Golden Hill Country Park

while visiting Hong Kong this winter my colleague and ex-flatmate from Goteborg times took me to the Kowloon Byewash Reservoir / Golden Hill Country Park.

BLKDE3815TYKH0E headaches

we’re setting up a small computer that will act as vpn end-point. we decided to try something smaller this time – BLKDE3815TYKH0E. as it turned out it’s not as well polished as one would expect from intel. my colleagues had to pull out debian wheezy usb pend-rive with the installer to be able to finish ... Read More

sip-audio-session, new libxml2

i’m using nagios to wake me up. not every day – only when there’s some outage. i have pair of nagios servers – one in Sweden, one in Poland – they cross-check one another and – for the most critical problems – send sms and make a phone call. for sms’es i’m using budgetsms.net, for ... Read More

xwiki, html macro tag and unwanted javascript

xwiki – by default – allows contributors to embed arbitrary html, including javascript. it does not take much effort to include something like: then you just need to lure your victim into visiting given wiki page while being logged – you’ll get a http request containing that person’s cookie that can be re-used to impersonate ... Read More

bridge on vlans on active-backup bonding under debian

the idea: i’d like to run kvm/lxc on debian, have guests bridged to couple of vlans and handle the network failover on the host level. network failure should be detected using arp probes not just the link [ mii ] status. after few attempts i got it working in the test environment.

useful tools for [web] malware removal

http://sitecheck.sucuri.net/ for checking if a live website is referring to some malicious js / having unwanted iframes https://www.rfxn.com/projects/linux-malware-detect/ and http://www.clamav.net/index.html and http://www.eset.com/ for scanning files for unwanted conten from the command line:

debian on dell poweredge 13th gen – r630

i’ve received for testing a new dell r630. before buying few of those i wanted to make sure that debian wheezy has kernel including all the needed drivers. it seems that it has.

Jacek Bartosiak o sytuacji Polski w obliczu wojny na Ukrainie

https://www.youtube.com/watch?v=QVpSi2r9Rn4 – swietny wyklad/dyskusja, bez emocji i bez zadecia. na dodatek: https://www.youtube.com/watch?v=VDKJWEcMCeI – Lech Jęczmyk – USA dziś – Szeryf Świata czy Imperium Zła? https://www.youtube.com/watch?v=Kg2IvCh4lnM – Grzegorz Braun: Czy znów idziemy na wojnę? https://www.youtube.com/watch?v=ipubiPXLb8g, https://www.youtube.com/watch?v=u5hckFKFfB0 – Jacek Bartosiak – o sytuacji Polski i Świata

UNION instead of OR in MySQL

i have MySQL that is run on arrays of increasing size: i remembered that the query optimizer will not be able to use existing indices for lastModified columns but.. the query execution time was acceptable, so i did not bother. recently much more data was added and query above, repeated quite often, caused a lot ... Read More

balkans

i’ve sepnt two August/September weeks traveling with my parents from Dubrovnik via Sarajevo and Zagreb to Budapest. short brain-dump with hiking maps follows.

T-Centralen to Arlanda – available public transport options

there are few options of getting from Stockholm Central station [ T-Centralen ] to the Arlanda airport: Flygbuss – from City Terminalen next to the train station – 105SEK one way SJ / regular train – there are few trains each day going from Stockholm to Uppsala – starting from 125SEK if booked in advance. ... Read More

Service check did not exit properly from nagios plugin in perl

i’m setting up v6 on a few internet-facing servers. i’ve googled a bit and found dual-stack ipv4+ipv6 monitoring with nagios. i’ve started using the wrapper script check_v46 referred there and it works nicely. but i’ve run into a problem – execution of plugin gave me:

fsck on truecrypt

it’s high time to move away from truecrypt [ which i’m doing by moving to luks and btrfs on the top of it for extra thrills ], but i still have bunch of places that were not moved to the alternative full disk encryption. what do do when after unclean shutdown this happens: ?

vectorizing text in pdf – the cheap way

we were getting some logo printed and the print shop was not happy with the pdf we’ve provided – they had some problem with the embedded font and asked us to provide another pdf with vectorized curves instead of text. based on this – although the first method with gsview did not work for me ... Read More

OVH, failover IPs, IPv6, VMs

at work we rent a dedicated server from OVH; except unexplained openvpn throttling all is working pretty well for the price we pay. besides primary IPv4 address OVH can provide few additional ‘failover’ IPv4 addresses and /64 IPv6 subnet. in our setup some of IPv4s and IPv6s are routed to a KVM VM. below – ... Read More