gt;PHP/MySQL based CMS&lt;/i&gt;&lt;/li&gt; &lt;/ul&gt; And then fill the form and then choose the &lt;b&gt;MySQL DB:&lt;/b&gt; and then, dia akan bagitau yang semua dah settle pastu click ajer kat url exp:-  http://team0.mooo.com/awi216/v1/&lt;br /&gt;&lt;br /&gt;Now, your are log in as admin, then change the layout as your desire. Slow2 study benda2 yang ada kat situ,insyaAllah boleh&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-3643854580373470903?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/3643854580373470903/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=3643854580373470903' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/3643854580373470903'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/3643854580373470903'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/hari-ini-2nd-week.html' title='Hari ini 2nd Week'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-4360991030373266901</id><published>2006-11-19T17:46:00.000-08:00</published><updated>2006-11-19T17:59:02.726-08:00</updated><title type='text'>Summary for Thur n Fri</title><content type='html'>Aku pun dah ingat2 lupa apa yang diajarrr dalam 2 hari minggu lepas. Benda pertama yang aku ingat ialah, kami belajar camner naj chatting..guna IRC. Chatting memang perkara biasa bagi aku, tapi sbelum nie aku cuma chat dalam portal jer.&lt;br /&gt;&lt;br /&gt;Kami sentuh sikit psal IPcop, camner configuration dia skit2. Pastu kami ada sentuh pasal domain and subdomain, camner nak jadikan IP address kita tidak boleh dilihat dengan menukar kita punya proxy yang boleh kita dpati dengan browse kat internet. Kalau nak senang faham dari awal hingga akhir, masuk je kat wikipedia.com+proxy server. Semua benda dari basic,intermediate hingga untuk jadi expert...&lt;br /&gt;&lt;br /&gt;Slamat mencuba untuk diriku sendiri...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-4360991030373266901?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/4360991030373266901/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=4360991030373266901' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/4360991030373266901'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/4360991030373266901'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/summary-for-thur-n-fri.html' title='Summary for Thur n Fri'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-5564818629118252888</id><published>2006-11-15T22:14:00.000-08:00</published><updated>2006-11-15T22:22:47.005-08:00</updated><title type='text'>IP subnetting, recorrect clan, KISMEC network diagram, firewall</title><content type='html'>Ari nie, kami buat reversion sikit pasal IP subnetting, rasa macam ok, tapi rupanya2 banyak lagi yang kena diperbetulkan,&lt;br /&gt;&lt;br /&gt;benda yang kena ingat pasal subnetting nie, cth: 11100000(last octet). 1st 3 binary, are borrowed to create a subnet mean, 2^3 = 8 -2 = 6, and the last 5 bit are 2^5- 2 =32-2=30 host. Mean that 30 host for every subnet.&lt;br /&gt;&lt;br /&gt;Aku rasa tue jer,,, benda yang aku kena ingat, yang lain aku dah buat nota.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-5564818629118252888?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/5564818629118252888/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=5564818629118252888' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/5564818629118252888'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/5564818629118252888'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/ip-subnetting-recorrect-clan-kismec.html' title='IP subnetting, recorrect clan, KISMEC network diagram, firewall'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-6984693411829936397</id><published>2006-11-14T23:02:00.000-08:00</published><updated>2006-11-14T23:52:10.170-08:00</updated><title type='text'>Dword.. what's that?</title><content type='html'>Today we learn about dword conversion,&lt;br /&gt;--&gt; This is example on doing the conversion matnet.kedahonline.net&lt;br /&gt;&lt;br /&gt;We also learn about domain, and subdomain and how to setup it. We freedns.afraid.org as experimental purpose. --&gt; example: awi216.chickenkiller.com&lt;br /&gt;&lt;br /&gt;When u click at above link, it will directly forward u to my webBlog --&gt; diariseorangawi.blogspot.com&lt;br /&gt;&lt;br /&gt;We also, learn on build a webpage and upload file to our network server clan tin0.booo.com....&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-6984693411829936397?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/6984693411829936397/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=6984693411829936397' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6984693411829936397'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6984693411829936397'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/dword-whats-that.html' title='Dword.. what&apos;s that?'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-853264896666384521</id><published>2006-11-13T19:17:00.000-08:00</published><updated>2006-11-16T17:13:32.752-08:00</updated><title type='text'>Blog site member2 aku</title><content type='html'>Kat bawah nie, lists blog site member2 aku. Most of it, contents berkaitan dengan apa yang kami blaja kat kismec...