Jump to content

dusf

Active Members
  • Posts

    37
  • Joined

  • Last visited

Posts posted by dusf

  1. 1 minute ago, haze1434 said:

    Why? If blocked by your employers, nothing you can do.

    I cannot tell you the logic behind it, if forwarding and redirection were enabled, I would still have access to the exact same information - just more conveniently on my phone, gmail repeat alerts until seen, etc. etc.

    I am hoping there is some way around this.

    Today there was talk of remote desktop access being set up for me to access office systems, which would include the local Outlook client if that helps.

  2. I work remotely, and I have an email address I access using the Outlook Web App, but I would love if I could forward or redirect the email to a Gmail account, as that would give me a lot of options regarding complex filters and notifications etc. Unfortunately, the redirect and forwarding options in the settings do not work, and SMTP access or ADUC for same is not a possibility at this time.

    Even if I could login with the Android Outlook Web App I would be satisfied, but it does not recognise my email address and/or the domain.

    Since I am able to access the email in a web browser, is there anyway to get it from here to another email address or a local email client?

  3. Ah, I see the bit that I missed when first reading your question.

    If you're willing to spend the money, BestCrypt could handle this until TrueCrypt gets there (which it seems, for the immediate future, it won't).

    I am going to look into BestCrypt now. I wonder would it be easy enough to remove it without affecting my LUKS on LVM setup when there is a TrueCrypt for release.

    I have spent the evening learning about a new project CipherShed. They have already started to dev a fork of TrueCrypt and they are looking for all kinds of volunteers.

    https://ciphershed.org/

    irc.oftc.org #ciphershed

    Here's the real question. Can whatever you use to encrypt windows be unencrypted from linux?

    I will need to find what I am encrypting Windows with first.

  4. I have setup LVM on LUKS for my Linux partitons which I am very happy with but I would also like to encrypt Windows 8.1. I had planned to use TrueCrypt until I learned it does not support GPT. I would rather not have to start over configuring my laptop to use MBR as to encrypt Windows 8.1 unless absolutely necessary.

    Do any of you know of a hack or workaround that would allow TrueCrypt to work on GPT UEFI, or is this something that simply will not happen until there is a release from some of the groups trying to continue TrueCrypt? GRUB could chainload TrueCrypt or vice versa perhaps.

    If you are dual booting with GPT Windows 8.1 and have it encrypted what is your setup?

    Maybe MBR is my best option?

    For anyone wondering why use Windows at all the main reason is that I sometimes I like to play games that WINE cannot handle or cannot handle as well as Windows. An example is that I may be on call for work and gaming when there is nothing to do, and it is nice to be able to alt-tab between work systems, personal data, and gaming. quickly without having to switch operating systems. Also, I want the whole partition encrypted, not just passwords and select dirs. I do not consider Bitlocker an option, and not only because I would need to connect a flash drive each boot.

  5. Hi

    I use Ubuntu and Debian most of the time, but for when I am forced to use Windows 8.1...

    Windows defender has been revamped for Windows 8 so it apparently does much more than Microsoft Security Essentials does on previous versions of windows but is it enough security?

    Is the Windows firewall enough security? I am behind stuck behind a Netopia 2247 until I upgrade in the near future, and due to a connection issue I have with a remote server at the moment its firewall is set to off.

    If either Defender or the stock Windows firewall are insufficient, is it worth paying for anti-malware, anti-virus, and firewall software to replace them or are any of the free solutions adequate? Please recommend specific software if necessary.

  6. Google NAT on a stick for 2600 using NAT with a single Ethernet interface if you want to use the router for an extra hop.

    I had a look at http://www.cisco.com/en/US/tech/tk648/tk361/technologies_tech_note09186a0080094430.shtml which looks good, albeit it complicated :) Although I studied three of the semesters 4/5 years ago I need to study the entirety of the new curriculum which has been updated before going to the exam. I have never installed an IOS etc, but I'm sure if I run into difficulty I would be able to get help on these forums?

    Also, if I want to use more than Packet Tracer for the CCNA labs the modules I will need for the three 2600s are http://cgi.ebay.ie/Cisco-WIC-2T-2600-Series-2-port-Serial-Interface-Module-/300554368392?pt=UK_Computing_Networking_SM&hash=item45fa6fb588, do I need a similar module for the spare module slot but with an extra Ethernet port to set one up as my home router, or am I somehow going to convert the console or auxiliary port to take the connection from the roof in, with the connection from my pc coming from the regular Ethernet interface on the 2600? If a module is required, do you know the name of it so I can price it?

    Using a SOHO or consumer firewall is advisable and will not alleviate all risk (nothing usable can do that). The issue that Darren is alluding to is that defense must occur in layers. You can have nothing allowed in, only port 80 outbound, and can still get whacked by an attachment through web-based email, local infiltration (USB or similar), or something to that effect.

    Well I rely a lot on Bitorrent (only when using Xubuntu with Ufw up but) so for my needs I have to leave certain ports listening, is there anyway I can minimize any security risk they may pose, is it easy for a potential threat to discover what ports are listening once they have my IP, and even as that what can they do with that listening port?

    While many feel that a software based firewall is sufficient, if you can stop the packets before they even hit your machine you will be at least as secure, but likely more secure. Most SOHO firewalls are not configurable OOTB for egress filtering so they filter what can come in, but it is free range for outbound (read exploit) traffic.

    From my understanding of egress filtering this would entail configuring not just inbound ports, but outbound ports, which although would take effort every time I want to do something new, I think after I get the hang of opening and closing ports on the 2600 I would quite enjoy it, and learn from it! :)

    Reality - you are probably not much of a target either way. Protect yourself from script-kiddies and most of the problems will go away for you in most cases.

    And the risk is very much decreased by using peer reviewed software on linux, yes? That said, it would be nice when playing games on Windows 7/XP if I was able to check my email and browse without worry of my passwords etc being compromised... would you suggest any software instead of, or to compliment Firefox and Bitdefender? I'm already using NoScript with the former.

    I have set up a similar internet connection for a client and have to say it does not come with any standard firewall protection.

    Are you familiar with Ufw? Or in my case the frontend for Ufw, Gufw. Neither were turned on by default and I had to install and set them to block incoming ports other than specific torrent ones.

    Another thing you can do, to really determine if it comes with a built in firewall, is to find out what the default gateway ip address is, by going to a console and typing Ifconfig and then from your web-browser type the IP address of the default gateway.

    I'm all but certain there's no built in firewall, I'm just not sure if repeater is the correct term for the device, it's possibly an 'IDU'. To confirm I executed ifconfig, which I am familiar with, and I expected to see the default gateway I configured but instead I see my inet, bcast, and mask addresses and not my DG? Using the address I have configured in the GUI firefox reports 'Firefox can't establish a connection to the server at xxx.xxx.xxx.xxx.'. I tried http, and https, and both with the bcast, perhaps it requires a port to respond? If the default gateway is as I suspect a high site transmitting and receiving off a local hotel here, would it respond to me, a regular customer?

    It should take you straight into the configuration page of your internet box. If it does not have any reference to security or firewall then your question is already answered, you will need a firewall either installed on your computer or built from a box, some decent firewall distributions worth checking out, are Untangle, PFsense and Smoothwall.

    So my software firewall Ufw is insufficient then? I will have a look at Untangle, PFsense and Smoothwall - building a physical firewall running one of those distros would be a nice little project!

  7. I use Xubuntu 11.04, and although I have the Gufw installed with incoming connections blocked by default apart from torrents, I have no physical router and instead LAN NIC is connected into what I think is a repeater, which takes the cable up to the roof that is receiving a signal from my ISP, am i secure firewall wise?

    What is on the roof is, or looks very similar to http://cgi.ebay.com/ALVARION-3-5Ghz-ANTENNA-AN1704-SU-RA-OF-3-5b-OFDM-/230509999385

    It should be noted, sometimes I boot into Windows 7/Windows XP which I have installed Bitdefender on.

    Oh and Darren mentioned home firewalls not usually being adequate, so if you maintain I buy one please recommend some models. I have some Cisco 2600s here that are just missing WAN NICs, perhaps I could adapt one with a LAN NIC somehow?

  8. Okay, doing that got me as far as the menu where I'm asked to select a hard drive/partition or whatever it is, but when i selected the first one it just gave another boot: prompt.

    I tried vesamenu.c32 and menu.c32 but neither worked and I couldn't get it to take me back to the hd selection, is there a way? Anyway I had to pull the power lead out from the back of my CPU.

    On the next boot i selected the second entry, but it gave another boot: prompt and again vesamenu.c32 or menu.c32 so I had to power down again.