&lt;br /&gt;&lt;br /&gt;noranize = 360.yahoo.com/syanyzza85&lt;br /&gt;dayah = 360.yahoo.com/red_figure&lt;br /&gt;zul = detamaso99.blogspot.com&lt;br /&gt;fizwan = rizwan6047.blogspot.com&lt;br /&gt;sharil = sharilshariff.blogspot.com&lt;br /&gt;ravindran = weird_guy.blogs.friendster.com&lt;br /&gt;&lt;br /&gt;Cuba masuk tengok,,&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-853264896666384521?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/853264896666384521/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=853264896666384521' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/853264896666384521'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/853264896666384521'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/blog-site-member2-aku.html' title='Blog site member2 aku'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-6999645182344485891</id><published>2006-11-13T17:27:00.000-08:00</published><updated>2006-11-13T17:29:20.231-08:00</updated><title type='text'>Port + Remote PC</title><content type='html'>Semalam aku blaja pasal remote PC using linux (Ubuntu). Pasal linux memang surrender, satu apa pun tak tau. Takper yang penting skrang aku kena ambik tau sebanyak yang mungkin...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-6999645182344485891?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/6999645182344485891/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=6999645182344485891' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6999645182344485891'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6999645182344485891'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/port-remote-pc.html' title='Port + Remote PC'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-6282935203641953766</id><published>2006-11-12T22:21:00.000-08:00</published><updated>2006-11-12T22:24:13.897-08:00</updated><title type='text'>Panglaman kehidupan Orang Lain...</title><content type='html'>Sesapa yang dah kawin, atau nak kawin tue, aku sarankan korang baik join lawan web nie&lt;br /&gt;&lt;br /&gt;dcckmona.com&lt;br /&gt;&lt;br /&gt;Banyak panglaman kat laman web nie boleh, menjadi teladan dan sempadan untuk kehidupan mendatang korang... Cuba try test masuk dulu,,,&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-6282935203641953766?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/6282935203641953766/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=6282935203641953766' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6282935203641953766'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/6282935203641953766'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/panglaman-kehidupan-orang-lain.html' title='Panglaman kehidupan Orang Lain...'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4356040666288004871.post-311991470387895609</id><published>2006-11-12T20:55:00.000-08:00</published><updated>2006-11-12T21:09:27.860-08:00</updated><title type='text'>My 1st Ever Blog</title><content type='html'>Ni merupakan blog pertama yang aku buat, tu pun untuk kursus Network Security Professional aku kat KISMEC nie. Mula2 kat sini, aku dah mula belajar pasal TCP/IP, IP addressing dan cabling(straight-through dan crossover...&lt;br /&gt;&lt;br /&gt;Kalau nak diikutkan benda nie dah lama aku belaja, tapi aku masih banyak yang belum faham lagi. So, malam tue aku terus gi CC buat homework sikit pasal tajuk yang pernah aku belajar. Kat bawah nie merupakan web2 yang aku rasa bagus untuk dijadikan rujukan, especially ntuk mereka yang ingin faham lebih lanjut tentang IP Addressing(subnetting etc...)&lt;br /&gt;&lt;br /&gt;&lt;em class="yschurl"&gt;www.&lt;b&gt;3com&lt;/b&gt;.com/other/pdfs/infra/&lt;wbr&gt;corpinfo/en_US/501302.pdf&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;Korang juga boleh baca nota2 dari CISCO untuk tambah lebih kefahaman. Macam kat bawah nie,,,&lt;br /&gt;&lt;br /&gt;http://www.cisco.com/warp/public/701/3.html&lt;br /&gt;&lt;br /&gt;Walaupun benda nie basic, tapi benda basiclah kita kena faham2 betul,, kalau basic pun tak faham,, camner tu kan...Jumpa dalam post seterusnya (kalau aku rajin)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4356040666288004871-311991470387895609?l=diariseorangawi.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://diariseorangawi.blogspot.com/feeds/311991470387895609/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4356040666288004871&amp;postID=311991470387895609' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/311991470387895609'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4356040666288004871/posts/default/311991470387895609'/><link rel='alternate' type='text/html' href='http://diariseorangawi.blogspot.com/2006/11/my-1st-ever-blog.html' title='My 1st Ever Blog'/><author><name>awi216</name><uri>http://www.blogger.com/profile/15955592118597400743</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