    On the third boot it wouldn't even bring me to the hd selection, because the initial boot: prompt that I began this thread with wouldn't take menu.c32 this time...

  9. I didn't even think about the issue until going through the tutorial posted by Snubs! I has found the solution to your problem batman!!! I follow the steps on the shownote exactly, on a Win7 64Bit and WinXP 32Bit Machines to a bit of testing :)

    Now Kon-Boot works but it won't boot past it saying "Booting......etc blah blah" I'm going to put it down to my work laptop being completely and amazing crap. An I read Kon-Boot doesn't work with all hardware unless you go with the commercial version to me knowledge :P Need to get hold of that!!!

    However! Way to fix is this!

    It's actually this simple. Look at the files you have on your USB Stick

    menu.c32

    syslinus.cfg

    ubninit

    ubnkern

    Now I aint no Softie so maybe someone else can explain why this is happening, but where you open the syslinus.cfg file first line is this -

    default menu.c32

    So a bit of simple thinking plus technolust = type menu.c32 where it says boot hit return.

    Merry Christmas

    Hey there you!

    lol 'Merry Christmas' :)

    Firstly I had a read of your reply late last night before bed and will try it later this evening and let you know how I get on!

    I wonder would changing the first line in the file to vesamenu.c32 have the same effect, but you're right, it should just work and I'm curious as to why it doesn't also! Maybe I'm just a lucky feller?

    Thanks for all the help!

  10. Season 1 of the show is epic, jsut wait for the "Man, F*** those rounded IDE Cables" segment, it's proper LOL!!!

    I'll look out for it and your feedback :)

    A year or two a go i did watch maybe 2/3 series but I was also without a laptop at the time so there was very little of the tutorials I could try, I think going back to the start of the series once I have the netbook is a good idea, I've also started keeping up with the latest episodes now though too.

  11. Question!!!

    Have you placed

    vesamenu.c32

    in the /boot dir?

    Stupid question I know :P An Katana makes life easier but!!! Always good to try out everything on the show.......Dingoo Digital here I come!!!!

    Well no I did not, as it is not done in the show? To the best of my knowledge I have followed everything Shannon did in show. Unetbootin did create a menu.c32 file, which I tried renaming to vesamenu.c32 on the offchance it would work, but it did not.

    If you look at the attached screenshot of Shannon's tutorial you will see she also has a menu.c32 file, but not a vesamenu.c32 file as mentioned when I try to boot after using Irongeek's infinite-loop solution. N.B. netbootin is running in the background because she was showing us what to do, the contents of her USB drive are a case of 'here's one I made earlier'.

    post-23717-0-23702900-1306277049_thumb.j

  12. With Kon-Boot I am getting the infinite loop, so following the instructions as per the video I copied Irongeek's two files over those on the USB drive already, but when I then tried to boot I didn’t even get the splash screen or ASCII art, instead I see:

    SYSLINUX 4.03 2010-10-22 EDD Copyright (c) Peter Anvin et al
    
    Could not find kernel image: vesamenu.c32
    
    boot:

    I tried creating the image first with Linux and then with Windows but it made no difference, and menu.c32 is definitely on the USB drive and renaming it to vesamenu.c32 just in case did nothing.

  13. I'm able to connect to the server fine on regular ports without SSL.

    http://www.hak5.org/w/index.php/IRC lists the SSL port as 6697 but when I have SSL enabled and try to connect on this port i cannot.

    With SSL enabled for port 7000 I am able to connect, but when I try to set:

     ssl_verify = "yes"

    irssi returns:

    09:35 -!- Irssi: warning Could not verify SSL servers certificate: self signed certificate
    09:35 -!- Irssi: warning   Subject : /C=US/ST=New York/O=AwesomeIRC/OU=IRCd/CN=Irc3.AwesomeIRC.Net
    09:35 -!- Irssi: warning   Issuer  : /C=US/ST=New York/O=AwesomeIRC/OU=IRCd/CN=Irc3.AwesomeIRC.Net
    09:35 -!- Irssi: warning   MD5 Fingerprint : 41:79:5F:C3:20:35:9B:1C:8C:D6:E1:93:6E:7C:26:75
    09:35 [hak5] -!- Irssi: Connection lost to irc.hak5.org

    Is SSL weaker without SSL_verify, and should it be working on port 7000?

    Also, I know security on IRC isn't a major issue and you may think why bother with SSL for it, but I'm learning and thus is the reason for my post.

×
×
  • Create New...